Valid CompTIA Linux+ LX0-104 Dumps with VCE and PDF for Free (Question 181 – Question 210)

PassLeader released the NEWEST CompTIA LX0-104 exam dumps recently! Both LX0-104 VCE dumps and LX0-104 PDF dumps are available on PassLeader, either LX0-104 VCE dumps or LX0-104 PDF dumps have the NEWEST LX0-104 exam questions in it, they will help you passing CompTIA LX0-104 exam easily! You can download the valid LX0-104 dumps VCE and PDF from PassLeader here: https://www.passleader.com/lx0-104.html (662 Q&As Dumps)

Also, previewing the NEWEST PassLeader LX0-104 dumps online for free on Google Drive: https://drive.google.com/open?id=0B-ob6L_QjGLpbERvN0ZOZEM1V0U

QUESTION 181
Which of the following correctly describes the method to add Samba users to the LDAP directory?

A.    First make sure that a posix Account entry exists in the Directory for the user you want to add, then use smbpasswd -a to add the Samba user from the command line.
B.    Use the smbpasswd -a command to add the Samba user from the command line. This will add all required information to the LDAP directory.
C.    Create an LDIF file containing all required information, then use ldapadd to add the information to the LDAP directory.
D.    Create an LDIF file containing all required information, then use ldapmodd to add the Samba related information to an existing posixAccount entry.

Answer: A

QUESTION 182
In order to migrate usernames and passwords from a NIS server, the passwd and shadow files were used with a custom script to import the data to OpenLDAP. After properly creating a test workstation to authenticate against LDAP, the number of lines outputted from getent passwd are different from the number on the NIS client workstation. Which one of the following statements can be true?

A.    The NIS database is not synchronized with passwd and shadow.
B.    The OpenLDAP server creates some additional users that are shown in getent.
C.    The NIS clients are not receiving the correct files from the server.
D.    The NIS clients are confused since OpenLDAP and NIS use the same port to communicate.
E.    The OpenLDAP client is querying the NIS server on the wrong TCP/IP port.

Answer: A

QUESTION 183
When using the auth_ldap module with Apache 1.3, the log displays several messages containing “protocol error”. Which of the following steps should be followed to fix the problem?

A.    AuthLDAPStartTLS must be set to on.
B.    LDAPv2 should be disallowed.
C.    LDAPv3 should be allowed.
D.    The Apache module must be turned on in slapd.conf.
E.    The apache_auth.schema must be included in slapd.conf.

Answer: A

QUESTION 184
In order for pam_ldap to be capable of changing a user’s password in Active Directory, the pam_password parameter must be set to ____.

A.    ad
B.    win
C.    active_directory
D.    ldap

Answer: A

QUESTION 185
After an administrator added comments to each line of the ACLs in slapd.conf, the ACLs ceased to function properly. What is the most likely cause of this?

A.    Comments cannot be used anywhere in an ACL block.
B.    The comments were not added using the semi-colon (;) character.
C.    Comments cannot be used in the slapd.conf file.
D.    The comments were not added using the pound (#) character.

Answer: A

QUESTION 186
OpenLDAP 2 requires an equality index on the objectClass attribute. What line in slapd.conf will accomplish this? (Enter the entire line, separating fields with a single space.)

Answer:
INDEXOBJECTCLASSEQ

QUESTION 187
Which of the following ACL lines allows access to all hosts that have an IP address that starts with 192.168.1?

A.    by peername=192.168.1.*
B.    by peername=192.168.1.
C.    by ipaddress=192.168.1.*
D.    by ipaddress=192.168.1.

Answer: A

QUESTION 188
Which one of the following pieces of information is not present in the slurpd replication log file?

A.    A timestamp of when the modification took place.
B.    The address of the remote LDAP slave server.
C.    The name of the user who initiated the modification.
D.    A timestamp of when the change has taken place on the slave.

Answer: D

QUESTION 189
Which of the following procedures will test the TLS configuration of your LDAP server?

A.    Run the ldapsearch command with the -ZZ option, while watching network traffic with a packet analyzer.
B.    Run the ldapsearch command with the -x option, while watching network traffic with a packet analyzer.
C.    Run the slapcat command, while watching network traffic with a packet analyzer.
D.    Verify the TLS negotiation process in the /var/log/ldap_auth.log file.
E.    Verify the TLS negotiation process in the /var/log/auth.log file.

Answer: A

QUESTION 190
Specifying TLSVerifyClient = ____ in slapd.conf will instruct slapd to not ask the client for a certificate.

Answer:
NEVER

QUESTION 191
OpenLDAP is capable of using the ____ framework to provide integrity and confidentiality protections.

Answer:
TLS, SASL, SSL

QUESTION 192
What does cachesize 1000000 represent in the slapd.conf file?

A.    The number of entries to be cached.
B.    The size of the cache in Bytes.
C.    The size of the cache in bits.
D.    The minimum cache size in Bytes.
E.    The maximum cache size in Bytes.

Answer: A

QUESTION 193
If no ACL lines are included in slapd.conf, what is the default behavior of slapd?

A.    Allow anyone to read any entry.
B.    Deny anyone from reading any entries.
C.    Only certain attributes such as userPassword are protected from read access.
D.    Access to the directory is only allowed from the local machine.

Answer: A

QUESTION 194
The ____ command is used to create an index of the OpenLDAP database. (Please specify the command with no path, options or parameters.)

Answer:
SLAPINDEX

QUESTION 195
It is found that changes made to an LDAP directory are no longer being replicated to the slave server at 192.168.0.3. Tests prove that the slave server is listening on port 389 and changes are being recorded properly to the replication log file. In which file would you find the replication errors?

Answer:
/VAR/LIB/LDAP/192.168.0.3:389.REJ,LDAP/192.168.0.3:389.REJ,192.168.0.3:389.REJ

QUESTION 196
It’s important to issue the Start TLS operation at the beginning of a session: ____.

A.    To compress any data sent over the network and improve performance.
B.    To prevent usernames and passwords from being sent in plain text.
C.    To ensure backward compatibility with older clients.
D.    To prevent clients from binding to the server anonymously.

Answer: B

QUESTION 197
You’re writing a simple Perl script to query an LDAP directory using the Net::LDAP module. Which method would you use to determine if the start_tls() operation was successful?

A.    err()
B.    code()
C.    result()
D.    msg()

Answer: B

QUESTION 198
LDAP is considered “lightweight” in comparison to X.500 because: ____. (Select TWO.)

A.    It has a smaller set of operations.
B.    The client and server communicate using the TCP/IP protocol stack.
C.    The client and server communicate using the OSI protocol stack.
D.    LDAP supports Access Control Lists and X.500 does not.

Answer: AB

QUESTION 199
Which one of the following is true about single sign-on?

A.    Single sign-on is different than identity consolidation.
B.    Single sign-on requires sending the same credentials to several services.
C.    Single sign-on requires that the credentials for different services are distinct.
D.    Single sign-on requires a smartcard.

Answer: A

QUESTION 200
What schema files are required to make LDAP compatible to NIS? (Select TWO.)

A.    misc.schema
B.    cosine.schema
C.    nis.schema
D.    inetorgperson.schema

Answer: BC

QUESTION 201
Which of the following are valid choices for the LDAP database backend? (Select THREE.)

A.    file
B.    config
C.    passwd
D.    lbdm
E.    shell

Answer: BCE

QUESTION 202
When creating a multivalued RDN, what character is used to separate the two attribute values used to form the RDN? (Enter only the character, as it would appear in an LDIF entry.)

Answer:
+

QUESTION 203
Which ONE of the following is a correct example of an RDN?

A.    JohnDoe
B.    cn=John Doe
C.    cn=JohnDoe,ou=people,o=example
D.    cn=John Doe, ou=people, o=example

Answer: B

QUESTION 204
Which schema file is required by OpenLDAP?

A.    inetorgperson.schema
B.    core.schema
C.    openldap.schema
D.    cosine.schema
E.    misc.schema

Answer: B

QUESTION 205
An administrator has just configured an OpenVPN client. Upon starting the service, the following message is displayed:
TLS Error: TLS key negotiation failed to occur within 60 seconds
Which of the following statements is true?

A.    The client was unable to establish a network connection with the server.
B.    The client was able to establish a network connection with the server, however TLS key negotiation failed, resulting in a fallback to SSL.
C.    The client was able to establish a network connection with the server, however TLS and SSL security are not enabled.
D.    The client was able to establish a network connection with the server, however TLS key negotiation took longer than 60 seconds, indicating that there may be a problem with network performance.

Answer: A

QUESTION 206
SELinux has just been installed on a Linux system and the administrator wants to use SELinux in permissive mode in order to audit the various services on the system. What command will switch SELinux into permissive mode?

A.    setenforce 0
B.    /etc/init.d/selinux stop
C.    selinux passive
D.    /etc/init.d/selinux startpassive

Answer: A

QUESTION 207
Which of the following export options, when specified in /etc/exports, will tell the server to use the NFSv4 Pseudofilesystem?

A.    fsid=2
B.    fsid=0
C.    fsid=3
D.    fsid=1

Answer: B

QUESTION 208
Which of the following are common techniques for securing a sendmail server? (Select THREE.)

A.    Maintain user accounts in an LDAP directory.
B.    Enable TLS.
C.    Disable VRFY.
D.    Run sendmail in a chroot’d environment.
E.    Disable USRLKUP.

Answer: BCD

QUESTION 209
What does ntop use for data collection?

A.    Network packets
B.    Log files
C.    Frame relay
D.    SNMP

Answer: A

QUESTION 210
An administrator has successfully configured a cryptographic volume for dmcrypt, and has added the following line to /etc/fstab:
/dev/mapper/cryptvol /media/crypt auto defaults 0 0
Upon booting the system, the error message “mount: special device /dev/mapper/cryptvol does not exist” is displayed. What configuration file has the administrator forgotten to edit? (Provide the full path and filename.)

Answer:
/etc/crypttab


Welcome to choose PassLeader LX0-104 dumps for 100% passing CompTIA LX0-104 exam: https://www.passleader.com/lx0-104.html (662 Q&As VCE Dumps and PDF Dumps)

Also, previewing the NEWEST PassLeader LX0-104 dumps online for free on Google Drive: https://drive.google.com/open?id=0B-ob6L_QjGLpbERvN0ZOZEM1V0U