120 minutes, about 17 tasks
The problem. Candidates who know the material still fail by spending 25 minutes on one stubborn task. A budget per task and a rule for when to skip keep the easy points safe.
What you need to know already: the exam format and weights (19.1, 19.2).
Seven minutes a task on average. Nobody spends seven on each: contexts-into-a-file takes two, an HPA three, a NetworkPolicy eight, a worker upgrade ten or more. The exam is won by spending the time where the points are and not getting stuck.
Weights tell you what a task is worth
Each task shows its weight (e.g. "weight 4%" or "7%"). The long tasks are usually worth more, but not proportionally: an upgrade worth 7% and taking 15 minutes is a worse deal than three 4% tasks taking 3 minutes each. Points per minute is the metric.
| task | typical budget | typical weight |
|---|---|---|
| contexts / cert date / join command into files | 2-3 min | 2-4% |
| RBAC role + binding + can-i | 4-5 min | 4-6% |
| expose, HPA, set resources, scale | 2-4 min | 2-4% |
| broken Deployment / Service | 4-8 min | 4-8% |
| NetworkPolicy | 6-8 min | 5-7% |
| PV + PVC + pod | 6-8 min | 5-7% |
| etcd backup (+ restore) | 5-10 min | 6-8% |
| NotReady node / broken control plane | 6-10 min | 6-10% |
| kubeadm upgrade | 10-15 min | 7-10% |
The drills in this chapter carry exactly these budgets (the header says "budget N min"). Your target is to finish every drill round inside its budget.
The three passes
Pass 1 (about 60-70 minutes). Go through the tasks in order. For each: read it fully, run the context line, and decide in ten seconds whether it is a quick one. Quick ones: do them, verify, move on. Long or unclear ones: flag them (the exam UI has a flag) and skip. A task that needs the cluster fixed first (a broken control plane) is the exception - fix it now, other tasks may depend on it.
Pass 2 (about 40 minutes). The flagged ones, heaviest first.
Pass 3 (whatever is left). Re-read every task's wording against what you did: names, namespace, file paths, exact values, "only", "do not change X". This pass finds more points than any other ten minutes.
The eight-minute rule
When a task has taken its budget and you are not converging (the third wrong guess, the error you do not understand), write down in the exam notepad where you are, flag it, and move on. The next task is worth the same points and you have not lost this one - you come back with fresh eyes in pass 2. The classic failure mode is 25 minutes on one broken node and five unread tasks at the end.
Partial credit is real
A task is several checks. "Create SA, Role, RoleBinding" is probably three or four checks. If you are out of time, the SA and the Role still count. So in pass 1, for a long task you are skipping, it is often worth doing the parts that take 30 seconds (create the namespace-scoped objects, write the file with what you know) before you flag it.
What does NOT earn partial credit: the right objects in the wrong namespace or on the wrong cluster. That is a zero, however good the YAML.
Do not wait for things
Rollouts, pods starting, PVCs binding, nodes going Ready take 10-60 seconds. Do not stare at them:
# an illustration: exam-style task state (the mock tasks build it)
k set image deploy/api api=nginx:1.28 -n shop
deployment.apps/api image updated
k rollout status deploy/api -n shop --timeout=60s
Waiting for deployment "api" rollout to finish: 1 out of 3 new replicas have been updated...
If it is going to take a while, move to the next task and check this one in pass 3. What you must not do is leave a change you never verified, e.g. a Deployment that is actually in ImagePullBackOff because the tag in the task was nginx:1.28 and you typed nginx:1.82.
Where time really goes
From people's post-exam reports and the mock debriefs, the time sinks are always the same:
- Typing names. Copy them from the task.
- YAML indentation. Tabs, or a block pasted with auto-indent. Fix the editor once (the speed kit).
- Looking for a docs page. Know the page names (the docs lesson). Search the docs, do not browse.
- Reading the whole describe output. The last Events and Last State are all you need.
- Waiting. Move on, come back.
- Debugging your own typo.
k getbeforek describe:Error from server (NotFound)in 1 second beats reading a describe of the wrong thing.
Mock exams in this chapter
The three mock missions give you 80, 85 and 120 minutes. attempts records your time per attempt. The number to reach before booking: mock 3 under 100 minutes with every objective, twice.