Level 2 — Running it · wrap-up
Cheat sheet & self-check
12 questions across 4 lessons. Each answer links back to the lesson it came from.
Pick an answer to see if you got it, and why.
Q1. What does the External Secrets Operator store in Git?
Show answer
B. ExternalSecret objects are safe to commit. The operator fetches values with its own identity and creates Kubernetes Secrets.
From lesson 04 · Secrets in GitOpsQ2. What's a key limitation of Sealed Secrets?
Show answer
B. Simple and self-contained, but tied to the controller's key pair. Back up the sealing keys.
From lesson 04 · Secrets in GitOpsQ3. Rotating a database password is easiest with which approach?
Show answer
B. With a reference-based approach nothing in Git changes when the value rotates.
From lesson 04 · Secrets in GitOpsQ4. What is drift in GitOps?
Show answer
B. Drift is detected by comparing live objects with rendered Git manifests.
From lesson 05 · Drift, rollback and recoveryQ5. Why must pruning be enabled with care?
Show answer
B. Prune keeps the cluster clean, but protect stateful objects (annotations to prevent pruning/deletion) and review deletions in PRs.
From lesson 05 · Drift, rollback and recoveryQ6. A field keeps showing OutOfSync because an HPA changes replicas. Fix?
Show answer
B. Two controllers must not own the same field. Let the HPA own replicas.
From lesson 05 · Drift, rollback and recoveryQ7. What's the core structural difference between Flux and Argo CD?
Show answer
B. Both are pull-based GitOps agents. Flux feels like Kubernetes-native building blocks; Argo CD like a delivery product with a rich UI.
From lesson 06 · Flux and Argo CDQ8. Which object tells Flux where to fetch desired state from?
Show answer
B. Sources fetch artifacts; Kustomization and HelmRelease objects apply them.
From lesson 06 · Flux and Argo CDQ9. A team wants a visual view of every app's sync and health, SSO and per-team access for developers. Which fits more naturally?
Show answer
B. Argo CD's UI, SSO and project-based RBAC are its main strengths. Flux can get a UI through third-party tools.
From lesson 06 · Flux and Argo CDQ10. What makes a delivery 'progressive'?
Show answer
B. Small exposure first, evidence at each step, automatic decisions: a bad release hurts few users briefly.
From lesson 07 · Progressive deliveryQ11. How does GitOps fit with progressive delivery?
Show answer
B. The desired end state and the rollout strategy are in Git; the controller handles the time-based journey there.
From lesson 07 · Progressive deliveryQ12. What should the analysis measure?
Show answer
B. Promote on the same symptoms you page on (SLO signals), not on resource usage.
From lesson 07 · Progressive delivery