GitOps Principles & Practice›Level 2 · Cheat sheet & self-check

Level 2 — Running it · wrap-up

Cheat sheet & self-check

12 questions across 4 lessons. Each answer links back to the lesson it came from.

Pick an answer to see if you got it, and why.

  1. Q1. What does the External Secrets Operator store in Git?

    Show answer

    B. ExternalSecret objects are safe to commit. The operator fetches values with its own identity and creates Kubernetes Secrets.

    From lesson 04 · Secrets in GitOps
  2. Q2. What's a key limitation of Sealed Secrets?

    Show answer

    B. Simple and self-contained, but tied to the controller's key pair. Back up the sealing keys.

    From lesson 04 · Secrets in GitOps
  3. Q3. Rotating a database password is easiest with which approach?

    Show answer

    B. With a reference-based approach nothing in Git changes when the value rotates.

    From lesson 04 · Secrets in GitOps
  4. Q4. What is drift in GitOps?

    Show answer

    B. Drift is detected by comparing live objects with rendered Git manifests.

    From lesson 05 · Drift, rollback and recovery
  5. Q5. Why must pruning be enabled with care?

    Show answer

    B. Prune keeps the cluster clean, but protect stateful objects (annotations to prevent pruning/deletion) and review deletions in PRs.

    From lesson 05 · Drift, rollback and recovery
  6. Q6. A field keeps showing OutOfSync because an HPA changes replicas. Fix?

    Show answer

    B. Two controllers must not own the same field. Let the HPA own replicas.

    From lesson 05 · Drift, rollback and recovery
  7. Q7. What's the core structural difference between Flux and Argo CD?

    Show answer

    B. Both are pull-based GitOps agents. Flux feels like Kubernetes-native building blocks; Argo CD like a delivery product with a rich UI.

    From lesson 06 · Flux and Argo CD
  8. Q8. Which object tells Flux where to fetch desired state from?

    Show answer

    B. Sources fetch artifacts; Kustomization and HelmRelease objects apply them.

    From lesson 06 · Flux and Argo CD
  9. Q9. A team wants a visual view of every app's sync and health, SSO and per-team access for developers. Which fits more naturally?

    Show answer

    B. Argo CD's UI, SSO and project-based RBAC are its main strengths. Flux can get a UI through third-party tools.

    From lesson 06 · Flux and Argo CD
  10. Q10. What makes a delivery 'progressive'?

    Show answer

    B. Small exposure first, evidence at each step, automatic decisions: a bad release hurts few users briefly.

    From lesson 07 · Progressive delivery
  11. Q11. How does GitOps fit with progressive delivery?

    Show answer

    B. The desired end state and the rollout strategy are in Git; the controller handles the time-based journey there.

    From lesson 07 · Progressive delivery
  12. Q12. What should the analysis measure?

    Show answer

    B. Promote on the same symptoms you page on (SLO signals), not on resource usage.

    From lesson 07 · Progressive delivery