Skip to content
CNPA
Platform Observability, Security, and Conformance
medium
Question 5 of 40

A platform team wants to enforce that all Kubernetes workloads define resource requests and limits before being admitted to the cluster. Which tool category best implements this at cluster admission time?

APrometheus alerting rules triggered after workloads are already running
BAn admission controller using a policy engine such as OPA Gatekeeper or Kyverno
CA CI pipeline lint check embedded in the developer workflow only
DKubernetes RBAC policies applied per namespace to control who can create Pods

Educational Content — CertQnA practice questions are written against official exam objectives, covering the same domains tested on the real exam. All content is original and independent — not actual exam questions, not affiliated with any certification vendor. Learn more about our content policy

Discussion

Be the first to share your understanding of this concept

⚠️ Discussion is for concept clarification only. Do not share or request actual exam questions or answers.

Sign in to join the discussion