In order to prevent all anonymous FTP users from listing uploaded file names, what security precaution can be taken
when creating an upload directory?
A. The directory must not have the execute permission set.
B. The directory must not have the read permission set.
C. The directory must not have the read or execute permission set.
D. The directory must not have the write permission set.
E. The directory must not contain other directories.
Correct Answer: B

What command is used to print NFS kernel statistics? (Provide the command with or without complete path)
A. nfsstat
Correct Answer: A

Which Squid configuration keyword is used to define networks and times that the service may be accessed?
A. acl
B. allow
C. http_allow
D. permit
Correct Answer: A

Which doveadm sub-command displays a list of connections of Dovecot in the following format? (Specify ONLY the
command without any parameters.)
Correct Answer: who
Reference: https://wiki2.dovecot.org/Tools/Doveadm/Who

Which of the following are Samba security modes or levels? (Choose TWO correct answers.)
A. ads
B. data
C. ldap
D. network
E. share
Correct Answer: AE

When the default policy for the iptables INPUT chain is set to DROP, why should a rule allowing traffic to localhost
A. All traffic to localhost must always be allowed.
B. It doesn\\’t matter; iptables never affects packets addressed to localhost
C. Sendmail delivers emails to localhost
D. Some applications use the localhost interface to communicate with other applications.
E. syslogd receives messages on localhost
Correct Answer: D

It has been discovered that the company mail server is configured as an open relay. Which of the following actions
would help prevent the mail server from being used as an open relay? (Choose TWO correct answers.)
A. Restrict Postfix to only accept e-mail for domains hosted on this server.
B. Configure Dovecot to support IMAP connectivity.
C. Configure netfilter to not permit port 25 traffic on the public network.
D. Restrict Postfix to only relay outbound SMTP from the internal network.
E. Upgrade the mailbox format from mbox to maildir.
Correct Answer: AD

Which answer best describes the meaning of the following LDAP search commanD. ldapseareh -x”
A. It is searching for all entries that don\\’t have the cn attribute equal to Marie OR the telephoneNumber attribute
starting with number 9
B. It is searching for all entries that have the cn attribute equal to marie AND the telephoneNumber attribute starting with
number 9
C. It is searching for all entries that have the cn attribute equal to marie AND the telephoneNumber attribute ending with
number 9
D. It is searching for all entries that don\\’t have the cn attribute equal to marie AND the telephoneNumber attribute
starting with number 9
E. It is searching for all entries that have the cn attribute different than marie OR the telephoneNumber attribute starting
with number 9
Correct Answer: B

Which rdnc sub command can be used in conjunction with the name of a zone in order to make BIND reread the content
of the specific zone file without reloading other zones as well?
A. lookup
B. reload
C. fileupdate
D. reread
E. zoneupdate
Correct Answer: AC

There is a restricted area in a site hosted by Apache HTTPD, which requires users to authenticate against the file
Which command is used to CHANGE the password of existing users, without losing data, when Basic authentication is
being used?
A. htpasswd -c /srv/www/security/sitepasswd user
B. htpasswd /srv/www/security/sitepasswd user
C. htpasswd -n /srv/www/security/sitepasswd user
D. htpasswd -D /srv/www/security/sitepasswd user
Correct Answer: B
Reference: https://httpd.apache.org/docs/2.4/howto/auth.html

Which option must be used with ifconfig, to also see interfaces that are down?
A. -d
B. -a
C. –all
D. –down
E. None.
Correct Answer: A

To be able to access the server with the IP address using HTTPS, a rule for iptables has to be written.
Given that the client host\\’s IP address is, which of the following commands is correct?
A. iptables – A FORWARD -p tcp -s 0/0 -d –dport 80 -j ACCEPT
B. iptables – A FORWARD -p tcp -s d -j ACCEPT.
C. iptables – A FORWARD -p tcp -s -d –dport 443 -j ACCEPT.
D. iptables – A INPUT -p tcp -s – d -j ACCEPT.
E. iptables – A FORWARD -p tcp -s 0/0 -d –dport 443 -j ACCEPT.
Correct Answer: C

In a BIND zone file, what does the @ character indicate?
A. It\\’s the fully qualified hostname of the DNS server.
B. It\\’s an alias for the e-mail address of the zone master.
C. It\\’s the name of the zone as defined in the zone statement in named.conf.
D. It\\’s used to create an alias between two CNAME entries.
Correct Answer: C

