2022 100% Free 1z0-1104-21 Daily Practice Exam With 90 Questions [Q40-Q59]

Share

2022 100% Free 1z0-1104-21 Daily Practice Exam With 90 Questions

1z0-1104-21 exam torrent Oracle study guide

NEW QUESTION 40
What is the matching rule syntax for a single condition?

  • A. Option C
  • B. Option D
  • C. Option B
  • D. Option A

Answer: A

Explanation:

 

NEW QUESTION 41
What does an audit log event include?

  • A. Header
  • B. Audit type
  • C. Footer
  • D. Type of input

Answer: A

Explanation:
The HTTP header fields and values in the request.
https://docs.oracle.com/en-us/iaas/Content/Audit/Reference/logeventreference.htm

 

NEW QUESTION 42
Which parameters customers need to configure while reading secrets by name using CL1 or API? Select TWO correct answers.

  • A. Certificates
  • B. ASCII Value
  • C. Vault Id
  • D. Secret Name

Answer: C,D

Explanation:

 

NEW QUESTION 43
Logical isolation for resources is provided by which OCI feature?

  • A. Tenancy
  • B. Compartments
  • C. Region
  • D. Availability Zone

Answer: B

 

NEW QUESTION 44
As a lead Security Architect, you have tasked to restrict access to and from the worker nodes in pods running in Oracle Container Engine for Kubernetes?

  • A. Vulnerability Scanning
  • B. Security Lists
  • C. Identity and Access Management
  • D. Cloud Guard

Answer: B

Explanation:

 

NEW QUESTION 45
A member of operations team has set Pre-Authenticated Request (PAR) associated with a bucket to an incorrect date and now wants to edit the PAR request. How can this be achieved?

  • A. Delete the bucket associated with PAR and recreate it
  • B. Delete both PAR as well as the bucket then recreate both
  • C. Delete the PAR and recreate it with the required date
  • D. Don't set an expiration time for PAR

Answer: C

Explanation:

 

NEW QUESTION 46
As a solutions architect, you need to assist operations team to write an I AM policy to give users in group-uat1 and group- uat2 access to manage all resources in the compartment Uat. Which is the CORRECT IAM policy ?

  • A. Allow group group-uat1 group-uat2 to manage all resources in compartment Uat
  • B. Allow any-user to manage all resources in tenancy where target.compartment= Uat
  • C. Allow group /group-uat*/ to manage all resources in compartment Uat
  • D. Allow any-user to manage all resources in compartment Uat where request.group=/group-uat/*

Answer: A

 

NEW QUESTION 47
When does Cloud Guard re-open an issue and update the history?

  • A. If it detects an issue again for an Open (unresolved) problem
  • B. If it detects an issue for a previously resolved configuration problem
  • C. If it detects an issue for a previously resolved/dismissed activity problem
  • D. If it detects an issue for a previously dismissed configuration problem

Answer: B

Explanation:
If Cloud Guard detects an issue again for:
An Open (unresolved) problem, it updates the problem history, but doesn't create a new problem.
A previously solved problem, it reopens the issue and updates the history.
A previously dismissed problem, it updates the history.
https://docs.oracle.com/en-us/iaas/cloud-guard/using/problems-page.htm

 

NEW QUESTION 48
Which Oracle Cloud Service provides restricted access to target resources?

  • A. Internet Gateway
  • B. SSL certificate
  • C. Load balancer
  • D. Bastion

Answer: D

Explanation:
Bastion
Oracle Cloud Infrastructure Bastion provides restricted and time-limited access to target resources that don't have public endpoints.

https://docs.oracle.com/en-us/iaas/Content/Security/Concepts/security_features.htm

 

NEW QUESTION 49
What would you use to make Oracle Cloud Infrastructure Identity and Access Management govern resources in a tenancy?

  • A. Groups
  • B. Users
  • C. Dynamic groups
  • D. Policies

Answer: D

 

NEW QUESTION 50
which two responsibilities will be oracle when you move your it infrastructure to oracle cloud infrastructure?

  • A. PROVIDING STRONG SECURITY LIST
  • B. ACCOUNT ACCESS MANAGEMENT
  • C. Strong Isolation
  • D. MAINTAINING CUSTOMER DATA
  • E. Strong IAM Framework

Answer: C,E

 

NEW QUESTION 51
Which is NOT a part of Observability and Management Services?

  • A. Logging Analytics
  • B. Logging
  • C. OCI Management Service
  • D. Event Services

Answer: C

Explanation:
https://www.oracle.com/in/manageability/

 

NEW QUESTION 52
Which statement is not true about Cloud Security Posture?

  • A. Problems contain data about the specific type of issue that was found.
  • B. Problems can be resolved, dismissed, or remediated.
  • C. Problems are defined by the type of detector that creates them: activity or configuration.
  • D. Problems are created when Cloud Guard discovers a deviation from a responder rule.

Answer: D

Explanation:
https://www.oracle.com/security/cloud-security/what-is-cspm/

 

NEW QUESTION 53
What is the minimum active storage duration for logs used by Logging Analytics to be archived?

  • A. 15 days
  • B. 60 days
  • C. 30 days
  • D. 10 days

Answer: C

Explanation:
https://docs.oracle.com/en-us/iaas/logging-analytics/doc/manage-storage.html#:~:text=The%20minimum%20Active%20Storage%20Duration,be%20archived%20is%2030%20days.
The minimum Active Storage Duration (Days) for logs before they can be archived is 30 days.

 

NEW QUESTION 54
When creating an OCI Vault, which factors may lead to select the Virtual Private Vault ? Select TWO correct answers

  • A. Need for more than 9211 key versions
  • B. Ability to back up the vault
  • C. Greater degree of isolation
  • D. To mask Pll data for non-production environment

Answer: B,C

Explanation:

 

NEW QUESTION 55
Which architecture is based on the principle of "never trust, always verify"?

  • A. Defense in depth
  • B. Federated identity
  • C. Zero trust
  • D. Fluid perimeter

Answer: C

Explanation:
Enterprise Interest in Zero Trust is Growing Ransomware and breaches are top of the news cycle and a major concern for organizations big and small. So, many are now looking at the Zero Trust architecture and its primary principle "never trust, always verify" to provide greater protection.
According to Report Linker, the Zero Trust security market is projected to grow from USD 15.6 billion in 2019 to USD 38.6 billion by 2024 and that sounds right based on the large number of companies pitching their Zero Trust wares at RSA 2020.
The enterprise was well represented at the conference and there was a tremendous amount of interest in Zero Trust. Interestingly, even though Zero Trust environments are often made up of several solutions from multiple vendors it hasn't prevented each of the vendors from evangelizing their flavors of Zero Trust. This left the thousands of attendees to attempt to cut through the Zero Trust buzz and noise and make their own conclusions to the best approach.
https://blogs.oracle.com/cloudsecurity/post/rsa-2020-recap-cloud-security-moves-to-the-front

 

NEW QUESTION 56
Which of these protects customer data at rest and in transit in a way that allows customers to meet their security and compliance requirements for cryptographic algorithms and key management?

  • A. Customer isolation
  • B. Identity Federation
  • C. Data encryption
  • D. Security controls

Answer: C

Explanation:
DATA ENCRYPTION
Protect customer data at-rest and in-transit in a way that allows customers to meet their security and compliance requirements for cryptographic algorithms and key management.
https://docs.oracle.com/en-us/iaas/Content/Security/Concepts/security_overview.htm

 

NEW QUESTION 57
Which volume type contains the image used to boot a compute instance?

  • A. Boot volume
  • B. Block volume
  • C. Init 6 volume
  • D. Startup volume

Answer: A

Explanation:
Boot Volumes
When you launch a virtual machine (VM) or bare metal instance based on a platform image or custom image, a new boot volume for the instance is created in the same compartment. That boot volume is associated with that instance until you terminate the instance. When you terminate the instance, you can preserve the boot volume and its data
https://docs.oracle.com/en-us/iaas/Content/Block/Concepts/bootvolumes.htm

 

NEW QUESTION 58
Which statement is true about origin management in WAF?
Statement A: Multiple origins can be defined.
Statement B: Only a single origin can be active for a WAF.

  • A. Only statement A is true.
  • B. Both the statements are true.
  • C. Only statement B is true.
  • D. Both the statements are false.

Answer: B

 

NEW QUESTION 59
......

Use Valid New 1z0-1104-21 Test Notes & 1z0-1104-21 Valid Exam Guide: https://www.trainingquiz.com/1z0-1104-21-practice-quiz.html