deck 6 Flashcards
chage -d 0 user. The 0 requires user to…
Shift +…in vim allows inserting character at end of current line
terraform….allows validating changes before cloud deployment
-change password at next login
-A
-plan
When enabling LUKS on a usb and mount options show as null, run
-unmount, fsck, and cryptsetup….
to maintain least priv while give a user permission to do a specific something that requires escalation, put them in a group that has those privs and put that group in the….
-luksFormat
-custom .conf file
lv….. makes a logical volume larger OR smaller. lvextend ONLY makes volume bigger
journalctl -xu can be used to query systemd for MORE details than systemctl status about a…
-lvresize
-failing service
sysctl -a displays….
…..containers allow same container configs across different enviroments/deploymens
-kernel parameter at runtime
-ambassador
overlay networks allow containers to…
use…command to troubleshoot socket issues
-communicate with each other
-ss (socket stats)
if visudo shows a lock on the root account (can’t use it) best course is ….
accounting ALL=/opt/acc/report. break it down
*for ALL, you could choose a different host (localhost, etc)
boot in single user mode, comment out bad line
-the user (accounting), on ALL host, can use /opt/acc/report as root
To ensure a script runs only in console mode, switch to isolate…., run script, then switch back to graphical if needed
if using an netstat -s and lots of packets are dropping, increase rmem_max and wmem_max by 12500000
-multi-user.target
when updating bind, look at….file to review default config
rpmsave saves what?
-rpmnew
-prior default configuration before a BIND update
Ufw status and firewall-cmd - -list-all show what?
modprobe and insmod both load modules into kernel BUT modprobe ALSO…
-all active firewall rules
-handles/loads dependencies
use….with containers like docker and such to send app logs to a log store
netstat -antp and lsof ….. can be used with grep LISTEN to find ports that are in a listening state
-sidecars
-iTCP
service accounts like www-data and db should NOT have…
for port forwarding with ssh, use ssh -L with the port that will be forwarding first and then the receiving port 2nd
-shell access
du -… shows specifics on files using up disk space
ansible is agentless
….files shouldn’t be stored in var because if log files fill up var it might corrupt the database
-a
-database
makes comments. yaml or json?
…..can be used to allocate space for a swap file, for instance
-yaml
-fallocate
order for swap space is: fallocate, mkswap, and…
anaconda-ks.cfg (kickstart) is used to…
swapon -a
-automate installs
to view status of background jobs, use killall -….
sigterm does what?
rm -f removes with no confirmation
-usr1
-gracefully kill a process