Courseiva

LFCS · topic practice

Networking practice questions

The Networking domain of the LFCS exam covers configuring and troubleshooting Linux network interfaces, routing, DNS resolution, firewalling, and remote access. You will perform hands-on tasks in a live environment: setting static addresses with ip or nmcli, editing Netplan or ifcfg files, opening ports with firewalld or ufw, and verifying connectivity using ss, dig, and ping.

Courseiva uses original exam-style practice questions designed for learning and revision. The goal is to understand the concepts, recognise exam patterns, and improve through explanations — not memorise copied exam dumps.

Editorial oversight:Johnson Ajibi· MSc IT Security, IEEE Senior Member
20 questionsDomain: Networking

What the exam tests

What to know about Networking

Configure and troubleshoot interfaces with ip, nmcli, and netplan, manage routes, DNS via /etc/resolv.conf, and firewalld or ufw rules. Get the persistent config right: changes must survive reboot, not just apply at runtime.

Configure static IPv4/IPv6 addresses and routes using ip, nmcli, or Netplan

Manage hostname resolution via /etc/hosts, /etc/resolv.conf, and systemd-resolved

Control inbound traffic with firewalld zones, firewall-cmd, or ufw rules

Inspect listening sockets and connections using ss, netstat, and lsof

Watch out for

Common Networking exam traps

  • ▸Editing /etc/resolv.conf directly on systemd-resolved systems, where changes are overwritten and should instead go through resolvectl or Netplan
  • ▸Forgetting to make firewalld rules permanent with --permanent and reload, so they vanish after reboot or reload
  • ▸Using ifconfig and route from net-tools instead of the ip command, which is the expected modern toolset

Practice set

Networking questions

20 questions · select your answer, then reveal the explanation

Question 1hardmultiple choice
Read the full Networking explanation →

A server has two network interfaces: eth0 (10.0.1.10/24, gateway 10.0.1.1) and eth1 (192.168.1.10/24, no gateway). Both are up. The default gateway is set to 10.0.1.1. A ping to 8.8.8.8 fails, but ping to 10.0.1.1 succeeds. What is the most likely cause?

Question 2hardmultiple choice
Review the full routing breakdown →

A host with this routing table can ping 10.0.2.1 but cannot ping 8.8.8.8. What is the most likely cause?

Exhibit

Refer to the exhibit.

# ip route show
10.0.1.0/24 dev eth0 proto kernel scope link src 10.0.1.10
10.0.2.0/24 dev eth1 proto kernel scope link src 10.0.2.10
default via 10.0.1.1 dev eth0
Question 3mediummultiple choice
Review the full routing breakdown →

You are troubleshooting a Linux server that acts as a router between two networks: 10.0.1.0/24 (eth0) and 10.0.2.0/24 (eth1). IP forwarding is enabled. Hosts on 10.0.1.0/24 can ping the server's eth0 IP (10.0.1.1), but cannot ping hosts on 10.0.2.0/24 (e.g., 10.0.2.10). The server can ping both 10.0.2.10 and 10.0.1.10. The iptables FORWARD chain policy is ACCEPT. What is the most likely cause?

Question 4mediummultiple choice
Review the full subnetting walkthrough →

A server has two network interfaces: eth0 (10.0.0.10/24) and eth1 (192.168.1.10/24). The server needs to act as a router for a subnet 172.16.0.0/24, forwarding packets between it and the 10.0.0.0/24 network. Which sysctl parameter must be set to a value of 1 to enable IP forwarding?

Question 5easymultiple choice
Read the full Networking explanation →

Based on the exhibit, which port is listening only on the loopback interface?

Exhibit

Refer to the exhibit.

[root@server ~]# ss -tln
State   Recv-Q   Send-Q   Local Address:Port   Peer Address:Port   
LISTEN  0        128      0.0.0.0:22          0.0.0.0:*          
LISTEN  0        128      *:80                *:*                 
LISTEN  0        128      *:443               *:*                 
LISTEN  0        128      127.0.0.1:53        0.0.0.0:*          
LISTEN  0        128      0.0.0.0:8080        0.0.0.0:*
Question 6hardmultiple choice
Review the full routing breakdown →

You are a systems administrator for a company that runs a critical web application on a Linux server. The server has two network interfaces: eth0 (public IP 203.0.113.10/24, gateway 203.0.113.1) and eth1 (private IP 10.0.0.10/24). The web server listens on port 443 (HTTPS) and must be accessible from the internet. The server also needs to connect to an internal database server at 10.0.0.50/24 on port 3306. Recently, users reported that the website is intermittently unreachable. You SSH into the server and run 'ss -tln' and see that the web server is listening on 0.0.0.0:443. You check the routing table with 'ip route show' and see: default via 203.0.113.1 dev eth0; 10.0.0.0/24 dev eth1 proto kernel scope link src 10.0.0.10. You also run 'iptables -L -n -v' and see: Chain INPUT (policy ACCEPT), with no rules. However, you notice that the server's default gateway is unreachable from the server itself when you run 'ping 203.0.113.1' (100% packet loss). What is the most likely cause of the intermittent unreachability?

Question 7hardmultiple choice
Read the full Networking explanation →

A company wants to ensure that a web server (IP 192.168.1.10) is accessible from the internet via port 443, but all other inbound traffic should be blocked. The server also needs to communicate with an internal database (IP 10.0.0.50) on port 3306. The default firewall zone is 'public'. Which iptables rules should be applied to the server?

Question 8easymulti select
Review the full routing breakdown →

Which TWO commands can be used to display the current routing table on a Linux system?

Question 9mediummultiple choice
Read the full Networking explanation →

Based on the exhibit, a system administrator runs ping to 8.8.8.8 and gets 'Destination Host Unreachable'. What is the most likely cause?

Exhibit

Refer to the exhibit.
# ip addr show eth0
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP group default qlen 1000
    link/ether 00:1a:2b:3c:4d:5e brd ff:ff:ff:ff:ff:ff
    inet 192.168.10.15/24 brd 192.168.10.255 scope global dynamic eth0
       valid_lft 86399sec preferred_lft 86399sec
    inet6 fe80::21a:2bff:fe3c:4d5e/64 scope link
       valid_lft forever preferred_lft forever
# route -n
Kernel IP routing table
Destination     Gateway         Genmask         Flags Metric Ref    Use Iface
0.0.0.0         192.168.10.1    0.0.0.0         UG    0      0        0 eth0
192.168.10.0    0.0.0.0         255.255.255.0   U     0      0        0 eth0
# ping -c 1 8.8.8.8
PING 8.8.8.8 (8.8.8.8) 56(84) bytes of data.
From 192.168.10.15 icmp_seq=1 Destination Host Unreachable
Question 10mediumdrag order
Read the full DNS explanation →

Order the steps to troubleshoot a DNS resolution issue from a Linux client.

Drag or tap steps into the slots.

Steps
Order
1Step 1
2Step 2
3Step 3
4Step 4
5Step 5

Match each Linux command to its function.

Drag a concept onto its matching description — or click a concept then click the description.

Concepts
Matches

Search text using patterns

Stream editor for text manipulation

Pattern scanning and processing language

Search for files in a directory hierarchy

Build and execute command lines from input

Question 12hardmultiple choice
Read the full Networking explanation →

A company is designing a multi-homed server with two network interfaces: one for internal traffic (eth0) and one for external traffic (eth1). The server must prioritize traffic to the 10.1.0.0/16 network through eth0. What is the best practice to ensure traffic to 10.1.0.0/16 uses eth0?

Question 13hardmultiple choice
Review the full routing breakdown →

A server on a corporate network is intermittently losing connectivity. The administrator runs 'tcpdump -i eth0 icmp' and sees 'ICMP time exceeded in-transit' messages from a router. What is the most likely cause?

Question 14mediummultiple choice
Review the full routing breakdown →

A company deploys a new web server with two network interfaces: one for public access (eth0) and one for database access (eth1). The database server is at 10.0.0.10. The web server's default gateway is via eth0, but traffic to 10.0.0.10 is being routed through eth0 instead of eth1. What is the simplest fix?

Question 15hardmulti select
Review the full routing breakdown →

Which THREE conditions can cause an 'RTNETLINK answers: File exists' error when adding a static route?

Question 16easymulti select
Read the full DNS explanation →

Which TWO configuration files are commonly used to set DNS resolver settings on a Linux system?

Question 17mediummultiple choice
Review the full routing breakdown →

Given the routing table output in the exhibit, what will happen when the system tries to send a packet to 10.1.1.1?

Exhibit

Refer to the exhibit.

$ ip route show
192.168.1.0/24 dev eth0 proto kernel scope link src 192.168.1.10 metric 100
10.0.0.0/8 via 192.168.1.1 dev eth0 proto static metric 100
default via 192.168.1.1 dev eth0 proto static metric 100
Question 18mediummultiple choice
Read the full Networking explanation →

After configuring iptables rules on a Linux server, a junior administrator notices that incoming SSH connections from a specific IP address (192.168.1.100) are being blocked even though there is a rule to allow all traffic from that IP. The current rule set is: 1. -A INPUT -s 192.168.1.100 -j ACCEPT; 2. -A INPUT -p tcp --dport 22 -j DROP. What is the most likely reason for the block?

Question 19easymultiple choice
Read the full Networking explanation →

A system administrator wants to ensure that network interfaces receive predictable names based on firmware/BIOS topology rather than kernel enumeration. Which naming scheme should be enabled in GRUB?

Question 20easymultiple choice
Read the full DHCP explanation →

A system administrator is troubleshooting a DHCP issue on a Linux client. After running 'dhclient -r eth0' and then 'dhclient eth0', the interface does not get an IP address. What command can be used to ensure the DHCP client process is fully released and restarted?

Free account

Track your progress over time

Create a free account to save your results and see which topics improve across sessions.

Focused Networking sessions

Start a Networking only practice session

Every question in these sessions is drawn from the Networking domain — nothing else.

Related practice questions

Related LFCS topic practice pages

Move into related areas when this topic feels solid.

Frequently asked questions

What does the LFCS exam test about Networking?
Configure and troubleshoot interfaces with ip, nmcli, and netplan, manage routes, DNS via /etc/resolv.conf, and firewalld or ufw rules. Get the persistent config right: changes must survive reboot, not just apply at runtime.
How should I use these practice questions?
Select your answer before revealing the explanation. Then read why each option is right or wrong — this active recall approach builds retention far faster than re-reading notes.
Can I practise just Networking questions in a focused session?
Yes — the session launcher on this page draws every question from the Networking domain. Use a 10-question session first to gauge your baseline, then move to 20 or 30 once the weak spots are clear.
Where can I practise other LFCS topics?
Use the topic links above to move to related areas, or go back to the LFCS question bank to see all topics.
Are these real exam questions or dumps?
These are original practice questions written to test the same concepts the LFCS exam covers. They are not copied from any real exam or dump site.