[2024年06月30日] 信頼され続ける1z0-1072-23試験のコツがあるPDF試験材料 [Q28-Q50]

Share

[2024年06月30日] 信頼され続ける1z0-1072-23試験のコツがあるPDF試験材料

2024年最新の1z0-1072-23テスト解説(更新されたのは57問があります)


Oracle 1z0-1072-23 認定試験の出題範囲:

トピック出題範囲
トピック 1
  • Configure Security Lists and Network Security Groups
  • Describe and configure OS Management
トピック 2
  • Understand Observability and Management platform
  • Configure Dynamic Groups and Tag based access control
トピック 3
  • Understand File System Snapshots and Cloning
  • Describe and Configure Web Application Firewall and Certificates
トピック 4
  • Understand Block Volume performance tiers
  • Understand Object Storage replication
トピック 5
  • Configure and manage Object Storage
  • Understand File System usage and metering
トピック 6
  • Configure Volume Groups, Backups, Clones
  • Implement conditional and advanced policies
トピック 7
  • Implement and manage Virtual Cloud Networks
  • Describe and configure a layer-4 Network Load Balancer
トピック 8
  • Describe Public and Private DNS zones
  • Configure Cloud Guard, Security Zone, and Security Advisor
トピック 9
  • Describe public and private IP addresses and virtual NICs
  • Understand Network Command Center Services
トピック 10
  • Describe OCI compute image options
  • Configure DNS and Traffic Management

 

質問 # 28
You have a high-demand web application running on Oracle Cloud Infrastructure (OCI). Your tenancy administrator has set up a schedule-based autoscaling policy on instance pool with an initial size of 5 instances for the application.
Policy 1:
Target pool size:10 instances
Execution time:8:30 a.m. on every Monday through Friday, in every month, in every year Cron expression:0 30 8 ? * MON-FRI * Which statement accurately explains the goal of this policy?

  • A. Goal: A recurring daily schedule. On weekday mornings at 8.30 a.m., scale out to 10 instances.
  • B. Goal: A recurring monthly schedule. On all days of the month, set the initial pool size to 5 instances. At
    8.30 a.m., on every day of the month, scale out to 10 instances.
  • C. Goal: A recurring weekly schedule. On all days of the week at 8.30 a.m., scale out the pool to 10 instances from the initial size of 5
  • D. Goal: A one-time schedule with only one scaling out event. At 8:30 a.m., on December 31, 2021, scale the instance pool to 10 instances from 5.

正解:A

解説:
The explanation is that a schedule-based autoscaling policy allows you to adjust the size of your instance pool based on a cron expression that specifies the date and time of the scaling action. The cron expression consists of six fields: seconds, minutes, hours, day of month, month, and day of week. In this case, the cron expression is 0 30 8 ? * MON-FRI *, which means that the scaling action will occur at 8:30 a.m. on every Monday through Friday, regardless of the day of month or month. Therefore, the goal of this policy is to scale out the instance pool to 10 instances on weekday mornings at 8:30 a.m.


質問 # 29
Which Oracle Cloud Infrastructure (OCI) Identity and Access Management (IAM) policy is invalid?

  • A. Allow group A-Admins to manage all-resources in compartment Project-A
  • B. Allow dynamic-group FrontEnd to manage instance-family in compartment Project-A
  • C. Allow group A-Developers to create volumes in compartment Project-A
  • D. Allow any-user to inspect users in tenancy

正解:C

解説:
Explanation
Allow group A-Developers to create volumes in compartment Project-A is an invalid IAM policy. This is because create is not a valid verb for volumes. The correct verb for creating volumes is attach. The other options are valid IAM policies that use correct verbs and syntax. References: [IAM Policies], [Verbs]


質問 # 30
When defining a query for metric data in Monitoring, which field provides the time window for aggregating metric data points plotted on the metric chart?

  • A. Statistic
  • B. Namespace
  • C. Interval
  • D. Dimension

正解:C

解説:
Interval is the field that provides the time window for aggregating metric data points plotted on the metric chart. Interval is a parameter that specifies how often metric data points are collected and aggregated by the Monitoring service. For example, an interval of 5 minutes means that metric data points are aggregated every 5 minutes and displayed on the chart. The other options are not fields that provide the time window for aggregating metric data points, but rather other parameters that define the metric query. Reference: [Interval]


質問 # 31
Which THREE capabilities are available with the Oracle Cloud Infrastructure (OCI) DNS service?

  • A. Creating and managing records
  • B. Creating and managing WAF rules
  • C. Viewing all zones
  • D. Creating and managing zones
  • E. Creating and managing Identity Access Management (IAM) policies
  • F. Creating and managing security lists

正解:A、C、D

解説:
Explanation
Creating and managing records, creating and managing zones, and viewing all zones are three capabilities that are available with the OCI DNS service. Records are data elements that map domain names to IP addresses or other information. Zones are collections of records that correspond to a domain name or a subdomain name.
The OCI DNS service allows users to create and manage records and zones for their domains or subdomains, as well as view all zones in their tenancy. The other options are not capabilities of the OCI DNS service, but of other OCI services such as WAF, IAM, and Networking. References: [DNS Service], [Records], [Zones]


質問 # 32
Which statement is NOT correct regarding the Oracle Cloud Infrastructure (OI) File System snapshots?

  • A. Snapshots are a consistent, point-in-time view of your file systems.
  • B. Snapshots are accessible under the root directory of the file system at .snapshot/name.
  • C. Even if nothing has changed within the file system since the last snapshot was taken, a new snapshot consumes more storage.
  • D. Before you can clone a file system, at least one snapshot must exist for the file system.

正解:C

解説:
Even if nothing has changed within the file system since the last snapshot was taken, a new snapshot does not consume more storage. This is because snapshots are incremental and only store the changes made to the file system since the previous snapshot. The other statements are correct regarding the OCI File System snapshots. Reference: [Snapshots and Storage Consumption]


質問 # 33
You are backing up your on-premises data to the Oracle Cloud Infrastructure (OCI) Object Storage Service.
Your requirements are:
1. Backups need to be retained for at least full 31 days.
2. Data should be accessible immediately if and when needed after the backup.
Which OCI Object Storage tier is suitable for storing the backup to minimize cost?

  • A. Archive tier
  • B. Auto-Tiering tier
  • C. Standard tier
  • D. Infrequent Access tier

正解:D

解説:
Explanation
The explanation is that the Infrequent Access tier is suitable for storing data that is accessed less frequently but requires immediate access when needed. The Infrequent Access tier has lower storage costs than the Standard tier, but higher retrieval costs. The Infrequent Access tier also has a minimum storage duration of 30 days, which means that you will be charged for at least 30 days of storage even if you delete or move the data before that period.


質問 # 34
Which TWO statements are NOTcorrect regarding the Oracle Cloud Infrastructure (OCI) burstable instances?

  • A. Baseline utilization is a fraction of each CPU core, either 25% or 75%.
  • B. Burstable instances are designed for scenarios where an instance is not typically idle and has high CPU utilization.
  • C. Burstable instances are charged according to the baseline OCPU.
  • D. Burstable instances cost less than regular instances with the same total OCPU count.
  • E. If the instance's average CPU utilization over the past 24 hours is below the baseline, the system allows it to burst above the baseline.

正解:A、B

解説:
The explanation is that burstable instances are VM instances that have a baseline utilization of either 12% or 50% of each CPU core, not 25% or 75%. Burstable instances are designed for scenarios where an instance is typically idle or has low CPU utilization but occasionally needs to burst above the baseline to handle spikes in demand. Burstable instances cost less than regular instances with the same total OCPU count but charge extra for bursting above the baseline OCPU.


質問 # 35
Which TWO statements are TRUE about Private IP addresses in Oracle Cloud Infrastructure (OCI)?

  • A. By default, the primary VNIC of an instance in a subnet has one primary private IP address.
  • B. Each VNIC can only have one private IP address.
  • C. By default, the primary VNIC of an instance in a subnet has one primary private IP address and one secondary private IP address.
  • D. A private IP can have an optional public IP assigned to it if it resides in a public subnet.

正解:A、D

解説:
By default, the primary VNIC of an instance in a subnet has one primary private IP address. A private IP can have an optional public IP assigned to it if it resides in a public subnet. The explanation is that a private IP address is an IPv4 address that is assigned to a VNIC and belongs to the CIDR block of the VCN or subnet. By default, the primary VNIC of an instance in a subnet has one primary private IP address, which is automatically assigned by OCI and cannot be changed. However, you can also assign secondary private IP addresses to a VNIC, either manually or automatically, up to a maximum of 31 per VNIC. A private IP address can have an optional public IP address assigned to it, which allows the instance to communicate with the internet. A public IP address can be either ephemeral or reserved, depending on whether you want to keep it after stopping or terminating the instance. A private IP address can only have a public IP address assigned to it if it resides in a public subnet, which means that the subnet's route table has a route rule that directs traffic to the internet gateway.


質問 # 36
You have objects stored in an OCI Object Storage bucket that you want to share with a partner company. You decide to use pre-authenticated requests to grant access to the objects. Which statement is true about preauthenticated requests?

  • A. Pre-authenticated requests can be used to delete buckets or objects.
  • B. Deleting a pre-authenticated request does not revoke user access to the associated bucket or object.
  • C. You cannot edit a pre-authenticated request.
  • D. You need to provide your OCI credentials to the partner company.

正解:C

解説:
Explanation
You cannot edit a pre-authenticated request is a true statement about pre-authenticated requests.
Pre-authenticated requests are URLs that allow users to access objects or buckets in OCI Object Storage without requiring additional authentication or authorization. Pre-authenticated requests can be created with an expiration date and time, and can be used for read or write operations. However, once created, pre-authenticated requests cannot be edited, but can only be deleted or extended. The other statements are false about pre-authenticated requests. References: [Pre-Authenticated Requests]


質問 # 37
Which is NOT a valid option for an Oracle Cloud Infrastructure (OCI) compute shape?

  • A. Dedicated Virtual Machine Host
  • B. Bare Metal
  • C. Virtual Machine
  • D. Exadata Virtual Machine

正解:D

解説:
Explanation
Exadata Virtual Machine is not a valid option for an OCI compute shape. Exadata Virtual Machine is a deployment option for Exadata Cloud Service or Exadata Cloud@Customer, which are services that provide dedicated Exadata infrastructure for running Oracle databases in OCI. Exadata Virtual Machine allows you to create multiple virtual machines on each Exadata compute node and isolate them from each other using Oracle VM technology. The valid options for OCI compute shapes are:
Bare Metal: A bare metal instance is a physical server that gives you direct access to the underlying hardware and full isolation from other tenants.
Dedicated Virtual Machine Host: A dedicated virtual machine host is a physical server that hosts only your virtual machine instances and no other tenant's instances.
Virtual Machine: A virtual machine instance is a virtual server that runs on a shared physical server with other tenants' instances.
Burstable: A burstable instance is a virtual machine instance that has a baseline utilization of either 12% or 50% of each CPU core and can burst above the baseline when needed.


質問 # 38
Which is NOT a valid action within the Oracle Cloud Infrastructure (OCI) Block Volume service?

  • A. Expanding an existing volume in place with offline resizing.
  • B. Cloning an existing volume to a new, larger volume.
  • C. Attaching a block volume to an instance in a different availability domain.
  • D. Restoring from a volume backup to a larger volume.

正解:C

解説:
Explanation
Attaching a block volume to an instance in a different availability domain is not a valid action within the OCI Block Volume service. A block volume can only be attached to an instance in the same availability domain.
The other options are valid actions that can be performed with the Block Volume service. References: [Block Volume Actions]


質問 # 39
You have a high-demand web application running on Oracle Cloud Infrastructure (OCI). Your tenancy administrator has set up a schedule-based autoscaling policy on instance pool withan initial size of 5 instancesfor the application.
Policy 1:
Target pool size:10 instances
Execution time:8:30 a.m. on every Monday through Friday, in every month, in every year Cron expression:0 30 8 ? * MON-FRI * Which statement accurately explains the goal of this policy?

  • A. Goal: A one-time schedule with only one scaling out event. At 8:30 a.m., on December 31, 2021, scale theinstance pool to 10 instances from 5.
  • B. Goal: A recurring weekly schedule. On all days of the week at 8.30 a.m., scale out the pool to 10 instancesfrom the initial size of 5
  • C. Goal: A recurring daily schedule. On weekday mornings at 8.30 a.m., scale out to 10 instances.
  • D. Goal: A recurring monthly schedule. On all days of the month, set the initial pool size to 5 instances. At
    8.30 a.m., on every day of the month, scale out to 10 instances.

正解:C

解説:
Explanation
The explanation is that a schedule-based autoscaling policy allows you to adjust the size of your instance pool based on a cron expression that specifies the date and time of the scaling action. The cron expression consists of six fields: seconds, minutes, hours, day of month, month, and day of week. In this case, the cron expression is 0 30 8 ? * MON-FRI *, which means that the scaling action will occur at 8:30 a.m. on every Monday through Friday, regardless of the day of month or month. Therefore, the goal of this policy is to scale out the instance pool to 10 instances on weekday mornings at 8:30 a.m.


質問 # 40
You want to distribute DNS traffic to different endpoints based on the locationof the end user. Which TrafficManagement Steering Policy would you use?

  • A. IP Prefix
  • B. Geolocation
  • C. Load Balancer
  • D. Failover

正解:B

解説:
Explanation
The explanation is that geolocation is a type of Traffic Management Steering Policy that allows you to distribute DNS traffic to different endpoints based on the location of the end user. Geolocation steering policies use geolocation data from third-party providers to map end user IP addresses to geographic regions.
You can create rules that specify which endpoints to serve for each region or country, or use a default endpoint for unspecified regions.


質問 # 41
You plan to launch a VM instance with the VM.Standard2.24 shape and Oracle Linux 8 platform image. You want to protect your VM instance from low-level threats, such as rootkits and bootkits that can infect the firmware and operating system and are difficult to detect.
What should you do?

  • A. Create a burstable instance.
  • B. Create a shielded instance.
  • C. Use in-transit encryption.
  • D. Use Vulnerability Scanning Service.

正解:B

解説:
The explanation is that shielded instances are VM instances that have additional security features to protect them from low-level threats, such as rootkits and bootkits that can infect the firmware and operating system and are difficult to detect. Shielded instances use verified boot, which ensures that only trusted software components are executed during the boot process. Shielded instances also use virtual trusted platform module (vTPM), which provides a secure storage for encryption keys and certificates. Shielded instances are available for Oracle Linux 8 platform images with VM.Standard2.* shapes.


質問 # 42
As a network architect you have deployed a public subnet on your Virtual Cloud Network (VCN) with this security list:

You have also created a network security group (NSG) as shown in the table here, and assigned it to your bastion host:

You have confirmed that routing is correct but when you SSH to the VM from your home over the Internet youare unable to connect.
What could be the problem?

  • A. User will be able to SSH to the VM from the Internet as SSH is open on the NSG.
  • B. Public subnet does not have a route rule to the Internet Gateway.
  • C. SSH traffic is not allowed in the security list nor on the NSG from the Internet.
  • D. Internet traffic should be allowed only on the NSG.

正解:C

解説:
Explanation
SSH traffic is not allowed in the security list nor on the NSG from the Internet is the correct answer. This is because the security list only allows ingress traffic from 10.0.0.24 on port 22, and the NSG only allows ingress traffic from 10.0.0.0/16 on port 22. Neither of them allows ingress traffic from 0.0.0.0/0 (the Internet) on port
22, which is required for SSH access. The other options are not correct, as they do not explain why SSH access is not possible. References: [Security Lists], [Network Security Groups]


質問 # 43
When creating an Oracle Cloud Infrastructure (OCI) Virtual Cloud Network (VCN) with the VCN wizard, which THREE gateways are created automatically?

  • A. Dynamic Routing Gateway
  • B. Bastion Host
  • C. Service Gateway
  • D. Local Peering Gateway
  • E. Internet Gateway
  • F. NAT Gateway
  • G. Storage Gateway

正解:C、E、F

解説:
Internet Gateway, NAT Gateway, and Service Gateway are three gateways that are created automatically when creating a VCN with the VCN wizard. An Internet Gateway allows public traffic between the VCN and the internet. A NAT Gateway allows private traffic from the VCN to access the internet without exposing the VCN resources to incoming internet connections. A Service Gateway allows private traffic from the VCN to access OCI services such as Object Storage, Email Delivery, and Notifications. The other options are not created automatically by the VCN wizard, but can be added manually later if needed. Reference: [VCN Wizard], [Gateways]


質問 # 44
You are responsible for deploying an application on Oracle Cloud Infrastructure (OCI). The application is memoryintensive and performs poorly if enough memory is not available. You have created an instance pool of Linuxcompute instances in OCI to host the application and defined Autoscaling Configuration for the instance pool.
What should you do to ensure that the instance pool autoscales to prevent poor application performance?

  • A. Install OCI SDK on all compute instances and create a script that triggers theautoscaling event if there ishigh memory usage.
  • B. Install the monitoring agent on all compute instances, which triggers the autoscaling group.
  • C. Configure the autoscaling policy to monitor memory usage and scale up the number of instances when itmeets the threshold.
  • D. Configure the autoscaling policy to monitor CPU usage and scale up the number of instances when it meets the threshold

正解:C


質問 # 45
Company XYZ is spending $300,000.00 USD per month in egress fees for 7 Petabytes that they consume for Outbound Data Transfer in North America with their current cloud provider. The company is seeking to lower that expense considerably without reducing consumption. You propose migration to OCI because the Gigabyte Outbound Data Transfer in North America costs just $0.0085 USD per month. With OCI, how much will they spend per month for 7 Petabytes of Outbound Data Transfer? (1 Petabyte = 1000 Terabytes)

  • A. $0.00 (free with OCI)
  • B. $150,000.00
  • C. $59,500.00
  • D. $59,415.00

正解:C

解説:
$59,415.00 is the amount that Company XYZ will spend per month for 7 Petabytes of Outbound Data Transfer in North America with OCI. This is calculated by multiplying 7 Petabytes by 1000 Terabytes (to convert Petabytes to Terabytes), then multiplying by $0.0085 USD (the cost per Gigabyte Outbound Data Transfer in North America), then dividing by 1000 (to convert Gigabytes to Terabytes). The formula is:
(7 * 1000 * 0.0085) / 1000 = $59,415.00


質問 # 46
Which TWO components are optional while creating the Monitoring Query Language (MQL) expressions in the Oracle Cloud Infrastructure (OCI) Monitoring service?

  • A. Statistic
  • B. Interval
  • C. Dimensions
  • D. Grouping Function
  • E. Metric

正解:C、D

解説:
Dimensions and Grouping Function are two optional components while creating the Monitoring Query Language (MQL) expressions in the OCI Monitoring service. Dimensions are key-value pairs that provide additional information about a metric, such as region, compartment, or resource type. Grouping Function is a function that aggregates metric data across one or more dimensions, such as sum, count, or average. The other options are required components for MQL expressions. Reference: [Dimensions], [Grouping Function]


質問 # 47
Which tool provides a diagram of the implemented topology of all Virtual Cloud Networks (VCNs) in a selected region and tenancy?

  • A. Network Watcher
  • B. Traffic Analytics
  • C. Network Visualizer
  • D. VCN Flow Logs

正解:C

解説:
Network Visualizer is the tool that provides a diagram of the implemented topology of all VCNs in a selected region and tenancy. Network Visualizer is a feature of the OCI Networking service that allows users to view and manage their network resources in a graphical interface. It can help users understand their network topology, troubleshoot issues, and optimize performance. The other options are not tools that provide a diagram of the VCN topology, but rather other features or services of OCI Networking. Reference: [Network Visualizer]


質問 # 48
You are a security administrator for your company's Oracle Cloud Infrastructure (OCI) tenancy. Your storage administrator informs you that she cannot associate an encryption key from an existing Vault to a new Object Storage bucket.
What could be a possible reason for this behavior?

  • A. There is no Identity and Access Management (IAM) policy that allows the Object Storage service to use thekey.
  • B. The Object Storage bucket policy lacks the necessary Access Control List (ACL).
  • C. The storage administrator forgot to select "Encrypt using Oracle managed keys" while creating the bucket.
  • D. The secret for the key was not created beforehand

正解:A

解説:
Explanation
There is no Identity and Access Management (IAM) policy that allows the Object Storage service to use the key. The explanation is that when you create an Object Storage bucket with encryption using a customer-managed key from Vault, you need to have an IAM policy that allows the Object Storage service to use the key on your behalf. The policy should look like this:
allow service objectstorage-<region> to use key in compartment <compartment-name> where <region> is the region where your bucket resides and <compartment-name> is the compartment where your key resides.


質問 # 49
Your DevOps team needs to interconnect the on-premises network to the Oracle Cloud Infrastructure (OCI) resources, such as a managed database that resides in a private subnet. They indicate that they have a low budget and their bandwidth requirements are minimal, so you decide that a site-to-site VPN is the best option.
They provide you with their router public IP address. You need to create an object in OCI that represents this router. Which object would you create?

  • A. IPSec Tunnel
  • B. Bastion Host
  • C. Virtual Network Interface Card (vNIC)
  • D. Customer Premises Equipment (CPE)
  • E. Dynamic Routing Gateway (DRG)
  • F. Internet Gateway

正解:D

解説:
Customer Premises Equipment (CPE). The explanation is that CPE is an object in OCI that represents your on-premises router or VPN device that connects to your VCN via a site-to-site VPN. A site-to-site VPN is a secure and encrypted connection between your on-premises network and your VCN over the public internet. To set up a site-to-site VPN, you need to create a CPE object with your router's public IP address and other information, such as vendor and platform. You also need to create a Dynamic Routing Gateway (DRG) object in your VCN and attach it to your VCN. Then, you need to create an IPSec connection between your CPE and DRG, which will create two redundant VPN tunnels for high availability.


質問 # 50
......

1z0-1072-23認定ガイドPDFは100%カバー率でリアル試験問題:https://www.jpntest.com/shiken/1z0-1072-23-mondaishu

1z0-1072-23試験問題集を提供していますOracle問題:https://drive.google.com/open?id=15U6CI26OPD7CNMPjsc_Ql3rIFlIdMaHh

弊社を連絡する

我々は12時間以内ですべてのお問い合わせを答えます。

オンラインサポート時間:( UTC+9 ) 9:00-24:00
月曜日から土曜日まで

サポート:現在連絡