Courseiva
Cloud Native Architecture →mediumMultiple Select

KCNA Cloud Native Architecture Practice Question

Which TWO of the following are benefits of using a service mesh? (Choose two.)

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Improved observability of service-to-service communication

Service mesh provides improved observability and enables traffic management features like canary deployments.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Improved observability of service-to-service communication

    Why this is correct

    A service mesh injects sidecar proxies alongside each workload, so every service-to-service request passes through them. Those proxies emit uniform telemetry — latency, error rates, request volume — without application code changes, directly satisfying the stem's observability benefit for inter-service communication.

  • ✗

    Direct management of virtual machines

    Why it's wrong here

    A service mesh operates at layer 7 on Kubernetes pods and services, not on hypervisor-hosted virtual machines; VM lifecycle stays with the hypervisor or cloud provider. It is tempting because mesh proxies can run on VMs, but that is deployment, not direct VM management.

  • ✗

    Automated container image building

    Why it's wrong here

    A service mesh handles traffic routing, mTLS and observability between services; building images is the CI pipeline's task, typically Docker or Buildah. It is tempting because mesh tooling is often installed alongside CI in the same cluster, but no mesh component compiles or packages container images.

  • ✗

    Replacing the need for a container runtime

    Why it's wrong here

    A service mesh manages east-west traffic between workloads through sidecar proxies; it still relies on the container runtime to start and run those containers. It is tempting because sidecars are containers themselves, so the mesh appears to provide runtime capability, but scheduling and execution remain the runtime's job.

  • ✓

    Traffic management capabilities such as canary deployments

    Why this is correct

    A service mesh provides layer 7 traffic management through sidecar proxies, enabling fine-grained routing rules such as weighted splits between service versions. This directly satisfies the canary deployment requirement, allowing a small percentage of traffic to reach a new version before full rollout, without changing application code.

About these practice questions

This KCNA question is part of Courseiva's 930-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This KCNA practice question is part of Courseiva's free CNCF certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the KCNA exam.