LPIC-1 Administrative Tasks Practice Question
A server's root filesystem is filling up. The administrator suspects that a service is writing large log files to /var/log/journal. Which command displays the total disk space currently used by the systemd journal?
⚠ Common exam trap
The trap here is reaching for du on the journal directory when journalctl provides an authoritative, journal-aware disk usage report.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
journalctl --disk-usage
The journalctl --disk-usage command is designed specifically to report how much disk space the systemd journal is consuming. It accounts for the journal's internal storage format, including compression, and returns a concise summary. Other commands either query unit status, filter log entries, or measure directory size in a way that may not match the journal's own accounting.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
journalctl -u systemd-journald --size
Why it's wrong here
The -u flag filters journal entries by a specific unit, and --size is not a valid journalctl option. This command would attempt to show log entries for the journald service itself, not the disk usage of the journal files. It does not answer the question of how much space the journal occupies.
- ✗
du -sh /var/log/journal
Why it's wrong here
While du -sh does report the size of the journal directory, it measures apparent disk usage of the directory tree rather than the journal's own accounting. The journal may use compression and sparse files, so du can report a different figure than journalctl. The journalctl --disk-usage command is the authoritative source for journal space consumption.
- ✓
journalctl --disk-usage
Why this is correct
The --disk-usage option to journalctl reports the total amount of disk space consumed by the journal files. It provides a single summary line, making it ideal for quickly assessing whether the journal is the source of disk pressure. This is the purpose-built command for this exact diagnostic scenario.
- ✗
systemctl status systemd-journald --disk
Why it's wrong here
systemctl status displays the runtime state of a unit, including recent log lines, but it has no --disk option. It cannot report journal disk usage. Confusing unit status with journal storage metrics is a common error; the correct tool for querying journal storage is journalctl with the disk-usage flag.
Go deeper
Related to this question
About these practice questions
Courseiva writes every LPIC-1 question from scratch — 402 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official LPI exam blueprint
This LPIC-1 practice question is part of Courseiva's free LPI certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the LPIC-1 exam.