Labour Day Special - 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: c4sdisc65

Note! 1z0-1072-22 has been withdrawn. The new exam code is 1z0-1072-23

1z0-1072-22 Practice Exam Questions with Answers Oracle Cloud Infrastructure 2022 Architect Associate Certification

Question # 6

You are working for a financial institution that is currently running two web applications in Oracle Cloud

Infrastructure (OCI). All resources were created in the root compartment.

Your manager asked you to deploy new resources to support a proof-of-concept (PoC) for Oracle FlexCube.

D18912E1457D5D1DDCBD40AB3BF70D5D

You must ensure that the FlexCube resources are secured and cannot be affected by the team that manages the two web applications.

Which two tasks should you complete to ensure the required security of your resources? (Choose two.)

A.

Create a new compartment for the two web applications and move the existing resources into the

compartment. Deploy the FlexCube application into the root compartment. Create a new policy in the root

compartment that gives the FlexCube project team the ability to manage all resources in the tenancy.

B.

Create a new policy in the root compartment for the FlexCube project team. Assign a policy statement that grants the FlexCube project team the ability to manage all resources in the tenancy, where a specific tag key and tag value are present.

C.

Create a Tag Default within the root compartment with a default value of ${iam.principle.name} so that each new resource created is tagged with the name of the person who created it. Create a new IAM

policy that allows users to only modify resources they created.

D.

Create a new compartment for the two web applications and move the existing resources into this

compartment. Modify the existing policy for the team that manages these applications so that the scope of

access is defined as this new compartment.

E.

Create a new compartment for the FlexCube application deployment. Create a policy in this compartment for the project team that gives them the ability to manage all resources within the scope of this

compartment.

Full Access
Question # 7

You have launched a compute instance running Oracle database in a private subnet in the Oracle Cloud Infrastructure US East region. You have also created a Service Gateway to back up the data files to OCI Object Storage in the same region. You have modified the security list associated with the private subnet to allow traffic to the Service Gateway, but your instance still cannot access OCI Object Storage. How can you resolve this issue?

A.

Add a stateful rule that enables ingress HTTPS (TOP port 443) traffic to 001 Object Storage in the security list associated with the private subnet

B.

Add a stateful rule that enables egress HTTPS (TCP port 443) traffic to OCI Object Storage in the security list associated with the private subnet

C.

Add a rule in the Route Table associated with the private subnet with Target type as "Service Gateway" and destination service as all IAD services in the Oracle Service Network.'

D.

Use the default Security List, which has ports open for OCI Object Storage

Full Access
Question # 8

Which of the following two tasks can be performed in the Oracle Cloud Infrastructure Console for Autonomous Data Warehouse?

A.

Adjust Network Bandwidth

B.

Scale up/down Memory

C.

Increase Storage allocated for Database

D.

Scale up/down CPU

Full Access
Question # 9

What is the maximum IP address size range that you can have in a Virtual Cloud Network?

A.

/16

B.

/26

C.

/24

D.

/8

Full Access
Question # 10

You are asked to create a user that will access programmatic endpoints in Oracle Cloud Infrastructure. The user must not be allowed to authenticate by username and password.

Which two authentication options can you use? (Choose two.)

A.

PEM Certificate file

B.

Auth tokens

C.

API signing key

D.

Windows password

E.

SSH key pair

Full Access
Question # 11

You have provisioned an Autonomous Data Warehouse (ADW) database with 16 enabled OCPUs and need to configure the consumer group for your application.

Which two are true when deciding the number of sessions for each application? (Choose two.)

A.

The MEDIUM and LOW consumer group can run up to 16 concurrent SQL statements if HIGH consumer group has 0 SQL statements

B.

The HIGH consumer group can run up to 16 concurrent SQL statements as long as MEDIUM and LOW consumer groups have 0 SQL statements

C.

The MEDIUM consumer group can run 20 concurrent SQL statements when HIGH consumer group has 0 SQL statements

D.

The HIGH consumer group can run up to 16 concurrent SQL statements in addition to 32 concurrent SQL statements in MEDIUM and LOW consumer group each

E.

The HIGH consumer group can run 3 concurrent SQL statements when MEDIUM consumer group has 0 SQL statements

Full Access
Question # 12

You are a network architect of an application running on Oracle Cloud Infrastructure (OCI). Your security team has informed you about a security patch that needs to be applied immediately to one of the backend web servers. What should you do to ensure that the OCI load balancer does not forward traffic to this backend server during maintenance?

A.

Drain all existing connections to this backend server and mark the backend web server offline

B.

Create another OCI load balancer for the backend web servers, which are active and handling traffic

C.

Edit the security list associated with the subnet to avoid traffic connectivity to this backend serve

D.

Stop the load balancer for maintenance and restart the load balancer after the maintenance is finished

Full Access
Question # 13

Which storage would you use if your big data workload requires shared access and an NFS based interface?

A.

File Storage

B.

Storage Software Cloud Appliance

C.

Object Storage

D.

Archive Storage

E.

Block Volume

Full Access
Question # 14

Which three methods can you use to manage Oracle Cloud Infrastructure services? (Choose three.)

A.

Oracle Cloud Infrastructure Desktop Client

B.

Oracle Cloud Infrastructure Console

C.

SSH or RDP

D.

Command-line Interface

E.

REST API

Full Access
Question # 15

Which two statements are true about an Oracle Cloud Infrastructure Virtual Cloud Network (VCN)? (Choose two.)

A.

A VCN can reside in multiple Oracle Cloud Infrastructure regions and Availability Domains.

B.

A VCN covers a single contiguous IPv4 CIDR block of your choice.

C.

An allowable VCN size range is: /16 to /30.

D.

A VCN creates the dynamic routing gateway by default.

Full Access
Question # 16

How can you provide users access to an existing compartment?

A.

by granting users access to a compartment when the compartment is created

B.

by adding users to a group and defining a policy to provide the group access to the compartment

C.

by adding users to a compartment. All users in the compartment will have access to the objects in the compartment.

D.

by granting access directly to the user when the user is created

Full Access
Question # 17

Which resource is required when connecting to your on-premise network from your Virtual Cloud Network (VCN) via IPSec VPN or FastConnect?

A.

Internet Gateway (IGW)

B.

Dynamic Routing Gateway (DRG)

C.

local peering gateway

D.

NAT

Full Access
Question # 18

Which statement is true about Oracle Cloud Infrastructure Object Storage Service?

A.

An Archive Object Storage tier bucket can be upgraded to the Standard Object Storage tier.

B.

You cannot directly download an object from an Archive Object Storage bucket.

C.

An existing Standard Object Storage tier bucket can be downgraded to the Archive Object Storage tier.

D.

Data retrieval in Archive Object Storage is instantaneous.

Full Access
Question # 19

Which is a customer’s responsibility on an Oracle Cloud Infrastructure database?

A.

patching the database and OS

B.

creating the first default database on the DBCS server

C.

creating an ASM diskgroup for data file or temp file storage

D.

installing the operating system (OS), Grid Infrastructure, and database software

Full Access
Question # 20

Which two are NOT an image source when launching a new compute instance? (Choose two.)

A.

boot volume

B.

custom image

C.

Object Storage

D.

bare metal instance

Full Access
Question # 21

In which language are Terraform and Terraform providers written?

A.

Python

B.

Go

C.

C

D.

Ruby

Full Access
Question # 22

Which does NOT set a variable in Terraform?

A.

Passing the variable with a var statement to Terraform

B.

Setting the variable as key value pairs in a file in a subdirectory named tfvar

C.

A default value in the variable declaration within a TF plan file

D.

Setting the environment variable using a TF_VAR_ predicate in front of the variable name

Full Access
Question # 23

Within your tenancy you have a compute instance with a boot volume and a block volume attached. The boot volume contains the OS and the attached block volume contains the instance’s important data. Logs on the boot volume have filled the boot volume and are causing issues with the OS.

What should you do to resolve this situation?

A.

Stop the instance that is full. Create a manual backup of the block storage before making changes. Detach the block volume, create a new instance of the same shape with a larger custom boot volume and attach the block volume to the new instance. Configure the OS and any related application(s) to access the block volume under the same mount point as before.

B.

Create a new instance with a larger boot volume size as well a new block volume which is the same size or larger than the one attached to the full instance. rsync the state of the boot volume and the state of the block volume between the two instances.

C.

Detach the block volume from the full instance. Create a new instance of the same shape with a larger boot volume and rsync the state of the boot volume between the instances. Attach the block volume to the new instance.

D.

Create a manual backup of the block storage instance. Create a custom image of the full instance. Once that completes deploy the custom image to a new instance.

Full Access
Question # 24

You deployed a web server in Oracle Cloud Infrastructure using an ephemeral public IP. After a few changes in your web server configuration, you rebooted the server and a new public IP was associated to your instance.

What should you do to prevent this from happening again?

A.

Create a reserved public IP and associate it with the security list that your complete instance is using

B.

Create a reserved public IP and associate it with the subnet of your compute instance

C.

Create a reserved public IP and associate it with the VNIC of your compute instance

D.

Create a reserved public IP and associate it with the hosts file of your web server

Full Access
Question # 25

You have provisioned an Autonomous Transaction Processing (ATP) database and logged into the ATP service console.

What are three abilities that can be performed from this service console? (Choose three.)

A.

scale up/down the CPUs

B.

create ATP database users

C.

reset the admin password

D.

set resource management rules

E.

monitor database activity and SQL queries

Full Access
Question # 26

Which statement is true about the Oracle Cloud Infrastructure File Storage Service Snapshots?

A.

Snapshots are created under the root folder of file system, in a hidden directory named .snapshot

B.

Snapshots are not incremental

C.

You can restore the whole snapshot, but not the individual files

D.

It Is not possible to create snapshots from OCI console, but just the CLI

Full Access
Question # 27

Which statement is true about the Oracle Cloud Infrastructure File Storage Service Mount Target?

A.

You can access multiple file systems through a single mount target

B.

Mount target has a public IP address and DNS name

C.

Mount target lives in a single subnet of your choice, but is not highly available

D.

Each mount target requires six internal IP addresses in the subnet to function

Full Access
Question # 28

You have the following compartment structure in your tenancy. Root compartment->Training->Training-subl ->Training-sub2 You create a policy in the root compartment to allow the default admin for the account (Administrators) to manage block volumes in compartment Training-sub2. What policy would you write to meet this requirement?

A.

Allow group Administrators to manage volume-family in root compartment

B.

Allow group Administrators to manage volume-family in compartment Training-sub1 :Training-sub2

C.

Allow group Administrators to manage volume-family in compartment Training: Training-sub 1 :Training-sub2

D.

Allow group Administrators to manage volume-family in compartment Training-sub2

Full Access
Question # 29

Which two Oracle Cloud Infrastructure services use a Dynamic Routing Gateway?

A.

OCI FastConnect Public Peering

B.

Local Peering

C.

OCI FastConnect Private Peering

D.

Internet Gateway

E.

OCI IPSec VPN Connect

Full Access
Question # 30

You have been asked to create an Identity and Access Management (IAM) user that will authenticate to Oracle Cloud Infrastructure (OCI) API endpoints. This user must not be given credentials that would allow them to log into the OCI console.

Which two authentication options can you use? (Choose two.)

A.

SSL certificate

B.

API signing key

C.

SSH key pair

D.

PEM Certificate file

E.

Auth token

Full Access
Question # 31

You are running a mission-critical database application in Oracle Cloud Infrastructure (OCI). You take regular backups of your DB system to OCI object storage. Recently, you notice a failed database backup status in the console.

What step can you take to determine the cause of the backup failure?

A.

Ensure that your database host can connect to OCI object storage.

B.

Ensure the database archiving mode is set to NOARCHIVELOG.

C.

Make sure that the database is not active and running while the backup is in progress.

D.

Don't restart the dcsagent program even if it has a status of stop/waiting.

Full Access
Question # 32

You have compartments C and D under the root compartment in your Oracle Cloud Infrastructure (OCI) tenancy; compartment C contains a sub-compartment also named D. You are trying to move this sub-compartment D to the parent compartment D like shown in the picture, but the move fails.

1z0-1072-22 question answer

What is the reason for this error?

A.

You need to move all the compartments in the hierarchy to the new parent compartment.

B.

You cannot move a subcompartment to another parent compartment.

C.

Both parent and child compartments cannot have the same name.

D.

Sub-compartment D needs to be empty before it can be moved.

Full Access
Question # 33

Your company uses the Oracle Cloud Infrastructure (OCI) Object Storage service to share large data sets with its data science team. The data science team consists of 20 people who work from offices in Washington, D.C., and Tokyo. While working in these offices, employees are assigned an IP address from the public IP range 129.146.31.0/27

Which two steps should you take to ensure that the Object Storage bucket used in this scenario was only accessible from these office locations? (Choose two.)

A.

Write an IAM policy that includes the conditional statement where request.networkSource.name =CorpNet

B.

Set the bucket visibility to public and only share the URL with the data science team via email

C.

Create a pre-authenticated request for each data set and only share with the data science team via email

D.

Create a Network Source named CorpNetwork with a CIDR block of 129.146.31.0/27

E.

Create a Network Source named CorpNetwork with a CIDR block of 129.146.0.0/16

F.

Write an IAM policy that includes the conditional statement where request.region =

129.146.31.0/27

Full Access
Question # 34

With regard to Oracle Cloud Infrastructure Load Balancing service, which two actions will occur when a backend server that is registered with a backend set is marked to drain connections?

A.

All existing connections to this backend sever will be immediately closed.

B.

Requests to this backend server are redirected to a user-defined error page.

C.

All new connections to this backend server are disallowed.

D.

Connections to this backend server will remain open until all in-flight requests are completed.

E.

All connections to this backend server are forcibly closed after a timeout period.

Full Access
Question # 35

You developed a microservices based application that runs on Oracle Cloud Infrastructure (OCI) Container Engine for Kubernetes (OKE). You want to provide access to this cluster to other team members.

What should you do to provide access to this cluster using as fewest steps as possible?

A.

Create a group in OCI Infrastructure Access Management (IAM). Create a policy to grant access to the OKE cluster. Other team members should use OCI Cloud Shell to generate the kubeconfig into their own cloud shell environment and access the cluster using kubectl from cloud shell.

B.

Create a group in OCI Infrastructure Access Management (IAM). Create a policy to grant access to the OKE cluster. Create individual users and access token for each team member. Other team members should use OCI Cloud Shell to generate the kubeconfig into their own cloud shell environment and access the cluster using kubectl from cloud shell.

C.

Create a group in OCI Infrastructure Access Management (IAM). Create a policy to grant access to the OKE cluster. Create a cluster role and cluster role binding to provide access to the cluster for each team member. Other team members should install oci cli and kubectl locally on their laptop. Use the oci cli to generate the kubeconfig and use kubectl to access the cluster.

D.

Create a group in OCI Infrastructure Access Management (IAM). Create a policy to grant access to the OKE cluster. Other team members should install oci cli and kubectl locally on their laptop. Use the oci cli to generate the kubeconfig and use kubectl to access the cluster.

Full Access
Question # 36

You have an AI/ML application running on Oracle Cloud Infrastructure. You identified that the application needs GPU and at least 20Gbps Network throughput.

The application is currently using a VM.Standard2.1 compute without any block storage attached to it.

Which two options allow you to get your required performance for your application? (Choose two.)

A.

Terminate the compute instance preserving the boot volume. Create a new compute instance using the BM.GPU2.2 shape using the boot volume preserved, but no block volume attached.

B.

Terminate the compute instance preserving the boot volume. Create a new compute instance using the VM.Standard2.2 shape using the boot volume preserved, but no block volume attached.

C.

Terminate the compute instance preserving the boot volume. Create a new compute instance using the VM.GPU3.4 shape using the boot volume preserved and use the NVMe devices to host your application.

D.

Terminate the compute instance preserving the boot volume. Create a new compute instance using the BM.HPC2.36 shape using the boot volume preserved and use the NVMe devices to host your application.

E.

Terminate the compute instance preserving the boot volume. Create a new compute instance using the BM.GPU2.2 shape using the boot volume preserved and attach a new block volume to host your application.

Full Access