Free Oracle 1Z0-1067-22 Exam Braindumps (page: 2)

You have been asked to ensure that in-transit communication between an Oracle Cloud Infrastructure (OCI) compute instance and an on-premises server (192.168.10.10/32) is encrypted. The instances communicate using HTTP. The OCI Virtual Cloud Network (VCN) is connected to the on- premises network by two separate connections: a Dynamic IPsec VPN tunnel and a FastConnect virtual circuit. No static configuration has been added.

What solution should you recommend? (Choose the best answer.)

  1. The instances will communicate by default over IPsec VPN, which ensures data is encrypted in- transit.
  2. Advertise a 192.168.10.10/32 route over the VPN.
  3. Advertise a 192.168.10.10/32 router over the FastConnect.
  4. The instances will communicate by default over the FastConnect private virtual circuit, which ensures data is encrypted in-transit.

Answer(s): B


Reference:

https://www.oracle.com/uk/cloud/networking/fastconnect-faq.html



You have created a group for several auditors. You assign the following policies to the group:


What actions are the auditors allowed to perform within your tenancy? (Choose the best answer.)

  1. The Auditors can view resources in the tenancy.
  2. Auditors are able to create new instances in the tenancy.
  3. The Auditors are able to delete resource in the tenancy.
  4. Auditors are able to view all resources in the compartment.

Answer(s): A


Reference:

https://docs.oracle.com/en-us/iaas/Content/Identity/Concepts/policies.htm#Verbs



You have a web application running on Oracle Cloud Infrastructure (OCI) that lets users log in with a username and password. You notice that an attacker has tried to use SQL comment “--" to alter the database query, remove the password check and log in as a user. You decide to prevent any future attacks.
Which of the following OCI services or features would you choose to safeguard your application? (Choose the best answer.)

  1. Network Security Group
  2. Data Safe
  3. Web Application Framework (WAF)
  4. Vault

Answer(s): C

Explanation:

WAF provides you with the ability to create and manage rules for internet threats including Cross- Site Scripting (XSS), SQL Injection and other OWASP-defined vulnerabilities.


Reference:

https://docs.oracle.com/en-us/iaas/Content/WAF/Concepts/overview.htm#Overview_of_the_Web_Application_Firewall_Service



One of the compute instances that you have deployed on Oracle Cloud Infrastructure (OCI) is malfunctioning. You have created a console connection to remotely troubleshoot it.
Which two statements about console connections are TRUE? (Choose two.)

  1. It is not possible to use VNC console connections to connect to Bare Metal Instances.
  2. VNC console connection uses SSH port forwarding to create a secure connection from your local system to the VNC server attached to your instance’s console.
  3. It is not possible to connect to the serial console to an instance running Microsoft Windows, however VNC console connection can be used.
  4. For security purpose, the console connection will not let you edit system configuration files.
  5. If you do not disconnect from the session, your serial console connection will automatically be terminated after 24 hours.

Answer(s): B,E


Reference:

https://docs.oracle.com/en-us/iaas/Content/Compute/References/serialconsole.htm






Post your Comments and Discuss Oracle 1Z0-1067-22 exam prep with other Community members:

1Z0-1067-22 Exam Discussions & Posts