Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Linux Foundation logo

Kubernetes and Cloud Native Security Associate (KCSA)

Domain 4Objective 7

Admission Control KCSA Practice Questions (Page 2)

Part of the Platform Security domain, which accounts for 16% of the KCSA exam. Linux Foundation does not publish an official question count, but from its 90-minute exam (~35–60 total, ~6–10 in this domain), expect 1–1 from this objective — we provide 24 practice questions to prepare you well beyond it. (estimate)

24questions here
5free pages
8concepts
16%of the exam

Questions 6–10

  1. 6foundation · easy

    What is the primary purpose of the MutatingAdmissionWebhook and ValidatingAdmissionWebhook admission controllers?

    Select an answer first
  2. 7foundation · easy

    What is the key difference between mutating and validating admission controllers?

    Select an answer first
  3. 8application · medium

    A user attempts to create a Pod in a namespace that has a ResourceQuota. The request is denied because the quota would be exceeded. At which point in the API request lifecycle does this rejection occur?

    Select an answer first
  4. 9expert · medium

    You have a ValidatingWebhookConfiguration that enforces a security policy. The webhook server is temporarily down for maintenance. You want to ensure that Pod creation is NOT blocked during this maintenance window, but you also want to ensure that the policy is enforced when the webhook is healthy. What failurePolicy should you configure?

    Select an answer first
  5. 10foundation · easy

    In a ValidatingWebhookConfiguration, what is the purpose of the `failurePolicy` field?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Linux Foundation. “KCSA” is a trademark of its owner, used for identification only.