XK0-006 Security Practice Question
A Linux administrator needs to configure the system so that all users must use a minimum password length of 12 characters. The administrator edits /etc/security/pwquality.conf. Which line should be added or modified to enforce this requirement?
⚠ Common exam trap
The trap here is mixing up parameters from different configuration files, such as PASS_MIN_LEN from login.defs, with the correct minlen from pwquality.conf.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
minlen = 12
The pwquality.conf file uses the minlen directive to set the minimum password length. Adding minlen = 12 ensures that the pam_pwquality module enforces a 12-character minimum for new passwords, provided the module is enabled in the PAM configuration.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
password requisite pam_pwquality.so minlen=12
Why it's wrong here
This is a PAM configuration line that would be placed in /etc/pam.d/system-auth or similar files, not in /etc/security/pwquality.conf. The pwquality.conf file uses key-value pairs without the PAM module syntax, so this line would be invalid there.
- ✗
min_password_length = 12
Why it's wrong here
This is not a valid parameter in pwquality.conf or any standard Linux password configuration file. The correct parameter name is minlen. Using an incorrect parameter name would be ignored, and the password length requirement would not be enforced.
- ✗
PASS_MIN_LEN 12
Why it's wrong here
PASS_MIN_LEN is a parameter used in /etc/login.defs, not in /etc/security/pwquality.conf. While it can control minimum password length for some tools, it is not the correct directive for the pwquality module and would not be recognized in this file.
- ✓
minlen = 12
Why this is correct
In /etc/security/pwquality.conf, the minlen parameter specifies the minimum acceptable length for a new password. Setting minlen = 12 enforces that all new passwords are at least 12 characters long. This is the correct directive for the pwquality PAM module, which is commonly used on modern Linux distributions.
Go deeper
Related to this question
Learn chapter
Linux Fundamentals and History
Key term
PAM
Privileged Access Management (PAM) is a security framework that controls, monitors, and audits access to critical systems and accounts with elevated permissions.
Key term
Linux
Linux is an open-source operating system that manages computer hardware and software, widely used in servers, desktops, and embedded systems.
About these practice questions
Courseiva writes every XK0-006 question from scratch — 781 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official CompTIA exam blueprint
This XK0-006 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the XK0-006 exam.