Weekend Sale Special Limited Time Flat 70% Discount offer - Ends in 0d 00h 00m 00s - Coupon code: 70spcl

Oracle 1z0-1072-23 Oracle Cloud Infrastructure 2023 Architect Associate Exam Practice Test

Page: 1 / 6
Total 55 questions

Oracle Cloud Infrastructure 2023 Architect Associate Questions and Answers

Question 1

You just got a last minute request to create a set of instances in Oracle Cloud Infrastructure (OCI). The

configuration and installed software are identical for every instance, and you already have a running instance in your OCI tenancy. Which image option allows you to achieve this task with the least amount of effort?

Options:

A.

Bring your own image and use it as a template for the new instances.

B.

Select an image from the OCI Marketplace.

C.

Use Oracle-provided images and customize the installation using a third-party tool.

D.

Create a custom image and use it as a template for the new instances.

Question 2

You have a high-demand web application running on Oracle Cloud Infrastructure (OCI). Your tenancy

administrator has set up a schedule-based autoscaling policy on instance pool with an initial size of 5 instances for the application.

Policy 1:

Target pool size:10 instances

Execution time:8:30 a.m. on every Monday through Friday, in every month, in every year

Cron expression:0 30 8 ? * MON-FRI *

Which statement accurately explains the goal of this policy?

Options:

A.

Goal: A one-time schedule with only one scaling out event. At 8:30 a.m., on December 31, 2021, scale the instance pool to 10 instances from 5.

B.

Goal: A recurring monthly schedule. On all days of the month, set the initial pool size to 5 instances. At

8.30 a.m., on every day of the month, scale out to 10 instances.

C.

Goal: A recurring daily schedule. On weekday mornings at 8.30 a.m., scale out to 10 instances.

D.

Goal: A recurring weekly schedule. On all days of the week at 8.30 a.m., scale out the pool to 10 instances from the initial size of 5

Question 3

Which statement is NOT correct regarding the Oracle Cloud Infrastructure (OI) File System snapshots?

Options:

A.

Even if nothing has changed within the file system since the last snapshot was taken, a new snapshot

consumes more storage.

B.

Snapshots are accessible under the root directory of the file system at .snapshot/name.

C.

Before you can clone a file system, at least one snapshot must exist for the file system.

D.

Snapshots are a consistent, point-in-time view of your file systems.

Question 4

You are part of a team that manages a set of workload instances running in an on-premises environment. The Architect team is tasked with designing and configuring Oracle Cloud Infrastructure (OCI) Logging service to collect logs from these instances. There is a requirement to archive Info-level logging data of these instances into the OCI Object Storage.

Which TWO features of OCI can help you achieve this?

Options:

A.

Cloud Agent Plugin

B.

Grouping Function

C.

Service Connectors

D.

Agent Configuration

E.

ObjectCollectionRule

Question 5

In which TWO ways does Cloud Guard help improve the overall security posture for your tenancy?

Options:

A.

Monitors unauthorized or suspicious user activity.

B.

Allows you to centrally manage encryption keys.

C.

Prevents you from creating misconfigurations on your resources in Oracle Cloud Infrastructure (OCI).

D.

Masks sensitive data and monitors security controls on your Oracle databases.

E.

Helps detect misconfigured resources, such as publicly accessible Object Storage buckets, instances, and restricted ports on security lists.

Question 6

You want to distribute DNS traffic to different endpoints based on the location of the end user. Which Traffic Management Steering Policy would you use?

Options:

A.

IP Prefix

B.

Load Balancer

C.

Geolocation

D.

Failover

Question 7

Which of the following statements is true about cloning a volume in the Oracle Cloud Infrastructure (OCI) Block Volume service?

Options:

A.

You need to detach a volume before cloning it.

B.

Creating a clone takes longer than creating a backup of a volume.

C.

You can clone a volume to another region.

D.

You can change the block volume size when cloning a volume.

Question 8

Which statement is TRUE about delegating an existing domain to the Oracle Cloud Infrastructure (OCI) DNS service?

Options:

A.

Domains can be delegated to OCI DNS via FastConnect partners.

B.

Domains can be delegated to OCI DNS from the OCI Marketplace.

C.

Domains can be self-delegated to OCI DNS from its own service portal.

D.

Domains can be delegated to OCI DNS from the Domain Registrar’s self-service portal.

E.

All domains can be retrieved to OCI DNS via DYN.

Question 9

Your DevOps team needs to interconnect the on-premises network to the Oracle Cloud Infrastructure (OCI) resources, such as a managed database that resides in a private subnet. They indicate that they have a low budget and their bandwidth requirements are minimal, so you decide that a site-to-site VPN is the best option.

They provide you with their router public IP address. You need to create an object in OCI that represents this router. Which object would you create?

Options:

A.

Internet Gateway

B.

Dynamic Routing Gateway (DRG)

C.

Customer Premises Equipment (CPE)

D.

Virtual Network Interface Card (vNIC)

E.

IPSec Tunnel

F.

Bastion Host

Question 10

You need to set up instance principals so that an application running on an instance can call Oracle Cloud Infrastructure (OCI) public services, without the need to configure user credentials.

A developer in your team has already configured the application built using an OCI SDK to authenticate using the instance principals provider.

Which is NOTa necessary step to complete this set up?

Options:

A.

Create a dynamic group with matching rules to specify which instances can make API calls against services.

B.

Generate Auth Tokens to enable instances in the dynamic group to authenticate with APIs.

C.

Create a policy granting permissions to the dynamic group to access services in your compartment or

tenancy.

D.

Deploy the application and the SDK to all the instances that belong to the dynamic group.

Question 11

You are using a custom application with third-party APIs to manage the application and data hosted in an Oracle Cloud Infrastructure (OCI) tenancy. Although your third-party APIs do not support OCI’s signature-based

authentication, you want them to communicate with OCI resources. Which authentication option should you use to ensure this?

Options:

A.

Auth Tokens

B.

OCI Username and Password

C.

API Signing Key

D.

SSH Key Pair with 2048-bit algorithm

Question 12

You created a virtual cloud network (VCN) with three private subnets. Two of the subnets contain application servers and the third subnet contains a DB System. The application requires a shared file system, therefore you have provisioned one using the file storage service (FSS).

You have also created the corresponding mount target in one of the application subnets. The VCN security lists are properly configured so that the application servers can access FSS. The security team changed the settings for the DB System to have read-only access to the file system. However when they test it, they are unable to access FSS.

How would you allow access to FSS?

Options:

A.

Create an NFS export option that allows READ_ONLY access where the source is the CIDR range of the DB System subnet.

B.

Create an instance principal for the DB System. Write an Identity and Access Management (IAM) policy that allows the instance principal read-only access to the file storage service.

C.

Modify the security list associated with the subnet where the mount target resides. Change the ingress rules corresponding to the DB System subnet to be stateless.

D.

Modify the security list associated with the subnet where the mount target resides.

E.

Change the ingress rules corresponding to the DB System subnet to be stateful.

Question 13

Oracle Cloud Agent is a lightweight process that manages plugins running on compute instances.

Which is NOT a valid Oracle Cloud Agent plugin name?

Options:

A.

Live Migration Agent

B.

OS Management Service Agent

C.

Compute Instance Run Command

D.

Bastion

Question 14

As a network architect you have deployed a public subnet on your Virtual Cloud Network (VCN) with this security list:

Question # 14

You have also created a network security group (NSG) as shown in the table here, and assigned it to your bastion host:

Question # 14

You have confirmed that routing is correct but when you SSH to the VM from your home over the Internet you are unable to connect.

What could be the problem?

Options:

A.

User will be able to SSH to the VM from the Internet as SSH is open on the NSG.

B.

Public subnet does not have a route rule to the Internet Gateway.

C.

Internet traffic should be allowed only on the NSG.

D.

SSH traffic is not allowed in the security list nor on the NSG from the Internet.

Question 15

You are responsible for deploying an application on Oracle Cloud Infrastructure (OCI). The application is memory intensive and performs poorly if enough memory is not available. You have created an instance pool of Linux compute instances in OCI to host the application and defined Autoscaling Configuration for the instance pool.

What should you do to ensure that the instance pool autoscales to prevent poor application performance?

Options:

A.

Install OCI SDK on all compute instances and create a script that triggers the autoscaling event if there is high memory usage.

B.

Configure the autoscaling policy to monitor memory usage and scale up the number of instances when it meets the threshold.

C.

Install the monitoring agent on all compute instances, which triggers the autoscaling group.

D.

Configure the autoscaling policy to monitor CPU usage and scale up the number of instances when it

meets the threshold

Question 16

Which is NOT a valid option for an Oracle Cloud Infrastructure (OCI) compute shape?

Options:

A.

Bare Metal

B.

Dedicated Virtual Machine Host

C.

Virtual Machine

D.

Exadata Virtual Machine

Page: 1 / 6
Total 55 questions