フリー問題

Kubernetes and Cloud Native Security Associate のフリー問題 13 / 20 問目

問題文

A team is drawing the trust boundaries of their cluster so that they can reason about which components have to distrust one another. Where does the most important trust boundary lie between an application Pod and the cluster state?

選択肢

  1. At the API server, because it is the only component that authenticates the Pod's identity and decides which parts of the cluster state that identity may read or change.
  2. At the kubelet, because the kubelet is the component that actually starts the container, so it mediates every interaction between the workload and its environment.
  3. At the container runtime, because it is the component closest to the workload, and anything the workload does passes through it first.
  4. At the network plugin, because all requests travel over the network, so the plugin sees each one before the API server does.

解答・解説を確認するには

正解と解説の確認、回答の記録には無料登録が必要です。登録すると演習モードでフリー問題に回答し、正誤と解説をその場で確認できます。