2022 100% Free 1z0-1104-21 Daily Practice Exam With 90 Questions
1z0-1104-21 exam torrent Oracle study guide
NEW QUESTION 40
What is the matching rule syntax for a single condition?
- A. Option C
- B. Option D
- C. Option B
- D. Option A
Answer: A
Explanation:
NEW QUESTION 41
What does an audit log event include?
- A. Header
- B. Audit type
- C. Footer
- D. Type of input
Answer: A
Explanation:
The HTTP header fields and values in the request.
https://docs.oracle.com/en-us/iaas/Content/Audit/Reference/logeventreference.htm
NEW QUESTION 42
Which parameters customers need to configure while reading secrets by name using CL1 or API? Select TWO correct answers.
- A. Certificates
- B. ASCII Value
- C. Vault Id
- D. Secret Name
Answer: C,D
Explanation:
NEW QUESTION 43
Logical isolation for resources is provided by which OCI feature?
- A. Tenancy
- B. Compartments
- C. Region
- D. Availability Zone
Answer: B
NEW QUESTION 44
As a lead Security Architect, you have tasked to restrict access to and from the worker nodes in pods running in Oracle Container Engine for Kubernetes?
- A. Vulnerability Scanning
- B. Security Lists
- C. Identity and Access Management
- D. Cloud Guard
Answer: B
Explanation:
NEW QUESTION 45
A member of operations team has set Pre-Authenticated Request (PAR) associated with a bucket to an incorrect date and now wants to edit the PAR request. How can this be achieved?
- A. Delete the bucket associated with PAR and recreate it
- B. Delete both PAR as well as the bucket then recreate both
- C. Delete the PAR and recreate it with the required date
- D. Don't set an expiration time for PAR
Answer: C
Explanation:
NEW QUESTION 46
As a solutions architect, you need to assist operations team to write an I AM policy to give users in group-uat1 and group- uat2 access to manage all resources in the compartment Uat. Which is the CORRECT IAM policy ?
- A. Allow group group-uat1 group-uat2 to manage all resources in compartment Uat
- B. Allow any-user to manage all resources in tenancy where target.compartment= Uat
- C. Allow group /group-uat*/ to manage all resources in compartment Uat
- D. Allow any-user to manage all resources in compartment Uat where request.group=/group-uat/*
Answer: A
NEW QUESTION 47
When does Cloud Guard re-open an issue and update the history?
- A. If it detects an issue again for an Open (unresolved) problem
- B. If it detects an issue for a previously resolved configuration problem
- C. If it detects an issue for a previously resolved/dismissed activity problem
- D. If it detects an issue for a previously dismissed configuration problem
Answer: B
Explanation:
If Cloud Guard detects an issue again for:
An Open (unresolved) problem, it updates the problem history, but doesn't create a new problem.
A previously solved problem, it reopens the issue and updates the history.
A previously dismissed problem, it updates the history.
https://docs.oracle.com/en-us/iaas/cloud-guard/using/problems-page.htm
NEW QUESTION 48
Which Oracle Cloud Service provides restricted access to target resources?
- A. Internet Gateway
- B. SSL certificate
- C. Load balancer
- D. Bastion
Answer: D
Explanation:
Bastion
Oracle Cloud Infrastructure Bastion provides restricted and time-limited access to target resources that don't have public endpoints.
https://docs.oracle.com/en-us/iaas/Content/Security/Concepts/security_features.htm
NEW QUESTION 49
What would you use to make Oracle Cloud Infrastructure Identity and Access Management govern resources in a tenancy?
- A. Groups
- B. Users
- C. Dynamic groups
- D. Policies
Answer: D
NEW QUESTION 50
which two responsibilities will be oracle when you move your it infrastructure to oracle cloud infrastructure?
- A. PROVIDING STRONG SECURITY LIST
- B. ACCOUNT ACCESS MANAGEMENT
- C. Strong Isolation
- D. MAINTAINING CUSTOMER DATA
- E. Strong IAM Framework
Answer: C,E
NEW QUESTION 51
Which is NOT a part of Observability and Management Services?
- A. Logging Analytics
- B. Logging
- C. OCI Management Service
- D. Event Services
Answer: C
Explanation:
https://www.oracle.com/in/manageability/
NEW QUESTION 52
Which statement is not true about Cloud Security Posture?
- A. Problems contain data about the specific type of issue that was found.
- B. Problems can be resolved, dismissed, or remediated.
- C. Problems are defined by the type of detector that creates them: activity or configuration.
- D. Problems are created when Cloud Guard discovers a deviation from a responder rule.
Answer: D
Explanation:
https://www.oracle.com/security/cloud-security/what-is-cspm/
NEW QUESTION 53
What is the minimum active storage duration for logs used by Logging Analytics to be archived?
- A. 15 days
- B. 60 days
- C. 30 days
- D. 10 days
Answer: C
Explanation:
https://docs.oracle.com/en-us/iaas/logging-analytics/doc/manage-storage.html#:~:text=The%20minimum%20Active%20Storage%20Duration,be%20archived%20is%2030%20days.
The minimum Active Storage Duration (Days) for logs before they can be archived is 30 days.
NEW QUESTION 54
When creating an OCI Vault, which factors may lead to select the Virtual Private Vault ? Select TWO correct answers
- A. Need for more than 9211 key versions
- B. Ability to back up the vault
- C. Greater degree of isolation
- D. To mask Pll data for non-production environment
Answer: B,C
Explanation:
NEW QUESTION 55
Which architecture is based on the principle of "never trust, always verify"?
- A. Defense in depth
- B. Federated identity
- C. Zero trust
- D. Fluid perimeter
Answer: C
Explanation:
Enterprise Interest in Zero Trust is Growing Ransomware and breaches are top of the news cycle and a major concern for organizations big and small. So, many are now looking at the Zero Trust architecture and its primary principle "never trust, always verify" to provide greater protection.
According to Report Linker, the Zero Trust security market is projected to grow from USD 15.6 billion in 2019 to USD 38.6 billion by 2024 and that sounds right based on the large number of companies pitching their Zero Trust wares at RSA 2020.
The enterprise was well represented at the conference and there was a tremendous amount of interest in Zero Trust. Interestingly, even though Zero Trust environments are often made up of several solutions from multiple vendors it hasn't prevented each of the vendors from evangelizing their flavors of Zero Trust. This left the thousands of attendees to attempt to cut through the Zero Trust buzz and noise and make their own conclusions to the best approach.
https://blogs.oracle.com/cloudsecurity/post/rsa-2020-recap-cloud-security-moves-to-the-front
NEW QUESTION 56
Which of these protects customer data at rest and in transit in a way that allows customers to meet their security and compliance requirements for cryptographic algorithms and key management?
- A. Customer isolation
- B. Identity Federation
- C. Data encryption
- D. Security controls
Answer: C
Explanation:
DATA ENCRYPTION
Protect customer data at-rest and in-transit in a way that allows customers to meet their security and compliance requirements for cryptographic algorithms and key management.
https://docs.oracle.com/en-us/iaas/Content/Security/Concepts/security_overview.htm
NEW QUESTION 57
Which volume type contains the image used to boot a compute instance?
- A. Boot volume
- B. Block volume
- C. Init 6 volume
- D. Startup volume
Answer: A
Explanation:
Boot Volumes
When you launch a virtual machine (VM) or bare metal instance based on a platform image or custom image, a new boot volume for the instance is created in the same compartment. That boot volume is associated with that instance until you terminate the instance. When you terminate the instance, you can preserve the boot volume and its data
https://docs.oracle.com/en-us/iaas/Content/Block/Concepts/bootvolumes.htm
NEW QUESTION 58
Which statement is true about origin management in WAF?
Statement A: Multiple origins can be defined.
Statement B: Only a single origin can be active for a WAF.
- A. Only statement A is true.
- B. Both the statements are true.
- C. Only statement B is true.
- D. Both the statements are false.
Answer: B
NEW QUESTION 59
......
Use Valid New 1z0-1104-21 Test Notes & 1z0-1104-21 Valid Exam Guide: https://www.trainingquiz.com/1z0-1104-21-practice-quiz.html

