[Dec-2023] Latest Oracle 1z0-1085-23 exam dumps and online Test Engine
Oracle 1z0-1085-23: Selling Oracle Cloud Products and Solutions
NEW QUESTION # 29
Which describes a key benefit of using Oracle Cloud Infrastructure (OCI)?
- A. OCI offers consistent performance with a predictable pricing model.
- B. With OCI, you can run only cloud-native workloads.
- C. Only bare metal workloads are supported on OCI.
- D. With OCI, you can only run Java based workloads on bare metal.
Answer: A
Explanation:
https://www.oracle.com/in/cloud/pricing.html
- OCI offers consistent performance with a predictable pricing model - is the best suited answer.
- Only bare metal workloads are supported in OCI - False, since you can work with VMs etc too
- With OCI, you can run cloud native workloads - False, since you can work with on-premise by connecting it to OCI too.
- With OCI, you can only run Java based workloads on bare metal - False since Java is not the only programming language supported by OCI.
NEW QUESTION # 30
Which is an example of Edge Services in Oracle Cloud Infrastructure (OCI)?
- A. Web Application Firewall
- B. Virtual Cloud Network (VCN)
- C. Virtual Firewall
- D. Object Storage
Answer: A
Explanation:
Oracle Cloud Infrastructure Web Application Firewall (WAF) is a cloud-based, Payment Card Industry (PCI) compliant, global security service that protects applications from malicious and unwanted internet traffic. WAF can protect any internet facing endpoint, providing consistent rule enforcement across a customer's applications.
WAF provides you with the ability to create and manage rules for internet threats including Cross-Site Scripting (XSS), SQL Injection and other OWASP-defined vulnerabilities. Unwanted bots can be mitigated while tactically allowed desirable bots to enter. Access rules can limit based on geography or the signature of the request.
Reference:
https://blogs.oracle.com/cloud-infrastructure/innovation-in-edge-services-the-oracle-cloud-infrastructure-edge-network
NEW QUESTION # 31
Which SLA type is not offered by Oracle Cloud Infrastructure compute service?
- A. Data Plane
- B. Service Plane
- C. Control Plane
- D. Performance Plane
Answer: B
Explanation:
Service Plane is NOT an SLA provided by OCI. See the table below:
NEW QUESTION # 32
In what two ways does Oracle Cloud Infrastructure (OCI) offer industry leading price-performance?
- A. OCI hypervisor provides Industry loading performance.
- B. OCI leverages advanced encryption that results In fast performance
- C. With OCI, pricing Is low and predictable across all regions and services.
- D. OCI does not over subscribe CPU, but only memory.
- E. OCI backs performance claims with Service Level Agreements.
Answer: C,E
Explanation:
OCI leverages advanced encryption that leads to fast performance, OCI does not over subscribe CPU, but only memory, and OCI hypervisor provides industry leading performance are WRONG.
However, OCI does back claims with SLAs and offers predictable pricing for all services.
Reference:
https://www.oracle.com/in/cloud/pricing.html
NEW QUESTION # 33
Which two are enabled by Oracle Cloud Infrastructure Fault Domains?
- A. Protect against planned hardware maintenance
- B. To meet requirements for legal jurisdictions
- C. Build replicated systems for disaster recovery
- D. To mitigate the risk of large scale events such as earthquakes
- E. Protect against unexpected hardware or power supply failures
Answer: A,E
Explanation:
A fault domain is a grouping of hardware and infrastructure within an availability domain. Each availability domain contains three fault domains. Fault domains provide anti-affinity: they let you distribute your instances so that the instances are not on the same physical hardware within a single availability domain. A hardware failure or Compute hardware maintenance event that affects one fault domain does not affect instances in other fault domains. In addition, the physical hardware in a fault domain has independent and redundant power supplies, which prevents a failure in the power supply hardware within one fault domain from affecting other fault domains.
To control the placement of your compute instances, bare metal DB system instances, or virtual machine DB system instances, you can optionally specify the fault domain for a new instance or instance pool at launch time. If you don't specify the fault domain, the system selects one for you. Oracle Cloud Infrastructure makes a best-effort anti-affinity placement across different fault domains, while optimizing for available capacity in the availability domain. To change the fault domain for an instance, terminate it and launch a new instance in the preferred fault domain.
Use fault domains to do the following things:
Protect against unexpected hardware failures or power supply failures.
Protect against planned outages because of Compute hardware maintenance.
We can use fault domains to do the following things:
1) Protect against unexpected hardware failures or power supply failures.
2) Protect against planned outages because of Compute hardware maintenance
Reference:
https://docs.cloud.oracle.com/en-us/iaas/Content/General/Concepts/regions.htm
NEW QUESTION # 34
Which Oracle Cloud Infrastructure (OCI) service can be used to protect sensitive and regulated data in OCI database services?
- A. Oracle Data Safe
- B. OCI OS management
- C. Oracle Data Guard
- D. OCI Audit
Answer: A
Explanation:
Oracle Data Safe is a unified control center for your Oracle databases which helps you understand the sensitivity of your data, evaluate risks to data, mask sensitive data, implement and monitor security controls, assess user security, monitor user activity, and address data security compliance requirements.
Whether you're using an Autonomous Database or an Oracle DB system, Oracle Data Safe delivers essential data security capabilities as a service on Oracle Cloud Infrastructure.
Features of Oracle Data Safe:
Oracle Data Safe provides the following set of features for protecting sensitive and regulated data in Oracle Cloud databases, all in a single, easy-to-use management console:
1) Security Assessment helps you assess the security of your cloud database configurations. It analyzes database configurations, user accounts, and security controls, and then reports the findings with recommendations for remediation activities that follow best practices to reduce or mitigate risk.
2) User Assessment helps you assess the security of your database users and identify high risk users. It reviews information about your users in the data dictionary on your target databases, and calculates a risk score for each user. For example, it evaluates the user types, how users are authenticated, the password policies assigned to each user, and how long it has been since each user has changed their password. It also provides a direct link to audit records related to each user. With this information, you can then deploy appropriate security controls and policies.
3) Data Discovery helps you find sensitive data in your cloud databases. You tell Data Discovery what kind of sensitive data to search for, and it inspects the actual data in your database and its data dictionary, and then returns to you a list of sensitive columns. By default, Data Discovery can search for a wide variety of sensitive data pertaining to identification, biographic, IT, financial, healthcare, employment, and academic information.
4) Data Masking provides a way for you to mask sensitive data so that the data is safe for non-production purposes. For example, organizations often need to create copies of their production data to support development and test activities. Simply copying the production data exposes sensitive data to new users. To avoid a security risk, you can use Data Masking to replace the sensitive data with realistic, but fictitious data.
5) Activity Auditing lets you audit user activity on your databases so you can monitor database usage and be alerted of unusual database activities.
NEW QUESTION # 35
Which TWO statements are true regarding Oracle Cloud Infrastructure (OCI) Regions?
(Choose al correct answers)
- A. Some regions only provide test/dev environments.
- B. Some regions provide a single availability domain.
- C. Some regions provide multiple availability domains.
- D. Some regions provide a single fault domain.
- E. Some regions provide multiple subregions.
Answer: B,C
Explanation:
These statements are true regarding OCI regions. A region is a localized geographic area that hosts one or more availability domains. An availability domain is one or more data centers that host OCI resources such as compute instances, block volumes, and subnets. Availability domains are isolated from each other, fault tolerant, and very unlikely to fail simultaneously1 Some regions provide multiple availability domains, while some regions provide a single availability domain. The number of availability domains per region varies depending on the region type and the customer demand. You can check the list of regions and their availability domains here: 2 Commercial regions: These are the standard regions that are available to all customers and offer a wide range of OCI services and features. Commercial regions can have one, two, or three availability domains per region.
Government regions: These are the regions that are dedicated to US government customers and meet specific compliance and security requirements. Government regions can have one or two availability domains per region.
Dedicated regions: These are the regions that are deployed within a customer's data center and provide a fully managed OCI environment that is consistent with the public cloud regions. Dedicated regions can have one or two availability domains per region.
The other statements are false regarding OCI regions. There is no concept of subregions in OCI. A region is composed of one or more availability domains, not subregions1 Regions do not only provide test/dev environments. Regions can host any type of workload or application, whether it is for production, development, testing, or disaster recovery purposes. Regions offer different performance levels, service levels, and pricing options to suit different customer needs and use cases1 Regions do not provide a single fault domain. A fault domain is a grouping of hardware and infrastructure within an availability domain that is designed to be isolated from failures in other fault domains. Fault domains let you distribute your instances so that they are not on the same physical hardware within a single availability domain. Each availability domain has three fault domains, regardless of the number of availability domains in a region3
NEW QUESTION # 36
You are analyzing your Oracle Cloud Infrastructure (OCI) usage with Cost Analysis tool in the OCI console.
Which of the following is NOT a default feature of the tool?
- A. Filter costs by applications
- B. Filter costs by tags
- C. Filter costs by date
- D. Filter costs by compartments
Answer: A
Explanation:
Cost Analysis is an easy-to-use visualization tool to help you track and optimize your Oracle Cloud Infrastructure spending, allows you to generate charts, and download accurate, reliable tabular reports of aggregated cost data on your Oracle Cloud Infrastructure consumption. Use the tool for spot checks of spending trends and for generating reports
NEW QUESTION # 37
Which three services Integrate with Oracle Cloud Infrastructure (OCI) Key Management?
- A. Block Volume
- B. File Storage
- C. Object Storage
- D. Identity and Access Management
- E. Functions
- F. Auto Scaling
Answer: A,B,C
Explanation:
DATA ENCRYPTION
Protect customer data at-rest and in-transit in a way that allows customers to meet their security and compliance requirements for cryptographic algorithms and key management The Oracle Cloud Infrastructure Block Volume service always encrypts all block volumes, boot volumes, and volume backups at rest by using the Advanced Encryption Standard (AES) algorithm with 256-bit encryption. By default all volumes and their backups are encrypted using the Oracle-provided encryption keys. Each time a volume is cloned or restored from a backup the volume is assigned a new unique encryption key.
The File Storage service encrypts all file system and snapshot data at rest. By default all file systems are encrypted using Oracle-managed encryption keys. You have the option to encrypt all of your file systems using the keys that you own and manage using the Vault service.
Object Storage employs 256-bit Advanced Encryption Standard (AES-256) to encrypt object data on the server. Each object is encrypted with its own data encryption key. Data encryption keys are always encrypted with a master encryption key that is assigned to the bucket. Encryption is enabled by default and cannot be turned off. By default, Oracle manages the master encryption key.
Reference:
https://docs.cloud.oracle.com/en-us/iaas/Content/Block/Concepts/overview.htm
https://docs.cloud.oracle.com/en-us/iaas/Content/Object/Concepts/objectstorageoverview.htm
https://docs.cloud.oracle.com/en-us/iaas/Content/File/Concepts/filestorageoverview.htm Oracle Cloud Infrastructure Key Management is a managed service that enables you to encrypt your data using keys that you control.
IAM, Autoscaling and functions cannot be used with Key Management and hence are incorrect options.
NEW QUESTION # 38
A customer wants a dedicated connection with minimal network latency from their on-premises data center to Oracle Cloud Infrastructure (OCI).
Which service should they choose?
- A. Public internet
- B. Virtual Cloud Network Remote Peering
- C. IPSec Virtual Private Network (VPN)
- D. OCI FastConnact
Answer: D
Explanation:
Oracle Cloud Infrastructure FastConnect provides an easy way to create a dedicated, private connection between your data center and Oracle Cloud Infrastructure. FastConnect provides higher-bandwidth options, and a more reliable and consistent networking experience compared to internet-based connections.
NEW QUESTION # 39
Which Oracle Cloud Infrastructure (OCI) capability allows you to set up alerts to notify you if a budget forecast exceeds or spending surpasses a certain amount?
- A. Events
- B. Budget
- C. Monitoring
- D. Cost Analysis
Answer: B
Explanation:
Budget is the OCI capability that allows you to set up alerts to notify you if a budget forecast exceeds or spending surpasses a certain amount. You can create budget alerts based on actual spending or forecasted spending, and specify the percentage or amount of the budget that triggers the alert. You can also choose how to receive the alert notifications, such as email or OCI Notifications service.
NEW QUESTION # 40
How are compartment quotes applied in Oracle Cloud infrastructure?
- A. On a per-compartment basis
- B. On a per-tenancy basis
- C. Globally, across all components
- D. On a per-region basis
Answer: A
Explanation:
Compartments quotas are applied on a per-compartment basis in Oracle Cloud Infrastructure. A compartment quota is a set of limits and policies that define how resources can be allocated within a compartment. A compartment quota can specify the maximum number of resources, the allowed shapes and sizes, and the minimum performance levels for resources within a compartment.
NEW QUESTION # 41
A new customer has logged into Oracle Cloud Infrastructure (OCI) as an administrator for the first time. The admin would like to deploy Infrastructure into a region other then their home region.
What is the first Stop they must take in order to accomplish this task?
- A. Navigate to the desired region and begin creating resources.
- B. File a service request for access to each additional region.
- C. Use API endpoints to create resources in the desired region.
- D. Subscribe to the desired region.
Answer: D
Explanation:
When you sign up for Oracle Cloud Infrastructure, Oracle creates a tenancy for you in one region. This is your home region. Your home region is where your IAM resources are defined. When you subscribe to another region, your IAM resources are available in the new region, however, the master definitions reside in your home region and can only be changed there.
When you subscribe your tenancy to a new region, all the policies from your home region are enforced in the new region. If you want to limit access for groups of users to specific regions, you can write policies to grant access to specific regions only.
Reference:
https://docs.cloud.oracle.com/en-us/iaas/Content/Identity/Tasks/managingregions.htm To create an instance in another region, perform these preliminary steps:
1. Extend your subscription to another region.
2. Federate Oracle Identity Cloud Service (IDCS) from the new region with Oracle Cloud Infrastructure (OCI).
Also, when you purchase these services or sign up for a free promotion, you typically choose the data region closest to your location to access them. This becomes your primary data region. However, if required, you can extend your subscription to other geographical regions (within the same cloud account) and use the services there.
NEW QUESTION # 42
Which TWO types of encryption keys are recognized by the Oracle Cloud Infrastructure (OCI) Vault service?
(Choose all correct answers)
- A. Auth Tokens
- B. Wrapper keys
- C. Master Encryption keys
- D. Data encryption keys
- E. Alias keys
Answer: C,D
Explanation:
Master encryption keys are keys that are stored and managed by the Vault service. They are used to encrypt or decrypt data encryption keys or other secrets stored in the Vault service7 Data encryption keys are keys that are generated by the Vault service and used to encrypt or decrypt data outside of the Vault service, such as data in Object Storage or Block Volume. Data encryption keys are themselves encrypted by master encryption keys and returned to the user as ciphertext
NEW QUESTION # 43
A customer wants a dedicated and secure connection to their on-premises data center from their Oracle Cloud Infrastructure (OCI) resources.
Which TWO OCI services can be used?
(Choose all correct answers)
- A. Internet Gateway
- B. FastConnect
- C. Remote Peering connection
- D. NAT Gateway
- E. Site-to-Site VPN
Answer: A,C
NEW QUESTION # 44
Which Oracle Cloud Infrastructure storage service can provide a shared file system across multiple compute instances?
- A. file Storage
- B. Local NVMe
- C. Archive storage
- D. Object Storage
Answer: A
Explanation:
Oracle Cloud Infrastructure File Storage service provides a durable, scalable, secure, enterprise-grade network file system. You can connect to a File Storage service file system from any bare metal, virtual machine, or container instance in your Virtual Cloud Network (VCN). You can also access a file system from outside the VCN using Oracle Cloud Infrastructure FastConnect and Internet Protocol security (IPSec) virtual private network (VPN).
Large Compute clusters of thousands of instances can use the File Storage service for high-performance shared storage. Storage provisioning is fully managed and automatic as your use scales from a single byte to exabytes without upfront provisioning.
Reference:
https://docs.cloud.oracle.com/en-us/iaas/Content/File/Concepts/filestorageoverview.htm
NEW QUESTION # 45
......
Oracle 1z0-1085-23 Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Topic 1 |
|
| Topic 2 |
|
| Topic 3 |
|
New 2023 1z0-1085-23 Test Tutorial (Updated 187 Questions): https://www.itpassleader.com/Oracle/1z0-1085-23-dumps-pass-exam.html
Reliable 1z0-1085-23 Exam Tips Test Pdf Exam Material: https://drive.google.com/open?id=1SYa8gdfxjWCGHzkWTi_IMQjRXNs-MBy2