Courseiva
Kubernetes Fundamentals →easyMultiple Choice

KCNA Kubernetes Fundamentals Practice Question

Which component runs on every node and is responsible for ensuring that containers are running as specified in Pod manifests?

⚠ Common exam trap

Many candidates confuse the container runtime (which actually runs containers) with the kubelet (which ensures the desired state from Pod manifests), leading them to pick 'container runtime' instead of 'kubelet'.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

kubelet

The kubelet is the primary node agent that runs on every node in a Kubernetes cluster. It is responsible for ensuring that containers described in Pod manifests (typically provided via the API server) are running and healthy. The kubelet does not manage containers directly; instead, it interacts with the container runtime (e.g., containerd, CRI-O) to create, start, and stop containers as specified.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    kubelet

    Why this is correct

    The kubelet is the node agent that watches the API server for PodSpecs bound to its node and starts, stops and health-checks the containers to match that declared state. It therefore satisfies the stem's constraint of running on every node.

  • ✗

    kube-proxy

    Why it's wrong here

    kube-proxy maintains network rules on nodes, implementing Service load balancing, so it does not reconcile Pod manifests into running containers. It is tempting because it also runs on every node, which is the correct choice when the requirement concerns Service traffic routing rather than container lifecycle.

  • ✗

    container runtime

    Why it's wrong here

    The container runtime only starts and stops containers when instructed; it does not watch Pod manifests or reconcile actual state with desired state. It is tempting because it runs on every node and manages containers, making it correct when the question asks what actually executes containers on a node.

  • ✗

    kube-controller-manager

    Why it's wrong here

    kube-controller-manager runs as a control-plane component, not on every node, and its controllers reconcile cluster-level resources rather than node-local Pod manifests. It is tempting because it performs reconciliation, which is correct when the question concerns controllers such as Deployments or ReplicaSets.

About these practice questions

One of 930 original KCNA practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This KCNA practice question is part of Courseiva's free CNCF certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the KCNA exam.