[Jan 15, 2024] 1z0-1104-23 certification guide Q&A from Training Expert RealVCE [Q57-Q74]

Share

[Jan 15, 2024] 1z0-1104-23 certification guide Q&A from Training Expert RealVCE

1z0-1104-23 Certification Overview Latest 1z0-1104-23 PDF Dumps

NEW QUESTION # 57
You have configured the Management Agent on an Oracle Cloud Infrastructure (OCI) Linux instance for log ingestion purposes.
Which is a required configuration for OCI Logging Analytics service to collect data from multiple logs of this Instance?

  • A. Log - Log Group Association
  • B. Source - Entity Association
  • C. Log Group - Source Association
  • D. Entity - Log Association

Answer: B

Explanation:
For OCI Logging Analytics service to collect data from multiple logs of an instance, a Source - Entity Association is required1. A source in Logging Analytics defines the metadata about the log data you want to collect, and an entity represents the source of the log data1. You associate sources with entities, and these associations instruct the Management Agent on your instance what log data to collect1.


NEW QUESTION # 58
Which statement is true about using custom BYOI instances in Windows Servers that are managed by OS Management Service?

  • A. Windows Servers that already has the minimum agent version requires an agent update or installation.
  • B. Windows Servers that does not have the minimum agent version does not require an agent update or installation.
  • C. Windows Servers that already has the minimum agent version does not require an agent update or installation.
  • D. Windows Servers that does not have the minimum agent version requires an agent update or installation.

Answer: D

Explanation:
Explanation
https://docs.oracle.com/cd/E11857_01/install.111/e15311/agnt_install_windows.htm


NEW QUESTION # 59
which two responsibilities will be oracle when you move your it infrastructure to oracle cloud infrastructure?

  • A. Strong Isolation
  • B. PROVIDING STRONG SECURITY LIST
  • C. Strong IAM Framework
  • D. ACCOUNT ACCESS MANAGEMENT
  • E. MAINTAINING CUSTOMER DATA

Answer: A,C

Explanation:
Oracle is responsible for providing a strong Identity and Access Management (IAM) framework in OCI.
The IAM service lets you control who has access to your cloud resources, what type of access they have, and to which specific resources. You can find more details about this in the Oracle Cloud Infrastructure documentation.
Oracle also ensures strong isolation in its cloud infrastructure, which means that your resources are isolated from other tenants and from Oracle staff. This isolation extends from physical separation of hardware all the way up to access controls on APIs. You can find more details about this in the Oracle Cloud Infrastructure documentation.


NEW QUESTION # 60
A company has OCI tenancy which has mount target associated with two File Systems, CG_1 and CG_2.
These FileSystems are accessed by IP-based clients AB_1 and AB_2 respectively. As a security administrator, how can you provide access to both clients such that CGI has Read only access on AB1 and CG_2 has Read/Write access on AB_2?

  • A. Access Control Lists
  • B. NFS Export Option
  • C. Vault
  • D. NFS v3 Unix Security

Answer: B,D

Explanation:
Explanation
Graphical user interface, text, application, email Description automatically generated


NEW QUESTION # 61
Which OCI service canindex, enrich, aggregate, explore, search, analyze, correlate, visualize and monitor data?

  • A. Logging Analytics
  • B. Data Guard
  • C. Data Safe
  • D. WAF

Answer: A

Explanation:
Explanation


NEW QUESTION # 62
For how long are API calls audited and available?

  • A. 60 days
  • B. 30days
  • C. 90 days
  • D. 365 days

Answer: D

Explanation:
Explanation
https://docs.public.oneportal.content.oci.oraclecloud.com/en-us/iaas/Content/Audit/Tasks/settingretentionperiod.


NEW QUESTION # 63
A http web server hosted on an Oracle cloud infrastructure compute instance in a public subnet of the vcsl virtual cloudnetwork has a stateless security ingress rule for port 80 access through internet gateway stateful network security group notification for port 80 how will the Oci vcn handle request response traffic to the compute instance for a web page from the http server with port 80?

  • A. Because there is no Egress ruled defined in Security List, The Response would not pass through Internet Gateway.
  • B. due to the conflict in security configuration inbound request traffic would not be allowed
  • C. network security group would supersede the security utility list and allow both inbound and outbound traffic
  • D. the union of both configuration would happen and allow both inbound and outbound traffic

Answer: D

Explanation:
Explanation
In OCI, if there's a stateless rule in the security list and a stateful rule in the network security group, both rules are evaluated. The union of both configurations would happen, allowing both inbound and outbound traffic. This means that if an incoming packet is allowed by either the security lists or the network security groups, then it's allowed into the instance. Similarly, if an outgoing packet is allowed by either, then it's allowed out of the instance


NEW QUESTION # 64
In which two ways can you improve data durability in Oracle Cloud Infrastructure Object Storage?

  • A. Limit delete permissions
  • B. Enable Versioning
  • C. Setup volumes in a RAID1 configuration
  • D. Enable server-sideencryption
  • E. Enable client-side encryption

Answer: A,B

Explanation:
Enabling versioning can improve data durability in OCI Object Storage by keeping multiple versions of an object in the same bucket5.
Limiting delete permissions can also improve data durability by preventing unauthorized users from deleting data


NEW QUESTION # 65
Which Security Zone policy is NOT valid?

  • A. A boot volume can be moved from a security zone to a standard compartment.
  • B. Resources in a security zone must be automatically backed up regularly.
  • C. A compute instance cannot be moved from a security zone to a standard compartment.
  • D. Resources in asecurity zone should not be accessible from the public internet.

Answer: A

Explanation:
According to OCI's Security Zone policies, a boot volume cannot be moved from a security zone to a standard compartment23. This policy is in place to ensure that resources in a security zone are not moved to a potentially less secure standard compartment23.


NEW QUESTION # 66
Which is NOT a part of Observability and Management Services?

  • A. Logging Analytics
  • B. Logging
  • C. OCI Management Service
  • D. Event Services

Answer: C

Explanation:
Explanation
https://www.oracle.com/in/manageability/


NEW QUESTION # 67
Which IAM policy should be created to give XYZ the ability to list contents of a resource excluding the fneeds to authenticatein prod compartment ? Principle of least priviledge should be used.

  • A. Allow group XYZ to use all resources in compartment != prod
  • B. Allow group XYZ to read all resources in tenancy where target.compartment.name != prod
  • C. Allow group XYZ to manage all resources in compartment != prod
  • D. Allow group XYZ to inspect all resources in tenancy where target.compartment.name != prod

Answer: D

Explanation:
Explanation
Graphical user interface, text, application Description automatically generated


NEW QUESTION # 68
Which statement about Oracle Cloud Infrastructure Multi-Factor Authentication (MFA)is NOT valid?

  • A. A user can register only one device to use for MFA.
  • B. Users must install a supported authenticator app on the mobile device they intend to register for MFA.
  • C. Users cannot disable MFA for themselves.
  • D. An administrator can disable MFA for another user.

Answer: C

Explanation:
Explanation
In Oracle Cloud Infrastructure, users can disable Multi-Factor Authentication (MFA) for themselves456. If a user loses their MFA device or wants to register a new one, they can disable MFA for their account and then set it up again with the new device


NEW QUESTION # 69
Which Cloud Guard component identifies issues with resources or user actions and alerts you when an issue is found?

  • A. Responders
  • B. Detectors
  • C. Problems
  • D. Targets

Answer: B

Explanation:
Explanation
Detector
Performs checks to identify potential security problems based on activities or configurations. Rules followed to identify problems are the same for allcompartments in a target.
https://docs.oracle.com/en-us/iaas/cloud-guard/using/part-start.htm


NEW QUESTION # 70
Which parameters customers need to configure while reading secrets by name using CL1 or API? Select TWO correct answers.

  • A. Certificates
  • B. ASCII Value
  • C. Vault Id
  • D. Secret Name

Answer: C,D

Explanation:
Explanation
Graphical user interface, text, application, email Description automatically generated


NEW QUESTION # 71
What would you use to make Oracle Cloud Infrastructure Identity and Access Management govern resources in a tenancy?

  • A. Groups
  • B. Policies
  • C. Dynamic groups
  • D. Users

Answer: B

Explanation:
Explanation
POLICY
A document that specifies who can access which resources, and how. Access is granted at the group and compartment level, which means you can write a policy that gives a group a specific type of access within a specific compartment, or to the tenancy itself. If you give a group access to the tenancy, the group automatically gets the same type of access to all the compartments inside the tenancy. For more information, see Example Scenario and How Policies Work. The word "policy" is used by people in different ways: to mean an individual statement written in the policy language; to mean a collection of statements in a single, named "policy" document (which has an Oracle Cloud ID (OCID) assigned to it); and to mean the overall body of policies your organization usesto control access to resources.
https://docs.oracle.com/en-us/iaas/Content/Identity/Concepts/overview.htm


NEW QUESTION # 72
When using Management Agent to collect logs continuously, which is therequired configuration for OCI Logging Analytics to retrieve data from numerous logs for an instance?

  • A. Entity - Agent Association
  • B. Entity - Source Association
  • C. Source-Entity Association
  • D. Agent - Entity Association

Answer: C

Explanation:
Explanation


NEW QUESTION # 73
As a solutions architect, you need to assist operations team to write an I AM policy to give users in group-uat1 and group- uat2 access to manage all resources in the compartment Uat. Which is the CORRECT IAM policy
?

  • A. Allow any-user to manage all resources in compartment Uat where request.group=/group-uat/*
  • B. Allow group /group-uat*/ to manage all resources in compartment Uat
  • C. Allow any-user to manage all resources in tenancy where target.compartment= Uat
  • D. Allow group group-uat1 group-uat2 tomanage all resources in compartment Uat

Answer: B

Explanation:
Explanation
This policy allows users in groups whose names start with "group-uat" to manage all resources in the compartment named "Uat"12.


NEW QUESTION # 74
......

The Best Oracle 1z0-1104-23 Study Guides and Dumps of 2024: https://www.realvce.com/1z0-1104-23_free-dumps.html

Top Oracle 1z0-1104-23 Exam Audio Study Guide! Practice Questions Edition: https://drive.google.com/open?id=177g7d49uOl1WroTLRt3kaN6yFfQJiJEp