← Docker Certified Associate: operations and delivery
03 / 7 · 50 MIN

Reproducible images and registries

Connect tested artifacts to deployment and reduce runtime dependencies.

Concept and mechanism

An image is a distribution artifact, while a container adds execution state. With multi-stage builds, compile in one stage and copy required artifacts into an appropriate final stage. Check runtime libraries; copying only the executable can be insufficient. Dockerfile order also affects caching: stable dependency manifests should precede frequently changing source where that separation is valid. EXPOSE documents ports rather than configuring listeners or host publishing. In exec form, ENTRYPOINT defines the executable and CMD supplies default arguments that docker run arguments can replace. Test the effective command to avoid diagnoses based only on the source file.

Guided application

In a fictional payment-adapter delivery, record the approved digest and tested platform. A reused tag can identify different content without changing its name. A digest connects approval to the artifact, but does not establish absence of vulnerabilities or replace security updates. For private-registry publication, the reference needs the correct hostname, port where required, and repository; login handles authentication rather than automatically renaming the image. When expanding to arm64 workers, confirm available variants and native dependencies. A multi-platform manifest points to different variants. Renaming a tag does not convert binaries. The pipeline should retain evidence of what was built, tested, and actually deployed.

IN PRACTICE

Same release tag, different digest: the artifact needs a new acceptance decision.

Common pitfalls

Tag as immutable identity; EXPOSE as publishing; final stage without libraries; arm64 name as conversion.

Related topics: Swarm: desired state, placement, and quorum · Delivery, rollback, and readiness · Daemon, logs, and recovery

Take this idea with you

Build, identify, and validate the artifact for its target platform.

Create account

Reference: Dockerfile reference · DCA Study Guide v1.5 (January2025); current exam listing checked2026-09-30

Docker® is a registered trademark of Docker, Inc. bigsavant.com is an independent preparation platform and is not affiliated with, associated with, sponsored, authorised or endorsed by Docker. Content and questions are original, are not official exam questions, and completing our tests does not award or guarantee any certification. Names are used only to identify the subject. All other trademarks belong to their respective owners.