0% found this document useful (0 votes)
53 views10 pages

Oracle Architect Associate 1Z0-1072-21 - 78

Uploaded by

Dara Tony
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
53 views10 pages

Oracle Architect Associate 1Z0-1072-21 - 78

Uploaded by

Dara Tony
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 10

1. A tenancy administrator in OCI is unable to delete a user in the tenancy.

What can be the


possible root cause for this issue/
User is a member of an identify and Access Management (IAM) group
2. Which statement is INCORRECT about Oracle Cloud Infrastructure Object Storage?
Versioning of objects is enabled at namespace level
3. Identify INCORRECT policy syntax for OCI Identify and Access Management (IAM)?
Allow all-groups to inspect in users in tenancy
4. Solution Architecture needs to peer two Virtual Cloud Network (VCN).
Which TWO statement are correct?
VCNs peering may exist in the same OCI region
VCNs peering may exist in difference OCI region
5. Which statement is CORRECT about OCI Object storage versioning?
Object versioning is disable on bucket by default
6. A Company uploaded graphic to OCI object storage bucket and added URL paths for each
objects separately.
As a solution Architecture, you need to ensure that these graphics are accessible without
requiring any authentication for extended period time.
Make object storage bucket public and use URL path for each object
7. To identify potential issues, fixing issues and detect anomalies of log data so as to perform
advanced analysis, which services should you use to monitor?
Logging Analytics
8. Which statement is CORRECT regarding to object storage?
Encryption is turned on by default and cannot be turn off
9. Which component cannot be deleted from Virtual Cloud Network (VCN)) in OCI?
Default Security List
Default Route Table
Default set of DHCP options
10. Which TWO resources are availability domain specific (reside exclusively in a single
OCI availability domain)
Block Volume
Compute Instance
11. A Company has configured load balancers to perform health check on compute instances.
What will happen if an instance doesn’t pass the configured health check?
The load balancer stops sending traffic to the instance
12. In shared security model of OCI, which components are NOT managed by Oracle?
Select three correct answers.
Data
Account & Identities
Application
13. Which VCN size range is allowed in OCI?
/16 through /30
14. What is the maximum number of security lists by default that can be associated with a
subnet while creating in OCI?
5
15. Which three tasks can a user who belongs to the GroupAdmin group perform if the policy
is associated with it as follows:
Allow group GroupAdmin to manage volumes in tenancy Where request.permission
!=’VOLUME_DELETE’
Create Volume
Move Volume
Update Volume
16. In OCI, which type of logs is emitted by Object Storage, VCN Flow logs, Functions and
API Gateways?
Services logs

17. Retention rules are configured at which level for OCI Object Storage?
Bucket level
18. Which encryption algorithm is supported by OCI Vault Service?
Select three correct answers.
Rivest-Shamir-Adleman (RSA)
Advanced Encryption Standard (AES)
Elliptic Curve Digital Signature Algorithm (ECDSA)
19. A company want s to implement Data Guard in OCI virtual machine and bare mental
database systems.
which statement is correct.
Both DB systems must reside in the same compartment
20. A company needs to implement Big Data workload for shared access and NFS-based
connectivity. Which storage service should the company use?
File Storage
21. Which statement are correct about OCI VCN peeing?
Select two correct answers.
A single DRG can be used for local peeing
VCN should reside in same region but can be in difference OCI tenancies
22. Which load balancer can distribute traffic based on destination port and IP address?
Layer4 (TCP/UDP/ICMP)
23. As a solution architecture, how can you prevent unwanted bots while desirable bots are
allowed to enter?
Web application firewall (WAF)
24. A company needs to distribute DNS traffic to separate endpoints based on the location of
the end user. Which traffic management steering policy should the company use?
Geolocation Steering
25. As a solution architect, you need to make sure that the instances can communicate
directly with the internet. Which two statement can fulfill the above requirement?
VCN of the instance should have an Internet Gateway
Instances should have a public IP address
26. Audit team need access to a bucket for a duration of 1 day for auditing purpose who don’t
have IAM user credential
As a solution architect, what can be done to meet the requirement?
Pre-authenticated request (PAR)
27. As a solution architect, you need to divide your network into multiple VCNs such that the
traffic shouldn’t flow over the internet or via on-prem network so that each VCN can have
private and direct access. Which Networking method should you use?
VCN Peering
28. Development team in a company use JavaScript Object Notation Documents for
developing NOSQL-style application.
Which database type can be used by the development team?
Autonomous JSON Database
29. A developer in your team uploaded an object with the same name as a previously existing
object. As a solution architect, you have enabled versioning on this bucket.
What will be the impact of uploading an object by the developer with the same name?
New object becomes the current version whereas existing object becomes previous version
30. Which statement are TRUE about OCI Compartment?
Select three correct statements.
One compartment can reside another compartment
One compartment can have resources from multiple OCI regions
Budget on a compartment can be set such that if a budget exceed then a notification will sent
31. What is the default performance level when a block volume is created in OCI?
Balanced
32. Which statement are correct about OCI Object Storage?
They are not tied to any specific compute instance and are regional service
Private access is supported via service gateway for OCI resources
33. In OCI File Storage, which four layer of access control are used?
OCI policy
Network security
NFS v.3 Unix security
NFS export option
Key management => Not
34. A company want to run online transactional processing (OLTP) and online analytical
processing (OLAP) workload directly from a MySQL database without any changes to the
applications so that there is no need for separate analytics database.
Which MySQL Database feature will help you to achieve this?
HeatWave
35. A company has two objects in a OCI bucket: ObjectA and ObjectB. ObjectA was
modified 17 months ago and ObjectB was modified 5 months ago. As a solutions architect,
you created a retention rule for 12 months. Which two statement are true
ObjectA can be deleted or modified immediately
ObjectB cannot be deleted or modified for next 7 months
36. In which language Terraform providers and Terraform written?
Go
37. Select the correct statement about Oracle vulnerability scanning which it can identify.
Select three correct answers.
Potential OS configurations which hacker might exploit
Ports which are left open
OS packages that require patches to tackle vulnerabilities
SQL injection => NOT
38. A company needs to access data immediately, fast and frequently.
Which object storage tier should the company use?
Standard
39.Select two correct statement about OCI Block Volume Clone.
It is possible to clone a volume group
Single-in -time copy of a volume can be created without the need for backup and restore
process
40. Select two correct statements about Site-to-Site-VPN
IP traffic is decrypted when it arrives and encrypted before packets are transferred
On-prem and VCN is provided a site-to-site IPSec connection
41. Which statement is correct about pre-authentication requests?
Changing the bucket visibility doesn’t change existing pre-authentication requests
42. What is the advantage of Database as a Service in OCI?
Automated backups to Object Storage
43. Which two statement are correct about Data Guard in OCI?
Port 1521 must be open and both DB system must reside in the same VCN
Implementing Data Guard for Bare Metal requires two DB systems. One for primary database
and other for standby database.
44. Which statement is correct about file storage in OCI?
Snapshot are created in a hidden directory named snapshot under the root folder of the file
system
45. If no route rule matches the network traffic you intent to route outside the VCN,
What happen to the traffic?
Traffic is dropped
46. Compartment X is a child compartment of root. Compartment Y is a child compartment
of compartment X. compartment Z is a child compartment of compartment Y.
Allow group NetworkAdmin to manage virtual-network-family in compartment X
Which compartments can a user of the NetworkAdmin group manage VCNs?
Compartment X, Compartment Y and Compartment Z only.
47. As a solution architect you have enabled auto tiering to reduce costs. Object larger than 1
Mebibyte (MiB) are automatically to which tier from standard tier?
Infrequent Access
48. FastConnect uses which protocol?
BGP
49. Web application firewall (WAF) operates at which layer of OSI model?
Application Layer
50. Which two statement are correct about application load balancers?
Application load balancer performs content-based routing
Application load balancer supports both HTTP and HTTPS
51. As a solution architect, you have enabled versioning for a bucket in OCI.
What will happen when you try to upload an object with the same name as an existing name?
Existing object will become the previous version and newly uploaded object becomes the
latest version
52. OCI supports which four type of images?
Linux images provided by Oracle
Windows images provided by Oracle
Prebuilt application images from OCI marketplace
Custom images created from existing images in OCI
Solaris images provided by Oracle => NOT
53. As a solution architect, you want to grant your Virtual Cloud Network (VCN) to access
the internet. Which two connectivity options will help you achieve this?
NAT Gateway
Internet Gateway
54. As a solution architect, you want to upload a huge log file (7 TiB size) to OCI object
storage and have decided to use multipart upload feature for more efficient upload.
Select three correct statements about multipart upload.
Maximum object size should be 10 TiB
Maximum number of parts in a multipart upload should be 10,000
Maximum object part size in a multipart upload should be 50GiB
After you have uploaded all the object parts, you cannot commit the upload => NOT
55. A company is migrating a database to Oracle Infrastructure (OCI).
Which two characteristics you need to consider as a solution architect during this migration?
On-Prem host network bandwidth and operating system platform
On-Prem database version and amount of data including indexes
56. Which two statement are correct about boot volume?
After terminating an instance, you can preserve the data and boot volume
After launching a VM or baremetal instance based on a customer image or platform image, a
new boot volume for the instance is created in the same compartment.
57. Identify the correct statement after a solution architect has applies the below polices:
Allow group GroupAdmins to manage groups in tenancy where all {target.group.name=/z-*,
target.group.name!=Z-Admins’}
Allow group GroupAdmin to inspect groups in tenancy
GroupAdmins can delete, update or create any group whose name starts with “Z-“ except for
Z-Admins group

58. What can be used to define the actions that cloud guard can take when a detector has
identified a problem?
Responder
59. You want to increase disk performance of VM.Standard2.16 by using NVMe disks but
the number of CPUs should be same. As a solution architect, you terminated the instance and
preserved the boot volume. What should be the next step?
Create a new instance using a VM.DenselO2.16 shape using the preserved boot volume and
move the SQL Database data to NVMe disks
60. Which two performance levels can you select when changing the performance level of
boot volumes?
Balanced
High Performance
61. An e-commerce company configured the website to use an OCI object storage bucket
locate in US East (us-ashburn-1) region to store huge amount of e-commerce data. E-
commerce data stored should not be affected during an outage in one of the Availability
Domain or a complete region. What should be done for data durability and avoid costly
service distruption?
Create a replication policy to send the data to a difference bucket in US-Phoenix region
62. An Artificial Intelligence company is running it’s application on VM.Standard2.1
instance shape. Due to increasing customer base, the company faces serious challenge dealing
with network throughput on the instance when customer uploads user data.
As a solution architect, what should you recommend to resolve this issue is most efficient
way?
Change the shape of instance to higher network bandwidth instance
63. What is the purpose of Replica Set in OCI Container Engine for Kubernetes (OKE)?
Maintain a stable set of replica Pods running at any given time
64. As a solution architect, you need to advice operations admin to apply latest security
patches and manage packages to reduce the complexity and error while delivering these
patches. Which OCI service will use?
OS Management
65. In shared responsibility model, which of the following is customer’s responsibility on
OCI DB System?
Applying patches to OS
66. Which statement are correct about block volume cloning?
Select two correct statements.
Block Volume size can be changed while creating a clone
Performance of block volume can be changed while create a clone

67. Which three items must be configured for OCI load to accept incoming traffic?
A listener
A backend set with at least one backend server
A security list that is open on the listener port
68. Dynamic Routing Gateway (DRG) is used by which OCI services?
Select two correct answers
IPSec VPN Connect
OCI FastConnect Private Peeing
69. What is the availability of private DNS in OCI?
OCI private DNS is available in all Regions and OCI Realm
70. Which of the statement is incorrect about OCI block volume?
Block volume can be attached to an instance in difference region
71. Which of the statement is incorrect about Virtual Cloud Network (VCN)?
Make sure to overlap VCN CIDR with other VCN within your organizations
72. A company requires high I/O higher performance for its OCI block volume.
As a solutions architect, which elastic performance option should you recommend for block
volume?
Higher Performance
73. Which regard to delegating domain OCI DNS, which of the statement is correct?
Domains can be delegated to OCI DNS from the Domain Registrar’s self-services portal
74. A company needs throughput-intensive workloads with large sequential I/O, such as data
warehouses and log processing which should involve no additional VPU cost.
Which block volume performance level is recommend for such workloads?
Lower Cost
75. When connecting to OCI Autonomous Data Warehouse (ADW), which two predefined
database service names can be used?
High for highest level of resources to each SQL statement
Low for least level of resources to each SQL statement
76. A company has numerous compute instances, each of which consists of a boot volume
and several block volumes. As a solutions architect, you need to create backups of these
block volumes as quickly as possible in an efficient manner.
How can you fulfill this requirement?
Group together multiple block and boot volumes in a volume group and create volume group
backups
77. As a solution architect, you want operations team users who belongs to NetworkAdmin
group to manage network resources in any compartment of a tenancy.
Which policy will allow NetworkAdmin group to achieve this?
Manage virtual-network-family in tenancy
78. With regard to Private IP address in OCI which two statement are correct?
A private IP address can have an optional public IP address assigned to it
Each VNIC has a primary private IP address, and you can add and remove secondary private
IP addresses

You might also like