Oracle 1z0-1072-23 Real Exam Questions Test Engine Dumps Training With 57 Questions [Q15-Q39]

Share

Oracle 1z0-1072-23 Real Exam Questions Test Engine Dumps Training With 57 Questions

1z0-1072-23 Actual Questions Answers PDF 100% Cover Real Exam Questions


Oracle 1z0-1072-23 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Configure and manage Object Storage
  • Understand File System usage and metering
Topic 2
  • Describe public and private IP addresses and virtual NICs
  • Understand Network Command Center Services
Topic 3
  • Configure Security Lists and Network Security Groups
  • Describe and configure OS Management
Topic 4
  • Understand Observability and Management platform
  • Configure Dynamic Groups and Tag based access control
Topic 5
  • Understand Block Volume performance tiers
  • Understand Object Storage replication
Topic 6
  • Describe OCI compute image options
  • Configure DNS and Traffic Management
Topic 7
  • Configure Virtual Cloud Network Routing and Gateways
  • Describe and configure a layer-7 Load Balancer
Topic 8
  • Configure Volume Groups, Backups, Clones
  • Implement conditional and advanced policies
Topic 9
  • Understand File System Snapshots and Cloning
  • Describe and Configure Web Application Firewall and Certificates

 

NEW QUESTION # 15
You want a full-featured Identity-as-a-Service (IDaaS) solution that helps you manage workforce authentication and access to all of your Oracle and non-Oracle applications, whether they are SaaS apps, on-premises enterprise apps, or apps that are hosted in the cloud. Which IAM Identity Domain type should you create?

  • A. Oracle Apps Premium
  • B. Free
  • C. Premium
  • D. External User

Answer: C

Explanation:
Premium is the IAM Identity Domain type that you should create if you want a full-featured IDaaS solution that helps you manage workforce authentication and access to all of your Oracle and non-Oracle applications. Premium Identity Domain provides users with access to Oracle Identity Cloud Service, which is an IDaaS solution that offers identity management, single sign-on, multifactor authentication, identity governance, and integration with third-party applications. The other options are not IAM Identity Domain types that provide a full-featured IDaaS solution. Reference: [Identity Domains], [Oracle Identity Cloud Service]


NEW QUESTION # 16
You want to create a policy to allow the NetworkAdmins group to manageVirtual Cloud Network (VCN) incompartment C.
You want to attach this policy to the tenancy. The compartment hierarchy is shown below.

Which policy statement can be used to accomplish this task?

  • A. Allow group NetworkAdmins to manage virtual-network-family in compartment C
  • B. Allow group NetworkAdmins to manage virtual-network-family in compartment B:C
  • C. Allow group NetworkAdmins to manage virtual-network-family in compartment A:B:C
  • D. Allow group NetworkAdmins to manage virtual-network-family in tenancy

Answer: C

Explanation:
Explanation
Allow group NetworkAdmins to manage virtual-network-family in compartment A:B:C. The explanation is that when you attach a policy to the tenancy, you need to specify the full path of the compartment where you want to grant permissions. In this case, the compartment C is a sub-compartment of compartment B, which is a sub-compartment of compartment A, which is a sub-compartment of the root compartment (tenancy).
Therefore, the full path of compartment C is A:B:C. The virtual-network-family resource type includes all the resources related to VCN, such as subnets, route tables, security lists, gateways, etc.


NEW QUESTION # 17
You are responsible for deploying an application on Oracle Cloud Infrastructure (OCI). The application is memoryintensive and performs poorly if enough memory is not available. You have created an instance pool of Linuxcompute instances in OCI to host the application and defined Autoscaling Configuration for the instance pool.
What should you do to ensure that the instance pool autoscales to prevent poor application performance?

  • A. Install OCI SDK on all compute instances and create a script that triggers theautoscaling event if there ishigh memory usage.
  • B. Configure the autoscaling policy to monitor CPU usage and scale up the number of instances when it meets the threshold
  • C. Install the monitoring agent on all compute instances, which triggers the autoscaling group.
  • D. Configure the autoscaling policy to monitor memory usage and scale up the number of instances when itmeets the threshold.

Answer: D


NEW QUESTION # 18
You have objects stored in an OCI Object Storage bucket that you want to share with a partner company. You decide to use pre-authenticated requests to grant access to the objects. Which statement is true about preauthenticated requests?

  • A. Deleting a pre-authenticated request does not revoke user access to the associated bucket or object.
  • B. Pre-authenticated requests can be used to delete buckets or objects.
  • C. You need to provide your OCI credentials to the partner company.
  • D. You cannot edit a pre-authenticated request.

Answer: D

Explanation:
Explanation
You cannot edit a pre-authenticated request is a true statement about pre-authenticated requests.
Pre-authenticated requests are URLs that allow users to access objects or buckets in OCI Object Storage without requiring additional authentication or authorization. Pre-authenticated requests can be created with an expiration date and time, and can be used for read or write operations. However, once created, pre-authenticated requests cannot be edited, but can only be deleted or extended. The other statements are false about pre-authenticated requests. References: [Pre-Authenticated Requests]


NEW QUESTION # 19
You are using a custom application with third-party APIs to manage the application and data hosted in an OracleCloud Infrastructure (OCI) tenancy. Although your third-party APIs do not support OCI's signature-based authentication, you want them to communicate with OCI resources. Which authentication option should you useto ensure this?

  • A. OCI Username and Password
  • B. API Signing Key
  • C. Auth Tokens
  • D. SSH Key Pair with 2048-bit algorithm

Answer: C

Explanation:
Explanation
Auth Tokens is the authentication option that you should use to ensure that your custom application with third-party APIs can communicate with OCI resources. Auth Tokens are tokens that can be used as an alternative to passwords when making API calls to OCI services. Auth Tokens can be generated and revoked by users in the OCI Console or CLI, and can be used with any API client that supports basic authentication.
The other options are not suitable for this scenario, as they either require OCI's signature-based authentication or are not applicable for API calls. References: [Auth Tokens]


NEW QUESTION # 20
Oracle Cloud Agent is a lightweight process that manages plugins running on compute instances.
Which is NOT a valid Oracle Cloud Agent plugin name?

  • A. Compute Instance Run Command
  • B. Live Migration Agent
  • C. OS Management Service Agent
  • D. Bastion

Answer: D

Explanation:
Explanation
Bastion is not a valid Oracle Cloud Agent plugin name. Bastion is a service that enables secure and controlled access to compute instances in OCI. The other options are valid plugin names that provide different functionalities for the instances. References: [Bastion], [Cloud Agent Plugins]


NEW QUESTION # 21
Which is NOT a valid action within the Oracle Cloud Infrastructure (OCI) Block Volume service?

  • A. Cloning an existing volume to a new, larger volume.
  • B. Attaching a block volume to an instance in a different availability domain.
  • C. Restoring from a volume backup to a larger volume.
  • D. Expanding an existing volume in place with offline resizing.

Answer: B

Explanation:
Attaching a block volume to an instance in a different availability domain is not a valid action within the OCI Block Volume service. A block volume can only be attached to an instance in the same availability domain. The other options are valid actions that can be performed with the Block Volume service. Reference: [Block Volume Actions]


NEW QUESTION # 22
You create a file system and then add a 2 GB file. You then take a snapshot of the file system.
What would be the total meteredBytes shown by the File Storage service after the hourly update cycle is complete?

  • A. 3 GB
  • B. 4 GB
  • C. 2 GB
  • D. 2.5 GB

Answer: C

Explanation:
Explanation
The total meteredBytes shown by the File Storage service after the hourly update cycle is complete would be 2 GB. This is because snapshots do not consume any additional storage space unless there are changes made to the file system after taking the snapshot. Since no changes were made in this scenario, the snapshot would not add any extra storage cost. References: [Snapshots and MeteredBytes]


NEW QUESTION # 23
You are a security administrator for your company's Oracle Cloud Infrastructure (OCI) tenancy. Your storage administrator informs you that she cannot associate an encryption key from an existing Vault to a new Object Storage bucket.
What could be a possible reason for this behavior?

  • A. The secret for the key was not created beforehand
  • B. There is no Identity and Access Management (IAM) policy that allows the Object Storage service to use the key.
  • C. The storage administrator forgot to select "Encrypt using Oracle managed keys" while creating the bucket.
  • D. The Object Storage bucket policy lacks the necessary Access Control List (ACL).

Answer: B

Explanation:
There is no Identity and Access Management (IAM) policy that allows the Object Storage service to use the key. The explanation is that when you create an Object Storage bucket with encryption using a customer-managed key from Vault, you need to have an IAM policy that allows the Object Storage service to use the key on your behalf. The policy should look like this:
allow service objectstorage-<region> to use key in compartment <compartment-name> where <region> is the region where your bucket resides and <compartment-name> is the compartment where your key resides.


NEW QUESTION # 24
You plan to upload a large file (3 TiB) to Oracle Cloud Infrastructure (OCI) Object Storage. You would like to minimize the impact of network failures while uploading, and therefore you decide to use the multipart upload capability.
Which TWO statements are true about performing a multipart upload using the Multipart Upload API?

  • A. You do not need to split the object into parts. Object Storage splits the object into parts and uploads all of the parts automatically.
  • B. While a multipart upload is still active, you can keep adding parts as long as the total number is less than 10,000.
  • C. You do not have to commit the upload after you have uploaded all the object parts.
  • D. When you split the object into individual parts, each part can be as large as 50 GiB.

Answer: B,D

Explanation:
While a multipart upload is still active, you can keep adding parts as long as the total number is less than 10,000. When you split the object into individual parts, each part can be as large as 50 GiB. The explanation is that a multipart upload allows you to upload a large object in parts, which can improve performance and reliability. You need to split the object into parts yourself and upload each part separately using the Multipart Upload API. You can add parts to an active multipart upload until you reach the maximum number of 10,000 parts per upload. Each part can range from 10 MiB to 50 GiB in size, except for the last part, which can be any size.


NEW QUESTION # 25
Which TWO statements are NOTcorrect regarding the Oracle Cloud Infrastructure (OCI) burstable instances?

  • A. Baseline utilization is a fraction of each CPU core, either 25% or 75%.
  • B. Burstable instances are charged according to the baseline OCPU.
  • C. If the instance's average CPU utilization over the past 24 hours is below the baseline, the system allows it to burst above the baseline.
  • D. Burstable instances are designed for scenarios where an instance is not typically idle and has high CPU utilization.
  • E. Burstable instances cost less than regular instances with the same total OCPU count.

Answer: A,D

Explanation:
The explanation is that burstable instances are VM instances that have a baseline utilization of either 12% or 50% of each CPU core, not 25% or 75%. Burstable instances are designed for scenarios where an instance is typically idle or has low CPU utilization but occasionally needs to burst above the baseline to handle spikes in demand. Burstable instances cost less than regular instances with the same total OCPU count but charge extra for bursting above the baseline OCPU.


NEW QUESTION # 26
Which THREE protocols are supported by the Oracle Cloud Infrastructure (OCI) Network Load Balancer?

  • A. HTTP
  • B. TCP
  • C. BGP
  • D. ICMP
  • E. iSCSI
  • F. UDP

Answer: B,D,F

Explanation:
Explanation
The explanation is that the OCI Network Load Balancer supports three protocols: UDP, TCP, and ICMP.
These protocols are used to distribute traffic across multiple backend servers based on different criteria, such as source and destination IP addresses, ports, and ICMP types and codes.


NEW QUESTION # 27
Company XYZ is spending $300,000.00 USD per month in egress fees for 7 Petabytes that they consume for Outbound Data Transfer in North America with their current cloud provider. The company is seeking to lower that expense considerably without reducing consumption. You propose migration to OCI because the Gigabyte Outbound Data Transfer in North America costs just $0.0085 USD per month. With OCI, how much will they spend per month for 7 Petabytes of Outbound Data Transfer? (1 Petabyte = 1000 Terabytes)

  • A. $59,415.00
  • B. $59,500.00
  • C. $0.00 (free with OCI)
  • D. $150,000.00

Answer: A

Explanation:
Explanation
$59,415.00 is the amount that Company XYZ will spend per month for 7 Petabytes of Outbound Data Transfer in North America with OCI. This is calculated by multiplying 7 Petabytes by 1000 Terabytes (to convert Petabytes to Terabytes), then multiplying by $0.0085 USD (the cost per Gigabyte Outbound Data Transfer in North America), then dividing by 1000 (to convert Gigabytes to Terabytes). The formula is:
(7 * 1000 * 0.0085) / 1000 = $59,415.00


NEW QUESTION # 28
You need to set up instance principals so that an application running on aninstance can call Oracle CloudInfrastructure (OCI) public services, without the need to configure user credentials.
A developer in your team has already configured the application built using an OCISDK to authenticate using theinstance principals provider.
Which is NOTa necessary step to complete this set up?

  • A. Deploy the application and the SDK to all the instances that belong to the dynamic group.
  • B. Generate Auth Tokens to enable instances in the dynamic group to authenticate with APIs.
  • C. Create a policy granting permissions to the dynamic group to access services in your compartment or tenancy.
  • D. Create a dynamic group with matching rules to specify which instances can make API calls against services.

Answer: B

Explanation:
Explanation
Generating Auth Tokens to enable instances in the dynamic group to authenticate with APIs is not a necessary step to complete this set up. This is because Auth Tokens are used to authenticate users, not instances, when making API calls to OCI services. Instance principals are a feature that allows instances to authenticate themselves using certificates, without requiring user credentials or Auth Tokens. The other options are necessary steps to complete this set up, as they enable instances in the dynamic group to make API calls against services using instance principals and IAM policies. References: [Instance Principals], [Auth Tokens]


NEW QUESTION # 29
As your company's cloud architect, you have been invited by the CEO to join hisstaff meeting. They want yourinput on interconnecting Oracle Cloud Infrastructure (OCI) to another cloudprovider in London, with some specific requirements:
* They want resources in the other cloud provider to leverage OCI Autonomous Data Warehouse ML capabilities.
* The connection between OCI and the other cloud provider should be provisioned as quickly as possible.
* The connection should offer high bandwidth and predictable performance.
Which other cloud provider should you recommend to interconnect with OCI and meet the above requirements?

  • A. Google Cloud
  • B. Microsoft Azure
  • C. IBM Cloud
  • D. Alibaba Cloud
  • E. Amazon Web Services
  • F. OCI
  • G. Digital Ocean

Answer: B

Explanation:
Explanation
The explanation is that Microsoft Azure is one of the cloud providers that has an interconnect location with OCI in London. This means that you can use OCI FastConnect to establish a private and dedicated connection between OCI and Azure in London, with high bandwidth and predictable performance. This connection can also enable you to leverage OCI Autonomous Data Warehouse ML capabilities from Azure resources, as you can access OCI services across regions using private IP addresses. The interconnect location can be provisioned quickly using the OCI and Azure consoles or APIs.


NEW QUESTION # 30
Which tool provides a diagram of the implemented topology of all Virtual Cloud Networks (VCNs) in a selected region and tenancy?

  • A. VCN Flow Logs
  • B. Network Watcher
  • C. Traffic Analytics
  • D. Network Visualizer

Answer: D

Explanation:
Explanation
Network Visualizer is the tool that provides a diagram of the implemented topology of all VCNs in a selected region and tenancy. Network Visualizer is a feature of the OCI Networking service that allows users to view and manage their network resources in a graphical interface. It can help users understand their network topology, troubleshoot issues, and optimize performance. The other options are not tools that provide a diagram of the VCN topology, but rather other features or services of OCI Networking. References: [Network Visualizer]


NEW QUESTION # 31
Which statement accurately describes the key features and benefits of OCI Confidential Computing?

  • A. It optimizes network performance and reduces latency through advancedrouting algorithms and cachingmechanisms.
  • B. It enables users to securely store and retrieve data by using distributed file systems, ensuring high availability and fault tolerance.
  • C. It encrypts and isolates in-use data and the applications processing that data, thereby preventing unauthorized access or modification.
  • D. It provides automatic scalability and load balancing capabilities, which allow seamless integration withother cloud providers.

Answer: C

Explanation:
Explanation
It encrypts and isolates in-use data and the applications processing that data, thereby preventing unauthorized access or modification is an accurate description of the key features and benefits of OCI Confidential Computing. Confidential Computing is a feature that leverages hardware-based Trusted Execution Environments (TEEs) to protect data and applications from unauthorized access or modification while they are in use by the CPU or memory. This adds an extra layer of security to cloud computing, as it protects data not only at rest and in transit, but also in use. The other options are not accurate descriptions of the key features and benefits of OCI Confidential Computing. References: [Confidential Computing]


NEW QUESTION # 32
Which TWO are key benefits of setting up Site-to-Site VPN on Oracle Cloud Infrastructure (OCI)?

  • A. When setting up Site-to-Site VPN, it creates a private connection that provides consistent network experience.
  • B. When setting up Site-to-Site VPN, OCI provisions redundant VPN tunnels.
  • C. When setting up Site-to-Site VPN, customers can configure it to use static or dynamic routing (BGP).
  • D. When setting up Site-to-Site VPN, customers can expect bandwidth above 2 Gbps.

Answer: B,C

Explanation:
Explanation
When setting up Site-to-Site VPN, customers can configure it to use static or dynamic routing (BGP). When setting up Site-to-Site VPN, OCI provisions redundant VPN tunnels. The explanation is that Site-to-Site VPN is a secure and encrypted connection between your on-premises network and your Virtual Cloud Network (VCN) in OCI over the public internet. When setting up Site-to-Site VPN, you can choose to use static routing or dynamic routing (Border Gateway Protocol or BGP) to exchange routes between your network and OCI.
OCI also provisions two redundant VPN tunnels for each Site-to-Site VPN connection to provide high availability and failover.


NEW QUESTION # 33
You have an instance running in Oracle Cloud Infrastructure (OCI) that cannot be live-migrated during an infrastructure maintenance event. OCI schedules a maintenance due date within14 to 16 days and sends you anotification.
What would happen if you choose not to proactively reboot the instance beforethe scheduled maintenance duedate?

  • A. You will receive another notification to reboot within the next 7 days.
  • B. You will receive another notification to reboot within the next 14 days.
  • C. The instance will get terminated.
  • D. The instance is either reboot-migrated or rebuilt in place for you.

Answer: D

Explanation:
Explanation
If you choose not to proactively reboot the instance before the scheduled maintenance due date, the instance is either reboot-migrated or rebuilt in place for you. Reboot-migration is a process where OCI migrates your instance to a new physical host without changing its configuration or public IP address. Rebuild in place is a process where OCI shuts down your instance, performs maintenance on the physical host, and restarts your instance with the same configuration and public IP address. The other options are not correct. References:
[Reboot-Migration], [Rebuild in Place]


NEW QUESTION # 34
Which is NOT a valid Oracle Cloud Infrastructure (OCI) Virtual Cloud Network (VCN) approach?

  • A. Private subnets should ideally have individual route tables to control the flow of traffic within and outside of VCN.
  • B. Ensure VCN CIDR prefix overlaps with other VCNs in your tenancy or with your organizations private IP network ranges.
  • C. Ensure not all IP addresses are allocated at once within a VCN or subnet; instead reserve some IP addresses for future use.
  • D. Use OCI tags to tag VCN resources so that all resources follow organizational tagging/naming conventions.

Answer: B

Explanation:
Ensure VCN CIDR prefix overlaps with other VCNs in your tenancy or with your organizations private IP network ranges. The explanation is that a VCN CIDR prefix is the range of IPv4 addresses that can be used within the VCN and its subnets. The VCN CIDR prefix should not overlap with other VCNs in your tenancy or with your organization's private IP network ranges, as this can cause routing conflicts and connectivity issues. You should choose a VCN CIDR prefix that is large enough to accommodate your current and future needs, but not too large to waste IP addresses. You can use any of the private IPv4 address ranges specified in RFC 1918 for your VCN CIDR prefix.


NEW QUESTION # 35
Which is NOT a valid option for an Oracle Cloud Infrastructure (OCI) compute shape?

  • A. Exadata Virtual Machine
  • B. Bare Metal
  • C. Dedicated Virtual Machine Host
  • D. Virtual Machine

Answer: A

Explanation:
Exadata Virtual Machine is not a valid option for an OCI compute shape. Exadata Virtual Machine is a deployment option for Exadata Cloud Service or Exadata Cloud@Customer, which are services that provide dedicated Exadata infrastructure for running Oracle databases in OCI. Exadata Virtual Machine allows you to create multiple virtual machines on each Exadata compute node and isolate them from each other using Oracle VM technology. The valid options for OCI compute shapes are:
Bare Metal: A bare metal instance is a physical server that gives you direct access to the underlying hardware and full isolation from other tenants.
Dedicated Virtual Machine Host: A dedicated virtual machine host is a physical server that hosts only your virtual machine instances and no other tenant's instances.
Virtual Machine: A virtual machine instance is a virtual server that runs on a shared physical server with other tenants' instances.
Burstable: A burstable instance is a virtual machine instance that has a baseline utilization of either 12% or 50% of each CPU core and can burst above the baseline when needed.


NEW QUESTION # 36
Which statement is NOT correct regarding the Oracle Cloud Infrastructure (OI) File System snapshots?

  • A. Snapshots are a consistent, point-in-time view of your file systems.
  • B. Even if nothing has changed within the file system since the last snapshot was taken, a new snapshot consumes more storage.
  • C. Before you can clone a file system, at least one snapshot must exist for the file system.
  • D. Snapshots are accessible under the root directory of the file system at .snapshot/name.

Answer: B

Explanation:
Explanation
Even if nothing has changed within the file system since the last snapshot was taken, a new snapshot does not consume more storage. This is because snapshots are incremental and only store the changes made to the file system since the previous snapshot. The other statements are correct regarding the OCI File System snapshots.
References: [Snapshots and Storage Consumption]


NEW QUESTION # 37
You have an instance running in Oracle Cloud Infrastructure (OCI) that cannot be live-migrated during an infrastructure maintenance event. OCI schedules a maintenance due date within 14 to 16 days and sends you a notification.
What would happen if you choose not to proactively reboot the instance before the scheduled maintenance due date?

  • A. You will receive another notification to reboot within the next 7 days.
  • B. You will receive another notification to reboot within the next 14 days.
  • C. The instance will get terminated.
  • D. The instance is either reboot-migrated or rebuilt in place for you.

Answer: D

Explanation:
If you choose not to proactively reboot the instance before the scheduled maintenance due date, the instance is either reboot-migrated or rebuilt in place for you. Reboot-migration is a process where OCI migrates your instance to a new physical host without changing its configuration or public IP address. Rebuild in place is a process where OCI shuts down your instance, performs maintenance on the physical host, and restarts your instance with the same configuration and public IP address. The other options are not correct. Reference: [Reboot-Migration], [Rebuild in Place]


NEW QUESTION # 38
company sells services to photographers where patrons can preview the photos that they want prints for.
To avoid unauthorized copies, the sample photos have lower resolution and are watermarked. The photos are processed after they are uploaded. The process is fast but not immediate. It creates samples and sends them to storage outside of the instances. Which type of instance is ideal for a process like this; short lived and one that keeps the cost low?

  • A. Spot instances
  • B. On-demand instances
  • C. Preemptible instances
  • D. Burstable instances

Answer: C

Explanation:
The explanation is that preemptible instances are VM instances that offer lower costs than regular instances but can be reclaimed by OCI at any time due to capacity constraints or after running for a maximum of 24 hours. Preemptible instances are ideal for short-lived and stateless workloads that can tolerate interruptions and do not require guaranteed availability or performance. Preemptible instances are billed by the second at a fixed rate that is lower than regular instances.


NEW QUESTION # 39
......

TestkingPass 1z0-1072-23 Exam Practice Test Questions: https://evedumps.testkingpass.com/1z0-1072-23-testking-dumps.html