Real Exam Questions 1Z0-1085-20 Dumps Exam Questions in here [Sep-2021]
Get Latest Sep-2021 Conduct effective penetration tests using 1Z0-1085-20
NEW QUESTION 43
Which feature is not component of Oracle cloud Infrastructure identity and Access management service?
- A. Network Security Group
- B. User Credential
- C. federation
- D. Policies
Answer: A
Explanation:
Explanation
Components of IAM
RESOURCE
The cloud objects that your company's employees create and use when interacting with Oracle Cloud Infrastructure. For example: compute instances, block storage volumes, virtual cloud networks (VCNs), subnets, route tables, etc.
USER
An individual employee or system that needs to manage or use your company's Oracle Cloud Infrastructure resources. Users might need to launch instances, manage remote disks, work with your virtual cloud network, etc. End users of your application are not typically IAM users. Users have one or more IAM credentials (see User Credentials).
GROUP
A collection of users who all need the same type of access to a particular set of resources or compartment.
DYNAMIC GROUP
A special type of group that contains resources (such as compute instances) that match rules that you define (thus the membership can change dynamically as matching resources are created or deleted). These instances act as "principal" actors and can make API calls to services according to policies that you write for the dynamic group.
NETWORK SOURCE
A group of IP addresses that are allowed to access resources in your tenancy. The IP addresses can be public IP addresses or IP addresses from a VCN within your tenancy. After you create the network source, you use policy to restrict access to only requests that originate from the IPs in the network source.
COMPARTMENT
A collection of related resources. Compartments are a fundamental component of Oracle Cloud Infrastructure for organizing and isolating your cloud resources. You use them to clearly separate resources for the purposes of measuring usage and billing, access (through the use of policies), and isolation (separating the resources for one project or business unit from another). A common approach is to create a compartment for each major part of your organization. For more information, see Setting Up Your Tenancy.
TENANCY
The root compartment that contains all of your organization's Oracle Cloud Infrastructure resources. Oracle automatically creates your company's tenancy for you. Directly within the tenancy are your IAM entities (users, groups, compartments, and some policies; you can also put policies into compartments inside the tenancy). You place the other types of cloud resources (e.g., instances, virtual networks, block storage volumes, etc.) inside the compartments that you create.
POLICY
A document that specifies who can access which resources, and how. Access is granted at the group and compartment level, which means you can write a policy that gives a group a specific type of access within a specific compartment, or to the tenancy itself. If you give a group access to the tenancy, the group automatically gets the same type of access to all the compartments inside the tenancy. For more information, see Example Scenario and How Policies Work. The word "policy" is used by people in different ways: to mean an individual statement written in the policy language; to mean a collection of statements in a single, named "policy" document (which has an Oracle Cloud ID (OCID) assigned to it); and to mean the overall body of policies your organization uses to control access to resources.
HOME REGION
The region where your IAM resources reside. All IAM resources are global and available across all regions, but the master set of definitions reside in a single region, the home region. You must make changes to your IAM resources in your home region. The changes will be automatically propagated to all regions. For more information, see Managing Regions.
FEDERATION
A relationship that an administrator configures between an identity provider and a service provider. When you federate Oracle Cloud Infrastructure with an identity provider, you manage users and groups in the identity provider. You manage authorization in Oracle Cloud Infrastructure's IAM service. Oracle Cloud Infrastructure tenancies are federated with Oracle Identity Cloud Service by default.
NEW QUESTION 44
A customer wants to deploy a customized e commerce Web application using multiple virtual machines, block storage, databases, load balancer and web application firewall.
What cloud model can be used to host this application?
- A. Platform as a Service (PaaS)
- B. Infrastructure as a Service (IaaS)
- C. Software as a Service (SaaS)
- D. Anything as a Service (XaaS)
Answer: C
NEW QUESTION 45
Which statement accurately describes an Oracle Cloud Infrastructure Region?
- A. Each region has a single Fault Domain.
- B. Each Availability Domain has three Fault Domains.
- C. Each Availability Domain has a single Fault Domain.
- D. Each Fault Domain has multiple Availability Domains.
Answer: B
Explanation:
Explanation
Oracle Cloud Infrastructure is based on regions and availability domains.
A region is a localized geographic area, and an availability domain is one or more data centres located within a region.
A region is composed of one or more availability domains.
Each availability domain contains three fault domains.
NEW QUESTION 46
Which is an example of Edge Services in Oracle Cloud Infrastructure (OCI)?
- A. Virtual Cloud Network (VCN)
- B. Object Storage
- C. Web Application Firewall
- D. Virtual Firewall
Answer: C
Explanation:
Explanation
https://blogs.oracle.com/cloud-infrastructure/innovation-in-edge-services-the-oracle-cloud-infrastructure-edge-ne
NEW QUESTION 47
Which is NOT considered a security resource within Oracle Cloud Infrastructure?
- A. Network Security Group
- B. Web Application Firewall
- C. File Storage Service
- D. Security Lists
Answer: B
NEW QUESTION 48
Which Oracle cloud infrastructure capability can be used to protect against power failures within an availability Domain?
- A. Top of Rack Switch
- B. Data Plane
- C. Services Cells
- D. Fault Domains
Answer: D
Explanation:
Explanation
A fault domain is a grouping of hardware and infrastructure within an availability domain. Each availability domain contains three fault domains. Fault domains provide anti-affinity: they let you distribute your instances so that the instances are not on the same physical hardware within a single availability domain. A hardware failure or Compute hardware maintenance event that affects one fault domain does not affect instances in other fault domains. In addition, the physical hardware in a fault domain has independent and redundant power supplies, which prevents a failure in the power supply hardware within one fault domain from affecting other fault domains.
To control the placement of your compute instances, bare metal DB system instances, or virtual machine DB system instances, you can optionally specify the fault domain for a new instance or instance pool at launch time. If you don't specify the fault domain, the system selects one for you. Oracle Cloud Infrastructure makes a best-effort anti-affinity placement across different fault domains, while optimizing for available capacity in the availability domain. To change the fault domain for an instance, terminate it and launch a new instance in the preferred fault domain.
Use fault domains to do the following things:
Protect against unexpected hardware failures or power supply failures.
Protect against planned outages because of Compute hardware maintenance.
NEW QUESTION 49
Which statement about the Oracle Cloud Infrastructure (OCI) shared-security model is true?
- A. You are responsible for securing the hypervisor within OCI compute service
- B. You are not responsible for any aspect of security in OCI
- C. You are responsible for managing security controls within the physical OCI network
- D. You are responsible for securing all data that you place in OCI
Answer: D
Explanation:
ExplanationOracle Cloud Infrastructure offers best-in-class security technology and operational processes to secure its enterprise cloud services. However, for you to securely run your workloads in Oracle Cloud Infrastructure, you must be aware of your security and compliance responsibilities. By design, Oracle provides security of cloud infrastructure and operations (cloud operator access controls, infrastructure security patching, and so on), and you are responsible for securely configuring your cloud resources. Security in the cloud is a shared responsibility between you and Oracle.
In a shared, multi-tenant compute environment, Oracle is responsible for the security of the underlying cloud infrastructure (such as data-center facilities, and hardware and software systems) and you are responsible for securing your workloads and configuring your services (such as compute, network, storage, and database) securely.
In a fully isolated, single-tenant, bare metal server with no Oracle software on it, your responsibility increases as you bring the entire software stack (operating systems and above) on which you deploy your applications.
In this environment, you are responsible for securing your workloads, and configuring your services (compute, network, storage, database) securely, and ensuring that the software components that you run on the bare metal servers are configured, deployed, and managed securely.
The responsibilities can be divided as:
NEW QUESTION 50
___________________ is a fully-managed, scalable, and highly available service that you can use to deploy your containerized applications to the cloud.
- A. Oracle Cloud Infrastructure Container Engine for Deployment
- B. Oracle Cloud Infrastructure Container Engine for Docker
- C. Oracle Cloud Infrastructure Container Engine for Kubernetes
- D. Oracle Cloud Infrastructure Container Engine for Containerization
Answer: C
Explanation:
Explanation
Oracle Cloud Infrastructure Container Engine for Kubernetes is a fully-managed, scalable, and highly available service that you can use to deploy your containerized applications to the cloud. Use Container Engine for Kubernetes (sometimes abbreviated to just OKE) when your development team wants to reliably build, deploy, and manage cloud-native applications. You specify the compute resources that your applications require, and Container Engine for Kubernetes provisions them on Oracle Cloud Infrastructure in an existing OCI tenancy.
You can access Container Engine for Kubernetes to define and create Kubernetes clusters using the Console and the REST API. You can access the clusters you create using the Kubernetes command line (kubectl), the Kubernetes Dashboard, and the Kubernetes API.
Container Engine for Kubernetes is integrated with Oracle Cloud Infrastructure Identity and Access Management (IAM), which provides easy authentication with native Oracle Cloud Infrastructure identity functionality.
NEW QUESTION 51
Which Oracle Cloud Infrastructure (OCI) service is best suited for running serverless apps?
- A. Audit
- B. Streaming
- C. Virtual Cloud Network
- D. Oracle Functions
Answer: D
Explanation:
Explanation
Oracle Functions is a fully managed, multi-tenant, highly scalable, on-demand, Functions-as-a-Service platform. It is built on enterprise-grade Oracle Cloud Infrastructure and powered by the Fn Project open source engine. Use Oracle Functions (sometimes abbreviated to just Functions) when you want to focus on writing code to meet business needs.
The serverless and elastic architecture of Oracle Functions means there's no infrastructure administration or software administration for you to perform. You don't provision or maintain compute instances, and operating system software patches and upgrades are applied automatically. Oracle Functions simply ensures your app is highly-available, scalable, secure, and monitored. With Oracle Functions, you can write code in Java, Python, Node, Go, and Ruby (and for advanced use cases, bring your own Dockerfile, and Graal VM). You can then deploy your code, call it directly or trigger it in response to events, and get billed only for the resources consumed during the execution.
NEW QUESTION 52
What two statements regarding the Virtual Cloud Network (VCN) are true?
- A. VCN is a regional resource that span across all the Availability Domains in a Region.
- B. You can only create one VCN per region.
- C. The VCN is the IPSec-based connection with a remote on premises location.
- D. A single VCN can contain both private and public Subnets.
- E. VCN is a global resource that span across all the Regions
Answer: A,D
NEW QUESTION 53
Which offers the lowest pricing for storage (per GB)?
- A. Oracle Cloud Infrastructure Archive Storage
- B. Oracle Cloud Infrastructure Object Storage (standard tier)
- C. Oracle Cloud Infrastructure File Storage
- D. Oracle Cloud Infrastructure Block Volume
Answer: A
NEW QUESTION 54
What characteristics are defined by an Oracle Cloud Infrastructure Compute shape?
- A. Availability Domain and Fault Domain locations
- B. Number of vCPU, amount of RAM, bandwidth
- C. Number of OCPU, amount of RAM, bandwidth
- D. Public or private visibility of the Compute instance
Answer: C
Explanation:
Explanation
Oracle Compute Shape is coming with predefined or customize the number of OCPUs that are allocated to an instance. The amount of memory, network bandwidth, and number of VNICs scale proportionately with the number of OCPUs.
NEW QUESTION 55
What is a key benefit of Oracle Cloud Infrastructure Virtual Machine DB Systems?
- A. Support for RAC DB systems
- B. No need to create database Indices
- C. Automated backups to OCI Block Volume
- D. Automated disaster recovery
Answer: A
NEW QUESTION 56
What characteristics are defined by an Oracle Cloud Infrastructure Compute shape?
- A. Availability Domain and Fault Domain locations
- B. Number of vCPU, amount of RAM, bandwidth
- C. Number of OCPU, amount of RAM, bandwidth
- D. Public or private visibility of the Compute instance
Answer: C
NEW QUESTION 57
Which is NOT covered by Oracle Cloud Infrastructure Service Level Agreement (SLA)?
- A. Performance
- B. Availability
- C. Reliability
- D. Manageability
Answer: C
Explanation:
Explanation/Reference: https://www.oracle.com/cloud/iaas/sla.html
NEW QUESTION 58
What purpose does an Oracle Cloud Infrastructure (OCI) Dynamic Routing Gateway Serve?
- A. Enables OCI Compute Instance to privately connect to OCI Object Storage
- B. Enables OCI Compute instance to connect to on-promises environments
- C. Enable OCI Compute instances to connect to the internal
- D. Enables OCI Compute instances to be reached from internet
Answer: B
Explanation:
Explanation
You use a DRG when connecting your existing on-premises network to your virtual cloud network (VCN) with one (or both) of these:
IPSec VPN
Oracle Cloud Infrastructure FastConnect
NEW QUESTION 59
......
Authentic Best resources for 1Z0-1085-20 Online Practice Exam: https://www.examslabs.com/Oracle/Oracle-Cloud-Solutions-Infrastructure/best-1Z0-1085-20-exam-dumps.html