XK0-006 Troubleshooting Practice Question
A technician needs to check the kernel ring buffer for hardware errors detected during system boot. Which command should be used?
⚠ Common exam trap
The trap is that candidates pick 'journalctl -k' because it also shows kernel messages, but the question asks for the kernel ring buffer specifically, and dmesg is the direct tool for that buffer.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
dmesg
The kernel ring buffer contains messages emitted by the kernel, including hardware detection and error messages during boot. The 'dmesg' command reads and prints this buffer directly. It is the canonical tool for inspecting kernel-level hardware errors, driver initialization failures, and boot-time device detection.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
journalctl -k
Why it's wrong here
journalctl -k shows kernel logs from systemd-journald, not the kernel ring buffer directly.
- ✗
lspci
Why it's wrong here
lspci enumerates PCI devices and their drivers; it reports hardware inventory rather than kernel-detected errors, so it cannot show ring buffer messages. It is tempting because identifying an unrecognised or misconfigured device is a real diagnostic step, which would be correct when you need to confirm what hardware is present.
- ✓
dmesg
Why this is correct
dmesg reads the kernel ring buffer, exposing hardware detection and driver messages logged during boot, including errors. This directly satisfies the requirement to inspect boot-time hardware faults, unlike journalctl or log files that may not capture early kernel output.
- ✗
cat /var/log/boot.log
Why it's wrong here
/var/log/boot.log records service start-up output from the init system, not kernel ring buffer messages, so hardware errors detected by the kernel will not appear there. It is tempting because it is a genuine boot-time log, which would be correct for diagnosing a failed systemd unit rather than a kernel hardware fault.
Go deeper
Related to this question
About these practice questions
One of 781 original XK0-006 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official CompTIA exam blueprint
This XK0-006 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the XK0-006 exam.