{"id":23048,"date":"2026-09-26T11:23:28","date_gmt":"2026-09-26T11:23:28","guid":{"rendered":"https:\/\/www.examlabs.com\/certification\/?p=23048"},"modified":"2026-09-26T11:23:28","modified_gmt":"2026-09-26T11:23:28","slug":"lpi-202-450-practice-test-questions-and-exam-dumps-part-5-q81-100","status":"publish","type":"post","link":"https:\/\/www.examlabs.com\/certification\/lpi-202-450-practice-test-questions-and-exam-dumps-part-5-q81-100\/","title":{"rendered":"LPI 202-450 Practice Test Questions and Exam Dumps Part 5 Q81-100"},"content":{"rendered":"<h1><b>View Full <\/b><a href=\"https:\/\/www.examlabs.com\/202-450-exam-dumps\"><b>LPI 202-450\u00a0 Exam Dumps<\/b><\/a><b> and Practice Test Dumps<\/b><\/h1>\n<p>&nbsp;<\/p>\n<p><b>Question 81. Which BIND configuration statement defines a DNS zone and specifies where its zone data is stored?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> options<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> controls<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> zone<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> logging<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. zone<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The BIND <\/span><span style=\"font-weight: 400;\">zone<\/span><span style=\"font-weight: 400;\"> statement defines a DNS zone and specifies configuration information associated with that zone. A typical zone declaration identifies the zone name, its type, and the file containing the zone data. For example, an authoritative master zone may be configured with <\/span><span style=\"font-weight: 400;\">type master<\/span><span style=\"font-weight: 400;\"> and a corresponding zone file. The <\/span><span style=\"font-weight: 400;\">options<\/span><span style=\"font-weight: 400;\"> statement contains global server settings, <\/span><span style=\"font-weight: 400;\">controls<\/span><span style=\"font-weight: 400;\"> configures administrative control channels such as those used by <\/span><span style=\"font-weight: 400;\">rndc<\/span><span style=\"font-weight: 400;\">, and <\/span><span style=\"font-weight: 400;\">logging<\/span><span style=\"font-weight: 400;\"> controls BIND logging behavior. Zone declarations are therefore central to configuring authoritative DNS service.<\/span><\/p>\n<p><b>Question 82. Which BIND zone type indicates that the server obtains the zone data from another authoritative server rather than maintaining the primary copy?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> slave<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> master<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> hint<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> forward<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. slave<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A BIND <\/span><span style=\"font-weight: 400;\">slave<\/span><span style=\"font-weight: 400;\"> zone, also commonly described as a secondary zone, obtains its authoritative zone data from another DNS server, normally the primary or master server. The secondary server maintains a local copy of the zone and can answer authoritative queries even when the primary is temporarily unavailable. A <\/span><span style=\"font-weight: 400;\">master<\/span><span style=\"font-weight: 400;\"> zone contains the primary writable copy, while <\/span><span style=\"font-weight: 400;\">hint<\/span><span style=\"font-weight: 400;\"> is associated with root-server information and <\/span><span style=\"font-weight: 400;\">forward<\/span><span style=\"font-weight: 400;\"> is not the normal zone type for secondary authoritative data. Zone transfers such as AXFR or IXFR are used to synchronize secondary copies.<\/span><\/p>\n<p><b>Question 83. Which DNS command-line tool is particularly useful for performing reverse DNS queries?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> nslookup<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> host<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> dig<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> dnssec-signzone<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4. dig<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">dig<\/span><span style=\"font-weight: 400;\"> utility is a powerful DNS diagnostic tool that can perform forward and reverse queries and display detailed sections of DNS responses. A reverse query can be performed with options such as <\/span><span style=\"font-weight: 400;\">-x<\/span><span style=\"font-weight: 400;\">, allowing an administrator to determine whether an IP address maps to a PTR record. <\/span><span style=\"font-weight: 400;\">host<\/span><span style=\"font-weight: 400;\"> and <\/span><span style=\"font-weight: 400;\">nslookup<\/span><span style=\"font-weight: 400;\"> can also perform DNS queries, but <\/span><span style=\"font-weight: 400;\">dig<\/span><span style=\"font-weight: 400;\"> provides especially detailed and flexible output for troubleshooting. <\/span><span style=\"font-weight: 400;\">dnssec-signzone<\/span><span style=\"font-weight: 400;\"> is used for DNSSEC-related zone signing rather than ordinary DNS query diagnostics.<\/span><\/p>\n<p><b>Question 84. Which DNS record is used for reverse mapping from an IP address to a hostname?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> A<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> PTR<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> CNAME<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> AAAA<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. PTR<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A PTR (Pointer) record provides reverse DNS mapping from an IP address to a hostname. For IPv4, reverse DNS records are stored under the <\/span><span style=\"font-weight: 400;\">in-addr.arpa<\/span><span style=\"font-weight: 400;\"> namespace, while IPv6 uses the <\/span><span style=\"font-weight: 400;\">ip6.arpa<\/span><span style=\"font-weight: 400;\"> namespace. A records map names to IPv4 addresses, AAAA records map names to IPv6 addresses, and CNAME records provide aliases between DNS names. PTR records are frequently used for troubleshooting, logging, and mail-server verification. Correct reverse DNS configuration can be particularly important for SMTP systems because some receiving servers perform reverse-DNS checks.<\/span><\/p>\n<p><b>Question 85. Which Apache directive determines which file is served automatically when a client requests a directory?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> DirectoryIndex<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DirectoryRoot<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> IndexFile<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DefaultDocument<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. DirectoryIndex<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Apache <\/span><span style=\"font-weight: 400;\">DirectoryIndex<\/span><span style=\"font-weight: 400;\"> directive specifies the default resource Apache should attempt to serve when a client requests a directory without naming a specific file. A common configuration includes <\/span><span style=\"font-weight: 400;\">index.html<\/span><span style=\"font-weight: 400;\"> or <\/span><span style=\"font-weight: 400;\">index.php<\/span><span style=\"font-weight: 400;\">. Apache checks the configured names according to the directive&#8217;s order and serves an available file when appropriate. <\/span><span style=\"font-weight: 400;\">DocumentRoot<\/span><span style=\"font-weight: 400;\"> determines the filesystem location of website content, but it does not select the default filename. Proper DirectoryIndex configuration is useful for controlling the initial document displayed when users access the root or another directory of a website.<\/span><\/p>\n<p><b>Question 86. Which Apache module provides TLS\/SSL support for HTTPS connections?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> mod_proxy<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> mod_headers<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> mod_rewrite<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> mod_ssl<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4. mod_ssl<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Apache&#8217;s <\/span><span style=\"font-weight: 400;\">mod_ssl<\/span><span style=\"font-weight: 400;\"> module provides support for SSL\/TLS functionality, allowing Apache to serve HTTPS connections. It works with certificates and private keys to establish encrypted sessions between clients and the web server. Administrators commonly configure TLS-related directives inside an HTTPS virtual host. <\/span><span style=\"font-weight: 400;\">mod_proxy<\/span><span style=\"font-weight: 400;\"> provides proxying capabilities, <\/span><span style=\"font-weight: 400;\">mod_headers<\/span><span style=\"font-weight: 400;\"> modifies HTTP headers, and <\/span><span style=\"font-weight: 400;\">mod_rewrite<\/span><span style=\"font-weight: 400;\"> performs URL rewriting. A secure HTTPS deployment also requires appropriate certificate configuration and sensible TLS settings rather than simply loading the module.<\/span><\/p>\n<p><b>Question 87. Which HTTP status code indicates that the server understood the request but refuses to authorize access to the requested resource?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> 401<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> 302<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> 403<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> 404<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. 403<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">HTTP status code 403 means that the server understood the request but refuses to fulfill it because access is forbidden. It can occur because of filesystem permissions, Apache authorization rules, access-control directives, or other security policies. Status 401 indicates that authentication is required or has failed, 302 indicates a temporary redirect, and 404 indicates that the requested resource could not be found. When troubleshooting a 403 response, administrators should examine both web-server authorization configuration and underlying filesystem permissions.<\/span><\/p>\n<p><b>Question 88. Which NFS command can display statistics about NFS client and server activity?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> exportfs<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> showmount<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> nfsstat<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> mount.nfs<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. nfsstat<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">nfsstat<\/span><span style=\"font-weight: 400;\"> command displays statistics related to NFS client and server operations. It can provide information useful for diagnosing performance or communication problems, including RPC activity and various NFS operation counts. <\/span><span style=\"font-weight: 400;\">exportfs<\/span><span style=\"font-weight: 400;\"> manages server exports, <\/span><span style=\"font-weight: 400;\">showmount<\/span><span style=\"font-weight: 400;\"> can display export information from an NFS server, and <\/span><span style=\"font-weight: 400;\">mount.nfs<\/span><span style=\"font-weight: 400;\"> is used for mounting NFS filesystems. Monitoring NFS statistics can help administrators identify unusual workloads, failed operations, or potential communication issues between clients and servers.<\/span><\/p>\n<p><b>Question 89. Which NFS export option allows clients to mount an exported filesystem with read-only access?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> sync<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> no_root_squash<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> no_subtree_check<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> ro<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4. ro<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">ro<\/span><span style=\"font-weight: 400;\"> NFS export option makes an exported filesystem read-only for clients. Clients can access files but cannot modify the exported data through the NFS mount. This can be useful when distributing software, documentation, or other data that clients should not change. <\/span><span style=\"font-weight: 400;\">sync<\/span><span style=\"font-weight: 400;\"> controls write synchronization behavior, <\/span><span style=\"font-weight: 400;\">no_root_squash<\/span><span style=\"font-weight: 400;\"> changes the treatment of remote root privileges, and <\/span><span style=\"font-weight: 400;\">no_subtree_check<\/span><span style=\"font-weight: 400;\"> affects subtree verification. Read-only exports can reduce the risk of accidental or unauthorized modification of shared data.<\/span><\/p>\n<p><b>Question 90. Which Samba utility can display information about active Samba connections and file locks?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> smbstatus<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> testparm<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> smbclient<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> netstat-smb<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. smbstatus<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">smbstatus<\/span><span style=\"font-weight: 400;\"> displays information about current Samba connections, open files, and locks maintained by the Samba server. It is useful when administrators need to determine which clients are connected or which resources are currently being accessed. <\/span><span style=\"font-weight: 400;\">testparm<\/span><span style=\"font-weight: 400;\"> validates Samba configuration, <\/span><span style=\"font-weight: 400;\">smbclient<\/span><span style=\"font-weight: 400;\"> provides a command-line client for accessing SMB resources, and <\/span><span style=\"font-weight: 400;\">netstat-smb<\/span><span style=\"font-weight: 400;\"> is not a standard Samba utility. When investigating file-sharing problems, <\/span><span style=\"font-weight: 400;\">smbstatus<\/span><span style=\"font-weight: 400;\"> can help identify active sessions and resource contention.<\/span><\/p>\n<p><b>Question 91. Which Samba configuration parameter can restrict access to a share to specified users or groups?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> valid users<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> guest account<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> workgroup<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> server string<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. valid users<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Samba <\/span><span style=\"font-weight: 400;\">valid users<\/span><span style=\"font-weight: 400;\"> parameter specifies which users or groups are permitted to access a particular share. It can be used to restrict access even when a user has successfully authenticated to the Samba server. For example, administrators can specify individual usernames or groups using appropriate Samba syntax. <\/span><span style=\"font-weight: 400;\">guest account<\/span><span style=\"font-weight: 400;\"> defines the local account associated with guest access, <\/span><span style=\"font-weight: 400;\">workgroup<\/span><span style=\"font-weight: 400;\"> identifies the Windows workgroup or domain context, and <\/span><span style=\"font-weight: 400;\">server string<\/span><span style=\"font-weight: 400;\"> provides descriptive server information. Share-level authorization should be considered together with underlying Linux filesystem permissions.<\/span><\/p>\n<p><b>Question 92. Which Linux command can display the default gateway currently installed in the routing table?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> ip link show<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> ip route show default<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> ip addr show default<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> ip gateway list<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. ip route show default<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The command <\/span><span style=\"font-weight: 400;\">ip route show default<\/span><span style=\"font-weight: 400;\"> displays the default route installed in the Linux routing table. A typical result identifies a default gateway and the network interface through which traffic should be sent. The default route is used when no more specific route matches a destination. <\/span><span style=\"font-weight: 400;\">ip link<\/span><span style=\"font-weight: 400;\"> displays interface information, while <\/span><span style=\"font-weight: 400;\">ip addr<\/span><span style=\"font-weight: 400;\"> displays addresses assigned to interfaces. There is no standard <\/span><span style=\"font-weight: 400;\">ip gateway list<\/span><span style=\"font-weight: 400;\"> command. Checking the default route is an important step when diagnosing why a system can communicate locally but cannot reach remote networks.<\/span><\/p>\n<p><b>Question 93. Which DHCP message does a client send when it formally requests the configuration offered by a particular DHCP server?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> DHCPREQUEST<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DHCPDISCOVER<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DHCPACK<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DHCPOFFER<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. DHCPREQUEST<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">After receiving one or more DHCPOFFER messages, a DHCP client sends a DHCPREQUEST message to indicate which offered configuration it wants to accept. The selected DHCP server can then respond with DHCPACK to confirm the lease. DHCPDISCOVER begins the discovery process, while DHCPOFFER contains a proposed configuration from a server. DHCPREQUEST can also be used during renewal and other parts of the DHCP state process. Understanding these message types is useful when examining DHCP packet captures or diagnosing address-assignment failures.<\/span><\/p>\n<p><b>Question 94. Which Linux file commonly specifies DNS resolver search domains and nameserver addresses on systems using a traditional resolver configuration?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> \/etc\/nsswitch.conf<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> \/etc\/hosts<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> \/etc\/resolv.conf<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> \/etc\/hostname<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. \/etc\/resolv.conf<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">\/etc\/resolv.conf<\/span><span style=\"font-weight: 400;\"> file traditionally contains resolver configuration such as <\/span><span style=\"font-weight: 400;\">nameserver<\/span><span style=\"font-weight: 400;\"> entries and search domains. Applications using the system resolver can consult this configuration when performing DNS lookups. <\/span><span style=\"font-weight: 400;\">\/etc\/hosts<\/span><span style=\"font-weight: 400;\"> contains static hostname mappings, <\/span><span style=\"font-weight: 400;\">\/etc\/hostname<\/span><span style=\"font-weight: 400;\"> generally contains the local system hostname, and <\/span><span style=\"font-weight: 400;\">\/etc\/nsswitch.conf<\/span><span style=\"font-weight: 400;\"> determines the order and sources used by various name-service lookups. On systems using NetworkManager, systemd-resolved, or other network-management frameworks, <\/span><span style=\"font-weight: 400;\">\/etc\/resolv.conf<\/span><span style=\"font-weight: 400;\"> may be generated or managed automatically rather than edited manually.<\/span><\/p>\n<p><b>Question 95. Which Postfix parameter is used to specify a host through which outbound mail should be relayed?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> myhostname<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> mydestination<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> relayhost<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> smtpd_banner<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. relayhost<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Postfix <\/span><span style=\"font-weight: 400;\">relayhost<\/span><span style=\"font-weight: 400;\"> parameter specifies a mail server through which Postfix should relay outbound messages. Organizations may use a relay host when external delivery must pass through a central SMTP gateway, filtering service, or upstream mail provider. <\/span><span style=\"font-weight: 400;\">myhostname<\/span><span style=\"font-weight: 400;\"> defines the local mail system&#8217;s hostname, <\/span><span style=\"font-weight: 400;\">mydestination<\/span><span style=\"font-weight: 400;\"> identifies destinations for local delivery, and <\/span><span style=\"font-weight: 400;\">smtpd_banner<\/span><span style=\"font-weight: 400;\"> controls the SMTP service greeting. When configuring a relay host, administrators may also need to configure authentication, TLS, and appropriate relay restrictions to prevent unauthorized use.<\/span><\/p>\n<p><b>Question 96. Which Postfix command can be used to delete messages from the mail queue?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> postconf<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> postsuper<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> postqueue<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> postalias<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. postsuper<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">postsuper<\/span><span style=\"font-weight: 400;\"> is a Postfix administrative utility used to perform operations on messages in the mail queue, including deleting queued messages when the appropriate options are supplied. Because queue deletion can permanently remove messages, administrators should use it carefully and verify the message identifiers or scope of the operation before executing destructive commands. <\/span><span style=\"font-weight: 400;\">postqueue<\/span><span style=\"font-weight: 400;\"> is primarily used to inspect or manage queue submission, <\/span><span style=\"font-weight: 400;\">postconf<\/span><span style=\"font-weight: 400;\"> manages configuration parameters, and <\/span><span style=\"font-weight: 400;\">postalias<\/span><span style=\"font-weight: 400;\"> manages alias databases. Queue administration is an important part of diagnosing and maintaining Postfix systems.<\/span><\/p>\n<p><b>Question 97. Which Dovecot protocol is commonly used for retrieving email while maintaining mailbox state on the server?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> SMTP<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> FTP<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> IMAP<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> LDAP<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. IMAP<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Dovecot commonly provides IMAP service for clients that need to access and manage mailboxes while keeping messages and mailbox state on the server. IMAP supports folders, message flags, synchronization, and access from multiple clients. SMTP is used for mail transfer and submission rather than mailbox retrieval, FTP transfers files, and LDAP provides directory services. Dovecot can also provide POP3, which follows a different mailbox-retrieval model. Administrators should select and configure the appropriate protocol based on how users need to access and synchronize their mail.<\/span><\/p>\n<p><b>Question 98. Which SSH configuration file contains system-wide server settings for the OpenSSH daemon?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> \/etc\/ssh\/ssh_config<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> \/etc\/ssh\/sshd_config<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> ~\/.ssh\/config<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> ~\/.ssh\/authorized_keys<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. \/etc\/ssh\/sshd_config<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">\/etc\/ssh\/sshd_config<\/span><span style=\"font-weight: 400;\"> file contains system-wide configuration for the OpenSSH server daemon, <\/span><span style=\"font-weight: 400;\">sshd<\/span><span style=\"font-weight: 400;\">. It can define settings such as the listening port, authentication methods, permitted users, root-login behavior, and other server policies. <\/span><span style=\"font-weight: 400;\">\/etc\/ssh\/ssh_config<\/span><span style=\"font-weight: 400;\"> is the system-wide client configuration, while <\/span><span style=\"font-weight: 400;\">~\/.ssh\/config<\/span><span style=\"font-weight: 400;\"> contains per-user client settings. The <\/span><span style=\"font-weight: 400;\">authorized_keys<\/span><span style=\"font-weight: 400;\"> file contains public keys authorized for a particular user and is not a general server configuration file. Administrators should validate SSH configuration before restarting or reloading the daemon to avoid configuration-related access problems.<\/span><\/p>\n<p><b>Question 99. Which Linux command can display the active nftables ruleset?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> nft list ruleset<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> nft show firewall<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> nft status rules<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> nft rules active<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. nft list ruleset<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">nft list ruleset<\/span><span style=\"font-weight: 400;\"> command displays the currently loaded nftables ruleset. It can show tables, chains, rules, counters, and related firewall configuration. This makes it a fundamental command when auditing or troubleshooting an nftables firewall. The other commands listed are not standard nft syntax for displaying the complete active ruleset. Administrators should distinguish between the rules currently loaded in the kernel and configuration files or scripts that may be used to recreate those rules after a reboot.<\/span><\/p>\n<p><b>Question 100. Which SELinux command changes the security context of a file persistently by updating the file-context configuration?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> restorecon<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> chcon<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> semanage fcontext<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> setenforce<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. semanage fcontext<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">semanage fcontext<\/span><span style=\"font-weight: 400;\"> is used to define or modify persistent SELinux file-context mappings. After defining the desired context, <\/span><span style=\"font-weight: 400;\">restorecon<\/span><span style=\"font-weight: 400;\"> can apply the configured context to the filesystem object. In contrast, <\/span><span style=\"font-weight: 400;\">chcon<\/span><span style=\"font-weight: 400;\"> changes a file&#8217;s context directly but is generally not persistent against relabeling or restoration from policy-defined contexts. <\/span><span style=\"font-weight: 400;\">setenforce<\/span><span style=\"font-weight: 400;\"> changes the SELinux enforcement mode and does not modify file contexts. Using <\/span><span style=\"font-weight: 400;\">semanage fcontext<\/span><span style=\"font-weight: 400;\"> together with <\/span><span style=\"font-weight: 400;\">restorecon<\/span><span style=\"font-weight: 400;\"> is therefore the appropriate approach when a custom file or directory needs a persistent SELinux context.<\/span><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>View Full LPI 202-450\u00a0 Exam Dumps and Practice Test Dumps &nbsp; Question 81. Which BIND configuration statement defines a DNS zone and specifies where its zone data is stored? options controls zone logging Correct Answer: 3. zone Explanation :- The BIND zone statement defines a DNS zone and specifies configuration information associated with that zone. [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1648,1647],"tags":[],"_links":{"self":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/23048"}],"collection":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/comments?post=23048"}],"version-history":[{"count":1,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/23048\/revisions"}],"predecessor-version":[{"id":23049,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/23048\/revisions\/23049"}],"wp:attachment":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/media?parent=23048"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/categories?post=23048"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/tags?post=23048"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}