75only - Ends in 0d 00h 00m 00s - Coupon code = 75only

Pass the Oracle Cloud Infrastructure 1z0-1084-26 Questions and answers with Dumpstech

Exam 1z0-1084-26 Premium Access

View all detail and faqs for the 1z0-1084-26 exam

Practice at least 50% of the questions to maximize your chances of passing.
Viewing page 4 out of 6 pages
Viewing questions 31-40 out of questions
Questions # 31:

You have a containerized application that requires access to an Autonomous Transaction Processing (ATP) Database. Which option is NOT valid when the container is deployed in an OKE cluster? (Choose the best answer.)

Options:

A.

Use Kubernetes secrets to configure environment variables on the container with ATP instance OCID, and OCI API credentials. Then use the CreateConnection API endpoint from the service runtime.

B.

Install the Oracle Cloud Infrastructure Service Broker on the Kubernetes cluster and deploy ServiceInstance and ServiceBinding resources for ATP. Then use the specified binding name as a volume in the application deployment manifest.

C.

Create a Kubernetes secret with contents from the instance Wallet files. Use this secret to create a volume mounted to the appropriate path in the application deployment manifest.

D.

Enable Oracle REST Data Services for the required schemas and connect via HTTPS.

Questions # 32:

You are deploying a serverless data integration pipeline where an OCI Function needs to consume real-time events from an OCI Stream in the prod-compartment compartment. Your corporate security policy mandates strict least-privilege access, meaning the function must only be permitted to consume (pull) messages, with absolutely no capability to publish (push) messages to the stream. Which TWO configurations are required to establish this granular authorization using a Dynamic Group named analytics-function-dg?

Options:

A.

Create an IAM policy statement: Allow dynamic-group analytics-function-dg to use stream-pull in compartment prod-compartment

B.

Create an IAM policy statement: Allow dynamic-group analytics-function-dg to use streams in compartment prod-compartment

C.

Create a dynamic group rule to match the function: ALL {resource.type = ' fnfunc ' , resource.compartment.id = ' ocid1.compartment.oc1..example ' }

D.

Create an IAM policy statement: Allow dynamic-group analytics-function-dg to use stream-push in compartment prod-compartment

E.

Create a dynamic group rule to match the function: ALL {resource.type = ' compute ' , resource.compartment.id = ' ocid1.compartment.oc1..example ' }

Questions # 33:

You are deploying a set of Java microservices to an Oracle Cloud Infrastructure Container Engine for Kubernetes cluster. You must ensure that the application design strictly adheres to the Twelve-Factor App methodology for configuration management and backing services to simplify multi-environment deployments. Which TWO design strategies must you implement to satisfy these Twelve-Factor App principles?

Options:

A.

Inject all environment-specific configuration values directly into the compiled application code bundle during the build phase.

B.

Externalize configuration values by utilizing environment variables or Kubernetes ConfigMaps to override default microservice settings.

C.

Package each database credential and external API endpoint URL inside the application ' s local properties file for strict encapsulation.

D.

Treat backing databases and message brokers as attached resources, allowing them to be swapped via configuration changes without modifying microservice code.

E.

Maintain a single database schema instance that is shared dynamically across all environments to ensure absolute dev/prod database state parity.

Questions # 34:

Which statement about microservices is FALSE?

Options:

A.

They are typically designed around business capabilities.

B.

It is fairly common for them to communicate with HTTP.

C.

Multiple microservices can run in one process.

D.

They are independently deployable.

Questions # 35:

Your organization is developing serverless applications with Oracle Functions. Many functions will need to store state data in a database, which will require using appropriate credentials. However, your corporate security standards mandate encryption of secret information, such as database passwords. How would you address this security requirement?

Options:

A.

Use OCI Console to enter the password in the function configuration section in the provided input field.

B.

Leverage application-level configuration variables to store passwords because they are automatically encrypted by Oracle Functions.

C.

Use the OCI Vault service to auto-encrypt the password and then set an application-level configuration variable to reference the auto-decrypted password inside your function container.

D.

Encrypt the password using the OCI Vault service and then decrypt this password in your function code with the generated key.

Questions # 36:

(CHK_4 > 3) Your development team decides to create and deploy some business logic to serverless Oracle Functions. You are asked to help facilitate the monitoring, logging, and tracing of these services. Which is NOT valid about troubleshooting Oracle Functions?

Options:

A.

Oracle Functions invocation is enabled by default

B.

Oracle Functions invocation logs are enabled at the application level.

C.

Oracle Functions metrics are available at both the function and application level.

D.

Oracle Functions tracing is enabled at the function level.

Questions # 37:

Which statement is NOT valid regarding the OCI Vulnerability Scanning service (VSS) for container images stored in Oracle Cloud Infrastructure Registry (OCIR)?

Options:

A.

A single container repository can be assigned to multiple scan targets in OCI Vulnerability Scanning to enforce different scan recipes.

B.

When a container scan target is created, the service scans a specified initial number of images, one by default, in the target repositories.

C.

Vulnerability reports for the scanned images are saved in the compartment containing the scan target, rather than the repository compartment.

D.

To run container image scans, you must explicitly grant the OCI Vulnerability Scanning service IAM permission to pull images from the registry.

Questions # 38:

What is the difference between blue/green and canary deployment strategies? (Choose the best answer.)

Options:

A.

In blue/green, current applications are slowly replaced with new ones. In canary, the application Is deployed Incrementally to a select group of people.

B.

In blue/green, both old and new applications are in production at the same time. In canary, the application Is deployed incrementally to a select group of people.

C.

In blue/green, current applications are slowly replaced with new ones. In canary, both old and new applications are in production at the same time.

D.

In blue/green, the application Is deployed In minor Increments to a select group of people. In canary, both old and new applications are simultaneously in production.

Questions # 39:

Which feature is typically NOT associated with Cloud Native?

Options:

A.

Immutable Infrastructure

B.

Declarative APIs

C.

Containers

D.

Application Servers

E.

Service Meshes

Questions # 40:

You are building a container image and pushing it to Oracle Cloud Infrastructure Registry (OCIR). You need to ensure that these images never get deleted from the repository. Which action should you take?

Options:

A.

Write a policy to limit access to the specific repository in your compartment.

B.

Create a group and assign a policy to perform lifecycle operations on images.

C.

Set global policy of image retention to " Retain All Images " .

D.

Edit the tenancy global retention policy.

Viewing page 4 out of 6 pages
Viewing questions 31-40 out of questions