{"id":23074,"date":"2026-09-26T11:29:53","date_gmt":"2026-09-26T11:29:53","guid":{"rendered":"https:\/\/www.examlabs.com\/certification\/?p=23074"},"modified":"2026-09-26T11:29:53","modified_gmt":"2026-09-26T11:29:53","slug":"lpi-202-450-practice-test-questions-and-exam-dumps-part-18-q341-360","status":"publish","type":"post","link":"https:\/\/www.examlabs.com\/certification\/lpi-202-450-practice-test-questions-and-exam-dumps-part-18-q341-360\/","title":{"rendered":"LPI 202-450 Practice Test Questions and Exam Dumps Part 18 Q341-360"},"content":{"rendered":"<h1><b>View Full <\/b><a href=\"https:\/\/www.examlabs.com\/202-450-exam-dumps\"><b>LPI 202-450\u00a0 Exam Dumps<\/b><\/a><b> and Practice Test Dumps<\/b><\/h1>\n<p>&nbsp;<\/p>\n<p><b>Question 341. Which BIND directive controls whether a server will send recursive queries on behalf of clients?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> allow-transfer<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> recursion<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> notify<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> check-names<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. recursion<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">recursion<\/span><span style=\"font-weight: 400;\"> directive in BIND controls whether recursive query processing is enabled. When set to <\/span><span style=\"font-weight: 400;\">yes<\/span><span style=\"font-weight: 400;\">, the server can perform recursive lookups for clients, which is commonly required for a caching or recursive DNS server. This is different from <\/span><span style=\"font-weight: 400;\">allow-recursion<\/span><span style=\"font-weight: 400;\">, which controls which clients are permitted to use recursive service. An authoritative-only DNS server commonly disables recursion to reduce unnecessary processing and avoid becoming an open resolver. Other directives have different purposes: <\/span><span style=\"font-weight: 400;\">allow-transfer<\/span><span style=\"font-weight: 400;\"> controls zone transfers, <\/span><span style=\"font-weight: 400;\">notify<\/span><span style=\"font-weight: 400;\"> controls DNS NOTIFY behavior, and <\/span><span style=\"font-weight: 400;\">check-names<\/span><span style=\"font-weight: 400;\"> affects name syntax checking.<\/span><\/p>\n<p><b>Question 342. In Apache HTTP Server, which directive is used to define a virtual host&#8217;s canonical hostname?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> DirectoryIndex<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DocumentRoot<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> ErrorDocument<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> ServerName<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4. ServerName<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Apache <\/span><span style=\"font-weight: 400;\">ServerName<\/span><span style=\"font-weight: 400;\"> directive specifies the hostname and, optionally, the port that the server uses to identify itself within a virtual host or server configuration. It is especially important in name-based virtual hosting because Apache uses the requested hostname to select the appropriate <\/span><span style=\"font-weight: 400;\">&lt;VirtualHost&gt;<\/span><span style=\"font-weight: 400;\"> configuration. <\/span><span style=\"font-weight: 400;\">DocumentRoot<\/span><span style=\"font-weight: 400;\"> specifies where web files are stored, <\/span><span style=\"font-weight: 400;\">DirectoryIndex<\/span><span style=\"font-weight: 400;\"> determines default index files, and <\/span><span style=\"font-weight: 400;\">ErrorDocument<\/span><span style=\"font-weight: 400;\"> defines custom responses for HTTP errors. A properly configured <\/span><span style=\"font-weight: 400;\">ServerName<\/span><span style=\"font-weight: 400;\"> also helps avoid ambiguous hostname identification and related startup warnings on many Apache installations.<\/span><\/p>\n<p><b>Question 343. Which NFS export option prevents a client from using root privileges to access exported files as the server&#8217;s root user?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> root_squash<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> no_subtree_check<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> sync<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> insecure<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. root_squash<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The NFS <\/span><span style=\"font-weight: 400;\">root_squash<\/span><span style=\"font-weight: 400;\"> option maps requests from the client-side root user to an unprivileged identity on the NFS server. This reduces the security risk of allowing a remote root account to access files with server-side root privileges. It is commonly used for NFS exports because client machines should not automatically gain root-level authority over server files. <\/span><span style=\"font-weight: 400;\">no_subtree_check<\/span><span style=\"font-weight: 400;\"> controls subtree checking, <\/span><span style=\"font-weight: 400;\">sync<\/span><span style=\"font-weight: 400;\"> affects when changes are committed, and <\/span><span style=\"font-weight: 400;\">insecure<\/span><span style=\"font-weight: 400;\"> permits connections from non-privileged client ports. The root-squashing behavior is therefore specifically associated with limiting remote root privileges.<\/span><\/p>\n<p><b>Question 344. Which Samba utility displays information about the current connections to a Samba server?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> testparm<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> smbclient<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> smbstatus<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> smbpasswd<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. smbstatus<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">smbstatus<\/span><span style=\"font-weight: 400;\"> utility displays information about current Samba connections, including connected clients, locked files, and active sessions. It is useful when troubleshooting file-sharing activity or determining which users and systems currently have connections to a Samba server. <\/span><span style=\"font-weight: 400;\">testparm<\/span><span style=\"font-weight: 400;\"> is primarily used to validate and inspect Samba configuration files. <\/span><span style=\"font-weight: 400;\">smbclient<\/span><span style=\"font-weight: 400;\"> provides a command-line client for accessing SMB\/CIFS shares, while <\/span><span style=\"font-weight: 400;\">smbpasswd<\/span><span style=\"font-weight: 400;\"> manages Samba password information. Administrators can therefore use <\/span><span style=\"font-weight: 400;\">smbstatus<\/span><span style=\"font-weight: 400;\"> when they need operational information about active Samba sessions rather than configuration validation.<\/span><\/p>\n<p><b>Question 345. Which DNS record identifies the mail server responsible for receiving email for a domain?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> CNAME<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> PTR<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> TXT<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> MX<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4. MX<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">An MX, or Mail Exchange, record specifies the mail servers responsible for accepting email for a DNS domain. An MX record normally contains a preference value and the hostname of the mail server. When multiple MX records exist, the preference values help determine the order in which mail servers should be attempted. A CNAME provides an alias for another DNS name, PTR records support reverse DNS lookups, and TXT records contain arbitrary text data commonly used for verification and email-related policies. Correct MX configuration is therefore essential for reliable inbound email delivery.<\/span><\/p>\n<p><b>Question 346. Which DHCP option supplies clients with the IP address of a DNS resolver?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> Option 6<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Option 3<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Option 15<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Option 1<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. Option 6<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">DHCP option 6 specifies DNS servers that DHCP clients should use for name resolution. A DHCP server can provide one or more resolver IP addresses through this option, allowing clients to automatically configure their DNS settings without manual intervention. Option 3 identifies the default gateway, option 15 specifies the DNS domain name, and option 1 defines the subnet mask. When troubleshooting automatically assigned DNS settings, administrators should therefore check whether the DHCP server is supplying the expected values through option 6.<\/span><\/p>\n<p><b>Question 347. Which Postfix parameter specifies the domains for which the local machine should consider itself the final destination?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> relayhost<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> mynetworks<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> mydestination<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> myorigin<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. mydestination<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The Postfix <\/span><span style=\"font-weight: 400;\">mydestination<\/span><span style=\"font-weight: 400;\"> parameter identifies the domains and hostnames for which Postfix should deliver mail locally. Messages addressed to destinations listed there are treated as local mail rather than being forwarded to another mail server. This parameter is therefore important when configuring a server that receives email for its own domains. <\/span><span style=\"font-weight: 400;\">relayhost<\/span><span style=\"font-weight: 400;\"> specifies an upstream relay, <\/span><span style=\"font-weight: 400;\">mynetworks<\/span><span style=\"font-weight: 400;\"> identifies trusted networks, and <\/span><span style=\"font-weight: 400;\">myorigin<\/span><span style=\"font-weight: 400;\"> determines the domain appended to locally generated mail. Misconfiguring <\/span><span style=\"font-weight: 400;\">mydestination<\/span><span style=\"font-weight: 400;\"> can cause mail to be incorrectly rejected, relayed, or delivered.<\/span><\/p>\n<p><b>Question 348. In Dovecot, which configuration database defines how user authentication credentials are obtained?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> service imap<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> mail_location<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> namespace<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> passdb<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4. passdb<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Dovecot uses the <\/span><span style=\"font-weight: 400;\">passdb<\/span><span style=\"font-weight: 400;\"> configuration to define how authentication credentials are obtained and verified. Depending on the deployment, credentials can be checked against files, system accounts, SQL databases, LDAP, or other authentication backends. The related <\/span><span style=\"font-weight: 400;\">userdb<\/span><span style=\"font-weight: 400;\"> configuration provides information about users after authentication, such as UID, GID, or mail location. <\/span><span style=\"font-weight: 400;\">mail_location<\/span><span style=\"font-weight: 400;\"> specifies where mailboxes are stored, while namespace settings define mailbox namespaces. Understanding the distinction between <\/span><span style=\"font-weight: 400;\">passdb<\/span><span style=\"font-weight: 400;\"> and <\/span><span style=\"font-weight: 400;\">userdb<\/span><span style=\"font-weight: 400;\"> is important when troubleshooting authentication and mailbox-access problems in Dovecot-based mail services.<\/span><\/p>\n<p><b>Question 349. Which OpenSSH command-line option specifies the identity file to use for public-key authentication?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> -i<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> -p<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> -L<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> -X<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. -i<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The OpenSSH client uses the <\/span><span style=\"font-weight: 400;\">-i<\/span><span style=\"font-weight: 400;\"> option to specify a private key file for authentication. For example, <\/span><span style=\"font-weight: 400;\">ssh -i ~\/.ssh\/server_key user@example.com<\/span><span style=\"font-weight: 400;\"> tells the SSH client to use that identity file when attempting to authenticate. The <\/span><span style=\"font-weight: 400;\">-p<\/span><span style=\"font-weight: 400;\"> option specifies a non-default server port, <\/span><span style=\"font-weight: 400;\">-L<\/span><span style=\"font-weight: 400;\"> establishes local port forwarding, and <\/span><span style=\"font-weight: 400;\">-X<\/span><span style=\"font-weight: 400;\"> enables X11 forwarding. Using an explicit identity file is especially useful when a user maintains multiple SSH keys for different servers, accounts, or environments. File permissions on private keys must also be appropriately restricted.<\/span><\/p>\n<p><b>Question 350. Which command displays the current SELinux enforcement mode?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> semanage<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> restorecon<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> audit2allow<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> getenforce<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4. getenforce<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">getenforce<\/span><span style=\"font-weight: 400;\"> command reports the current SELinux enforcement mode. Its output is typically <\/span><span style=\"font-weight: 400;\">Enforcing<\/span><span style=\"font-weight: 400;\">, <\/span><span style=\"font-weight: 400;\">Permissive<\/span><span style=\"font-weight: 400;\">, or <\/span><span style=\"font-weight: 400;\">Disabled<\/span><span style=\"font-weight: 400;\">. In enforcing mode, SELinux policy violations are actively blocked. In permissive mode, violations are logged but generally not prevented by SELinux. <\/span><span style=\"font-weight: 400;\">restorecon<\/span><span style=\"font-weight: 400;\"> restores security contexts, <\/span><span style=\"font-weight: 400;\">semanage<\/span><span style=\"font-weight: 400;\"> manages SELinux policy-related configuration, and <\/span><span style=\"font-weight: 400;\">audit2allow<\/span><span style=\"font-weight: 400;\"> can generate policy rules from audit information. Administrators frequently use <\/span><span style=\"font-weight: 400;\">getenforce<\/span><span style=\"font-weight: 400;\"> as an initial troubleshooting step when determining whether SELinux is actively enforcing security policy on a system.<\/span><\/p>\n<p><b>Question 351. Which nftables command displays the complete active ruleset across configured tables and chains?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> nft list ruleset<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> nft show firewall<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> nft display all<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> nft rules<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. nft list ruleset<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">nft list ruleset<\/span><span style=\"font-weight: 400;\"> command displays the complete nftables ruleset currently loaded in the kernel. It can show tables, chains, sets, and rules across the firewall configuration, making it useful for auditing and troubleshooting. More targeted commands can display individual tables or chains, but <\/span><span style=\"font-weight: 400;\">list ruleset<\/span><span style=\"font-weight: 400;\"> provides a broad view of the active configuration. The other options listed are not standard nftables commands for displaying the complete ruleset. Administrators commonly use this command to verify whether expected firewall rules are actually present and active.<\/span><\/p>\n<p><b>Question 352. Which DNS record is used for reverse resolution from an IPv4 address to a hostname?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> A<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> MX<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> PTR<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> NS<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. PTR<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">A PTR record maps an IP address to a hostname and is used for reverse DNS resolution. IPv4 reverse DNS records are normally stored under the <\/span><span style=\"font-weight: 400;\">in-addr.arpa<\/span><span style=\"font-weight: 400;\"> domain. For example, a lookup of an IPv4 address can retrieve its associated PTR record when reverse DNS is correctly configured. An A record maps a hostname to an IPv4 address, MX identifies mail servers, and NS identifies authoritative name servers for a DNS zone. Reverse DNS is commonly used for diagnostics, logging, and email-server reputation checks.<\/span><\/p>\n<p><b>Question 353. Which Apache directive specifies the file or response returned when a requested resource produces an HTTP error?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> ServerAlias<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> ErrorDocument<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> DirectoryIndex<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Listen<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 2. ErrorDocument<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">Apache&#8217;s <\/span><span style=\"font-weight: 400;\">ErrorDocument<\/span><span style=\"font-weight: 400;\"> directive defines what should be returned when a particular HTTP error occurs. Administrators can configure a local file, a local URL, or another response for errors such as 404 Not Found or 403 Forbidden. For example, an administrator can use <\/span><span style=\"font-weight: 400;\">ErrorDocument 404 \/404.html<\/span><span style=\"font-weight: 400;\"> to provide a custom page when a requested resource does not exist. <\/span><span style=\"font-weight: 400;\">ServerAlias<\/span><span style=\"font-weight: 400;\"> defines alternative hostnames, <\/span><span style=\"font-weight: 400;\">DirectoryIndex<\/span><span style=\"font-weight: 400;\"> specifies default index files, and <\/span><span style=\"font-weight: 400;\">Listen<\/span><span style=\"font-weight: 400;\"> controls network addresses and ports on which Apache accepts connections.<\/span><\/p>\n<p><b>Question 354. Which command is commonly used to mount an NFS filesystem from a remote server?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> exportfs<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> showmount<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> mount<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> nfsstat<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. mount<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">mount<\/span><span style=\"font-weight: 400;\"> command is commonly used to attach an NFS export to a local directory. For example, an administrator can specify an NFS server and exported path as the remote filesystem and provide a local mount point. The <\/span><span style=\"font-weight: 400;\">exportfs<\/span><span style=\"font-weight: 400;\"> command manages exports on an NFS server, <\/span><span style=\"font-weight: 400;\">showmount<\/span><span style=\"font-weight: 400;\"> displays information about NFS exports and clients, and <\/span><span style=\"font-weight: 400;\">nfsstat<\/span><span style=\"font-weight: 400;\"> reports NFS statistics. Mounting an NFS filesystem may involve specifying the filesystem type with <\/span><span style=\"font-weight: 400;\">-t nfs<\/span><span style=\"font-weight: 400;\"> and additional options depending on the NFS version and required behavior.<\/span><\/p>\n<p><b>Question 355. Which Postfix command displays the current mail queue?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> postmap<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> postsuper<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> postconf<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> postqueue<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4. postqueue<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">postqueue<\/span><span style=\"font-weight: 400;\"> utility is used to inspect and manage the Postfix mail queue, with <\/span><span style=\"font-weight: 400;\">postqueue -p<\/span><span style=\"font-weight: 400;\"> commonly used to display queued messages. This is useful when diagnosing delayed or undelivered mail. <\/span><span style=\"font-weight: 400;\">postmap<\/span><span style=\"font-weight: 400;\"> creates and manages indexed lookup databases, <\/span><span style=\"font-weight: 400;\">postconf<\/span><span style=\"font-weight: 400;\"> displays or modifies Postfix configuration parameters, and <\/span><span style=\"font-weight: 400;\">postsuper<\/span><span style=\"font-weight: 400;\"> performs administrative operations on queued messages, such as deleting or moving them. Examining the mail queue is often an early troubleshooting step when messages remain pending instead of being delivered.<\/span><\/p>\n<p><b>Question 356. Which file commonly contains the system&#8217;s resolver configuration on traditional Linux systems?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> \/etc\/resolv.conf<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> \/etc\/hosts.allow<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> \/etc\/nsswitch.conf<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> \/etc\/services<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. \/etc\/resolv.conf<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">\/etc\/resolv.conf<\/span><span style=\"font-weight: 400;\"> file traditionally contains DNS resolver configuration, including nameserver addresses and resolver-related search domains. Applications and resolver libraries can use this information when performing DNS lookups. On systems using NetworkManager or systemd-resolved, the file may be generated or managed dynamically rather than edited permanently by hand. <\/span><span style=\"font-weight: 400;\">\/etc\/hosts.allow<\/span><span style=\"font-weight: 400;\"> is associated with TCP wrappers, <\/span><span style=\"font-weight: 400;\">\/etc\/nsswitch.conf<\/span><span style=\"font-weight: 400;\"> controls the order of name-service sources, and <\/span><span style=\"font-weight: 400;\">\/etc\/services<\/span><span style=\"font-weight: 400;\"> maps service names to port numbers. Understanding these distinctions helps diagnose DNS and hostname-resolution problems.<\/span><\/p>\n<p><b>Question 357. Which SSH server configuration directive changes the TCP port on which sshd listens?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> ListenAddress<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> AllowUsers<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> Port<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> HostKey<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. Port<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The OpenSSH server&#8217;s <\/span><span style=\"font-weight: 400;\">Port<\/span><span style=\"font-weight: 400;\"> directive specifies the TCP port on which <\/span><span style=\"font-weight: 400;\">sshd<\/span><span style=\"font-weight: 400;\"> accepts SSH connections. The default is normally TCP port 22, although administrators may configure another port when required by their environment. <\/span><span style=\"font-weight: 400;\">ListenAddress<\/span><span style=\"font-weight: 400;\"> controls the local addresses on which the daemon listens, <\/span><span style=\"font-weight: 400;\">AllowUsers<\/span><span style=\"font-weight: 400;\"> restricts which accounts may connect, and <\/span><span style=\"font-weight: 400;\">HostKey<\/span><span style=\"font-weight: 400;\"> identifies server host-key files. After changing the SSH port, administrators must ensure that the firewall permits the new port and that clients connect using the corresponding port number.<\/span><\/p>\n<p><b>Question 358. Which command recursively restores the default SELinux security contexts for files under a directory?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> restorecon -R<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> chcon -r<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> semanage restore<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> setsebool -R<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 1. restorecon -R<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">restorecon -R<\/span><span style=\"font-weight: 400;\"> command recursively restores SELinux security contexts according to the system&#8217;s configured file-context policy. It is particularly useful after files have been copied, moved, or otherwise assigned incorrect contexts. The <\/span><span style=\"font-weight: 400;\">-R<\/span><span style=\"font-weight: 400;\"> option tells <\/span><span style=\"font-weight: 400;\">restorecon<\/span><span style=\"font-weight: 400;\"> to process directories recursively. <\/span><span style=\"font-weight: 400;\">chcon<\/span><span style=\"font-weight: 400;\"> can directly change contexts but is generally not the preferred mechanism for persistent policy-defined labeling. <\/span><span style=\"font-weight: 400;\">semanage<\/span><span style=\"font-weight: 400;\"> is used to manage SELinux policy settings, while <\/span><span style=\"font-weight: 400;\">setsebool<\/span><span style=\"font-weight: 400;\"> changes SELinux boolean values. Correct file contexts are essential for services operating under SELinux enforcement.<\/span><\/p>\n<p><b>Question 359. Which dig option performs a trace beginning from the DNS root servers to determine the delegation path?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> +short<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> +noall<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> +trace<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> +stats<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 3. +trace<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">dig +trace<\/span><span style=\"font-weight: 400;\"> option performs an iterative DNS resolution starting from the root servers and follows referrals through the DNS hierarchy until reaching the authoritative server for the requested name. This makes it valuable when troubleshooting delegation problems, missing records, or unexpected DNS responses. <\/span><span style=\"font-weight: 400;\">+short<\/span><span style=\"font-weight: 400;\"> reduces the output to a concise answer, <\/span><span style=\"font-weight: 400;\">+noall<\/span><span style=\"font-weight: 400;\"> suppresses most standard output sections, and <\/span><span style=\"font-weight: 400;\">+stats<\/span><span style=\"font-weight: 400;\"> controls statistics output. Because <\/span><span style=\"font-weight: 400;\">+trace<\/span><span style=\"font-weight: 400;\"> follows the delegation path rather than relying entirely on a recursive resolver, it can reveal where a DNS resolution process is failing.<\/span><\/p>\n<p><b>Question 360. Which command displays the available network interfaces and their link-layer state?<\/b><\/p>\n<ol>\n<li><b><\/b><span style=\"font-weight: 400;\"> ip route show<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> ip addr flush<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> ip neigh show<\/span><\/li>\n<li><b><\/b><span style=\"font-weight: 400;\"> ip link show<\/span><\/li>\n<\/ol>\n<p><b>Correct Answer: 4. ip link show<\/b><\/p>\n<p><b>Explanation :-<\/b><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">ip link show<\/span><span style=\"font-weight: 400;\"> command displays network interfaces and information about their link-layer state. Output commonly includes interface names, interface indexes, MAC addresses, and states such as <\/span><span style=\"font-weight: 400;\">UP<\/span><span style=\"font-weight: 400;\">, <\/span><span style=\"font-weight: 400;\">DOWN<\/span><span style=\"font-weight: 400;\">, or related operational information. <\/span><span style=\"font-weight: 400;\">ip route show<\/span><span style=\"font-weight: 400;\"> displays the routing table, <\/span><span style=\"font-weight: 400;\">ip neigh show<\/span><span style=\"font-weight: 400;\"> displays the neighbor cache, and <\/span><span style=\"font-weight: 400;\">ip addr<\/span><span style=\"font-weight: 400;\"> focuses on IP addresses assigned to interfaces. Administrators frequently use <\/span><span style=\"font-weight: 400;\">ip link show<\/span><span style=\"font-weight: 400;\"> when diagnosing whether an interface exists and whether its link state is configured as expected.<\/span><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>View Full LPI 202-450\u00a0 Exam Dumps and Practice Test Dumps &nbsp; Question 341. Which BIND directive controls whether a server will send recursive queries on behalf of clients? allow-transfer recursion notify check-names Correct Answer: 2. recursion Explanation :- The recursion directive in BIND controls whether recursive query processing is enabled. When set to yes, the [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1648,1647],"tags":[],"_links":{"self":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/23074"}],"collection":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/comments?post=23074"}],"version-history":[{"count":1,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/23074\/revisions"}],"predecessor-version":[{"id":23075,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/posts\/23074\/revisions\/23075"}],"wp:attachment":[{"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/media?parent=23074"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/categories?post=23074"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.examlabs.com\/certification\/wp-json\/wp\/v2\/tags?post=23074"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}