ExamDumpster

Free EX415 sample questions

Real questions from the Red Hat Certified Specialist In Security- Linux practice bank, with the correct answer and an explanation for each one. No junk, no filler.

Try them in the simulator Same questions, with study, timed and flashcard modes.

Showing 6 of 12 free sample questions.

Question 1Choose one

You are the lead security administrator for a financial institution using Red Hat Enterprise Linux 9. You need to configure Network-Bound Device Encryption (NBDE) to ensure your servers can decrypt their root volumes automatically upon reboot only when they are within the secure corporate network. You have deployed a Tang server at 192.168.10.5. Which command must be executed on the client machine to bind the existing LUKS-encrypted device `/dev/nvme0n1p3` to this Tang server using Clevis?

Question 2Choose one

A security auditor requires a report of all file integrity changes on a production server over the last 24 hours. You have AIDE (Advanced Intrusion Detection Environment) installed and initialized. You run a manual check and find differences. To update the database so that the current state becomes the new baseline for future checks, which sequence of commands should you run?

Question 3Choose one

You are configuring USBGuard on a kiosk system that should only allow a specific USB touch screen and keyboard. You have generated an initial policy allowing connected devices. However, you want to ensure that if the USBGuard daemon stops or crashes, all USB devices are blocked immediately to prevent tampering. Which configuration directive in `/etc/usbguard/usbguard-daemon.conf` controls this behavior?

Question 4Choose one

While investigating a permission issue on a web server, you notice that the Apache service cannot read files in a custom directory `/srv/www/html`. You suspect an SELinux context mismatch. You decide to compare the file contexts of the working default directory `/var/www/html` with your custom directory. Which command should you use to view the security context of the files?

Question 5Choose one

You need to configure the Linux Audit system to monitor all write access and attribute changes to the `/etc/passwd` file by any user. The rule must add a key named 'identity_change' to the log entries. Which audit rule is correct?

Question 6Choose one

Your organization uses Red Hat Ansible Automation Platform. You need to ensure that a junior administrator, 'UserA', can only run playbooks against a specific set of development servers defined in an inventory named 'DevInventory'. They should not see or access the 'ProdInventory'. Which combination of permissions must be assigned to UserA in the Automation Controller?

6 more free samples are waiting

Create a free account to unlock the whole EX415 sample bank, or get full access to all 140 practice questions in the simulator.

Create account