Courseiva
Kubernetes Fundamentals →mediumMultiple Choice

KCNA Kubernetes Fundamentals Practice Question

Which component on each worker node is responsible for ensuring that containers are running as specified in the Pod manifest?

⚠ Common exam trap

A common trap in the KCNA exam is confusing the kubelet with the container runtime. Remember: the kubelet is the Kubernetes agent that ensures containers are running as specified, while the container runtime is the underlying software (like containerd) that actually executes the containers.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

kubelet

The kubelet is the primary node agent that runs on each worker node. It receives Pod manifests (via the API server or a file) and ensures the containers described in those manifests are running and healthy. It interacts with the container runtime (e.g., containerd) to create, start, and stop containers as needed, continuously reconciling the actual state with the desired state defined in the Pod spec.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    kube-scheduler

    Why it's wrong here

    kube-scheduler runs in the control plane, binding unscheduled Pods to nodes based on resource requests, affinity and taints; it does not monitor containers after placement. It is the correct choice when asked which component assigns Pods to nodes.

  • ✗

    container runtime

    Why it's wrong here

    The container runtime (containerd, CRI-O) only pulls images and starts or stops individual containers when instructed via the CRI; it does not reconcile Pod state. It is correct when asked what actually executes containers on a node.

  • ✓

    kubelet

    Why this is correct

    kubelet runs on every worker node and reconciles the node's containers against their PodSpecs, starting, stopping and reporting container status. This directly satisfies the stem's requirement for the per-node component ensuring containers run as specified in the Pod manifest.

  • ✗

    kube-proxy

    Why it's wrong here

    kube-proxy programs iptables or IPVS rules on the node to implement Service virtual IPs and load balancing; it never starts or restarts containers. It is the right answer when the question concerns how ClusterIP or NodePort traffic reaches a backing Pod.

About these practice questions

Courseiva writes every KCNA question from scratch — 930 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This KCNA practice question is part of Courseiva's free CNCF certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the KCNA exam.