nerdexam
Linux_Foundation

CKS · Question #60

Context You must implement auditing for the kubeadm provisioned cluster. Task First, reconfigure the cluster 's API server, so that: . the basic audit policy located at /etc/kubernetes/logpolicy/audit

Sign in or unlock CKS to reveal the answer and full explanation for question #60. The question stem and answer options stay visible for context.

Submitted by mateo_ar· May 5, 2026Monitoring, Logging, and Runtime Security

Question

Context You must implement auditing for the kubeadm provisioned cluster. Task First, reconfigure the cluster 's API server, so that: . the basic audit policy located at /etc/kubernetes/logpolicy/audit-policy.yaml is used, . logs are stored at /var/log/kubernetes/audit-logs.txt, . and a maximum of 2 logs are retained for 10 days. The cluster uses the Docker Engine as its container runtime . If needed, use the docker command to troubleshoot running containers. The basic policy only specifies what not to log. Next, edit and extend the basic policy to log: . namespaces interactions at RequestResponse level . the request body of deployments interactions in the namespace webapps . ConfigMap and Secret interactions in all namespaces at the Metadata level . all other requests at the Metadata level Make sure the API server uses the extended policy. Failure to do so may result in a reduced score.

Exhibits

CKS question #60 exhibit 1
CKS question #60 exhibit 2

Unlock CKS to see the answer

You've previewed enough free CKS questions. Unlock CKS for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Kubernetes Auditing#API Server Configuration#Audit Policy#Log Management
Full CKS Practice