Certification955 problems· 24 reviewed

CKA

955 incident response problems that help with CKA prep.

All problems (955)

K8S-1482A Prometheus rule reload reports success and one alert stays oldOne shard keeps firing an old alert expression even after a successful Prometheus rule reload.KubernetesIntermediate10 minProK8S-1595A StatefulSet returns and one PVC still lands wrongOne PVC still lands in the wrong place after topology label cleanup.KubernetesAdvanced10 minProK8S-1605A volume expansion succeeds and one pod still sees ENOSPCOne pod still sees ENOSPC after successful volume expansion.KubernetesAdvanced10 minProK8S-1458An ExternalDNS rollout updates public records and one cluster path still flapsAn ExternalDNS rollout updates public records and one cluster path still flaps focuses on Service Discovery and asks the reader to isolate the key signal in AWS. Record flapping often comes from ownership-marker collisions rather than from...KubernetesIntermediate10 minProK8S-1508An HPA sees demand and never scalesAutoscaling stops after adapter query-step tuning even though Prometheus shows rising demand.KubernetesIntermediate10 minProK8S-1489An HPA sees rising load and refuses to scaleAutoscaling stops only after a deployment rename and metrics adapter refresh that otherwise looks healthy.KubernetesIntermediate10 minProK8S-1498An HPA sees rising metrics and never scalesAutoscaling stops only after query step tuning on the metrics adapter and Prometheus backend.KubernetesIntermediate10 minProK8S-1460An ingress snippet policy blocks only one classAn ingress snippet policy blocks only one class focuses on edge-routing and asks the reader to isolate the key signal in NGINX. Admission allowlists often key off controller metadata that seems unrelated to the snippet itself.KubernetesIntermediate10 minProK8S-1487A cert-manager DNS01 challenge updates Route53 and still times outACME issuance fails intermittently only in hosted zones managed by both cert-manager and ExternalDNS.KubernetesIntermediate11 minProK8S-1575A CSI expansion succeeds and one pod still sees the old sizeOne pod still sees the old filesystem size after successful PVC expansion.KubernetesAdvanced11 minProK8S-1467A Grafana Agent Flow pipeline duplicates one namespaceOne namespace begins double-counting metrics after a Grafana Agent Flow cleanup merged pod and service discovery blocks.KubernetesIntermediate11 minProK8S-1567A Loki gateway adds tenant routing and one querier still reads the old tenantOne querier reads the wrong tenant after Loki gateway tenant routing changes.KubernetesAdvanced11 minProK8S-1386A Loki or OpenSearch logging pipeline works and one tenant disappearsA log-cardinality cleanup lands and later one team loses log visibility while ingestion overall still looks healthy.KubernetesIntermediate11 minProK8S-1557A Loki zone-aware expansion finishes and one ingester still rejects trafficOne ingester rejects writes after zone-aware topology labels are renamed.KubernetesAdvanced11 minProK8S-1505A StatefulSet restore finishes and one workload still hangsA restored stateful workload can not mount on replacement nodes after a node pool refresh.KubernetesAdvanced11 minProK8S-1529A Velero restore completes and fresh pods still blockNew pods are blocked only in restored namespaces after policy changes.KubernetesAdvanced11 minProK8S-1539A Velero restore completes and fresh pods still blockNew pods are blocked only in restored namespaces after policy changes.KubernetesAdvanced11 minProK8S-1519A Velero restore succeeds and quotas still block new podsFresh pods are blocked in a restored namespace even though the quota object looks correct.KubernetesAdvanced11 minProK8S-1585A volume expansion completes and one pod still sees ENOSPCOne pod still sees ENOSPC after a successful volume expansion.KubernetesAdvanced11 minProK8S-1451An HPA stops scaling from custom metricsCustom metric scaling fails only for one workload after an adapter config reload.KubernetesIntermediate11 minPro