
Certified Kubernetes Application Developer (CKAD)
Domain 4Objective 2
Kubernetes Security CKAD Practice Questions (Page 2)
Part of the Application Environment, Configuration and Security domain, which accounts for 25% of the CKAD exam. Linux Foundation does not publish an official question count, but from its 120-minute exam (~50–80 total, ~13–20 in this domain), expect 3–5 from this objective — we provide 26 practice questions to prepare you well beyond it. (estimate)
26questions here
6free pages
12concepts
25%of the exam
Questions 6–10
- 6
A developer wants to authenticate to the Kubernetes API server from their laptop using a client certificate. They have generated a private key and a certificate signing request (CSR). What is the next step to get a valid client certificate?
Select an answer first - 7
What is the purpose of the 'capabilities' field in a SecurityContext?
Select an answer first - 8
Which authorization mode is specifically designed for kubelet API access?
Select an answer first - 9
Which of the following can be used in a NetworkPolicy rule to select allowed sources? (Select the one that is NOT valid.)
Select an answer first - 10
In a SecurityContext, what does the 'runAsNonRoot' field do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Foundation. “CKAD” is a trademark of its owner, used for identification only.