Interview › Kubernetes, Docker, Helm & Podman
What is a ConfigMap, and how do you consume it in a Pod?
Kubernetes, Docker, Helm & Podman · Basic level
Answer
A ConfigMap stores non-sensitive configuration such as files, environment variables, command arguments, or app settings. A Pod can consume it as env vars, envFrom, command arguments, or mounted files.
Technical explanation
ConfigMaps can be mounted as files or injected into env vars; mounted files can update, but env vars require Pod restart to change.
Large or frequently changing config may need a config reload pattern rather than blind Pod restarts.
Configuration, secrets, namespaces, quotas, and defaults define operational boundaries for teams and environments.
RBAC and admission controls determine who can read sensitive data and who can create risky workloads.
Production clusters should treat namespace setup as a platform contract created through IaC or GitOps.
Hands-on example
1. Create a sandbox namespace and implement this exercise with declarative YAML: mount a ConfigMap as env vars and as a file.
2. Test both success and failure paths: allowed read, denied read, quota rejection, default limit application, or config reload behavior.
3. Inspect objects with kubectl describe, kubectl auth can-i, and kubectl get events to prove the control works.
4. Turn the pattern into a reusable namespace bootstrap manifest for real teams.
Check how well your resume matches the role with our free resume checker— match score, ATS check, and the skills you're missing.
More Kubernetes, Docker, Helm & Podman interview questions
- What is Kubernetes, and what problem does it solve over running containers manually?
- Explain the Kubernetes control plane components (API server, etcd, scheduler, controller manager).
- What runs on a worker node (kubelet, kube-proxy, container runtime)?
- What is a Pod, and why does Kubernetes schedule Pods rather than containers?
- What is the difference between a Pod, a ReplicaSet, and a Deployment?
- How does a Deployment perform a rolling update, and how do maxSurge and maxUnavailable work?
- How do you roll back a Deployment, and how does Kubernetes track revisions?
- What is a Service, and what are the types (ClusterIP, NodePort, LoadBalancer, ExternalName)?