Exam Prep · CNPA · associate · closed-book reality

No Docs Map — the CNPA Is Closed-Book

This page exists to correct one assumption before it costs you an exam attempt. If you have read the CNPE's docs map, or sat any performance-based Linux Foundation exam, you already carry a mental model: there's an allowlist somewhere, and if I learn its shape I'll be fine on the day. Drop that model entirely before you book the CNPA. There is no allowlist to learn, because there is nothing on it. The CNPA is fully closed-book — no kubernetes.io, no project docs, no notes, no man pages, nothing installed anywhere near you. This page states that plainly, contrasts it directly against the CNPE so the assumption doesn't quietly cross over, describes the general shape of the on-screen experience that follows from "closed-book, remote-proctored, multiple-choice," and explains why that single fact should reshape how you study from week one.

☺ Explain it like I'm 10

Imagine two tests. In the first, you're allowed to bring exactly one book — a big reference book — but nothing else. In the second, you're allowed to bring nothing at all, not even that one book. The CNPE is the first test. The CNPA is the second test. No book, no notes, no looking anything up — just what's already in your head when you sit down. That changes everything about how you'd practise for it: you don't practise "finding the answer fast," you practise "already knowing the answer."

🐢🐰Your hosts for this topic: Timmy the Turtle & Remy the Rabbit — Timmy reads the rulebook so a policy never surprises you, and Remy lives for quick recall: flip it, know it, or send it back into the pile. Between them: know the rule, then know the material cold enough that the rule stops mattering.

The fact, stated plainly and cited

☺ Like you're 10: No book. Not "a small book" — no book, no website, no notes, nothing.

Per the Linux Foundation's official Resources Allowed page: "Candidates are NOT PERMITTED to access tools, resources or external sites when taking the Linux Foundation Multiple Choice … Exams." The CNPA is a Linux Foundation Multiple Choice Exam. That sentence is the entire allowlist, and what it allows is nothing. Not kubernetes.io. Not a PDF you saved locally. Not a sticky note. Not a second monitor with your notes app open — that's also a conduct violation under the general proctoring rules, quite apart from the resources rule. There is no Quick Reference box, because there is no task pane to attach one to; a multiple-choice question either gives you everything you need in its stem, or it doesn't, and either way nothing external is coming to help.

⚠ The one exception on the whole Linux Foundation multiple-choice roster is timing, not resources

The Multiple Choice Exam FAQ names the CNPA as the single exception to the 90-minute default other multiple-choice exams get — CNPA candidates get 120 minutes, and the pass mark for multiple-choice exams generally is 75% or above. That exception is about the clock. It is not an exception to the resources rule. Every Linux Foundation multiple-choice exam, CNPA included, is closed-book without qualification. Do not read "CNPA gets special treatment on timing" as "CNPA gets special treatment on resources" — they are two unrelated facts about the same exam, and conflating them is exactly how the false assumption forms.

The CNPA's own official page does not publish a question count, and no reliable, current, official figure exists to state here — a web search once surfaced a specific number for this exam, but that figure does not appear on the current training.linuxfoundation.org CNPA page, so this course does not repeat it and neither should you. What is published, and worth re-reading before you book, is the 120-minute duration and the 75% pass mark above — confirm both again on the official page in the week before your exam, because Linux Foundation exam terms are revised without much ceremony.

The CNPE contrast — so the assumption doesn't cross over

☺ Like you're 10: The CNPE test lets you bring one book. This test lets you bring nothing. Don't get the two tests mixed up in your head.

If you've read the CNPE docs map, you already know the CNPE permits a narrow but real set of resources: kubernetes.io/docs, kubernetes.io/blog, whatever task-specific pages the exam's own Quick Reference box links, and documentation installed locally on the exam machine. That is a genuine, usable allowlist — narrower than most candidates expect, but not empty. The CNPA's allowlist has one fewer item than that: all of them, simultaneously, are gone. Put the two side by side and the size of the gap should register properly, because "narrower" and "nonexistent" are different orders of problem.

ResourceCNPE (performance-based)CNPA (knowledge-based)
kubernetes.io/docs, incl. translationsPermitted — your one real general referenceNot permitted
kubernetes.io/blogPermitted — useful for newer APIsNot permitted
Task-specific links in a Quick Reference boxPermitted — often the only route to non-Kubernetes-core docsNo such box exists — nothing is linked from a question
Locally installed docs (man, --help, /usr/share)PermittedNot applicable — there is no terminal, no local machine to consult
kubectl explain against a live clusterAvailable — the most under-used CNPE fallbackNot applicable — there is no cluster
Argo CD, Flux, Tekton, Crossplane, Prometheus, OpenTelemetry, Kyverno, Istio, Helm doc sitesNot permitted (in scope, but no lookup)Not permitted (same, but for everything, including Kubernetes core)
Personal notes, printed material, a second screenNot permittedNot permitted
Net effectA narrow but real safety net for roughly half the exam's territoryNo net anywhere. Every question is answered from memory alone

Notice what this means concretely if you're moving from CNPE prep into CNPA prep, or vice versa. On the CNPE, "I don't remember the exact field name for a Kyverno rule" is recoverable — you read the Quick Reference box, or you fall back to kubectl explain on an installed CRD. On the CNPA, that same flicker of doubt about a term or a distinction is not recoverable at all. There is no box to open, no terminal to query, no cluster to poke at for a hint. Whatever is fuzzy in your head on exam day stays fuzzy for that question, permanently, for the two minutes you have to answer it.

◆ Key idea

Don't let "I already know the CNPE's allowlist" become "so I roughly know the CNPA's too." The CNPE allowlist is a real, if narrow, tool you can rehearse using. The CNPA allowlist is not a smaller version of that tool — it's the absence of the tool. Study for the CNPA as if a browser and a terminal will never exist for you again, because during the exam they won't.

What "closed-book, remote-proctored, multiple-choice" looks like on screen

☺ Like you're 10: One question at a time, a little flag button if you're unsure, and a list at the end showing everything you haven't finished — like a quiz app, not a computer terminal.

The following describes the general shape of a Linux Foundation multiple-choice exam interface, as candidates across the associate-tier catalogue (KCNA, KCSA, CGOA, and the CNPA among them) have reported it. Exam interfaces get revised by the platform provider without much notice, so treat this as "roughly what to expect," not a pixel-accurate walkthrough — confirm your own exam's exact UI on the day, during the tutorial screen the proctoring platform shows before your timer starts.

ElementWhat it generally does
One question at a timeA single question and its answer options fill the screen — no scrolling list of fifty questions, no way to see what's ahead
Next / PreviousMove forward or backward through the question set; back-navigation is typically available, unlike a performance exam's task-by-task grading
Flag for reviewMark a question you're unsure of without committing to leave it blank — you still pick an answer, then flag it, then move on
A review screen before submitBefore final submission, a summary list shows every question's state — answered, unanswered, flagged — so you can jump back to specific ones with the time you have left
A countdown timerVisible throughout; for the CNPA this counts down from 120 minutes with no scheduled breaks
No notepad, no scratch spaceUnlike the CNPE's in-exam notepad, there is generally nothing to write in — you either hold the working in your head or you don't

The practical consequence: your two real tools during the exam are flag-and-move and the final review pass. Neither tool helps you know something you don't know — they only help you spend the two hours efficiently across the questions you're capable of answering. That's a meaningfully smaller toolkit than the CNPE gives you, and it's precisely why the study strategy below has to be different in kind, not just in degree.

🦆 Dot's-eye view

"I sat CNPA expecting something like the CKAD interface with a sidebar of tasks. It's nothing like that — it's much closer to an online driving-theory test. One question, four options, a flag icon, next. No terminal ever appears. The first time that fully landed for me was around question fifteen, when I hit one I genuinely wasn't sure about and reached, out of habit, for a browser tab that didn't exist."

Why this changes study strategy fundamentally

☺ Like you're 10: For this test, "I could probably find it if I needed to" isn't good enough. You have to already know it, instantly, every time.

Three separate but related shifts follow directly from closed-book, and each one should show up in how you actually spend study hours, not just in how you feel about the exam.

Recognition must be instant and automatic

On an open-book exam, "I recognise that term, I could look up the exact definition" is a survivable state — you look it up, you confirm, you move on. On the CNPA, that same half-recognition is the failure state, because there is no next step available. A term you can place roughly but not define precisely, a distinction you can gesture at but not state crisply (self-heal versus prune, a golden path versus a mandate, RED versus USE, DORA's four metrics by name) has to become instant before exam day, not "good enough with a nudge." Drill with retrieval, not re-reading: close the page, say the definition out loud in one sentence, and only then check it. Know It Cold — the CNPA glossary you must have instant and the CNPA concept reference exist specifically to turn "roughly familiar" into "instant," and the flashcards are built for exactly this kind of drilling.

There is no partial-credit safety net of a live cluster to poke at

The CNPE's most forgiving property is that you're graded on resulting state, not on how you got there — and along the way, a live cluster is sitting in front of you the whole time, answering questions you didn't know to ask. Run kubectl get, and the cluster tells you whether your Rollout actually rolled out. Try kubectl explain, and the schema tells you the field name you'd half-forgotten. The CNPA offers none of that. There is no partial credit for "I understood the general shape of the idea" on a single-best-answer question — you pick one option, and it's either right or it isn't. There's no cluster to test a hunch against, no --dry-run to see what would happen. Whatever you bring into the question is the entirety of what you get to work with.

No lookup to lean on if a term is fuzzy

This is the same point as the first shift, stated as a study-planning consequence rather than an exam-day one: because there is no lookup at any point, every fuzzy term is a study debt you will pay for on exam day, at a moment you don't get to choose. The discipline this demands is different from CNPE prep, where "I'd need to check the exact syntax" is an acceptable gap to leave until the week before. For the CNPA, build a running list of every concept you can only gesture at — not name confidently, not define crisply — and treat that list as the actual syllabus. The triage page is built around exactly that idea: converting vague unease into a ranked list of what to drill next, because "closed-book" turns fuzzy recall from a minor inconvenience into the single biggest risk in your preparation.

◆ Key idea

CNPE preparation optimises for retrieval speed against a permitted, external reference. CNPA preparation optimises for retrieval completeness against nothing but your own memory. Studying for the CNPA with a "I'll look it up if I forget" mindset isn't a slightly worse version of the right strategy — it's preparation for a different exam that happens to share a name.

Remote-proctoring logistics — the CNPA-specific slice

☺ Like you're 10: Someone watches you through your webcam, checks your ID, and looks around your room before you start — same as the harder test, just with no terminal and no browser to argue about.

The identity, room-scan and application-window rules are shared across the whole Linux Foundation catalogue and are covered in full on the exam-day and proctoring page — read that page for the complete treatment of ID requirements, the name-match rule, the room scan, check-in timing, and what happens if the proctor interrupts you. What's worth restating here, scoped specifically to the CNPA, is how those shared rules land differently when there's no allowlist to argue about at the edges.

⚠ Don't let a shared rulebook imply shared logistics

Because the CNPA and CNPE share almost all of their proctoring mechanics, it's tempting to assume they share the substance of the exam too. They don't. Read the exam-day page for the procedure — ID, room, check-in, breaks, disconnects — and read this page and the CNPA hub for what's actually being tested once the proctor releases you into the exam. The rulebook is one thing; the content behind the glass is a completely different exam.

ID · room scan shared by both exams release CNPE kubernetes.io/docs + blog + Quick Reference box CNPA no permitted resources memory only, full stop
🐰 Remy's drill · 15 min

Pick ten terms you'd rate "pretty sure I know this" rather than "certain" — golden path, admission control, self-heal, DORA's four metrics, RED vs USE, a CRD vs an operator, whatever's on the edge of fuzzy for you. Set a timer, and for each one say the definition out loud in one sentence, cold, no notes, no pause to think about phrasing. Anything you hesitate on for more than three seconds, or catch yourself hedging ("it's sort of like…"), goes straight onto today's triage list. That three-second hesitation is exactly what a closed-book multiple-choice question will not wait for.

🎬 At the Platform Guild
🦆

Dot: Wait, so for the CNPA I can't even pull up kubernetes.io if I blank on something?

🐢

Timmy: Nothing. Not kubernetes.io, not a Quick Reference box, not your own notes. The official rule is blunt: no tools, no resources, no external sites. Full stop.

🦊

Foxy: But the CNPE lets you look some things up mid-exam. Why would the "easier" associate exam be stricter?

🐰

Remy: Because it's not testing the same skill. CNPE checks if you can find and adapt things fast under a proctor's clock. CNPA checks if the knowledge is already in your head, full stop. Different exam, different training.

👺

Gizmo: Or just… glance at your phone real quick under the desk. Who's gonna—

🐢

Timmy: The proctor watching your webcam, Gizmo. That's an ended session, not a shortcut.

🐰

Remy: The only honest shortcut is drilling until "I think I remember" turns into "I just know it." That's the whole game here.

The thesis of this page is narrow and worth carrying forward into everything else you read about the CNPA: there is no reference to lean on, so there is no substitute for having the material genuinely, instantly, in your head. Take that seriously in the study plan, drill it against the glossary you must have cold and the concept reference, use triage to find your weak spots honestly, and rehearse the shared logistics on the exam-day page so nothing procedural costs you an attempt you were otherwise ready for.

🐢 Timmy's checkpoint

1. Quote, or closely paraphrase, the official rule that makes the CNPA closed-book, and name the page it comes from. 2. Which single detail is a genuine CNPA exception among Linux Foundation multiple-choice exams — and is it about resources or about timing? 3. Name three resources the CNPE permits that the CNPA does not permit at all. 4. What does "closed-book" mean for a question where you're only 80% sure of a term — what happens to that missing 20%? 5. Name one proctoring rule shared by both exams, and explain how it lands differently on the CNPA because there is no allowlist to fall back on inside it.

Check your answers
  1. The Linux Foundation's Resources Allowed page states: "Candidates are NOT PERMITTED to access tools, resources or external sites when taking the Linux Foundation Multiple Choice … Exams."
  2. Timing, not resources. Per the Multiple Choice Exam FAQ, the CNPA is the one named exception to the 90-minute default other multiple-choice exams get — it gets 120 minutes. The resources rule (fully closed-book) applies to the CNPA exactly as it applies to every other Linux Foundation multiple-choice exam — no exception there.
  3. Any three of: kubernetes.io/docs, kubernetes.io/blog, task-specific links from a Quick Reference box, locally installed documentation (man pages, --help), or kubectl explain against a live cluster.
  4. Nothing recovers it. There's no lookup, no Quick Reference box, no cluster to test a hunch against — whatever's fuzzy in your memory on exam day stays fuzzy for that question, for good, and you answer with whatever confidence you actually have.
  5. Any of: government ID check, the room scan, or "no other applications or browser windows." All three are enforced identically on both exams, but on the CNPE "no other windows" still leaves a kubernetes.io tab inside the one permitted window; on the CNPA there is nothing permitted to have open in that window at all, so the same rule removes strictly more.