>DevOps Interview KB

Kubernetes Interview Questions — All Categories

169 questions tagged with Kubernetes as a technology, across every category it appears in

How would you clean up old, hash-named Argo CD migration Jobs so they don't accumulate indefinitely in the cluster?

IntermediateArgo CDKubernetes6 min

What would go wrong if you used content-hash naming for an Argo CD Job that's meant to run on every sync instead?

IntermediateArgo CDKubernetes6 min

How do you control the order Argo CD applies resources within a single Application, e.g. making sure a database migration Job completes before the Deployment that depends on it rolls out?

AdvancedArgo CDKubernetes8 min

How would you handle a migration that needs to run exactly once across an entire fleet of clusters, not just once per cluster?

ExpertArgo CDKubernetes8 min

How would you handle an Argo CD migration Job that should run on every sync versus one that should only run when the migration itself actually changed?

AdvancedArgo CDKubernetes7 min

If an Argo CD PreSync hook Job fails, does Argo CD retry it automatically? How would you make that retry behavior explicit instead of relying on defaults?

IntermediateArgo CDKubernetes6 min

What happens to a PreSync hook Job that succeeded on a previous sync, if the overall sync is retried after a later hook fails?

AdvancedArgo CDKubernetes6 min

How does the workload-identity comparison extend to EKS, where pod identity is yet another mechanism (IRSA or Pod Identity)?

ExpertAWSEKSKubernetes8 min

How does the Kubernetes cluster autoscaler decide which node pool to scale when multiple pools could satisfy a pending pod?

AdvancedAzureKubernetesAKS7 min

Your AKS cluster is under CPU pressure and pods are stuck Pending, but the cluster autoscaler isn't adding nodes. How would you troubleshoot it?

AdvancedAzureKubernetesAKS10 min

Should a new AKS cluster use native Kubernetes RBAC or Azure RBAC for Kubernetes Authorization to control kubectl-level access, and what does the Azure option actually change?

IntermediateAzureKubernetesAKS6 min

You're standing up a new AKS cluster and need to choose a network plugin: Azure CNI or kubenet. What's the actual trade-off, and why can this decision be hard to reverse later?

IntermediateAzureKubernetesAKS7 min

How would Karpenter-style node provisioning change the troubleshooting process compared to the traditional Kubernetes cluster autoscaler?

AdvancedKubernetes7 min

A new LoadBalancer-type Service in AKS has been stuck in 'Pending' with no external IP for twenty minutes. How do you actually diagnose this in Azure specifically?

IntermediateAzureKubernetesAKS6 min

A team converted their AKS cluster to a private cluster for security reasons. The next day, several engineers and a CI/CD pipeline can no longer run kubectl commands at all. How do you diagnose this?

AdvancedAzureKubernetesAKS7 min

During a live incident, how would you distinguish a genuinely slow autoscaler scale-up from one that's actually stuck and won't complete on its own?

IntermediateAzureKubernetesAKS7 min

How would you let a pod in AKS call a Key Vault or Storage API using its own Azure identity, without mounting any credential file or secret into the pod at all?

AdvancedAzureKubernetesAKS7 min

A team wants zero-downtime deploys with fast rollback for a high-traffic payments API. Would you recommend blue-green or canary deployment, and why?

AdvancedCI/CDKubernetes10 min

How would you design the metrics and thresholds that gate automatic canary promotion versus automatic rollback?

AdvancedKubernetes8 min

When does autoscaling actually save money compared to a well-chosen fixed capacity, and when can it end up costing more?

IntermediateAWSKubernetes6 min

Kubernetes dropped direct Docker support years ago in favor of containerd/CRI-O. What's the actual relationship between Docker, containerd, and CRI-O, and why did this change happen?

IntermediateContainersKubernetes7 min

How would container-to-container networking troubleshooting change once these containers move to Kubernetes, where networking works differently from plain Docker?

IntermediateDockerKubernetes7 min

How does Argo CD's ignoreDifferences configuration interact with its automated self-healing (selfHeal) feature?

AdvancedArgo CDKubernetes6 min

A mutating webhook injects configuration into your resources. When should that injected config actually be tracked in Git instead of ignored via ignoreDifferences?

AdvancedArgo CDKubernetes7 min