フリー問題

Kubernetes and Cloud Native Security Associate のフリー問題 10 / 20 問目

問題文

An administrator wants to see which existing workloads would violate a stricter Pod Security Standard before turning on rejection, so that teams can be told what to fix. Which mode should be applied to the namespace?

選択肢

  1. The enforce mode combined with the privileged level, because that pairing will accept every Pod and will also write an entry describing each violation.
  2. The audit mode, which records a violation in the audit log while still allowing the Pod.
  3. The warn mode combined with the privileged level, so users see a message on every request, and nothing is refused.
  4. The enforce mode, because rejected Pods appear in the event log, so the administrator can read the list off from there.

解答・解説を確認するには

正解と解説の確認、回答の記録には無料登録が必要です。登録すると演習モードでフリー問題に回答し、正誤と解説をその場で確認できます。