CKA
955 incident response problems that help with CKA prep.
먼저 읽을 가이드
추천 문제
All problems (955)
K8S-1570A mesh sidecar updates and one workload still uses the old outbound clusterOne workload stays on the old outbound cluster after sidecar update.KubernetesAdvanced12 minProK8S-1530A mesh trust policy updates and one sidecar still rejects peersOne workload rejects mesh peers after a trust domain alias cleanup.KubernetesAdvanced12 minProK8S-1540A mesh trust policy updates and one sidecar still rejects peersOne workload rejects mesh peers after a trust alias cleanup.KubernetesAdvanced12 minProK8S-1473A Prometheus remote-write path stays green and one cluster loses metricsOnly one cluster disappears from storage after external labels are simplified during federation cleanup.KubernetesAdvanced12 minProK8S-1463A Prometheus scrape stays green while custom metrics disappearHPA scaling breaks after two ServiceMonitor definitions are consolidated even though Prometheus still shows the target as healthy.KubernetesAdvanced12 minProK8S-1520A service mesh mTLS policy updates and one sidecar still rejects peersOnly one workload rejects mesh peers after a trust domain alias cleanup.KubernetesAdvanced12 minProK8S-1560A service mesh revision switch succeeds and one workload still routes to the old control planeOne workload remains on the old control plane after a mesh revision switch.KubernetesAdvanced12 minProK8S-1503An API priority and fairness update lands and kubelet heartbeats still starveNode heartbeats degrade only for fresh autoscaled nodes after APF tuning.KubernetesAdvanced12 minProK8S-1471A Cilium egress gateway policy looks correct and one namespace still leaks direct trafficCompliance checks fail only on readiness or liveness probes after an egress-gateway rollout.KubernetesAdvanced13 minProK8S-1461A Cilium policy allows the namespace and still blocks node-local DNSPods on one node pool lose DNS right after node-local DNS and host firewall hardening are enabled together.KubernetesAdvanced13 minProK8S-1449A host-network ingress stays ready and still fails trafficHost-network ingress remains ready while user traffic fails after firewall automation changed.KubernetesAdvanced13 minProK8S-1459A Karpenter consolidation plan looks correct and still churns one poolA Karpenter consolidation plan looks correct and still churns one pool focuses on autoscaling and asks the reader to isolate the key signal in AWS. Consolidation churn often comes from timing assumptions around when a new node is trul...KubernetesAdvanced13 minProK8S-1454A remote-write path looks healthy and one tenant disappearsOne tenant's metrics vanish after exemplars were enabled while overall remote write still reports healthy.KubernetesAdvanced13 minProK8S-1423A cluster autoscaler adds nodes and pending pods still stay unscheduledA cluster autoscaler adds nodes and pending pods still stay unscheduled focuses on scheduler-behavior and asks the reader to isolate the key signal in AWS. Capacity can look available on paper while scheduler caches and...KubernetesAdvanced14 minProK8S-1413A cluster autoscaler scale-up looks correct and pending pods remain...A cluster autoscaler scale-up looks correct and pending pods remain... focuses on scheduler-behavior and asks the reader to isolate the key signal in AWS. Autoscaler failures can come from stale node template metadata rather than from a...KubernetesAdvanced14 minProK8S-1433A scale-up event adds nodes and pending pods remain unscheduledA scale-up event adds nodes and pending pods remain unscheduled focuses on scheduler-behavior and asks the reader to isolate the key signal in AWS. New nodes can be present and still unusable when simulation metadata lags behind the act...KubernetesAdvanced14 minProK8S-1443A scale-up says pending pods will fit and they stay unscheduledA node pool migration completes and target workloads remain pending.KubernetesAdvanced14 minProK8S-1349A Cilium Hubble flow view shows allowed traffic and the app still failsOperators investigate a connectivity issue with Hubble and later discover the visible pod flows were never the part of the path doing the drop.KubernetesAdvanced15 minProK8S-1361A Cilium rollout leaves one namespace unreachableA platform team standardizes labels and later one namespace loses east-west traffic only on a subset of nodes.KubernetesAdvanced15 minProK8S-1371A Cilium upgrade leaves one namespace unreachableA label cleanup is rolled out and later one namespace loses traffic only on a subset of nodes.KubernetesAdvanced15 minPro