Courseiva
Administrative Tasks →mediumMultiple Choice

LPIC-1 Administrative Tasks Practice Question

A server's root filesystem is filling up. The administrator suspects that a service is writing large log files to /var/log/journal. Which command displays the total disk space currently used by the systemd journal?

⚠ Common exam trap

The trap here is reaching for du on the journal directory when journalctl provides an authoritative, journal-aware disk usage report.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

journalctl --disk-usage

The journalctl --disk-usage command is designed specifically to report how much disk space the systemd journal is consuming. It accounts for the journal's internal storage format, including compression, and returns a concise summary. Other commands either query unit status, filter log entries, or measure directory size in a way that may not match the journal's own accounting.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    journalctl -u systemd-journald --size

    Why it's wrong here

    The -u flag filters journal entries by a specific unit, and --size is not a valid journalctl option. This command would attempt to show log entries for the journald service itself, not the disk usage of the journal files. It does not answer the question of how much space the journal occupies.

  • ✗

    du -sh /var/log/journal

    Why it's wrong here

    While du -sh does report the size of the journal directory, it measures apparent disk usage of the directory tree rather than the journal's own accounting. The journal may use compression and sparse files, so du can report a different figure than journalctl. The journalctl --disk-usage command is the authoritative source for journal space consumption.

  • ✓

    journalctl --disk-usage

    Why this is correct

    The --disk-usage option to journalctl reports the total amount of disk space consumed by the journal files. It provides a single summary line, making it ideal for quickly assessing whether the journal is the source of disk pressure. This is the purpose-built command for this exact diagnostic scenario.

  • ✗

    systemctl status systemd-journald --disk

    Why it's wrong here

    systemctl status displays the runtime state of a unit, including recent log lines, but it has no --disk option. It cannot report journal disk usage. Confusing unit status with journal storage metrics is a common error; the correct tool for querying journal storage is journalctl with the disk-usage flag.

About these practice questions

Courseiva writes every LPIC-1 question from scratch — 402 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official LPI exam blueprint

This LPIC-1 practice question is part of Courseiva's free LPI certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the LPIC-1 exam.