Courseiva

EX200 · topic practice

Manage containers practice questions

The Manage containers domain of EX200 covers running and inspecting OCI containers with Podman on RHEL, including rootless operation, bind mounts, SELinux labeling, and persistent storage. Questions are task-oriented: you read command output or a scenario, then choose the podman command, flag, or conclusion that satisfies the stated requirement.

Courseiva uses original exam-style practice questions designed for learning and revision. The goal is to understand the concepts, recognise exam patterns, and improve through explanations — not memorise copied exam dumps.

Editorial oversight:Johnson Ajibi· MSc IT Security, IEEE Senior Member
20 questionsDomain: Manage containers

What the exam tests

What to know about Manage containers

Be able to run, inspect, and troubleshoot Podman containers on RHEL, especially rootless containers with bind mounts. The single most important thing: get SELinux labeling and host directory ownership right so the container can actually read and write mounted storage.

Running rootless containers with podman run --user and mapping host UID/GID ownership

Bind-mounting host directories with -v and applying :Z or :z SELinux relabeling

Inspecting container network and storage config via podman inspect output fields

Managing persistent container data with named volumes and podman volume commands

Watch out for

Common Manage containers exam traps

  • ▸Assuming a bind-mounted directory is writable without matching host ownership or SELinux labels, so the container fails despite correct --user settings.
  • ▸Confusing :Z (private relabel) with :z (shared relabel), which breaks access when multiple containers use the same host path.
  • ▸Treating podman inspect fields as runtime guarantees; misreading network or mount output and drawing wrong conclusions about the container.

Practice set

Manage containers questions

20 questions · select your answer, then reveal the explanation

A developer reports that a container running a custom web application is failing to start on a Red Hat Enterprise Linux 8 host. The container image is built from a Dockerfile that uses 'EXPOSE 8080'. The host firewall is enabled. Which action is most likely required to allow external access to the application?

Refer to the exhibit. A user attempts to start a new container named 'web3' but receives an error. The user wants to reuse the name 'web3'. Which command should be run first to resolve the issue?

Network Topology
$ podman inspect web1format '{{.State.ExitCode}}'$ podman run -dname web3 -p 8080:80env-file container.env registry.access.redhat.com/ubi8/nginx-118Refer to the exhibit.$ podman ps -a$ cat container.envNGINX_PORT=8080

An administrator is tasked with deploying a containerized application on a Red Hat Enterprise Linux 8 server that is part of a high-security environment. The application must run as a non-root user inside the container. The container image is based on Red Hat Universal Base Image (UBI) and exposes port 443 for HTTPS. The administrator needs to ensure that the container can be restarted automatically if it crashes and that the application logs are persisted on the host in /var/log/app. The application requires a configuration file that is generated dynamically at startup and must be accessible to the container. The administrator has created a systemd service file for the container but wants to use Podman's built-in features to manage the container. Which approach meets all requirements?

A containerized application requires persistent storage and must be able to run with SELinux enforcing. The administrator runs a container with the volume mount: `podman run -v /host/data:/container/data:Z myimage`. Which TWO statements are true about this configuration?

An administrator needs to list all container images stored locally, including intermediate layers. Which command should be used?

An administrator needs to pass environment variables from the host to a container without exposing them in the command line. Which method should be used?

Based on the exhibit, what is the most likely cause of the error?

Network Topology
$ podman run -dname web registry.access.redhat.com/ubi8/httpdRefer to the exhibit.

A container running a web server exits immediately after starting. The administrator runs 'podman logs <container>' and sees 'Error: listen tcp :80: bind: address already in use'. What is the most likely cause and solution?

An administrator creates a pod named 'webpod' containing two containers: 'nginx' and 'logger'. The goal is for the nginx container to access the logger container via hostname 'logger'. Which network configuration is required?

Which TWO commands show detailed information about a container image, including layers and configuration? (Choose TWO.)

A DevOps engineer needs to run a container that stores persistent data in a location managed by Podman, ensuring the data survives container removal and can be easily backed up. Which approach should the engineer use?

Refer to the exhibit. A developer created this Containerfile to build a custom web server image. The build fails. Which TWO changes are necessary to make the Containerfile correct and allow the build to succeed?

Exhibit

FROM registry.access.redhat.com/ubi8/ubi
RUN yum install -y httpd
COPY index.html /var/www/html/
CMD ["/usr/sbin/httpd", "-D", "FOREGROUND"]
Question 13mediummultiple choice
Read the full Manage containers explanation →

An administrator creates a Podman pod named 'webpod' and adds two containers: 'webserver' and 'database'. Both containers are added using 'podman pod create --name webpod' followed by 'podman run --pod webpod --name webserver nginx' and 'podman run --pod webpod --name database postgres'. The administrator wants the webserver container to be able to reach the database container by the hostname 'database'. However, when the administrator executes 'podman exec webserver ping database', the ping fails with 'ping: database: Name or service not known'. Which of the following is the most likely cause and correct solution?

A production server running Red Hat Enterprise Linux 9 hosts multiple Podman containers. The system administrator wants to ensure that a critical container named 'payments' automatically starts when the host boots, even if no user is logged in. The administrator has already created a systemd service file at /etc/systemd/system/container-payments.service. The service file contains: [Unit] Description=Payments container [Service] ExecStart=/usr/bin/podman start -a payments ExecStop=/usr/bin/podman stop payments Type=forking Restart=always [Install] WantedBy=multi-user.target. After enabling the service with 'systemctl enable container-payments.service' and rebooting, the container does not start. The administrator checks 'systemctl status container-payments.service' and sees that the service is inactive (dead). What is the most likely reason and the correct fix?

Question 15mediummultiple choice
Read the full Manage containers explanation →

An administrator attempts to start a container with `podman run -d --name web -p 80:80 nginx`. The container fails to start and the logs show 'Error: cannot listen on port 80'. Which of the following is the most likely cause?

Question 16mediummultiple choice
Read the full Manage containers explanation →

An administrator has a Podman pod named 'apppod' that contains a single container named 'web'. The pod was started with `podman pod start apppod`. A configuration change requires the container to be removed and recreated with an additional port mapping, but the pod's shared network namespace and its assigned IP address must remain unchanged. Which sequence of commands should the administrator use?

An administrator needs to ensure that a container always runs with a specific SELinux context for security reasons. The container uses a volume mount from the host. Which command should be used to start the container?

A system administrator wants to run a container that uses the rootless mode available in Podman. Which requirement must be met for rootless containers to work correctly?

A container running a database service needs to persist data across restarts. The administrator decides to use a named volume. Which command creates a named volume and mounts it correctly?

Which TWO statements are true regarding container images and containers in Podman?

Free account

Track your progress over time

Create a free account to save your results and see which topics improve across sessions.

Focused Manage containers sessions

Start a Manage containers only practice session

Every question in these sessions is drawn from the Manage containers domain — nothing else.

Related practice questions

Related EX200 topic practice pages

Move into related areas when this topic feels solid.

Frequently asked questions

What does the EX200 exam test about Manage containers?
Be able to run, inspect, and troubleshoot Podman containers on RHEL, especially rootless containers with bind mounts. The single most important thing: get SELinux labeling and host directory ownership right so the container can actually read and write mounted storage.
How should I use these practice questions?
Select your answer before revealing the explanation. Then read why each option is right or wrong — this active recall approach builds retention far faster than re-reading notes.
Can I practise just Manage containers questions in a focused session?
Yes — the session launcher on this page draws every question from the Manage containers domain. Use a 10-question session first to gauge your baseline, then move to 20 or 30 once the weak spots are clear.
Where can I practise other EX200 topics?
Use the topic links above to move to related areas, or go back to the EX200 question bank to see all topics.
Are these real exam questions or dumps?
These are original practice questions written to test the same concepts the EX200 exam covers. They are not copied from any real exam or dump site.