Which one of the following statements accurately describes the identity-based network security model used by Cilium?
Which statement is true about Mutual Authentication with Cilium?
Which question does Hubble provide the information to answer?
If you are required to block ingress traffic from external IPs for all pods in your cluster, which of the following network policies would be the best fit?
Which of these observability features is NOT supported by Hubble?
Why is the iptables implementation of kube-proxy less scalable than eBPF?
The application team would like to observe egress traffic with application level information for workloads running in a Cilium based Kubernetes Cluster Which features would offer this without the need for additional tooling?
You need to expose an application over HTTPS on your Cilium-managed Kubernetes cluster
The security team has specifically asked for traffic to be encrypted all the way from the external clients to the Service.
Which option should you use?
What is correct about the Kubernetes Host Scope IP Address Management (IPAM) mode?
After enabling Layer 7 visibility, you can now observe DNS domains and FQDN in your Hubble logs, like the one below.
Nov 16 13:52:07.279: endor/xwing-9bd8f454d-m46mm:34706 (ID:3817) < > example.com:443 (ID:16777217) Policy denied DROPPED (TCP Flags SYN)
Which of these Hubble CLI commands could have returned the output above?
|
PDF + Testing Engine
|
|---|
|
$41.25 |
|
Testing Engine
|
|---|
|
$31.25 |
|
PDF (Q&A)
|
|---|
|
$26.25 |
Linux Foundation Free Exams |
|---|
|