CKA Practice Question: Cluster Architecture, Installation and Configuration
To back up etcd, which command should be used with etcdctl?
⚠ Common exam trap
Many candidates confuse `etcdctl` subcommands with similar-sounding Linux backup commands (like `dump` or `export`) or assume a generic `backup` subcommand exists, when the CKA exam specifically tests knowledge of the exact `snapshot save` syntax.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
etcdctl snapshot save
The correct command to back up etcd is `etcdctl snapshot save`, which creates a point-in-time snapshot of the etcd key-value store. This is the officially recommended method for backing up etcd data in Kubernetes clusters, as it captures the entire database state consistently.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
etcdctl export
Why it's wrong here
etcdctl export is invalid because the etcdctl client (v3 API) does not ship an export subcommand. The only supported way to create a backup of the etcd data store is the snapshot command, which captures a point-in-time, consistent copy of the key-value store. Attempting to run 'etcdctl export' will simply produce an error identifying an unknown subcommand, so it cannot fulfill the backup requirement.
- ✗
etcdctl backup
Why it's wrong here
The backup subcommand is a leftover from etcdctl v2; in the v3 CLI used by modern Kubernetes clusters, etcdctl no longer exposes a backup command. The correct v3 mechanism is etcdctl snapshot save, which writes a binary snapshot file that can later be restored via etcdctl snapshot restore. Using an obsolete or nonexistent subcommand like backup would either fail immediately or refer to the wrong version of the tool.
- ✗
etcdctl dump
Why it's wrong here
etcdctl dump is not a valid subcommand in either v2 or v3 of etcdctl, and it does not correspond to any official backup or export functionality. The etcd API offers commands such as get and watch for reading data, but those do not produce a backup snapshot. Therefore dump is merely a plausible-sounding but incorrect option, and the only reliable backup command is etcdctl snapshot save.
- ✓
etcdctl snapshot save
Why this is correct
etcdctl snapshot save is the correct and standard command for backing up an etcd cluster's data. It contacts the etcd endpoint, takes a consistent snapshot of the entire key-value store (including all keys, versions, and metadata), and writes it to a file on disk. This snapshot can then be used with etcdctl snapshot restore to recover a cluster, making it the essential backup tool for etcd-backed Kubernetes control planes.
Go deeper
Related to this question
Learn chapter
etcd Backup and Restore
Key term
Network Policies
A Kubernetes resource that controls how pods communicate with each other and with other network endpoints, acting as a firewall for pod-to-pod traffic.
Key term
Ingress Resources
Ingress Resources are Kubernetes API objects that manage external access to services inside a cluster, typically HTTP and HTTPS traffic, by defining rules for routing requests based on hostnames and paths.
About these practice questions
Courseiva writes every CKA question from scratch — 726 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This CKA practice question is part of Courseiva's free CNCF certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CKA exam.