10/235 questions · Unlock full access
Q1

A financial services company is architecting a highly available application on OCI. The application tier runs on a set of compute instances within a private subnet and must communicate with an Autonomous Transaction Processing (ATP) database. To ensure secure and private communication, the network architect has decided to use a Service Gateway. Which of the following IAM policies is required to allow instances in the VCN to make calls to the Oracle Services Network?

Q2

A media company uses OCI Object Storage to store large video files. To optimize costs, they have implemented a lifecycle policy to transition objects from the Standard tier to Infrequent Access after 30 days, and then to Archive after 90 days. An editor reports they are unable to access a 6-month-old video file directly via the standard S3-compatible API. What is the most likely reason for this issue?

Q3Multiple answers

As a cloud architect, you are designing a secure environment for a new project. You need to ensure that a group of developers can only manage OCI resources (e.g., launch instances, create block volumes) if they are connected to the corporate network. Which combination of IAM features should you use to enforce this requirement? (Select TWO)

Q4

A consultant is reviewing an OCI tenancy's compute configuration. They notice that several development instances are frequently being stopped and started, resulting in the loss of their public IP addresses. This is causing issues with DNS records and developer access. What is the most cost-effective and efficient way to ensure these instances retain a consistent public IP address across reboots?

Q5

A large enterprise is migrating a legacy, monolithic application to OCI. The application requires a shared file system accessible by multiple compute instances for reading and writing configuration and log files. The performance requirement is moderate, but high durability and automated backups are critical. Which OCI storage service is the most appropriate choice for this use case?

Q6

You are tasked with designing a networking architecture that connects two VCNs in different OCI regions (US East and EU Frankfurt) to enable a disaster recovery strategy. The connection must be private, reliable, and provide predictable performance. Which OCI networking component should be used to establish this connection?

Q7

A DevOps team is deploying a containerized application on OCI using an instance pool. They need to grant the application running on the instances permission to write logs to an OCI Object Storage bucket without storing or managing long-lived user credentials on the instances. What is the most secure method to achieve this?

Q8

A new compute instance is launched using a standard Oracle Linux image. A developer attempts to use the OS Management service to apply the latest security patches but finds the instance is not visible in the OS Management console. What is a prerequisite that might have been missed during the instance provisioning?

Q9

True or False: When configuring a Network Security Group (NSG), the rules defined within it are automatically applied to all Virtual NICs (VNICs) within the same subnet as the NSG.

Q10

A database administrator needs to create a point-in-time, crash-consistent backup of a group of Block Volumes that are attached to a running database server. The database's data, redo logs, and archive logs are on separate Block Volumes. What OCI feature should be used to ensure all volumes are backed up at the exact same moment?