New Year Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Free and Premium Oracle 1z0-997-22 Dumps Questions Answers

Page: 1 / 6
Total 165 questions

Oracle Cloud Infrastructure 2022 Architect Professional Questions and Answers

Question 1

You are tasked with migrating an online shopping website to Oracle Cloud Infrastructure (OCI) and decide to use a Load Balancer. You have configured the backend set with the round robin policy. During the testing phase, you noticed that users are losing items from their shopping carts when they navigate to different pages.

How should you implement a solution to this problem?

Options:

A.

Set up a Traffic Management Steering Policy to redirect traffic to a different backend set that is deployed exclusively for the purpose of holding all Items placed in the shopping cart.

B.

Configure a set of path route rules that will route to different backend sets based on the URI requested by the customer's browser.

C.

Replace the round robin policy with least connections policy at the backend set.

D.

Set up session persistence at the Load Balancer backend set.

Buy Now
Question 2

You are working as a security consultant with a global insurance organization which is using Microsoft Azure Active Directory (AD) as identity provided to manager user login/passwords. When a user logs in to Oracle Cloud infrastructure (OCI) console, it should get authenticated by Azure AD.

Which set of steps are required to configure at OCI side in order to get it enabled

Options:

A.

Setup Azure AD as an Enterprise Application, map Azure AD users and groups and policies to OCI groups and users

B.

Setup Azure AD as an Identity Provider, Import users and groups from Azure AD to OCI, set up IAM policies to govern access to Azure AD groups

C.

Setup Azure AD as an Enterprise Application, configure OCI for single sign-on, map Azure AD groups to OCI groups, set up the IAM policies to govern access to Azure AD groups

D.

Setup Azure AD as an Identity Provider, map Azure AD groups to OCI groups, set up the IAM policies to govern access to Azure AD groups

Question 3

An organization has its IT infrastructure in a hybrid setup with an on-premises environment and an Oracle Cloud Infrastructure (OCI) Virtual Cloud Network (VCN) in the us-phonix-1 region. The on-premise applications communications with compute instances inside the VPN over a hardware VPN connection. They are looking to implement an Intrusion detected and Prevention (IDS/IPS) system for their OCI environment. This platform should have the ability to scale to thousands of compute of instances running inside the VCN.

How should they architect their solution on OCI to achieve this goal?

Options:

A.

Set up an OCI Private Load Balance! and configure IDS/IPS related health checks at TCP and/or HTTP level to inspect traffic

B.

Configure each host with an agent that collects all network traffic and sends that traffic to the IDS/IPS platform to inspection

C.

There Is no need to implement an IPS/IDS system as traffic coming over IPSec VPN tunnels Is already encrypt

D.

Configure autoscaling on a compute Instance pool and set vNIC to promiscuous mode to called traffic across the vcn and send it IDS/IPS platform for inspection.

Question 4

You are tasked with backing up your data using Oracle Cloud Infrastructure Block Volume service.

When you are finalizing your block volume backup schedule, which of the following two are valid considerations for your backup plan? (Choose Two)

Options:

A.

Number of stored backups: How many backups you need to keep available and the deletion schedule for those you no longer need.

B.

Governance: Tagging of backups so you can capture backup related API calls through the Audit service.

C.

Frequency: How often you want to back up your data.

D.

Location: Determine the Object Store Bucket where the backups will be stored.

E.

Encryption: Whether to use your own key to encrypt your volume backups.

Question 5

You developed a microservices-based application that runs on Oracle Cloud Infrastructure (OCI) Container Engine for Kubernetes (OKE). It has multiple endpoints that needs to be exposed to the public internet.

What is the most cost-effective way to expose multiple application endpoints without adding complexity to the application?

Options:

A.

Use NodePort service type in Kubernetes for each of your service endpoint and use node's public IP address to access the applications.

B.

Use separate load balancer instance for each service, but use the 100 Mbps load balancer option.

C.

Deploy an Ingress Controller and use it to expose each endpoint with its own routing endpoint.

D.

Use ClusterIP service type in Kubernetes for each of your service endpoint and use a load balancer to expose the endpoints.

Question 6

A cost conscious fashions design company which sells bags, clothes, and other luxury items has recently decided to more all of the their on-premises infrastructure Oracle Cloud Infrastructure (OCI), One of their on-premises application is running on an NGINX server and the Oracle Database is running in a 2 node Oracle Real Application Clusters (RAC) configuration.

Based on cost considerations, what is an effective mechanism to migrate the customer application to OCI and set up regular automated backups?

Options:

A.

Launch a compute Instance and run a NGINX server to host the application. Deploy a 2 node VM DB Systems with oracle RAC enabled import the on premises database to OCI VM DB Systems using oracle Data Pump and then enable automatic backups.

B.

Launch a compute Instance and run an NGINX server to host the application. Deploy Exadata Quarter Rack, enable automatic backups and import the database using Oracle Data Pump.

C.

Launch a compute Instance for both the NGINX application server and the database server. Attach block volumes on the database server compute instance and enable backup policy to backup the block volumes.

D.

Launch a Compute instance and run a NGINX Server to host the application. Deploy a 2 node VM DB Systems with Oracle RAC enabled Import the on premises database to OCI VM DB Systems using data pump and then enable automatic backup- Also, enable Oracle Data Guard on the database server

Question 7

You have provisioned a new VM.DenseIO2.24 compute instance with local NVMe drives. The compute instance is running production application. This is a write heavy application, with a significant Impact to the business it the application goes down.

What should you do to help maintain write performance and protect against NVMe devices failure.

Options:

A.

NVMe drive have built in capability to recover themself so no other actions are required

B.

Configure RAID 6 for NVMe devices.

C.

Configure RAID 1 for NVMe devices.

D.

Configure RAID 10 for NVMe devices.

Question 8

A customer is in a process of shifting their web based Sales application from their own data center located in US West to OCI India West (Mumbai) region. They want to do it in a controlled manner and initially only 1% of the traffic will be steered to the servers in OCI. After verification of everything is working as expected, the company is gradually planning to increase the ratio until they are comfortable with fully migrating all traffic to OCI.

Which of the following solution can be used in this situation?

Options:

A.

OCI DNS and Traffic Management with Geolocation Steering policy

B.

OCI DNS and Traffic Management with Failover Steering policy

C.

OCI DNS and Traffic Management with Load Balancer Steering policy

D.

OCI DNS and OCI Load Balancer Service

Question 9

Your company needs to migrate a business critical application from your data center to Oracle Cloud Infrastructure (OCI). The application runs on Oracle

Database and both the application and database servers run on Oracle Linux version 7. The application server is WebLogic server running on multiple 4-core servers and the database is deployed as an Oracle Database Enterprise Edition RAC database on 2 servers (4-cores each).

Which method of database migration should you choose so that the application has minimal impact? (Choose the best answer.)

Options:

A.

Deploy Virtual Machine RAC DB system on OCI and use the Oracle Database Backup module with RMAN to migrate the data from customer on-premises to OCI.

B.

Deploy Virtual Machine RAC DB system on OCI and use the ZDM tool for the database migration.

C.

Deploy Autonomous Transaction Processing Database on OCI and use the MV2ADB tool for the database migration.

D.

Deploy Exadata Cloud Service Base rack and use Oracle Data Pump tool to migrate the data from customer on-premises to OCI.

Question 10

You are the Solution Architect that designed this Oracle Cloud Infrastructure (OCI) compartment layout for your organization:

The development team has deployed quite a few instances under 'Compute' Compartment and the operations team needs to list the Instances under the same compartment for their testing. Both teams, development and operations are part of a group called 'Eng-group'

You have been looking for an option to allow the operations team to list the instances without access any confidential information or metadata of resources.

Which IAM policy should you write based on these requirements?

Options:

A.

Allow group Eng-group to inspect instance-family in compartment Dev-Team:Compute and attach the policy to ‘Engineering’ Compartment

B.

Allow group Eng-group to inspect instance-family in compartment Dev-Team: Compute and attach the policy to 'SysTest Team' Compartment

C.

Allow group Eng-group to read instance-family in compartment Compute and attach the policy to 'Engineering' Compartment.

D.

Allow group Eng-group to read instance-family in compartment Dev-Team-.Compute and attach the policy to'Dev-Team'

Question 11

A developer is using Oracle Functions to deploy her code as part of an event-driven solution in Oracle Cloud Infrastructure (OCI). When she invokes her function, Oracle Functions returns a FunctionlnvokelmageNotAvailable message and a 502 error:

Which of the following options is NOT a plausible reason for this error?

Options:

A.

Missing or invalid IAM policy to give Oracle Functions read access to images stored for functions in repositories in OCI Registry.

B.

The function does not exist in the specified location in OCI Registry.

C.

The VCN being used does not have an internet gateway or a service gateway configured for Oracle Functions to be able to access OCI Registry.

D.

OCI Events service rule is not configured with the correct location of the function in OCI Registry.

Question 12

You are creating an Oracle Cloud Infrastructure Dynamic Group. To determine the members of this group you are defining a set of matching rules.

Which of the following are the supported variables to define conditions in the matching rules? (Choose Two)

Options:

A.

iam.policy.id - the OCID of the IAM policy to apply to the group.

B.

instance.tenancy.id - the OCID of the tenancy where the instance resides.

C.

tag...value - the tag namespace and tag key.

D.

instance.compartment.id - the OCID of the compartment where the instance resides.

Question 13

A consulting company that employs Oracle Cloud Infrastructure (OCI) architects has successfully completed resource migration from Microsoft Azure to OCI, and no longer requires the OCI FastConnect circuit to Azure. The project manager has asked you to delete all resources involved in this inter-cloud connectivity. From the Azure side, you delete the Resource Group. After a while, you notice that all Azure resources have been deleted, except for the Azure ExpressRoute circuit.

What could be a potential reason for this issue?

Options:

A.

You need to first delete the OCI FastConnect circuit for the ExpressRoute circuit to be decommissioned, and then you can delete the ExpressRoute virtual circuit.

B.

Your bill from the OCI side needs to be paid in full before you can remove the Azure ExpressRoute circuit.

C.

You need to remove all routes that point to the inter-cloud connection on both OCI and Azure before you can delete the circuit.

D.

You need to remove the Azure ExpressRoute Partner Service Key from the OCI FastConnect circuit, and then you can delete the ExpressRoute virtual circuit.

Question 14

Which of the following is NOT a good use case for using the functionality available in the Oracle Cloud Infrastructure (OCI) Events service?

Options:

A.

Publish all events in a specific compartment to Oracle Streaming service for later analysis.

B.

Triggers Function using Oracle Functions when new files are uploaded in an OCI Object Storage bucket.

C.

Publish a notification when long lived tasks complete, such as OCI Autonomous Database backup completion.

D.

Capture Monitoring Alarms and invoke Autoscaling of compute instances.

E.

Trigger a notification when a function completes its execution.

Question 15

You are building a highly available and fault tolerant web application deployment for your company. Similar application delayed by competitors experienced web site attack including DDoS which resulted in web server failing.

You have decided to use Oracle Web Application Firewall (WAF) to implement an architecture which will provide protection against such attacks and ensure additional configuration will you need to implement to make sure WAF is protecting my web application 24×7.

Which additional configuration will you need to Implement to make sure WAF Is protecting my web application 24×7?

Options:

A.

Configure auto scaling policy and it to WAF instance.

B.

Configure Control Rules to send traffic to multiple web servers

C.

Configure multiple origin servers

D.

Configure new rules based on now vulnerabilities and mitigations

Question 16

An online registration system Is currently hosted on one large Oracle Cloud Infrastructure (OCT) Bare metal compute Instance with attached block volume to store of the users' data. The registration system accepts the Information from the user, Including documents and photos then performs automated verification and processing to check it the user is eligible for registration.

The registration system becomes unavailable at tunes when there is a surge of users using the system the existing architecture needs improvement as it takes a long time for the system to complete the processing and the attached block volumes are not large enough to use data being uploaded by the users.

Which Is the most effective option to achieve a highly scalable solution?

Options:

A.

Attach more Block volumes as the data volume increase, use Oracle Notification Service (ONS) to distribute tasks to a pool of compute instances working In parallel, and Auto Scaling to dynamically size the pool of Instances depending on the number of notifications received from the Notification Service. Use Resource Manager stacks to replicate your architecture to another region.

B.

Change your architecture to use an OCI Object Storage standard tier bucket, replace the single bare metal instance with a Oracle Streaming Service (OSS) to ingest the Incoming requests and distribute the tasks to a group of compute Instances with Auto Scaling

C.

Upgrade your architecture to use a pool of Bare metal servers and configure them to use their local SSDs for faster data access Set up Oracle Streaming Service (OSS) to distribute the tasks to the pool of Bare metal Instances with Auto Scaling to dynamically increase or decrease the pool of compute instances depending on the length of the Streaming queue.

D.

Upgrade your architecture to use more Block volumes as the data volume Increases. Replace the single bare metal instance with a group of compute instances with Auto Scaling to dynamically increase or decrease the compute instance pools depending on the traffic.

Question 17

You are running a legacy application in a compute instance on Oracle Cloud Infrastructure (OCI). To provide enough space for it to store internal data, a block volume is attached to the instance in paravirtualized mode.

Your application is not resilient to crash-consistent backup.

What should you do to backup the block volume in a secure and cost effective way? (Choose the best answer.)

Options:

A.

Save your application data, detach the block volume and create a clone.

B.

Create a volume group, add the boot volume and then run the volume group backup.

C.

Create a backup, detach the block volume and save your application data.

D.

Save your application data, detach the block volume and create a backup.

Question 18

You have configured backups for your Oracle Cloud Infrastructure (OCI) 2-node RAC DB systems on virtual machines. In the console, the database backup displays a Failed status.

Which of the following options is the most likely reason for this backup issue?

Options:

A.

The master key stored in OCI Key Management for encryption and decryption of data in the database is not accessible to the backup service.

B.

The auth token being used by the Object Store Swift endpoint is incorrect.

C.

The allocated storage on the OCI File Storage service file system attached with the database is full.

D.

The RMAN backup agent is not compatible with the version of database being used.

Question 19

A large financial company has a web application hosted in their on-premises data center. They are migrating their application to Oracle Cloud Infrastructure (OCI) and require no downtime while the migration is on-going. In order to achieve this, they have decided to divert only 30% of the application works fine, they divert all traffic to OCI.

As a solution architect working with this customer, which suggestion should you provide them?

Options:

A.

Use OCI Traffic management with failover steering policy and distribute the traffic between OC1 and on premises infrastructure.

B.

Use OCI Traffic management with Load Balancing steering policy and distribute the traffic between OCI and on premises infrastructure.

C.

Use an OCI load Balancer and distribute the traffic between OCI and on premises infrastructure.

D.

Use VPN connectivity between on premises Infrastructure and OCI, and create routing tables to distribute the traffic between them.

Question 20

A small business specializing in video processing wants to leverage cloud storage in order to lower its costs. They are looking to backup all video data generated, from an existing on-premises file server to Oracle Cloud Infrastructure (OCI). The requirement is to setup continuous data sync as changes are made to on-

premises file server. What is the most cost effective solution for this scenario?

Options:

A.

Set up a Fastconnect virtual Circuit and nightly back up all videos to OCI Archive Storage.

B.

Set up file storage service on OCI and mount the file system to an instance running on-premises. Move all the data to this on-premises instance and then sync the videos to the shared file system.

C.

Set up a VPN connect connection and back up all videos to Object storage standard bucket. Create a lifecycle policy to move files older than 30 days to Archive Storage.

D.

Setup an on-premises OCI Storage Gateway Cloud Sync to back up videos to OCI Object Storage Archive tier.

Question 21

An insurance company is storing critical financial data in the OCI block volume. This volume is currently encrypted using oracle managed keys. Due to regulatory compliance, the customer wants to encrypt the data using the keys that they can control and not the keys which are controlled by Oracle.

What of the following series of tasks are required to encrypt the block volume using customer managed keys?

Options:

A.

Create a vault, import your master encryption key into the vault, generate data encryption key, assign data encryption key to the block volume

B.

Create a master encryption key, create a data encryption key, decrypt the block volume using existing oracle managed keys, encrypt the block volume using the data encryption key

C.

Create a vault, create a master encryption key in the vault, assign this master encryption key to the block volume D. Create a master encryption key, create a new version of the encryption key, decrypt the block volume using existing oracle managed keys and encrypt using new version of the encryption key

Question 22

An organization has its mission critical application consisting of multiple application servers and databases running inside Virtual Cloud Network (VCN) in uk-london-1 region. Their solution architect wants to further strengthen their architecture by planning for Disaster Recovery (DR) in eu-frankfurt-1 region.

Which two solutions should their architect keep in mind while designing for DR?

Options:

A.

A remote VCN peering connection is required to establish secure and reliable connectivity between different VCNs created in uk-london-1 and eu-frankfurt-1 region.

B.

rsync utility can be used to asynchronously copy file systems or snapshot data to another region.

C.

Load balancer will automatically distribute traffic between both the regions.

D.

The RTO is the acceptable timeframe of lost data that application can tolerate.

E.

It is not possible to use Active Data Guard to synchronize a database in uk-london-1 region to equivalent database in eu-frankfurt-1 region.

Question 23

You are part of a project team working in the development environment created in Oracle Cloud Infrastructure (OCI). You realize that the CIDR block specified for one of the subnets in a Virtual Cloud Network (VCN) is not correct and want to delete the subnet. While deleting you get an error indicating that there are still resources that you must delete first. The error includes the OCID of the VNIC that is in the subnet.

Which of the following action you will take to troubleshoot this issue?

Options:

A.

Use OCI CLI to call "network vnic" and "compute vnic-attachment" operations to find out the parent resource of the VNIC.

B.

Use OCI CLI to delete the VNIC first and then delete the subnet.

C.

Use OCI CLI to delete the subnet using -force option.

D.

Copy and paste OCID of the VNIC in the search box of the OCI Console to find out the parent resource of the VNIC.

Page: 1 / 6
Total 165 questions