| Thema | Einzelheiten |
|---|
| Thema 1 | - Managing Users and Groups: This section assesses the candidate’s proficiency in handling user accounts and groups. This includes creating, modifying, and deleting accounts and groups, as well as implementing password aging and hashing techniques to enhance security.
|
| Thema 2 | - Security Enhanced Linux (SELinux): Candidates will need to demonstrate an understanding of SELinux, including configuring its modes, policies, file labeling, and user roles to secure Linux systems.
|
| Thema 3 | - Using OpenSSH: This section examines the ability to configure and use OpenSSH for secure remote communications. It covers essential commands like ssh, scp, sftp, and ssh-keygen, along with techniques like secure tunneling and X11 forwarding.
|
| Thema 4 | - Linux Auditing System: The final section focuses on configuring Linux’s auditing system using auditctl, where candidates will set up audit rules to monitor and ensure system security and compliance.
|
| Thema 5 | - Managing the Network Configuration: Candidates are expected to describe network configuration files and use tools like NetworkManager, along with command-line utilities such as ip and nmcli, to efficiently manage and troubleshoot network settings.
|
| Thema 6 | - Managing Filesystems and Swap: This portion evaluates the ability to work with disk partitions and manage Linux filesystems such as ext, xfs, and btrfs. Additionally, candidates will demonstrate competence in configuring and maintaining swap space.
|
| Thema 7 | - Managing Pluggable Authentication Modules (PAM):This section evaluates the ability to configure PAM to manage authentication mechanisms and control access to the system.
|
| Thema 8 | - Monitoring and Troubleshooting Linux: This section covers the use of system monitoring utilities like iostat, mpstat, vmstat, and sar. Candidates will also need to troubleshoot using tools like ss and Wireshark, as well as interpret system logs.
|
| Thema 9 | - Advanced Networking: This portion examines the understanding and configuration of advanced networking features such as Network Bonding and VLANs, which are essential for complex network environments.
|
| Thema 10 | - Advanced Storage Administration: Candidates will be tested on their ability to manage storage by configuring access control lists (ACLs), setting up encrypted block devices, and writing udev rules to manage hardware devices.
|
| Thema 11 | - Managing File Sharing: This section assesses skills in setting up and managing NFS servers and clients, automating file systems, and configuring the vsftpd service for file sharing.
|
| Thema 12 | - Container Services: This portion tests knowledge of containerization, specifically configuring Podman and understanding Kubernetes to deploy and manage containers and pods.
|
| Thema 13 | - Control Groups (Cgroups): This section focuses on configuring Cgroups to control access to system resources, and using systemd to manage slice units and scope units for efficient system resource management.
|
| Thema 14 | - Managing System Logging: Candidates will be tested on their knowledge of configuring rsyslog and setting up log rotation. Additionally, they will need to demonstrate the ability to manage logs using systemd-journald and the journalctl utility.
|
| Thema 15 | - Managing Storage Devices: Here, the focus is on configuring and managing Logical Volume Manager (LVM) components, as well as handling MD drivers and software RAID devices, which are essential for robust storage solutions.
|