Courseiva
Security →easyMultiple Choice

XK0-006 Security Practice Question

A Linux administrator needs to configure the system so that all users must use a minimum password length of 12 characters. The administrator edits /etc/security/pwquality.conf. Which line should be added or modified to enforce this requirement?

⚠ Common exam trap

The trap here is mixing up parameters from different configuration files, such as PASS_MIN_LEN from login.defs, with the correct minlen from pwquality.conf.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

minlen = 12

The pwquality.conf file uses the minlen directive to set the minimum password length. Adding minlen = 12 ensures that the pam_pwquality module enforces a 12-character minimum for new passwords, provided the module is enabled in the PAM configuration.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    password requisite pam_pwquality.so minlen=12

    Why it's wrong here

    This is a PAM configuration line that would be placed in /etc/pam.d/system-auth or similar files, not in /etc/security/pwquality.conf. The pwquality.conf file uses key-value pairs without the PAM module syntax, so this line would be invalid there.

  • ✗

    min_password_length = 12

    Why it's wrong here

    This is not a valid parameter in pwquality.conf or any standard Linux password configuration file. The correct parameter name is minlen. Using an incorrect parameter name would be ignored, and the password length requirement would not be enforced.

  • ✗

    PASS_MIN_LEN 12

    Why it's wrong here

    PASS_MIN_LEN is a parameter used in /etc/login.defs, not in /etc/security/pwquality.conf. While it can control minimum password length for some tools, it is not the correct directive for the pwquality module and would not be recognized in this file.

  • ✓

    minlen = 12

    Why this is correct

    In /etc/security/pwquality.conf, the minlen parameter specifies the minimum acceptable length for a new password. Setting minlen = 12 enforces that all new passwords are at least 12 characters long. This is the correct directive for the pwquality PAM module, which is commonly used on modern Linux distributions.

About these practice questions

Courseiva writes every XK0-006 question from scratch — 781 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official CompTIA exam blueprint

This XK0-006 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the XK0-006 exam.