Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Linux Foundation logo

Certified Kubernetes Security Specialist (CKS)

Domain 5Objective 4

Appropriately Use Kernel Hardening Tools Such as AppArmor, Seccomp CKS Practice Questions (Page 3)

Part of the System Hardening domain, which accounts for 10% of the CKS exam. Linux Foundation does not publish an official question count, but from its 120-minute exam (~50–80 total, ~5–8 in this domain), expect 1–2 from this objective — we provide 19 practice questions to prepare you well beyond it. (estimate)

19questions here
4free pages
7concepts
10%of the exam

Questions 11–15

  1. 11foundation · easy

    What is the primary purpose of an AppArmor profile in a Linux system?

    Select an answer first
  2. 12foundation · easy

    Which command is used to load a new AppArmor profile from a file on a node?

    Select an answer first
  3. 13foundation · easy

    Which field in a pod's securityContext is used to specify a seccomp profile in Kubernetes?

    Select an answer first
  4. 14foundation · easy

    Which command would you use to check whether an AppArmor profile is currently loaded on a node?

    Select an answer first
  5. 15application · medium

    A development pod is failing with a 'Operation not permitted' error when trying to use the 'uname' syscall. The pod was deployed with a custom seccomp profile that only allows a minimal set of syscalls. The developer insists 'uname' is essential. You need to update the pod to allow this syscall. What is the most efficient way to achieve this?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Foundation. “CKS” is a trademark of its owner, used for identification only.