Courseiva

LFCS · topic practice

User and Group Management practice questions

This domain covers local account and group administration on Linux: creating, modifying and deleting users and groups, password aging, the user private group scheme, and login-time defaults such as umask and shell configuration files. LFCS tests it through scenario questions where you pick the correct command, flags, or file to satisfy a stated policy.

Courseiva uses original exam-style practice questions designed for learning and revision. The goal is to understand the concepts, recognise exam patterns, and improve through explanations — not memorise copied exam dumps.

Editorial oversight:Johnson Ajibi· MSc IT Security, IEEE Senior Member
20 questionsDomain: User and Group Management

What the exam tests

What to know about User and Group Management

You must be able to create, modify and delete users and groups, set password aging with chage or passwd, and control login defaults like umask. The key skill is knowing which file or command flag actually takes effect last for a given user.

useradd, usermod, userdel and their flags for home directories, shells and supplementary groups

passwd -e, chage and /etc/shadow fields for password expiry and forced change

groupadd, groupmod, gpasswd and /etc/group, /etc/gshadow membership management

umask, /etc/profile, /etc/login.defs and per-user shell startup file precedence

Watch out for

Common User and Group Management exam traps

  • ▸Using userdel without -r leaves the home directory and mail spool behind, failing the requirement to remove them.
  • ▸Editing /etc/profile for umask when a later-read per-user file such as ~/.bashrc overrides it, so the value stays 022.
  • ▸Setting expiry with usermod -e (account expiry) instead of chage/passwd -e, which controls password expiry, not the account.

Practice set

User and Group Management questions

20 questions · select your answer, then reveal the explanation

A developer was removed from the 'developers' group but still needs to run commands that require membership in that group. The user has logged out and back in, but the issue persists. What is the most likely cause?

A system administrator needs to create a user 'john' with a home directory in /data/users and an expiry date of 2025-12-31. Which command accomplishes this?

An administrator needs to set up a shared directory /project for the group 'projectteam' (GID 5000). All members of the group should be able to create and delete files, but only the file owner can modify their own files. The directory should also ensure that new files inherit the group ownership. Which set of commands achieves this?

A user 'alice' is unable to log in via SSH. The administrator checks /etc/shadow and sees 'alice:!:19234:0:99999:7:::'. What does the '!' in the password field indicate?

You are the Linux administrator for a medium-sized company that uses a centralized authentication system (LDAP) for user accounts, but local files (/etc/passwd, /etc/shadow, /etc/group) are also used for a few service accounts. The server is running RHEL 8. A new employee, 'jane', needs to be added to the local system for a temporary project. You create the user with 'useradd jane' and set a password with 'passwd jane'. However, when jane tries to log in via SSH using her password, she receives 'Permission denied, please try again.' The SSH server is configured to allow password authentication. Other users (both LDAP and local) can log in successfully. You verify that the password was set correctly and that the account is not locked. What is the most likely cause and solution?

A system administrator needs to ensure that all users in the 'developers' group have read and write access to a shared project directory /project/data, but new files created in that directory should belong to the 'developers' group automatically. Which command sequence achieves this goal?

An administrator wants to add user 'bob' to the supplementary group 'docker' without removing bob from any existing groups. Which command accomplishes this?

Which TWO commands can be used to display the groups to which the current user belongs? (Select exactly two.)

You are managing a multi-user Linux server used by a development team. The server has a shared directory /data/projects where each project has a subdirectory owned by a project lead. The requirement is that all members of the 'devteam' group need to be able to create files in any project subdirectory, but only the project lead (owner) should be able to delete files. Currently, members of devteam are unable to create files in /data/projects. You check permissions: /data/projects has drwxrwxr-x root:devteam. Each project subdirectory, e.g., /data/projects/proj1, has drwx------ lead1:devteam. The lead1 user is in devteam. What is the most likely reason that devteam members cannot create files in proj1, and what is the correct solution?

An administrator needs to grant a user named 'john' the ability to switch to any other user without a password. Which TWO of the following steps are required to achieve this?

Match each Linux filesystem hierarchy standard (FHS) directory to its purpose.

Drag a concept onto its matching description — or click a concept then click the description.

Concepts
Matches

Host-specific configuration files

Variable data like logs and databases

Secondary hierarchy for user utilities

Virtual filesystem for process and kernel info

Temporary files

Match each logical volume management (LVM) term to its definition.

Drag a concept onto its matching description — or click a concept then click the description.

Concepts
Matches

A disk or partition used by LVM

Pool of physical volumes

Virtual block device created from a volume group

Smallest allocatable unit in a physical volume

Maps to a physical extent in a logical volume

A system administrator needs to create a user account for a temporary contractor. The account should have a home directory under /home/contractors, the login shell should be /bin/bash, and the user should be a member of the 'contractors' group. Which command accomplishes this?

An administrator needs to create a system user that runs a service (no login, no home directory). Which command is appropriate?

A user reports that they cannot log in via SSH. The system administrator checks that the account is not locked, the password is correct, and the shell is valid. However, the user's home directory is owned by root instead of the user. What is the most likely cause of the login failure?

A team of developers must share files under /opt/project. All developers are members of the 'devteam' group. New files must be automatically assigned to group 'devteam' and be writable by the group. Which umask and setgid configuration should be applied?

An administrator wants to temporarily disable a user account without deleting it. The account should be locked, expire immediately, and the user should not be able to log in. Which single command accomplishes this with minimum side effects?

Which TWO commands can change a user's primary group?

Which TWO options in /etc/shadow are correctly described?

Refer to the exhibit. User 'alice' cannot log in. What is the most likely problem?

Exhibit

Refer to the exhibit:

$ cat /etc/passwd | grep alice
alice:x:1001:1001:Alice Smith:/home/alice:/bin/bash

$ ls -ld /home/alice
drwxr-x--- 2 root root 4096 Jan 10 10:00 /home/alice

Free account

Track your progress over time

Create a free account to save your results and see which topics improve across sessions.

Focused User and Group Management sessions

Start a User and Group Management only practice session

Every question in these sessions is drawn from the User and Group Management domain — nothing else.

Related practice questions

Related LFCS topic practice pages

Move into related areas when this topic feels solid.

Frequently asked questions

What does the LFCS exam test about User and Group Management?
You must be able to create, modify and delete users and groups, set password aging with chage or passwd, and control login defaults like umask. The key skill is knowing which file or command flag actually takes effect last for a given user.
How should I use these practice questions?
Select your answer before revealing the explanation. Then read why each option is right or wrong — this active recall approach builds retention far faster than re-reading notes.
Can I practise just User and Group Management questions in a focused session?
Yes — the session launcher on this page draws every question from the User and Group Management domain. Use a 10-question session first to gauge your baseline, then move to 20 or 30 once the weak spots are clear.
Where can I practise other LFCS topics?
Use the topic links above to move to related areas, or go back to the LFCS question bank to see all topics.
Are these real exam questions or dumps?
These are original practice questions written to test the same concepts the LFCS exam covers. They are not copied from any real exam or dump site.