1z0-1104-25 Exam Question 1

An E-commerce company running on Oracle Cloud Infrastructure (OCI) wants to prevent accidental misconfigurations that could expose sensitive data. They need an OCI service that can enforce predefined security rules when creating or modifying cloud resources.
Which OCI service should they use?
  • 1z0-1104-25 Exam Question 2

    Challenge 2 -Task 1
    In deploying a new application, a cloud customer needs to reflect different security postures. If a security zone is enabled with the Maximum Security Zone recipe, the customer will be unable to create or update a resource in the security zone if the action violates the attached Maximum Security Zone policy.
    As an application requirement, the customer requires a compute instance in the public subnet. You therefore, need to configure Custom Security Zones that allow the creation of compute instances in the public subnet.
    Review the architecture diagram, which outlines the resoures you'll need to address the requirement:

    Preconfigured
    To complete this requirement, you are provided with the following:
    Access to an OCI tenancy, an assigned compartment, and OCI credentials
    Required IAM policies
    Task 2: Create a Security Zone
    Create a security Zone named IAD_SAP-PBT-CSZ-01 in your assigned compartement and associate it with the Custom Security Zone Recipe (IAD-SAP-PBT-CSP-01) created in the previous task.
    Enter the OCID of the created Security zone in the box below.

    1z0-1104-25 Exam Question 3

    Task 2: Create a Compute Instance and Install the Web Server
    Create a compute instance, where:
    Name: PBT-CERT-VM-01
    Image: Oracle Linux 8
    Shape: VM.Standard.A1.Flex
    Subnet: Compute-Subnet-PBT-CERT
    Install and configure Apache web server:
    a.
    Install Apache
    sudo yum -y install httpd
    b.
    Enable and start Apache
    sudo systemctl enable httpd
    sudo systemctl restart httpd
    2. Install and configure Apache web server:
    a. Install Apache
    sudo yum -y install httpd
    b. Enable and start Apache
    sudo systemctl enable httpd
    sudo systemctl restart httpd
    c. Configure firewall to allow HTTP traffic (port 80)
    sudo firewall-cmd --permanent --add-port=80/tcp
    sudo firewall-cmd --reload
    d. Create an index.html file
    sudo bash -c 'echo You are visiting Web Server 1 >> /var/www/html/index.html' Enter the OCID of the created compute instance PBT-CERT-VM-01 in the text box below.

    1z0-1104-25 Exam Question 4

    "A business has a hybrid cloud infrastructure with Oracle Linux instances running in OCI and on-premises.
    They want to reduce the amount of bandwidth used when patching systems.
    Which component of OS Management Hub can help to reduce the bandwidth usage for patching?
  • 1z0-1104-25 Exam Question 5

    Challenge 2 -Task 1
    In deploying a new application, a cloud customer needs to reflect different security postures. If a security zone is enabled with the Maximum Security Zone recipe, the customer will be unable to create or update a resource in the security zone if the action violates the attached Maximum Security Zone policy.
    As an application requirement, the customer requires a compute instance in the public subnet. You therefore, need to configure Custom Security Zones that allow the creation of compute instances in the public subnet.
    Review the architecture diagram, which outlines the resoures you'll need to address the requirement:

    Preconfigured
    To complete this requirement, you are provided with the following:
    Access to an OCI tenancy, an assigned compartment, and OCI credentials
    Required IAM policies
    Task 1: Create a Custom Security Zone Recipe
    Create a Custom Security Zone Recipe named IAD-SP-PBT-CSP-01 that allows the provisioning of compute instances in the public subnet.
    Enter the OCID of the created custom security zone recipe in the text box below.