CKS Kubernetes System Hardening Quiz

Reviewed by Editorial Team
The ProProfs editorial team is comprised of experienced subject matter experts. They've collectively created over 10,000 quizzes and lessons, serving over 100 million users. Our team includes in-house content moderators and subject matter experts, as well as a global network of rigorously trained contributors. All adhere to our comprehensive editorial guidelines, ensuring the delivery of high-quality content.
Learn about Our Editorial Process
| By Thames
T
Thames
Community Contributor
Quizzes Created: 8865 | Total Attempts: 106,055
| Questions: 20 | Updated: Aug 16, 2026
Please wait...
Question 1 / 21
🏆 Rank #--
0 %
0/100
Score 0/100

1. Pod Security Policies are enforced at which stage?

Submit
Please wait...
About This Quiz
CKS Kubernetes System Hardening Quiz - Quiz

This quiz evaluates your understanding of Kubernetes system hardening techniques essential for the CKS certification. It covers pod security policies, network policies, RBAC configuration, container runtime security, and secure API server setup. Master these core security practices to protect Kubernetes clusters from unauthorized access and malicious workloads.

2.

What first name or nickname would you like us to use?

You may optionally provide this to label your report, leaderboard, or certificate.

2. Which RBAC component specifies what actions are allowed on resources?

Submit

3. How can you verify that a pod is using AppArmor?

Submit

4. What does the --insecure-port flag do on the API server?

Submit

5. Which admission controller enforces Pod Security Policies?

Submit

6. What is the purpose of audit logging in Kubernetes?

Submit

7. How do you restrict a pod to specific Linux capabilities?

Submit

8. What is the default authorization mode if not specified on the API server?

Submit

9. Which setting in a Pod spec prevents privilege escalation?

Submit

10. What does the --kubelet-certificate-authority flag configure?

Submit

11. Which Kubernetes resource defines rules for network traffic between pods?

Submit

12. Which Kubernetes feature controls what system calls containers can make?

Submit

13. What is the purpose of the --authorization-mode flag on the API server?

Submit

14. How can you enforce that pods use read-only root filesystems?

Submit

15. What does a ClusterRole define in Kubernetes RBAC?

Submit

16. Which setting prevents containers from running as root?

Submit

17. What is AppArmor in Kubernetes security context?

Submit

18. Which kubelet flag disables anonymous access?

Submit

19. In RBAC, what does a RoleBinding do?

Submit

20. What is the primary purpose of Pod Security Policies (PSP)?

Submit
×
Saved
Thank you for your feedback!
View My Results
Cancel
  • All
    All (20)
  • Unanswered
    Unanswered ()
  • Answered
    Answered ()
Pod Security Policies are enforced at which stage?
Which RBAC component specifies what actions are allowed on resources?
How can you verify that a pod is using AppArmor?
What does the --insecure-port flag do on the API server?
Which admission controller enforces Pod Security Policies?
What is the purpose of audit logging in Kubernetes?
How do you restrict a pod to specific Linux capabilities?
What is the default authorization mode if not specified on the API...
Which setting in a Pod spec prevents privilege escalation?
What does the --kubelet-certificate-authority flag configure?
Which Kubernetes resource defines rules for network traffic between...
Which Kubernetes feature controls what system calls containers can...
What is the purpose of the --authorization-mode flag on the API...
How can you enforce that pods use read-only root filesystems?
What does a ClusterRole define in Kubernetes RBAC?
Which setting prevents containers from running as root?
What is AppArmor in Kubernetes security context?
Which kubelet flag disables anonymous access?
In RBAC, what does a RoleBinding do?
What is the primary purpose of Pod Security Policies (PSP)?
play-Mute sad happy unanswered_answer up-hover down-hover success oval cancel Check box square blue
Alert!