フリー問題

Certified GitOps Associate のフリー問題 12 / 20 問目

問題文

A team wants security checks to influence what runs in the cluster without adding a human step. Which approach is consistent with both the DevSecOps description and the GitOps principles?

選択肢

  1. Express the constraints as declarations that are evaluated automatically, so that a change violating them is rejected without anyone having to intervene.
  2. Configure the agent to suspend reconciliation whenever a scan reports a finding, so that nothing further is applied until the finding has been resolved and the runtime is therefore never moved into a state that violates a constraint.
  3. Have the build system refuse to publish an artifact that fails a scan, which removes the need for any constraint to be evaluated after that point.
  4. Give the security team write access to the runtime so they can remove anything that violates a constraint.

解答・解説を確認するには

正解と解説の確認、回答の記録には無料登録が必要です。登録すると演習モードでフリー問題に回答し、正誤と解説をその場で確認できます。