Weekend Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70percent

Oracle 1z0-1072-23 Oracle Cloud Infrastructure 2023 Architect Associate Exam Practice Test

Demo: 16 questions
Total 55 questions

Oracle Cloud Infrastructure 2023 Architect Associate Questions and Answers

Question 1

Which TWO statements about the Oracle Cloud Infrastructure (OCI) File Storage Service are accurate?

Options:

A.

Communication with file systems in a mount target is encrypted via HTTPS.

B.

File systems use Oracle-managed keys by default.

C.

Customer can encrypt data in their file system using their own Vault encryption key.

D.

Mount targets use Oracle-managed keys by default.

E.

Customer can encrypt the communication to a mount target via export options.

Question 2

You plan to launch a VM instance with the VM.Standard2.24 shape and Oracle Linux 8 platform image. You want to protect your VM instance from low-level threats, such as rootkits and bootkits that can infect the firmware and operating system and are difficult to detect.

What should you do?

Options:

A.

Use in-transit encryption.

B.

Use Vulnerability Scanning Service.

C.

Create a burstable instance.

D.

Create a shielded instance.

Question 3

In which two ways can Oracle Security Zones assist with the cloud security shared responsibility model?

Options:

A.

Encrypt storage resources with a customer-managed key.

B.

Allow access to an unsecured compartment, which is moved from a standard compartment.

C.

Deny public access to Oracle Cloud Infrastructure resources, such as databases and object storage buckets.

D.

Add or move a standard compartment to a highly secured security zone compartment.

Question 4

Which is NOT a valid action within the Oracle Cloud Infrastructure (OCI) Block Volume service?

Options:

A.

Expanding an existing volume in place with offline resizing.

B.

Restoring from a volume backup to a larger volume.

C.

Attaching a block volume to an instance in a different availability domain.

D.

Cloning an existing volume to a new, larger volume.

Question 5

Which tool provides a diagram of the implemented topology of all Virtual Cloud Networks (VCNs) in a selected region and tenancy?

Options:

A.

Network Watcher

B.

Traffic Analytics

C.

VCN Flow Logs

D.

Network Visualizer

Question 6

You have a block volume created in the US West (Phoenix) region. You enabled Cross Region Replication for the volume and selected US West (San Jose) as the destination region. Now, you would like to create a new volume from the volume replica in the US West (San Jose) region.

What should you do?

Options:

A.

Activate the replica.

B.

Trigger the replica.

C.

No action required. By default, the replica is available as a block volume.

D.

Initiate the replica.

Question 7

You are responsible for deploying an application on Oracle Cloud Infrastructure (OCI). The application is memory intensive and performs poorly if enough memory is not available. You have created an instance pool of Linux compute instances in OCI to host the application and defined Autoscaling Configuration for the instance pool.

What should you do to ensure that the instance pool autoscales to prevent poor application performance?

Options:

A.

Install OCI SDK on all compute instances and create a script that triggers the autoscaling event if there is high memory usage.

B.

Configure the autoscaling policy to monitor memory usage and scale up the number of instances when it meets the threshold.

C.

Install the monitoring agent on all compute instances, which triggers the autoscaling group.

D.

Configure the autoscaling policy to monitor CPU usage and scale up the number of instances when it

meets the threshold

Question 8

You want to create a policy to allow the NetworkAdmins group to manage Virtual Cloud Network (VCN) in compartment C. You want to attach this policy to the tenancy. The compartment hierarchy is shown below.

Which policy statement can be used to accomplish this task?

Options:

A.

Allow group NetworkAdmins to manage virtual-network-family in compartment B:C

B.

Allow group NetworkAdmins to manage virtual-network-family in compartment C

C.

Allow group NetworkAdmins to manage virtual-network-family in tenancy

D.

Allow group NetworkAdmins to manage virtual-network-family in compartment A:B:C

Question 9

Which statement is TRUE about delegating an existing domain to the Oracle Cloud Infrastructure (OCI) DNS service?

Options:

A.

Domains can be delegated to OCI DNS via FastConnect partners.

B.

Domains can be delegated to OCI DNS from the OCI Marketplace.

C.

Domains can be self-delegated to OCI DNS from its own service portal.

D.

Domains can be delegated to OCI DNS from the Domain Registrar’s self-service portal.

E.

All domains can be retrieved to OCI DNS via DYN.

Question 10

You are responsible for creating and maintaining an enterprise application that consists of multiple storage volumes across multiple compute instances in Oracle Cloud Infrastructure (OCI).

The storage volumes include boot volumes and block volumes for your data storage. You need to create a backup for the boot volumes that will be done daily and a backup for the block volumes that will be done every six hours.

How can you meet this requirement?

Options:

A.

Create clones of all boot volumes and block volumes one at a time.

B.

Group the boot volumes into a volume group and create a custom backup policy. Group the block volumes and create a custom backup policy.

C.

Create on-demand full backups of block volumes, and create custom images from the boot volumes. Use a function to run at a specific time to start the backup process.

D.

Group multiple storage volumes in a volume group and create volume group backups.

Question 11

You just got a last minute request to create a set of instances in Oracle Cloud Infrastructure (OCI). The

configuration and installed software are identical for every instance, and you already have a running instance in your OCI tenancy. Which image option allows you to achieve this task with the least amount of effort?

Options:

A.

Bring your own image and use it as a template for the new instances.

B.

Select an image from the OCI Marketplace.

C.

Use Oracle-provided images and customize the installation using a third-party tool.

D.

Create a custom image and use it as a template for the new instances.

Question 12

Which statement is true about File System Replication in Oracle Cloud Infrastructure (OCI)?

Options:

A.

You can replicate the data in one file system to another file system only in the same region.

B.

You can replicate the data in one file system to another file system in the same region or a different

region.

C.

Only a file system that has been exported can be used as a target file system.

D.

You cannot specify a replication interval when you create the replication resource.

Question 13

Which TWO components are optional while creating the Monitoring Query Language (MQL) expressions in the Oracle Cloud Infrastructure (OCI) Monitoring service?

Options:

A.

Interval

B.

Statistic

C.

Dimensions

D.

Grouping Function

E.

Metric

Question 14

Which statement is NOT correct regarding the Oracle Cloud Infrastructure (OI) File System snapshots?

Options:

A.

Even if nothing has changed within the file system since the last snapshot was taken, a new snapshot

consumes more storage.

B.

Snapshots are accessible under the root directory of the file system at .snapshot/name.

C.

Before you can clone a file system, at least one snapshot must exist for the file system.

D.

Snapshots are a consistent, point-in-time view of your file systems.

Question 15

You are a security administrator for your company's Oracle Cloud Infrastructure (OCI) tenancy. Your storage administrator informs you that she cannot associate an encryption key from an existing Vault to a new Object Storage bucket.

What could be a possible reason for this behavior?

Options:

A.

The Object Storage bucket policy lacks the necessary Access Control List (ACL).

B.

The storage administrator forgot to select "Encrypt using Oracle managed keys" while creating the bucket.

C.

There is no Identity and Access Management (IAM) policy that allows the Object Storage service to use the key.

D.

The secret for the key was not created beforehand

Question 16

You want to distribute DNS traffic to different endpoints based on the location of the end user. Which Traffic Management Steering Policy would you use?

Options:

A.

IP Prefix

B.

Load Balancer

C.

Geolocation

D.

Failover

Demo: 16 questions
Total 55 questions