問題文
An engineer needs to list only the traffic that was dropped for a particular pod. Which approach matches the command-line tool's model?
選択肢
- Run the observe subcommand with a filter on the pod and a filter on the verdict.
- Enable the metrics endpoint and read the counter, whose labels carry the pod name and the verdict for each individual flow.
- Read the container log of the application, where the drops are recorded by the workload as they happen.
- Query the Kubernetes API for events on the pod because the verdict for each connection is recorded there as an event object which can then be filtered by reason to find the ones that were refused.