Entry level certification
LPIC-1 practice labs
101-400 102-400
Command line skills, files and storage, users and processes, system security, and basic Linux troubleshooting. Every objective below has a lab that runs a real Linux shell in your browser, so you practise the command rather than memorise the syntax.
Objectives covered
The skill areas these labs rehearse for LPIC-1, written as plain descriptions of what you need to be able to do.
1Command line skills and basic shell features2Files, storage and the filesystem hierarchy3Users, groups, ownership and permissions4Basic system security and access control5Simple shell scripting for administration6Filesystems, block devices and mount configuration7Networking fundamentals and basic configuration8System startup, services and the init system9Basic Linux troubleshooting and log reading
Practice these labs
- Creating FilesMake the folders you actually want, then write down what you did so you remember it tomorrow.
- The FilesystemExplore the filesystem and learn what each top level folder is for.
- Finding FilesYou have lost a download somewhere under /home/student.
- First ContactOpen a shell on the practice machine and run your first commands.
- Listing FilesA practice folder full of files, including one you have to look closely to see.
- Reading LogsEvery machine keeps a diary.
- Moving AroundMove between folders and read a file to find the configuration.
- Ports and ConnectionsRun a web server for a day and you meet four ports before lunch.
- Who Can Open WhatLinux decides who can open a file using nine characters.
- PermissionsUnderstand how rwx works before you change anything.
- Running ProcessesEverything on Linux is a process, including the ones you never see.
- Reading FilesA configuration file is sitting in your home folder.
- Writing to FilesSend command output into files.
- Searching a Whole TreeA whole tree of files, and you need three things from it.
- System InformationGet to know the machine you are sitting at: kernel, architecture, disk usage and uptime.
- Searching Textgrep is the tool you will reach for most often.
- Users and GroupsRead /etc/passwd and sort real user accounts from system ones.
- Where Am I?You are logged in.
- Creating EvidenceSet up an evidence workspace and record your first discovery for the incident report.
- The FilesystemYou have landed on a compromised server.
- File HuntThe attacker planted files across the system.
- Opening the CaseYou have been paged for case 2291 on a web server.
- Triage the DropA scanner flagged this web root.
- Log AnalysisSOC flagged suspicious SSH activity.
- Look InsideMove into a folder and read a file to find what the attacker left behind.
- Outbound ConnectionsYou captured a connection snapshot from the host before you touched it.
- Write the EvidenceFindings you cannot quote are findings you cannot act on.
- Permission AuditThe attacker may have loosened file permissions.
- Weak PermissionsPermissions are the quiet way an attacker keeps their access.
- Processes in Odd PlacesYou saved a process snapshot from the host.
- Reading FilesYou found a suspicious configuration file.
- Scattered EvidenceThe attacker scattered scripts and config files.
- Baseline the HostA finding means nothing without context.
- Correlate the Login LogAuth log exported from the host.
- Suspicious AccountsAudit the account list for anything that should not be there.
- What's Here?You're in.
Linux Labs is an independent study tool. It is not affiliated with, endorsed by, or a partner of any certification body or exam provider. The exam names and codes above belong to their respective owners and are used only to identify which published objectives these labs rehearse. Linux Labs does not reproduce exam content, sell vouchers, administer exams, or issue certificates. Register for an exam through its official provider if you want a credential.