Kubernetes and Cloud Native Associate (KCNA) — Questions and Answers
Question 1: Which personal protective equipment (PPE) principle applies to ALL KCNA certified professionals regardless of their specific role?
- PPE is only necessary during formal inspections
- Any PPE will provide adequate protection
- PPE must be properly fitted, maintained, and replaced as needed (Correct answer)
- PPE is optional if experienced in the field
Correct answer: PPE must be properly fitted, maintained, and replaced as needed
Regardless of experience level or specific role, PPE must be properly fitted to the individual, regularly maintained in good condition, and replaced when worn or damaged. Improperly fitted or degraded PPE can provide a false sense of security.
Question 2: What does a GitOps operator's self-healing capability accomplish?
- It restarts failed CI/CD pipeline jobs when they time out
- It automatically restores the cluster to the Git-defined desired state whenever drift is detected (Correct answer)
- It repairs corrupted or force-pushed Git repositories
- It corrects syntax errors found in Kubernetes YAML manifests
Correct answer: It automatically restores the cluster to the Git-defined desired state whenever drift is detected
Self-healing means the GitOps operator detects any drift (e.g., a manually deleted resource) and automatically re-applies the desired state from Git without human intervention.
Question 3: What is the relationship between GitOps and Infrastructure as Code (IaC)?
- GitOps and IaC are competing approaches that cannot coexist in the same organization
- GitOps applies only to application manifests, while IaC is handled through a completely separate process
- GitOps replaces IaC tools like Terraform, making them unnecessary in cloud native environments
- GitOps builds on IaC by using Git as the system of record for IaC definitions and automating their reconciliation (Correct answer)
Correct answer: GitOps builds on IaC by using Git as the system of record for IaC definitions and automating their reconciliation
GitOps extends IaC by storing all declarative infrastructure definitions in Git and using operators to continuously reconcile the actual infrastructure to match that desired state automatically.
Question 4: A Pod mounts a PVC with ReadWriteOnce access mode. What does this allow?
- Many nodes can read/write simultaneously
- One Pod per namespace can mount the volume
- Only one node can mount the volume in read/write mode (Correct answer)
- Only read operations are permitted
Correct answer: Only one node can mount the volume in read/write mode
ReadWriteOnce (RWO) means the volume can be mounted as read-write by a single node at a time.
Question 5: In KCNA practice, what is the best approach to quality improvement in service mesh?
- Copy what other organizations do without analysis
- Use data-driven methods with measurable outcomes (Correct answer)
- Wait for problems to occur before acting
- Make changes without measuring results
Correct answer: Use data-driven methods with measurable outcomes
Data-driven quality improvement with measurable outcomes ensures that changes actually produce the intended improvements and can be verified.
Question 6: Which of the following is NOT a valid Kubernetes volume plugin category?
- Out-of-tree CSI drivers
- FlexVolume plugins
- In-tree volume plugins
- KubeVolume extensions (Correct answer)
Correct answer: KubeVolume extensions
Kubernetes supports in-tree plugins, CSI (out-of-tree) drivers, and the legacy FlexVolume mechanism, but 'KubeVolume extensions' is not a real category.
Question 7: A Pod is stuck in `Pending` state. What is the most likely cause?
- The container image failed to start
- No node satisfies the Pod's scheduling requirements (Correct answer)
- The container exited with a non-zero code
- The readinessProbe is failing
Correct answer: No node satisfies the Pod's scheduling requirements
A Pod remains Pending when the scheduler cannot find a suitable node due to insufficient resources, taints, or affinity rules.
Question 8: Which probe type in Kubernetes checks whether a container is ready to serve traffic?
- healthProbe
- readinessProbe (Correct answer)
- livenessProbe
- startupProbe
Correct answer: readinessProbe
A readinessProbe determines if a container is ready to accept traffic; failing Pods are removed from Service endpoints.
Question 9: A Pod has `restartPolicy: OnFailure`. What happens if the container exits with code 0?
- The container is not restarted (Correct answer)
- The Pod is deleted
- The Pod enters CrashLoopBackOff
- The container is restarted immediately
Correct answer: The container is not restarted
With `OnFailure`, containers are only restarted if they exit with a non-zero exit code; code 0 means success.
Question 10: Which foundational principle is MOST important for success in the Kubernetes and Cloud Native Associate profession?
- Maintaining the minimum requirements for certification
- Maximizing financial returns on every engagement
- Commitment to continuous learning, ethical practice, and quality outcomes (Correct answer)
- Specializing in only one narrow area of practice
Correct answer: Commitment to continuous learning, ethical practice, and quality outcomes
Success in any professional field requires a commitment to continuous learning to stay current, ethical practice to maintain trust and integrity, and a focus on quality outcomes that serve stakeholders and the public interest.
Question 11: Which statement BEST describes the relationship between Kubernetes and Cloud Native Associate certification requirements and industry evolution?
- Requirements become less stringent over time
- Certification requirements never change once established
- Changes only occur when government mandates new requirements
- Requirements evolve periodically to reflect advances in knowledge, technology, and practice standards (Correct answer)
Correct answer: Requirements evolve periodically to reflect advances in knowledge, technology, and practice standards
Certification requirements evolve to keep pace with advances in professional knowledge, technological developments, and changes in practice standards. This ensures that certified professionals remain current and competent in a changing professional landscape.
Question 12: In Kubernetes, what is the purpose of a Namespace?
- Defines the container runtime to use
- Manages TLS certificates for Pods
- Provides network isolation between Pods
- Partitions cluster resources between multiple users or teams (Correct answer)
Correct answer: Partitions cluster resources between multiple users or teams
Namespaces provide a mechanism to divide cluster resources between multiple users, teams, or projects with logical isolation.
Question 13: What Kubernetes annotation is typically used to enable automatic sidecar injection in Istio?
- sidecar.istio.io/inject: 'true' (Correct answer)
- istio.io/sidecar: 'enabled'
- mesh.istio.io/proxy: 'inject'
- istio.io/inject: 'true'
Correct answer: sidecar.istio.io/inject: 'true'
The annotation 'sidecar.istio.io/inject: true' on a pod or namespace enables automatic Envoy sidecar injection.
Question 14: What distinguishes a Kubernetes and Cloud Native Associate certified professional from a non-certified practitioner?
- Certification validates competency through standardized assessment against established benchmarks (Correct answer)
- Certified professionals always have more years of experience
- Certified professionals exclusively work in larger organizations
- There is no meaningful difference in competency
Correct answer: Certification validates competency through standardized assessment against established benchmarks
Certification provides objective validation of competency through standardized assessment. While non-certified practitioners may be skilled, certification offers verified evidence that a professional meets established benchmarks for knowledge and performance.
Question 15: Which professional attribute is most valued in storage solutions within the KCNA field?
- Prioritizing personal convenience
- Avoiding challenging situations
- Accountability and commitment to standards (Correct answer)
- Working in isolation
Correct answer: Accountability and commitment to standards
Accountability and commitment to professional standards build trust and ensure consistent, high-quality practice.
Question 16: What is the role of the kube-scheduler in Kubernetes?
- Manages container runtime lifecycle
- Maintains the desired state of cluster resources
- Assigns newly created Pods to nodes (Correct answer)
- Exposes the Kubernetes API
Correct answer: Assigns newly created Pods to nodes
The kube-scheduler watches for new unscheduled Pods and selects the best node for them to run on.
Question 17: What is the function of a Prometheus 'recording rule'?
- Define which targets Prometheus should scrape
- Configure how long raw metrics are retained
- Pre-compute expensive PromQL queries and store results as new time series (Correct answer)
- Send alerts when a threshold is breached
Correct answer: Pre-compute expensive PromQL queries and store results as new time series
Recording rules allow you to pre-compute frequently used or expensive PromQL expressions and save their results as new time series for faster querying.
Question 18: What protocol does Istio's Envoy proxy use to communicate with the Istiod control plane for configuration updates?
- WebSocket
- gRPC via xDS APIs (Correct answer)
- REST/HTTP
- GraphQL
Correct answer: gRPC via xDS APIs
Envoy proxies use the xDS (discovery service) APIs over gRPC to receive dynamic configuration updates from Istiod.
Question 19: What is the role of `kube-scheduler` in the Kubernetes control plane?
- Monitors node health and evicts pods from unhealthy nodes
- Manages the lifecycle of all pods and reconciles desired vs actual state
- Watches for unbound pods and assigns them to nodes based on resource availability and constraints (Correct answer)
- Stores the cluster state and serves as the source of truth for all objects
Correct answer: Watches for unbound pods and assigns them to nodes based on resource availability and constraints
kube-scheduler's sole responsibility is to watch for unscheduled pods and select the best node for each based on filtering and scoring.
Question 20: Which statement BEST describes the relationship between Kubernetes and Cloud Native Associate certification requirements and industry evolution?
- Changes only occur when government mandates new requirements
- Certification requirements never change once established
- Requirements evolve periodically to reflect advances in knowledge, technology, and practice standards (Correct answer)
- Requirements become less stringent over time
Correct answer: Requirements evolve periodically to reflect advances in knowledge, technology, and practice standards
Certification requirements evolve to keep pace with advances in professional knowledge, technological developments, and changes in practice standards. This ensures that certified professionals remain current and competent in a changing professional landscape.
Question 21: What distinguishes a Kubernetes and Cloud Native Associate certified professional from a non-certified practitioner?
- There is no meaningful difference in competency
- Certified professionals exclusively work in larger organizations
- Certified professionals always have more years of experience
- Certification validates competency through standardized assessment against established benchmarks (Correct answer)
Correct answer: Certification validates competency through standardized assessment against established benchmarks
Certification provides objective validation of competency through standardized assessment. While non-certified practitioners may be skilled, certification offers verified evidence that a professional meets established benchmarks for knowledge and performance.
Question 22: Which Kubernetes concept allows cluster operators to restrict the total amount of CPU and memory that can be consumed within a namespace?
- PriorityClass
- ResourceQuota (Correct answer)
- NetworkPolicy
- LimitRange
Correct answer: ResourceQuota
ResourceQuota sets aggregate limits on resource consumption (CPU, memory, object count) for an entire namespace.
Question 23: Which field in a Pod spec defines the minimum and maximum CPU/memory resources a container can use?
- allocations
- limitRange
- resourceQuota
- resources (requests and limits) (Correct answer)
Correct answer: resources (requests and limits)
The `resources` field with `requests` and `limits` sub-fields controls resource allocation per container.
Question 24: What is the function of an Init Container in a Pod?
- Runs before app containers and must complete successfully before they start (Correct answer)
- Handles graceful shutdown of the main container
- Runs alongside the main container to provide sidecar functionality
- Provides a default environment for all containers in the Pod
Correct answer: Runs before app containers and must complete successfully before they start
Init Containers run sequentially before app containers and must exit successfully; they are used for setup tasks.
Question 25: Which risk management approach is MOST effective for KCNA professionals when evaluating potential workplace hazards?
- Proactive hazard identification and assessment (Correct answer)
- Relying solely on historical accident data
- Delegating all safety decisions to management
- Reactive analysis after incidents occur
Correct answer: Proactive hazard identification and assessment
Proactive hazard identification and assessment allows professionals to identify and mitigate risks before incidents occur, which is far more effective than reactive approaches that only address problems after they happen.
Question 26: What Kubernetes resource type is most commonly used to deploy a log collector (like Fluent Bit) on every node in a cluster?
- ReplicaSet
- DaemonSet (Correct answer)
- Deployment
- StatefulSet
Correct answer: DaemonSet
A DaemonSet ensures that one pod runs on every (or selected) node, making it ideal for node-level log collection agents.
Question 27: Which Prometheus metric type is best suited for measuring request latency distribution with configurable quantiles calculated server-side?
- Counter
- Histogram
- Summary (Correct answer)
- Gauge
Correct answer: Summary
Summary metrics calculate configurable quantiles (e.g., p50, p95, p99) on the client side and are useful for pre-aggregated latency distributions.
Question 28: Which cloud native pattern ensures that a service remains available even when one of its dependencies is experiencing failures?
- Timeout
- Retry
- Circuit Breaker (Correct answer)
- Bulkhead
Correct answer: Circuit Breaker
The Circuit Breaker pattern prevents cascading failures by stopping requests to a failing dependency and allowing it time to recover.
Question 29: What is the function of Kube-proxy in Kubernetes?
- To manage container storage.
- To manage the cluster state.
- To schedule pods on nodes.
- To maintain network rules (Correct answer)
Correct answer: To maintain network rules
Kube-proxy runs on each node and maintains network rules on the host, allowing network communication to your Pods from inside or outside of the cluster. It handles network proxying for Kubernetes Services, ensuring that traffic is correctly routed to the appropriate Pods.
Question 30: In cloud native architectures, what is the role of a service mesh control plane?
- Stores distributed application state across the cluster
- Monitors resource usage and autoscales service replicas
- Manages and configures the sidecar proxies across all services (Correct answer)
- Handles incoming external traffic and routes it to backend services
Correct answer: Manages and configures the sidecar proxies across all services
The control plane in a service mesh (e.g., Istio's istiod) configures and manages the data plane sidecar proxies, distributing routing rules and policies.
Question 31: How does the KCNA body of knowledge relate to daily professional practice?
- It only applies during certification exams
- It is theoretical and has limited practical application
- It provides the foundational framework that guides decision-making and standard practices (Correct answer)
- It is relevant only for academic research
Correct answer: It provides the foundational framework that guides decision-making and standard practices
The body of knowledge provides the foundational framework of principles, standards, and best practices that professionals use to guide their daily decision-making, ensure consistent quality, and maintain alignment with industry standards.
Question 32: What is the PRIMARY purpose of obtaining KCNA certification in Kubernetes and Cloud Native Associate?
- To satisfy a personal achievement goal
- To guarantee employment in the field
- To demonstrate verified competency and adherence to professional standards (Correct answer)
- To bypass educational requirements
Correct answer: To demonstrate verified competency and adherence to professional standards
Professional certification demonstrates that an individual has met established competency standards through verified assessment. It provides assurance to employers, clients, and the public that the certified professional possesses the knowledge and skills required for competent practice.
Question 33: When a KCNA professional faces pressure to compromise professional standards, the BEST response is to:
- Ignore the pressure and continue without reporting
- Immediately resign from the position
- Comply to maintain workplace relationships
- Document the pressure and uphold professional standards (Correct answer)
Correct answer: Document the pressure and uphold professional standards
Professionals should document any pressure to compromise standards and continue upholding their professional obligations. Documentation creates a record of the situation while maintaining ethical integrity.
Question 34: What is the purpose of a Kubernetes Horizontal Pod Autoscaler (HPA)?
- Moves Pods between nodes to balance load
- Adjusts the number of Pod replicas based on observed metrics (Correct answer)
- Scales nodes up/down based on CPU
- Increases container resource limits dynamically
Correct answer: Adjusts the number of Pod replicas based on observed metrics
HPA automatically scales the number of Pod replicas in a workload based on CPU, memory, or custom metrics.
Question 35: What is the main purpose of Kubernetes Pods?
- To run containers in a shared environment (Correct answer)
- To manage cluster resources.
- To store application data.
- To configure network policies.
Correct answer: To run containers in a shared environment
Pods are the fundamental building blocks in Kubernetes, designed to host one or more containers that share resources like network, storage, and lifecycle. Their main purpose is to provide a cohesive environment for co-located containers to run and communicate efficiently.
Question 36: In KCNA certification, what is the purpose of automated testing?
- To catch regressions and verify functionality continuously (Correct answer)
- To slow down development
- To replace manual code review entirely
- To increase server costs
Correct answer: To catch regressions and verify functionality continuously
Automated testing catches regressions early and verifies that functionality works as expected, providing confidence in code changes.
Question 37: A PersistentVolume has a capacity of 10Gi. A PVC requests 8Gi. The PV and PVC are bound. How much storage can the PVC actually use?
- Exactly 10Gi is allocated but only 8Gi is accessible
- This PVC would not bind because sizes don't match exactly
- Up to 10Gi, since the entire PV is bound to the PVC (Correct answer)
- 8Gi exactly, enforced by Kubernetes
Correct answer: Up to 10Gi, since the entire PV is bound to the PVC
When a PV is bound to a PVC, the entire PV is dedicated to that claim; the Pod can use up to the PV's full capacity (10Gi), not just the requested 8Gi.
Question 38: What is the MOST important reason for Kubernetes and Cloud Native Associate professionals to maintain continuing education?
- To satisfy employer preferences
- To accumulate credentials for personal prestige
- To increase billing rates
- To stay current with evolving standards, practices, and regulations (Correct answer)
Correct answer: To stay current with evolving standards, practices, and regulations
Continuing education ensures professionals remain current with evolving industry standards, best practices, and regulatory requirements. This directly impacts the quality of service provided and maintains public trust in the profession.
Question 39: Which Kubernetes component stores the entire cluster state, including configuration and status of all objects?
- kube-apiserver
- kube-scheduler
- etcd (Correct answer)
- kube-controller-manager
Correct answer: etcd
etcd is the distributed key-value store that Kubernetes uses as its backing store for all cluster data.
Question 40: What happens to Helm release history when `helm uninstall` is run without the `--keep-history` flag?
- The release history is archived to a ConfigMap in the kube-system namespace
- Only the Kubernetes resources are removed; history is kept for 30 days
- All Kubernetes resources and the release history are permanently deleted (Correct answer)
- The release is marked as uninstalled but history remains indefinitely
Correct answer: All Kubernetes resources and the release history are permanently deleted
Without `--keep-history`, `helm uninstall` removes both the deployed Kubernetes resources and the release history Secrets, making rollback impossible.
Question 41: What does the 'restricted' Pod Security Standard level require that 'baseline' does not?
- Requires running as non-root and dropping all capabilities (Correct answer)
- Prevents use of hostPath volumes
- Disables host port access
- Prevents running privileged containers
Correct answer: Requires running as non-root and dropping all capabilities
The 'restricted' level enforces additional hardening including running as non-root, dropping ALL capabilities, and requiring seccomp profiles.
Question 42: What is the primary benefit of version control in container orchestration for KCNA?
- It makes files larger
- It replaces testing
- It tracks changes and enables collaboration (Correct answer)
- It eliminates the need for documentation
Correct answer: It tracks changes and enables collaboration
Version control systems track all changes to code and configurations, enabling collaboration, rollback, and audit trails.
Question 43: A KCNA professional discovers a conflict of interest in a current assignment. What is the MOST ethical course of action?
- Disclose the conflict immediately and recuse if necessary (Correct answer)
- Handle it privately without informing stakeholders
- Continue the assignment but document the conflict later
- Ignore it if no one else has noticed
Correct answer: Disclose the conflict immediately and recuse if necessary
Ethical standards require immediate disclosure of conflicts of interest. Transparency protects both the professional's integrity and the stakeholders' interests. Recusal may be necessary to maintain objectivity.
Question 44: What is the default log driver used by Docker (and many container runtimes) when no driver is specified?
- json-file (Correct answer)
- journald
- fluentd
- syslog
Correct answer: json-file
The json-file driver is the default Docker log driver, writing container logs as JSON to files on the host filesystem.
Question 45: What is the role of the Kubelet in Kubernetes?
- To configure network policies.
- To ensure containers are running (Correct answer)
- To schedule pods on nodes.
- To manage persistent storage.
Correct answer: To ensure containers are running
The Kubelet is an agent that runs on each worker node in a Kubernetes cluster. Its primary role is to ensure that containers within Pods are running and healthy, communicating with the control plane to receive Pod specifications and managing the lifecycle of containers on its node.
Question 46: Which Kubernetes object defines how a storage volume can be accessed across multiple pods?
- PersistentVolume (Correct answer)
- PersistentVolumeClaim
- StorageClass
- VolumeMount
Correct answer: PersistentVolume
A PersistentVolume (PV) defines the storage resource itself, including its access modes such as ReadWriteOnce, ReadOnlyMany, or ReadWriteMany.
Question 47: What Helm concept allows one chart to include and manage other charts as dependencies?
- Helm plugins
- Helm hooks
- Subcharts (Correct answer)
- Library charts
Correct answer: Subcharts
Subcharts (also called child charts) are charts listed under `dependencies` in Chart.yaml and packaged inside the parent chart's `charts/` directory.
Question 48: What is the purpose of a Prometheus AlertManager?
- Visualize metrics dashboards
- Route and deduplicate alerts from Prometheus (Correct answer)
- Scrape metrics from targets
- Store long-term metrics data
Correct answer: Route and deduplicate alerts from Prometheus
AlertManager handles alerts sent by Prometheus, deduplicating, grouping, and routing them to receivers like email, Slack, or PagerDuty.
Question 49: Which Helm built-in object provides access to Kubernetes cluster version information in templates?
- .Capabilities (Correct answer)
- .Chart
- .Values
- .Release
Correct answer: .Capabilities
The `.Capabilities` object exposes information about the Kubernetes cluster, including API versions and the Kubernetes version.
Question 50: A Deployment is updated with a new image. Which strategy replaces Pods one at a time, ensuring no downtime?
- Recreate
- RollingUpdate (Correct answer)
- Canary
- BlueGreen
Correct answer: RollingUpdate
The RollingUpdate strategy incrementally replaces old Pods with new ones, keeping the application available during the update.
Question 51: Which principle is fundamental to good cloud native patterns practice?
- Avoiding all abstraction
- Never refactoring code
- Writing as much code as possible
- Separation of concerns and modularity (Correct answer)
Correct answer: Separation of concerns and modularity
Separation of concerns and modularity make code easier to understand, test, maintain, and extend over time.
Question 52: When you run `kubectl drain <node>`, what happens to DaemonSet-managed Pods on that node by default?
- They prevent the drain from completing
- They are automatically deleted permanently
- They are ignored unless you pass --ignore-daemonsets (Correct answer)
- They are evicted and rescheduled on other nodes
Correct answer: They are ignored unless you pass --ignore-daemonsets
By default, kubectl drain refuses to proceed if DaemonSet-managed Pods are present; passing --ignore-daemonsets skips them since they cannot be rescheduled elsewhere.
Question 53: A pod using an 'emptyDir' volume is deleted. What happens to the data stored in that volume?
- Data is persisted to the node's disk permanently
- Data is backed up to the cluster's etcd store
- Data is deleted when the pod is removed (Correct answer)
- Data is migrated to a PersistentVolume automatically
Correct answer: Data is deleted when the pod is removed
An emptyDir volume exists only for the lifetime of the pod; when the pod is deleted, the data in the emptyDir is permanently erased.
Question 54: In Event Sourcing, how is the application state stored?
- As an ordered log of domain events rather than current state snapshots (Correct answer)
- As a relational database table with the latest state for each entity
- As key-value pairs in a distributed cache
- As periodic snapshots with a transaction log between snapshots
Correct answer: As an ordered log of domain events rather than current state snapshots
Event Sourcing stores every change as an immutable event, reconstructing current state by replaying the event log from the beginning.
Question 55: What is the key characteristic of Immutable Infrastructure?
- Infrastructure automatically scales based on demand
- Servers are never modified after deployment; changes require new deployments (Correct answer)
- Containers share the host OS kernel
- Infrastructure is defined in code and checked into version control
Correct answer: Servers are never modified after deployment; changes require new deployments
Immutable Infrastructure means deployed artifacts are never changed in place; any update requires replacing the artifact with a new version.
Question 56: What is the function of Kubernetes pods?
- To provide network policies.
- To manage persistent storage.
- To contain one or more containers (Correct answer)
- To manage clusters.
Correct answer: To contain one or more containers
A Kubernetes Pod is the smallest deployable unit in Kubernetes, representing a single instance of a running process in a cluster. It encapsulates one or more containers, along with shared storage, network resources, and a specification for how to run the containers.
Question 57: Which pattern involves running a container that completes setup tasks before the main application container starts?
- Sidecar
- Adapter
- Init Container (Correct answer)
- Ambassador
Correct answer: Init Container
Init Containers run to completion before the main containers start, making them ideal for setup tasks like schema migrations or config fetching.
Question 58: A node is tainted with `key=value:NoSchedule`. Which pod spec element allows a pod to be scheduled on that node?
- affinity.nodeAffinity
- tolerations (Correct answer)
- priorityClassName
- nodeSelector
Correct answer: tolerations
A toleration matching the taint's key, value, and effect allows the pod to be scheduled on the tainted node.
Question 59: Which Istio control plane component was historically responsible for certificate issuance and rotation?
- Pilot
- Citadel (Correct answer)
- Mixer
- Galley
Correct answer: Citadel
Citadel was the Istio component that managed service identity and certificate lifecycle, though its functions are now merged into istiod.
Question 60: Which component is responsible for watching Service and Endpoints changes and updating node-level routing rules?
- kubelet
- CoreDNS
- kube-proxy (Correct answer)
- cloud-controller-manager
Correct answer: kube-proxy
kube-proxy runs on every node, watches the API server for Service and Endpoint changes, and updates iptables or IPVS rules accordingly.
Question 61: What is the recommended approach for handling errors in cloud native patterns?
- Let errors crash the application
- Suppress all error messages
- Implement structured error handling with meaningful messages (Correct answer)
- Log errors but never handle them
Correct answer: Implement structured error handling with meaningful messages
Structured error handling with meaningful messages helps diagnose problems quickly while maintaining application stability and user experience.
Kubernetes and Cloud Native Associate (KCNA)
The KCNA is an entry-level certification from CNCF and the Linux Foundation that validates foundational knowledge of Kubernetes, container orchestration, and cloud native technologies. It covers Kubernetes fundamentals, container orchestration, cloud native architecture, observability, and application delivery.
Exam Rules
- You can skip questions and return to them later
- Flag questions for review before submitting
- No feedback shown until you submit the entire exam
- Unanswered questions count as wrong — answer everything
- 10 pretest questions are mixed in and don't affect your score
- Timer auto-submits when time runs out
- Your progress is auto-saved every 30 seconds