OCI 2025 Developer Professional Free Sample Questions

20 free sample questions255 in the full practice test

Try simulator

1Z0-1084-25 Sample Questions

  1. Question 1

    A financial services company is modernizing its payment processing gateway using a microservices architecture on Oracle Kubernetes Engine (OKE). To comply with security policies, all inter-service communication within the cluster must be encrypted, and traffic routing rules for A/B testing must be centrally managed without altering application code. Which OCI service should be integrated with OKE to meet these specific requirements?

    Answer and explanation

    Correct answer: C

    OCI Service Mesh is the correct choice as it is designed to manage, secure, and observe microservices. It provides features like mutual TLS (mTLS) for encrypting inter-service communication and sophisticated traffic management capabilities (e.g., traffic splitting for A/B testing) without requiring changes to the application code. A Network Load Balancer operates at L4 and doesn't manage internal service-to-service traffic rules. An API Gateway is for managing north-south traffic (from clients to the cluster), not east-west traffic (between services). Kubernetes Network Policies can restrict traffic but don't offer advanced routing or automatic mTLS.

  2. Question 2

    A development team is building an event-driven application where a producer service running on a VM needs to send messages to multiple independent consumer services. One consumer handles data archiving, another performs real-time analytics, and a third triggers alerts. Each consumer service must process every message independently and at its own pace. Which OCI serverless technology is best suited for this fan-out messaging pattern?

    Answer and explanation

    Correct answer: B

    OCI Streaming is the ideal service for this scenario. It supports a publish-subscribe model where a message published to a stream can be consumed by multiple independent consumer groups. Each consumer group maintains its own offset, allowing it to read all messages from the stream at its own pace. OCI Queue is designed for one-to-one message delivery, where a message is consumed by only one consumer. OCI Events Service is for reacting to state changes in OCI resources, not for custom application messaging. OCI Notifications is for simple fan-out to endpoints like email or PagerDuty but doesn't offer the persistent, replayable log semantics required by the consumer services.

  3. Question 3

    Multiple answers

    A developer is tasked with securing a containerized application deployed on OKE. The application requires access to a database password, an API key for a third-party service, and a TLS private key for its web server. According to OCI best practices for managing sensitive information, which TWO actions should be taken? (Select TWO)

    Answer and explanation

    Correct answers: A, D

    Storing secrets in OCI Vault is the most secure and recommended approach. Vault provides a centralized, managed, and highly available service for secrets and encryption keys, with fine-grained access control via IAM policies.

    Using an instance principal allows the application running on OKE worker nodes to securely authenticate with OCI Vault without needing to store long-lived credentials. This is a best practice for service-to-service authentication within OCI.

  4. Question 4

    A developer has deployed a critical microservice to an OKE cluster. They need to create an automated alert that triggers if the average CPU utilization across all pods in the deployment exceeds 80% for a continuous 5-minute period. Which OCI service should be used to configure this specific alerting rule?

    Answer and explanation

    Correct answer: C

    OCI Monitoring is the service designed for collecting metrics from resources and creating alarms based on them. You can define an alarm rule that specifies the metric (CPU utilization), the threshold (80%), the statistical function (average), and the trigger delay period (5 minutes). Logging Analytics is for analyzing log data, Events Service reacts to state changes, and APM is for distributed tracing.

  5. Question 5

    True or False: The 12-Factor App methodology advocates for storing configuration, including credentials and environment-specific settings, directly in the application's codebase to ensure consistency across all deployments.

    Answer and explanation

    Correct answer: B

    This statement is false. Factor III of the 12-Factor App methodology explicitly states that configuration should be stored in the environment and strictly separated from the code. Storing config in the code is an anti-pattern because it tightly couples the application to a specific environment and poses a security risk for credentials.

  6. Question 6

    A developer is writing a Dockerfile for a Java application. To minimize the final image size and improve security, they want to build the application using a full JDK image and then copy only the resulting JAR file into a lightweight JRE-only image for production. Which Docker feature enables this process within a single Dockerfile?

    Answer and explanation

    Correct answer: B

    Multi-stage builds are a Docker feature designed for this exact purpose. They allow you to use multiple FROM instructions in a single Dockerfile. Each FROM instruction begins a new build stage. You can selectively copy artifacts from one stage to another, leaving behind everything you don't want in the final image, such as build tools and intermediate files.

  7. Question 7

    A team is designing an OCI Function that will be triggered by an HTTP request via an API Gateway. The function needs to perform a long-running data processing task that can take up to 10 minutes. What is a critical consideration for this design?

    Answer and explanation

    Correct answer: A

    OCI Functions have a maximum execution timeout of 300 seconds (5 minutes). A task that takes 10 minutes will always fail. The correct architectural pattern is to have the initial HTTP-triggered function accept the request, place the task details onto a queue (like OCI Queue), and return an immediate '202 Accepted' response. A separate, asynchronously triggered function (or another worker process) would then consume from the queue to perform the long-running task.

  8. Question 8

    A developer needs to create a CI/CD pipeline that automatically builds a Docker image from source code in a Git repository and pushes the new image to Oracle Cloud Infrastructure Registry (OCIR). Which command is used to upload the locally built and tagged image my-app:v1.1 to a repository in the us-ashburn-1 region for the tenancy mytenancy?

    Answer and explanation

    Correct answer: B

    The correct command is docker push. To push to OCIR, the image must first be tagged with the fully qualified repository name, which follows the format .ocir.io/ / :. Assuming the image was correctly tagged (e.g., docker tag my-app:v1.1 iad.ocir.io/mytenancy/my-app:v1.1), this docker push command will upload it to the specified OCIR repository. iad is the region key for us-ashburn-1.

  9. Question 9

    A retail company is building a serverless application to process new inventory updates. Whenever a JSON file is uploaded to a specific OCI Object Storage bucket, an OCI Function must be triggered to parse the file and update a database. What is the most direct and efficient way to configure this trigger mechanism?

    Answer and explanation

    Correct answer: B

    OCI Events Service is designed for this exact use case. It allows you to create rules that respond to state changes in OCI resources. By creating a rule that filters for the 'Object - Create' event in the specified compartment and bucket, and setting the action to invoke an OCI Function, you create a fully managed, event-driven, and efficient pipeline without any custom polling or intermediate services.

  10. Question 10

    A developer is troubleshooting a failing pod in an OKE cluster. The pod's status is CrashLoopBackOff. The developer has already checked the application configuration and resource limits, which appear correct. What is the most effective kubectl command to get detailed information about why the container inside the pod is failing to start?

    Answer and explanation

    Correct answer: C

    The kubectl logs command fetches the logs from the standard output and standard error streams of the container(s) within the pod. For a CrashLoopBackOff error, this is the most direct way to see the application's error messages or stack traces that are causing it to exit prematurely. kubectl describe is useful for viewing events and configuration, but the application's specific error will be in its logs.

Register free to unlock 10 more sample questions

Lifetime One

Own this practice test forever.

$79.99
$75.99
one-time
  • Full access to 255 questions
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • Brainy AI Assistant
  • Lifetime updates

Two

Any 2 exams per month.

$20.00/exam
$39.99
/month
  • 2 active exam slots
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • 1,000 Brainy AI Credits
  • Cancel anytime

Premium Twelve

Any 12 exams over 3 months.

$15.00/exam
$179.99
/3 months
  • 4 active exam slots
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • 15,000 Brainy AI Credits
  • Dedicated support
  • Friend seat included — full access

Trusted by professionals at

NvidiaSupabaseGitHubOpenAITursoClerkClaude AIAmazon