CKA Services and Networking Practice Question
Which THREE components are part of the Gateway API resource model? (Select THREE)
⚠ Common exam trap
The CKA exam often tests the distinction between the older Ingress API and the newer Gateway API, and candidates mistakenly select Ingress as a component of Gateway API, when in fact Gateway API is a separate, more expressive API family that includes GatewayClass, Gateway, and route resources like HTTPRoute.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Gateway
The Gateway API resource model is built around three primary role-oriented resources: GatewayClass, Gateway, and Route objects such as HTTPRoute. Option B (GatewayClass) is correct because it defines a cluster-scoped template that identifies the controller implementing the gateway, analogous to an IngressClass but for the Gateway API. Option A (Gateway) is correct because it represents a specific instance of infrastructure (a load balancer or proxy) provisioned by a GatewayClass controller, and it defines listeners for protocols like HTTP, HTTPS, or TLS. Option D (HTTPRoute) is correct because Route resources attach to a Gateway's listeners and specify how traffic is matched and forwarded to backend Services, with HTTPRoute being the HTTP/HTTPS-specific route type. Option C (LoadBalancer) is not part of the Gateway API resource model; it is a Kubernetes Service type (spec.type: LoadBalancer) used for exposing workloads, not a Gateway API kind. Option E (Ingress) is the older, separate Kubernetes API for HTTP routing and is not a Gateway API resource, though Gateway API is designed as its successor.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Gateway
Why this is correct
Gateway is a core Gateway API resource, representing a specific load-balancing instance that defines listeners, protocols and TLS settings, and binds routes to underlying infrastructure. It sits alongside GatewayClass and HTTPRoute in the role-oriented model.
- ✓
GatewayClass
Why this is correct
GatewayClass defines a cluster-scoped template that names the controller implementation responsible for provisioning Gateways, separating infrastructure ownership from route configuration. It satisfies the stem's resource-model requirement as the foundational, reusable class from which Gateways inherit behaviour, distinct from HTTPRoute and Gateway itself.
- ✗
LoadBalancer
Why it's wrong here
LoadBalancer is a Service type in the core API, not a Gateway API resource; Gateway API instead uses GatewayClass, Gateway, and HTTPRoute. It is tempting because Gateway API implementations provision load balancers, so the term appears in that context, but it is not a resource kind.
- ✓
HTTPRoute
Why this is correct
HTTPRoute is a core Gateway API resource, defining how traffic from a Gateway is matched and forwarded to backend Services. It satisfies the stem's request for a resource-model component, alongside Gateway and GatewayClass, and replaces the equivalent Ingress routing function with richer, role-oriented configuration.
- ✗
Ingress
Why it's wrong here
Ingress belongs to the older Ingress API, not the Gateway API resource model, which defines GatewayClass, Gateway, and HTTPRoute. It is tempting because Ingress also routes external HTTP traffic, and would be named if the question asked about the legacy ingress mechanism.
Go deeper
Related to this question
Learn chapter
Troubleshooting Networking and Services
Key term
ClusterIP NodePort LoadBalancer
ClusterIP, NodePort, and LoadBalancer are three types of Kubernetes Services that control how traffic reaches your application pods inside the cluster or from outside.
Key term
Ingress Resources
Ingress Resources are Kubernetes API objects that manage external access to services inside a cluster, typically HTTP and HTTPS traffic, by defining rules for routing requests based on hostnames and paths.
About these practice questions
This CKA question is part of Courseiva's 726-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This CKA practice question is part of Courseiva's free CNCF certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CKA exam.