Q: 6
[Security Concepts]
Which security product enables administrators to deploy Kubernetes clusters in air-gapped sites
without needing Internet access?
Options
Discussion
Nah, not B here. C is the one purpose-built for air-gapped Kubernetes, while B is a distractor that trips people up by name similarity. Unless something changed recently, it's definitely C.
C , but Cisco needs to stop messing with these product names. Seen similar in exam reports and only Cisco Container Platform is meant for air-gapped Kubernetes. The others don’t fit offline use.
Option C I don't think it's D, that's a common trap on site-to-site VPNs but the debug would show nothing if traffic wasn't interesting. Here it's showing failed ISAKMP exchange, which points to an auth key mismatch.
C imo. Debug output for ISAKMP failing after retransmits usually points to an authentication key mismatch. If the keys aren't the same on both routers, phase 1 can't finish. Seen it in labs and mentioned in the official guide as a main cause.
C . Cisco Container Platform is the only option designed for air-gapped Kubernetes deployments, pretty sure the other products either need cloud or aren't specific to k8s. Let me know if I'm missing something here.
C imo, that's the one built for air-gapped clusters. Not totally sure so let me know if I'm off.
C
Probably C here. Had something like this in a mock and Cisco Container Platform is the one meant for air-gapped Kubernetes deployments. The others don’t have that offline/air-gap install capability. Pretty sure on this but open if anyone has seen it differently.
Not sure here, why not B? "Container Controller" sounds right for managing the cluster offline.
C tbh, seen that in official guide and exam practice stuff lately.
Be respectful. No spam.
Question 6 of 35