[Q44-Q62] Get Special Discount Offer on 1z0-1104-22 Dumps PDF [UPDATED May-2023]

Share

Get Special Discount Offer on 1z0-1104-22 Dumps PDF [UPDATED May-2023]

PDF Download Oracle Test To Gain Brilliante Result!

NEW QUESTION 44
Which parameters customers need to configure while reading secrets by name using CL1 or API? Select TWO correct answers.

  • A. Certificates
  • B. Secret Name
  • C. Vault Id
  • D. ASCII Value

Answer: B,C

Explanation:

 

NEW QUESTION 45
A number of malicious requests for a web application is coming from a set of IP addresses originating from Antartica.
Which of the following statement will help to reduce these types of unauthorized requests ?

  • A. List specific set of IP addresses then deny rules in Virtual Cloud Network Security Lists
  • B. Change your home region in which your resources are currently deployed
  • C. Delete NAT Gateway from Virtual Cloud Network
  • D. Use WAF policy using Access Control Rules

Answer: D

 

NEW QUESTION 46
Which Security Zone policy is NOT valid?

  • A. Resources in a security zone should not be accessible from the public internet.
  • B. Resources in a security zone must be automatically backed up regularly.
  • C. A boot volume can be moved from a security zone to a standard compartment.
  • D. A compute instance cannot be moved from a security zone to a standard compartment.

Answer: C

 

NEW QUESTION 47
You want to make API calls against other OCI services from your instance without configuring user credentials. How would you achieve this?

  • A. Create a dynamic group and add a policy.
  • B. Create a dynamic group and add your instance.
  • C. No configuration is required for making API calls.
  • D. Create a group and add a policy.

Answer: A

Explanation:
DYNAMIC GROUP
Dynamic groups allow you to group Oracle Cloud Infrastructure instances as principal actors, similar to user groups. You can then create policies to permit instances in these groups to make API calls against Oracle Cloud Infrastructure services. Membership in the group is determined by a set of criteria you define, called matching rules. https://docs.cloud.oracle.com/en-us/iaas/Content/Identity/Tasks/callingservicesfrominstances.htm

 

NEW QUESTION 48
An automobile company needs to configure Bastion Managed SSH session to a compute instance in a private subnet. What are the TWO prerequisites to configure successfully?

  • A. Route rule to a NAT or Service Gateway should be associated with the subnet of the route table
  • B. NAT or Service Gateway should be attached to the private subnet
  • C. SSH port forwarding should be enabled
  • D. There is no need for any gateway in private subnet

Answer: A,B

 

NEW QUESTION 49
You create a new compartment, "apps," to host some production apps and you create an apps_group and added users to it.
What would you do to ensure the users have access to the apps compartment?

  • A. No action is required.
  • B. Add an lAM policy to attach tenancy to the apps group.
  • C. Add an IAM policy for the individual users to access the apps compartment.
  • D. Add an IAM policy for apps_group granting access to the apps compartment.

Answer: D

 

NEW QUESTION 50
With regard to OCI Audit Log Service, which of the statement is INCORRECT?

  • A. REST API calls can be recorded by Audit service
  • B. Retention period for audit events cannot be modified
  • C. Audit Events gets collected when modification within objects stored in an Object Storage bucket
  • D. Events logged by the Audit service can be viewed by using the Console, API, or the SDK for Java

Answer: C

 

NEW QUESTION 51
A member of operations team has set Pre-Authenticated Request (PAR) associated with a bucket to an incorrect date and now wants to edit the PAR request. How can this be achieved?

  • A. Delete both PAR as well as the bucket then recreate both
  • B. Delete the bucket associated with PAR and recreate it
  • C. Delete the PAR and recreate it with the required date
  • D. Don't set an expiration time for PAR

Answer: C

Explanation:

 

NEW QUESTION 52
As a lead Security Architect, you have tasked to restrict access to and from the worker nodes in pods running in Oracle Container Engine for Kubernetes?

  • A. Security Lists
  • B. Vulnerability Scanning
  • C. Identity and Access Management
  • D. Cloud Guard

Answer: A

Explanation:

 

NEW QUESTION 53
What does the following identity policy do?
Allow group my-group to use fn-invocation in compartment ABC where target.function.id = '<function-OCID>'

  • A. Enables users to invoke all the functions in a specific application
  • B. Enables users to invoke all the functions in a compartment except for one specific function
  • C. Enables users to invoke just one specific function
  • D. Enables users in a group to create, update, and delete ALL applications and functions in a compartment

Answer: C

 

NEW QUESTION 54
Which VCN configuration is CORRECT with regard to VCN peering within a same region ?

  • A. 12.0.0.0/16 and 194.168.0.0/16
  • B. 194.168.0.0/24 and 194.168.0.0/16
  • C. 12.0.0.0/16 and 12.0.0.0/16
    C 194.168.0.0/24 and 194.168.0.0/24

Answer: A

 

NEW QUESTION 55
How can you establish private connectivity over two VCN within same OCI region without traversing the traffic over public internet ?

  • A. Data Guard
  • B. NAT Gateway
  • C. Local VCN Peering
  • D. Remote VCN Peering

Answer: C

Explanation:

 

NEW QUESTION 56
When does Cloud Guard re-open an issue and update the history?

  • A. If it detects an issue for a previously dismissed configuration problem
  • B. If it detects an issue for a previously resolved/dismissed activity problem
  • C. If it detects an issue again for an Open (unresolved) problem
  • D. If it detects an issue for a previously resolved configuration problem

Answer: D

Explanation:
If Cloud Guard detects an issue again for:
An Open (unresolved) problem, it updates the problem history, but doesn't create a new problem.
A previously solved problem, it reopens the issue and updates the history.
A previously dismissed problem, it updates the history.
https://docs.oracle.com/en-us/iaas/cloud-guard/using/problems-page.htm

 

NEW QUESTION 57
As a security administrator, you want to create cloud resources that align with Oracle's security principles and best practices. Which security service should you use?

  • A. Security Advisor
  • B. Identity and Access Management
  • C. Web Application Firewall (WAF)
  • D. Cloud Guard

Answer: A

Explanation:

 

NEW QUESTION 58
Which of the following services are NOT Security Services in OCI ? Select TWO answers.

  • A. Vault
  • B. Cloud Guard
  • C. Block Volume
  • D. Data Guard

Answer: C,D

 

NEW QUESTION 59
Which challenge is generally the first level of bot mitigation, but not sufficient with more advanced bot tools?

  • A. Human interaction challenge
  • B. JavaScript challenge
  • C. CAPTCHA challenge
  • D. Device fingerprint challenge

Answer: B

 

NEW QUESTION 60
What does an audit log event include?

  • A. Type of input
  • B. Footer
  • C. Audit type
  • D. Header

Answer: D

Explanation:
The HTTP header fields and values in the request.
https://docs.oracle.com/en-us/iaas/Content/Audit/Reference/logeventreference.htm

 

NEW QUESTION 61
How can you convert a fixed load balancer to a flexible load balancer?

  • A. Use Update Shape workflows.
  • B. Using the Edit Listener option.
  • C. There is no way to covert the load balancer.
  • D. Delete the fixed load balancer and create a new one.

Answer: A

 

NEW QUESTION 62
......


Oracle 1z0-1104-22 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Understand and implement Security Zones and Security Advisor
  • Understand MFA, Identity Federation, and SSO
Topic 2
  • Describe the use case for VCN Flow Logs
  • Create and configure Web Application Firewall
Topic 3
  • Describe the use case for auditing and review OCI Audit Logs
  • Implement conditional and advanced policies
Topic 4
  • Describe key capabilities provided by Data Safe
  • Use Compartments to isolate resources
Topic 5
  • Configure security for Oracle Autonomous Database and DB Systems
  • Describe the use case for Penetration and Vulnerability Testing
Topic 6
  • Identify the Cloud Security use cases, challenges, and trends
  • Design a scalable authorization model with users, groups, and policies
Topic 7
  • Configure Network Security Groups (NSGs) and Security Lists
  • Cloud Security Business Drivers and Challenges
Topic 8
  • Describe OCI Shared Security Responsibility Model
  • Configure security for OKE and Oracle Functions
Topic 9
  • Design and implement a logging and logging analytics solution
  • Secure connectivity of hybrid networks (Site-to-Site VPN, FastConnect)

 

1z0-1104-22 Dumps are Available for Instant Access: https://examschief.vce4plus.com/Oracle/1z0-1104-22-valid-vce-dumps.html