BlackFriday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Linux Foundation Exam CKS Topic 1 Question 53 Discussion

Actual exam question for Linux Foundation's CKS exam
Question #: 53
Topic #: 1
[All CKS Questions]

You can switch the cluster/configuration context using the following command: [desk@cli] $kubectl config use-context dev Context: A CIS Benchmark tool was run against the kubeadm created cluster and found multiple issues that must be addressed. Task: Fix all issues via configuration and restart the affected components to ensure the new settings take effect. Fix all of the following violations that were found against the API server: 1.2.7authorization-modeargument is not set toAlwaysAllow FAIL 1.2.8authorization-modeargument includesNode FAIL 1.2.7authorization-modeargument includesRBAC FAIL Fix all of the following violations that were found against the Kubelet: 4.2.1 Ensure that theanonymous-auth argumentis set to false FAIL 4.2.2authorization-modeargument is not set to AlwaysAllow FAIL (UseWebhookautumn/authz where possible) Fix all of the following violations that were found against etcd: 2.2 Ensure that theclient-cert-authargument is set to true

Show Suggested Answer Hide Answer
Suggested Answer: A

Contribute your Thoughts:

Makeda
4 months ago
Agree. But don't forget, we need to restart kubelet and other services after changes.
upvoted 0 times
...
Margarett
4 months ago
I think setting 'anonymous-auth' to false in Kubelet is easy.
upvoted 0 times
...
Gregoria
5 months ago
True. Especially those authorization mode arguments in API server.
upvoted 0 times
...
Salome
5 months ago
This task seems tricky. Fixing multiple issues in one go.
upvoted 0 times
...
Makeda
5 months ago
Yeah, it's 'kubectl config use-context dev'. Straightforward.
upvoted 0 times
...
Gregoria
6 months ago
Did anyone check the cluster context switch command?
upvoted 0 times
...

Save Cancel