KCNA Kubernetes Fundamentals Practice Question
Which component runs on every node and is responsible for ensuring that containers are running as specified in Pod manifests?
⚠ Common exam trap
Many candidates confuse the container runtime (which actually runs containers) with the kubelet (which ensures the desired state from Pod manifests), leading them to pick 'container runtime' instead of 'kubelet'.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
kubelet
The kubelet is the primary node agent that runs on every node in a Kubernetes cluster. It is responsible for ensuring that containers described in Pod manifests (typically provided via the API server) are running and healthy. The kubelet does not manage containers directly; instead, it interacts with the container runtime (e.g., containerd, CRI-O) to create, start, and stop containers as specified.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
kubelet
Why this is correct
The kubelet is the node agent that watches the API server for PodSpecs bound to its node and starts, stops and health-checks the containers to match that declared state. It therefore satisfies the stem's constraint of running on every node.
- ✗
kube-proxy
Why it's wrong here
kube-proxy maintains network rules on nodes, implementing Service load balancing, so it does not reconcile Pod manifests into running containers. It is tempting because it also runs on every node, which is the correct choice when the requirement concerns Service traffic routing rather than container lifecycle.
- ✗
container runtime
Why it's wrong here
The container runtime only starts and stops containers when instructed; it does not watch Pod manifests or reconcile actual state with desired state. It is tempting because it runs on every node and manages containers, making it correct when the question asks what actually executes containers on a node.
- ✗
kube-controller-manager
Why it's wrong here
kube-controller-manager runs as a control-plane component, not on every node, and its controllers reconcile cluster-level resources rather than node-local Pod manifests. It is tempting because it performs reconciliation, which is correct when the question concerns controllers such as Deployments or ReplicaSets.
Go deeper
Related to this question
About these practice questions
One of 930 original KCNA practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This KCNA practice question is part of Courseiva's free CNCF certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the KCNA exam.