[2023] 1z0-1104-22 Answers 1z0-1104-22 Free Demo Are Based On The Real Exam
1z0-1104-22 [Aug-2023 Newly Released] Exam Questions For You To Pass
NEW QUESTION # 48
Which tasks can you perform on a dedicated virtual machine host?
- A. Creating instance pools
- B. Capacity reservations
- C. Instance configurations
- D. Manual scaling
Answer: D
Explanation:
Supported features: Most of the Compute features for VM instances are supported for instances running on dedicated virtual machine hosts. However, the following features are not supported:
Autoscaling
Capacity reservations
Instance configurations
Instance pools
Burstable instances
Reboot migration. You can use manual migration instead
https://docs.oracle.com/en-us/iaas/Content/Compute/Concepts/dedicatedvmhosts.htm#Dedicated_Virtual_Machine_Hosts
NEW QUESTION # 49
Which of the following is necessary step when creating a secret in vault?
- A. Digest Hash should be created of the secret value
- B. Vault-managed key is necessary to encrypt the secret
- C. Object Storage must be created to run secret service
- D. Shamir's secret sharing algorithm should be used to unseal the vault
Answer: B
Explanation:
https://docs.oracle.com/en/database/other-databases/essbase/21/essad/create-vault-and-secrets.html
NEW QUESTION # 50
A company has OCI tenancy which has mount target associated with two File Systems, CG_1 and CG_2. These File Systems are accessed by IP-based clients AB_1 and AB_2 respectively. As a security administrator, how can you provide access to both clients such that CGI has Read only access on AB1 and CG_2 has Read/Write access on AB_2?
- A. NFS Export Option
- B. Access Control Lists
- C. Vault
- D. NFS v3 Unix Security
Answer: A,D
Explanation:
NEW QUESTION # 51
Select the component that encompasses the overall configuration of your WAF service on OCI.
- A. Origin
- B. Web Application Firewall policy
- C. Bot Management
- D. Protection rules
Answer: B
Explanation:
WAF Policy Management
Provides an overview of web application firewall (WAF) policies, including their creation, updating, and deletion.
WAF policies encompass the overall configuration of your WAF service, including access rules, rate limiting rules, and protection rules.
https://docs.oracle.com/en-us/iaas/Content/WAF/Policies/waf-policy_management.htm
NEW QUESTION # 52
Which parameters customers need to configure while reading secrets by name using CL1 or API? Select TWO correct answers.
- A. ASCII Value
- B. Secret Name
- C. Vault Id
- D. Certificates
Answer: B,C
Explanation:
NEW QUESTION # 53
Which type of firewalls are designed to protect against web application attacks, such as SQL injection and cross-site scripting?
- A. Incident firewall
- B. Web Application Firewall
- C. Stateful inspection firewall
- D. Packet filtering firewall
Answer: B
Explanation:
SQL injections. Cross-site scripting. Distributed denial of service (DDoS) attacks. Botnets. These are just some of the cyber-weapons increasingly being used by malicious actors to target web applications, cause data breaches, and expose sensitive business information.
Oracle WAF uses a multilayered approach to protect web applications from a host of cyberthreats including malicious bots, application layer (L7) DDoS attacks, cross-site scripting, SQL injection, and vulnerabilities defined by the Open Web Application Security Project (OWASP). When a threat is identified, Oracle WAF automatically blocks it and alerts security operations teams so they can investigate further.
https://www.oracle.com/a/ocom/docs/security/oci-web-application-firewall.pdf
NEW QUESTION # 54
Which VCN configuration is CORRECT with regard to VCN peering within a same region ?
- A. 12.0.0.0/16 and 12.0.0.0/16
C 194.168.0.0/24 and 194.168.0.0/24 - B. 194.168.0.0/24 and 194.168.0.0/16
- C. 12.0.0.0/16 and 194.168.0.0/16
Answer: C
NEW QUESTION # 55
Which components are a part of the OCI Identity and Access Management service?
- A. Policies
- B. Compute instances
- C. Regional subnets
- D. VCN
Answer: A
Explanation:
https://docs.oracle.com/en-us/iaas/Content/Identity/Concepts/overview.htm
NEW QUESTION # 56
How can you restrict access to OCI console from unknown IP addresses?
- A. Create tenancy's authentication policy and create WAF rules
- B. Create tenancy's authentication policy and add a network source
- C. Create PAR to restrict access the access
- D. Make OCI resources private instead of public
Answer: B
Explanation:
NEW QUESTION # 57
Which Security Zone policy is NOT valid?
- A. Resources in a security zone must be automatically backed up regularly.
- B. Resources in a security zone should not be accessible from the public internet.
- C. A boot volume can be moved from a security zone to a standard compartment.
- D. A compute instance cannot be moved from a security zone to a standard compartment.
Answer: C
NEW QUESTION # 58
Which statement is true about origin management in WAF?
Statement A: Multiple origins can be defined.
Statement B: Only a single origin can be active for a WAF.
- A. Only statement B is true.
- B. Both the statements are true.
- C. Both the statements are false.
- D. Only statement A is true.
Answer: B
NEW QUESTION # 59
Which OCI service can index, enrich, aggregate, explore, search, analyze, correlate, visualize and monitor data?
- A. WAF
- B. Data Safe
- C. Logging Analytics
- D. Data Guard
Answer: C
Explanation:
NEW QUESTION # 60
Which statement is true about Oracle Cloud Infrastructure (OCI) Object Storage server-side encryption?
- A. All the traffic to and from object storage is encrypted by using Transport Layer Security.
- B. Each object in a bucket is always encrypted with the same data encryption key.
- C. Customer-provided encryption keys are never stored in OCI Vault service.
- D. Encryption is not enabled by default.
Answer: A
NEW QUESTION # 61
Which of these protects customer data at rest and in transit in a way that allows customers to meet their security and compliance requirements for cryptographic algorithms and key management?
- A. Security controls
- B. Data encryption
- C. Identity Federation
- D. Customer isolation
Answer: B
Explanation:
DATA ENCRYPTION
Protect customer data at-rest and in-transit in a way that allows customers to meet their security and compliance requirements for cryptographic algorithms and key management.
https://docs.oracle.com/en-us/iaas/Content/Security/Concepts/security_overview.htm
NEW QUESTION # 62
You are using a custom application with third-party APIs to manage application and data hosted in an Oracle Cloud Infrastructure (OCI) tenancy. Although your third-party APIs don't support OCI's signature-based authentication, you want them to communicate with OCI resources. Which authentication option must you use to ensure this?
- A. OCI username and Password
- B. API Signing Key
- C. Auth Token
- D. SSH Key Pair with 2048-bit algorithm
Answer: C
NEW QUESTION # 63
......
New 2023 Realistic Free Oracle 1z0-1104-22 Exam Dump Questions and Answer: https://actualtests.realvalidexam.com/1z0-1104-22-real-exam-dumps.html
