Recover orders and audit datasets through static claims
A hands-on CKA lab. You produce the real artefact and 10 automated checks verify it behaves the way the exam expects.
- Certification
- CKA
- Format
- Artifact workspace
- Difficulty
- medium
- Estimated time
- 40 min
- Automated checks
- 10
The brief
Repair storage.yaml with v1 static CSI PVs, PVCs and one apps/v1 Deployment. Preserve ledger/reader, one replica, container reader and image ledger-reader:1. All supplied assets use driver store.example, ext4, Filesystem and support ReadWriteOnce plus ReadOnlyMany: handle orders-data contains current orders and has 12Gi; audit-data contains audit records and has 8Gi; stale-data contains obsolete orders and has 16Gi. Declare only supplied handles and truthful capacity/capabilities; never represent one physical handle twice. Every declared PV must retain Retain reclaim policy. PV object names/labels may change; dataset identity follows the CSI handle. Preserve exactly ledger/orders and ledger/audit PVCs. Orders needs at least 10Gi, ReadWriteOnce, Filesystem; audit needs at least 4Gi, ReadOnlyMany, Filesystem. The default StorageClass is fast; these static assets may use a consistent chosen class or explicit no-class string. There is no dynamic provisioner. Every claim needs a compatible PV and both claims must bind simultaneously to different PVs. Mount orders at /data/orders with current orders readable and writable; mount audit at /data/audit with audit records readable and effectively read-only. ReadOnlyMany alone does not enforce a read-only container mount. Check mount, PVC-source and CSI readOnly flags. Selectors, explicit PVC volumeName and PV claimRef reservations are supported. Class, capacity, accessModes and volumeMode must still match. Automatic binding uses the PVC label selector; explicit volumeName ignores that selector. This simulated recovery guarantee checks every feasible exclusive assignment, rather than choosing the live binder's tie-break. A compatible decoy is unsafe unless binding identifies the intended handle. Inspect candidates, assignment counts and dataset witnesses; repair partial states without Reset. No CSI I/O, dynamic provisioning or node topology runs.
What the checks verify
Your work is graded on 10 independent properties, not on matching one reference answer.
- Supported static CSI PV/PVC and Deployment API fields have valid names, typed flags and quantities.
- The original namespace/name, image, container identity and one replica are preserved.
- Each declared physical handle exists once and capacity, driver, filesystem and capabilities are truthful.
- Required claim identities, minimum requests and modes remain valid and each has a compatible static PV.
- Both claims have a simultaneous assignment to different compatible PV objects.
- Every represented supplied asset keeps Retain reclaim policy.
- Every feasible binding mounts current orders at the orders claim's required path.
- The current orders mount permits writes through all modeled read-only layers.
- Every feasible binding mounts audit records at the audit claim's required path.
- Every feasible audit mount has an effective read-only restriction.
Where this sits in the CKA blueprint
- Domain
- Storage
- Objective
- Persistent Volumes and Claims
- Skill
- Claim Matching and Consumption
Part of CKA preparation
Labs are written by ExamNova to teach the decisions the exam tests. They are not reproductions of vendor lab content.