1z0-1067-22のPDFで合格させるスゴ問題集で1z0-1067-22最新のリアル試験問題 [Q29-Q48]

Share

1z0-1067-22のPDFで合格させるスゴ問題集で1z0-1067-22最新のリアル試験問題

有効な1z0-1067-22テスト解答1z0-1067-22試験PDF問題を試そう


Oracle 1z0-1067-22 認定試験は、クラウドオペレーションにおけるキャリアアップに役立つ貴重な資格です。この試験に合格することで、Oracle Cloud Infrastructure サービスの運用・管理における専門知識と熟練度を証明することができます。この認定試験は、信頼性を高め、キャリアアップや高い給与を得る機会を増やすことができます。また、Oracle Cloud Infrastructure 2022 Cloud Architect Professional 認定など、他の高度な認定試験の前提条件となります。


Oracle Cloud Infrastructure 2022 Cloud Operations Professional Examsとしても知られるOracle 1Z0-1067-22は、Oracle Cloud Infrastructure(OCI)を使用してクラウドインフラストラクチャの運用と管理に関する専門知識を実証したい専門家向けに設計された認定試験です。この試験は、OCIのアーキテクチャ、サービス、機能を包括的に理解している個人、およびOCIでクラウド操作を実装および管理する能力を対象としています。

 

質問 # 29
You are using the Oracle Cloud Infrastructure Command Line Interface to launch a Linux virtual machine.
You enter the following command (with correct values for all parameters):

The command fails.
Which is NOT a valid parameter in this command? (Choose the best answer.)

  • A. -t <tenancy_id>
  • B. - -image-id <image_id>
  • C. - -subnet-id <subnet_id>
  • D. -c<compartment_id>
  • E. - -shape "<shape_name>"

正解:A

解説:
Explanation
Tenacy is not in the
parametershttps://docs.oracle.com/en-us/iaas/tools/oci-cli/3.0.5/oci_cli_docs/cmdref/compute/instance/launch.htm


質問 # 30
You set up a bastion host in your VCN to only allow your IP address (140.19.2.140) to establish SSH connections to your Compute Instances that are deployed in a private subnet. The Compute Instances have an attached Network Security Group with a Source Type: Network Security Group (NSG), Source NSG:
NSG-050504. To secure the bastion host, you added the following ingress rules to its Network Security Group:

However, after checking the bastion host logs, you discovered that there areIP addresses other than your own that can access your bastion host.
What is the root cause of this issue? (Choose the best answer.)

  • A. Allcompute instances associated with NSG-050504 are also able to connect to the bastion host.
  • B. The port 22 provides unrestricted access to 140.19.2.140 and to other IP address.
  • C. The Security List allows access to all IP address which overrides the Network Security Group ingress rules.
  • D. A netmask of /32 allows all IP address in the 140.19.2.0 network, other thanyour IP 140.19.2.140

正解:A


質問 # 31
You have recently joined a startup company and quickly find that nobody is tracking the amount of money spent on Oracle Cloud Infrastructure (OCI). Seeing an opportunity to help save money you begin creating a solution tobetter track the cost of resources provisioned by each individual on the team.
Which option allows you to identify excessive spend across all resources in your tenancy? (Choose the best answer.)

  • A. Create a tag namespace named BILLING with a Tag Key named CostCenter. Tag each of your resources with this Tag Keyand the correct value.
  • B. Use the Events Service and create rules that will act when a new Object Storage bucket or Compute Instance has been created. Have the rule email you each time one of these events occurs.
  • C. Use the Python SDK to write a custom application thatwill monitor the Audit log. Look for CREATE events and configure the application to send you an email each time a new resource is created.
  • D. Create a budget for each compartment that will send a notification when monthly spend reaches a pre- defined amount.

正解:A

解説:
Explanation
https://docs.oracle.com/en-us/iaas/Content/Tagging/Tasks/usingcosttrackingtags.htm


質問 # 32
One of your development teams has asked for your help to standardize the creation of several compute instances that must be provisioned each day of the week. You initially write several Command Line Interface (CLI) commands with all appropriate configuration parametersto achieve this task later determining this method lacks flexibility.
Which command generates a JSON-based template that Oracle Cloud Infrastructure (OCI) CLI can use to provision these instances on a regular basis? (Choose the best answer.)

  • A. oci compute instance create - -generate-cli-skeleton
  • B. oci compute provision-instance - -generate-full-command-json-input
  • C. oci compute instance launch - -generate-full-command-json-input
  • D. oci compute instance launch - -generate-cli-skeleton

正解:C

解説:
Explanation
https://docs.oracle.com/en-us/iaas/tools/oci-cli/3.0.5/oci_cli_docs/oci.html#cmdoption-generate-full-command-js


質問 # 33
The boot volume on your Oracle Linux instance has run out of space. Your application has crashed due to a lack of swap space, forcing you to increase the size ofthe boot volume.
Which step should NOT be included in the process used to solve the issue? (Choose the best answer.)

  • A. Stop the instance and detach the boot volume.
  • B. Reattach the boot volume and restart the instance.
  • C. Attach the resized boot volume to a second instance as a data volume; extend the partition and grow the file system in the resized boot volume.
  • D. Resize the boot volume by specifying a larger value than the boot volume's current size.
  • E. Create a RAID 0 configuration to extend the boot volume file system onto another block volume.

正解:C


質問 # 34
You are launching a Windows server in your Oracle Cloud Infrastructure (OCI) tenancy.You provided a startup script during instance initialization, but it was not executed successfully.
What is a possible reason for this error? (Choose the best answer.)

  • A. Ran a cloudbase-init script instead of cloud-init.
  • B. Specified a #directive on the first line of your script.
  • C. Didn't include anything in user_data.
  • D. Wrote a custom script which tried to install GPU drivers.

正解:A


質問 # 35
An insurance company has contracted you to help automate their application business continuity plan. They have the application running in eu-frankfurt-1 asthe primary site and uk-london-1 as a disaster recovery site.
Normally they have a DNS A record associated with the IP address of the primary endpoint in eu-frankfurt-1.
In the event of a disaster, they use OCI DNS Zone Management to update the A record and replace it with the IP address of the endpoint in uk-londond-1.
How can you automate the failover process? (Choose the best answer.)

  • A. Create a Health Check that evaluates both regional endpoints. Create a Traffic Management Steering policy with Failover type and associate it with the Health Check.
  • B. Create a Traffic Management Steering policy and attach it to a backend servers from both eu-frankfurt-1 and uk-london-1 regions.
  • C. Create a Traffic Management Steering policy with Load Balancer type and add both eu-frankfurt-1 and uk- london-1 endpoints. Attach the Traffic Management Steering policy to the A record.
  • D. Provision a Load Balancer in Frankfurt and associate it with the A record in DNS. Create a backend set with backend servers from both eu-frankfurt-1 and uk-london-1 regions.

正解:A


質問 # 36
Recently, your e-commerce web application has been receiving significantly more traffic than usual. Users are reporting they often encounter a 503 Service Error when trying to access your site. Sometimes the site is very slow.
You check your instance pool configuration to confirm that the maximum number of instances is configured to allow 20 compute instances. Currently, 14 compute instances have been provisioned by the instance pool.
You also confirm that current CPU utilization across all hosts exceeds the scale-out threshold you set in your auto-scaling policy. However, the instance pool is not provisioning any newinstances.
What can you check to determine why the application is NOT functioning properly? (Choose the best answer.)

  • A. Verify that the new offer feature code did not introduce any performance bugs.
  • B. Verify that the Quality Assurance team is not currently performing load-testing against production.
  • C. Verifythat the compute resource quota has not been exceeded.
  • D. Verify that the database is accessible.

正解:C


質問 # 37
You have been asked to ensure that in-transit communication between an OracleCloud Infrastructure (OCI) compute instance and an on-premises server (192.168.10.10/32) is encrypted. The instances communicate using HTTP. The OCI Virtual Cloud Network (VCN) is connected to the on-premises network by two separate connections: a DynamicIPsec VPN tunnel and a FastConnect virtual circuit. No static configuration has been added.
What solution should you recommend? (Choose the best answer.)

  • A. Advertise a 192.168.10.10/32 route over the VPN.
  • B. The instances will communicate by default over the FastConnect private virtual circuit, which ensures data is encrypted in-transit.
  • C. The instances will communicate by default over IPsec VPN, which ensures data is encrypted in-transit.
  • D. Advertise a 192.168.10.10/32 router over the FastConnect.

正解:A

解説:
Explanation
https://www.oracle.com/uk/cloud/networking/fastconnect-faq.html


質問 # 38
You are using Oracle CloudInfrastructure (OCI) console to set up an alarm on a budget to track your OCI spending.
Which two are valid targets for creating a budget in OCI? (Choose two.)

  • A. Select user as the type of target for your budget.
  • B. Select group as the type of target for your budget.
  • C. Select Cost-Tracking Tags as the type of target for your budget.
  • D. Select Compartment as the type of target for your budget.
  • E. Select Tenancy as the type of targetfor your budget.

正解:C、D

解説:
Explanation
https://docs.oracle.com/en-us/iaas/Content/Billing/Concepts/budgetsoverview.htm


質問 # 39
A developer has created a file system in Oracle Cloud Infrastructure (OCI) File Storage service. She launches an Oracle Linux compute instance and successfully mounts the file system from the instance.
She then tries writing to the file system from the compute instance using the following command:
touch /mnt/yourmountpoint/helloworld
But gets an error message:
touch: cannot touch'/mnt/yourmountpoint/helloworrld': Permission denied Which is a reason for this error? (Choose the best answer.)

  • A. Useris not part of any OCI Identity and Access Management group with write permissions to File Storage service.
  • B. User is connecting as the default Oracle Linux user 'opc' instead of 'root' user.
  • C. Service limits or quota for file system writes have been breached.
  • D. 'touch' command is not available in Oracle Linux by default.

正解:B

解説:
Explanation
https://docs.oracle.com/en-us/iaas/Content/File/Troubleshooting/cannotwrite.htm When a file system is created, the root user owns the root directory. If you're connecting from an instance that uses a Linux orCentOS platform image, the default user is opc. The default user is ubuntu when you connect from an instance that uses an Ubuntu platform image. These default users are not root users, so you can't initially write a file or directory to a new file system with these users.


質問 # 40
Which technique does NOT help you get the optimal performance out of the Oracle Cloud Infrastructure (OCI) File Storage service? (Choose the best answer.)

  • A. Right size compute instances from where file system is accessed based on their network capacity.
  • B. Serialize operations to the file system to access consecutive blocks as much as possible.
  • C. Limit access to the same Availability Domain (AD) as the File Storageservice where possible.
  • D. Increase concurrency by using multiple threads, multiple clients, and multiple mount targets.

正解:D

解説:
Explanation
"File Storage performance increases with parallelism. Increase concurrency by using multiple threads, multiple clients, and multiple mount targets."


質問 # 41
Which statement about Oracle Cloud Infrastructure paravirtualized block volume attachments is TRUE?
(Choose the best answer.)

  • A. Paravirtualized volumes become immediately available on bare metal compute instances.
  • B. Paravirtualized volumes may reduce the maximum IOPS performance for larger block volumes.
  • C. Paravirtualized is required to manage iSCSI configuration for virtual machine instances.
  • D. Paravirtualization utilizes the internal storage stack of compute instance OS and network hardware virtualization to access block volumes.

正解:B

解説:
Explanation
https://docs.oracle.com/en-us/iaas/Content/Block/Concepts/overview.htm#Paravirtualized


質問 # 42
You have a Linux compute instance located in a public subnet in a VCN which hosts a web application. The security list attached to subnet containing the compute instance has the following stateful ingress rule.

The Route table attached to the Public subnet is shown below. You can establish an SSH connection into the computeinstance from the internet. However, you are not able to connect to the web server using your web browser.

Which step will resolve the issue? (Choose the best answer.)

  • A. In the route table, add a rule for your default traffic to be routed to NAT gateway.
  • B. In the security list, add an ingress rule for port 80 (http).
  • C. In the security list, remove the ssh rule.
  • D. In the route table, add a rule for your default traffic to be routed to service gateway.

正解:B

解説:
Explanation
You need to add a rule in thesecurity list table to allow access to web application. Web applications are usually exposed over port 80 (HTTP), therefore answer B makes sense here.


質問 # 43
You are using Oracle Cloud Infrastructure (OCI) services across several regions: us-phoenix-1, us-ashburn-1, uk-london-1 and ap-tokyo-1. You have creates a separateadministrator group for each region: PHX-Admins, ASH-Admins, LHR-Admins and NRT-Admins, respectively.
You want to restrict admin access to a specific region. E.g., PHX-Admins should be able to manage all resources in the us-phoenix-1 region only and not any other OCI regions.
What IAM policy syntax is required to restrict PHX-Admins to manage OCI resources in the us-phoenix-1 region only? (Choose the best answer.)

  • A. Allow group PHX-Admins to manage all-resources in tenancy where request.permission= 'phx'
  • B. Allow group PHX-Admins to manage all-resources in tenancy where request.region= 'phx'
  • C. Allow group PHX-Admins to manage all-resources in tenancy where request.location= 'phx'
  • D. Allow group PHX-Admins to manage all-resources in tenancy where request.target= 'phx'

正解:B

解説:
Explanation
Use conditions to limit access depending on region:
request.regionhttps://docs.oracle.com/en-us/iaas/Content/Identity/Reference/policyreference.htm#General


質問 # 44
You have been asked to investigate a potential security risk on your company's Oracle Cloud Infrastructure (OCI) tenancy. You decide to start by looking throughthe audit logs for suspicious activity.
How can you retrieve the audit logs using the OCI Command Line Interface (CLI)? (Choose the best answer.)

  • A. oci audit event list --end-time $end-time --compartment-id $compartment-id
  • B. oci audit event list --start-time $start-time --compartment-id $compartment-id
  • C. oci audit event list --start-time $start-time --end-time $end-time --tenancy-id
    $tenancy-id
  • D. oci audit event list --start-time $start-time --end-time $end-time -- compartment-id $compartment-id

正解:D

解説:
Explanation
https://docs.oracle.com/en-us/iaas/tools/oci-cli/2.9.7/oci_cli_docs/cmdref/audit/event/list.html


質問 # 45
You have been monitoring your company's applications running in Oracle Cloud Infrastructure (OCI) and notice that the application is using OCI Traffic Management service. This service uses a traffic steering policy to distribute the DNS traffic based on subnet addresses in a rule set.
Which steering policy is in use in this particular case? (Choose the best answer.)

  • A. ASN steering policy
  • B. Geolocation steering
  • C. Load Balancing policy
  • D. IP Prefix steering

正解:D

解説:
Explanation
IP Prefix steering policies enable customers to steer DNS traffic based on the IP Prefix of the originating query.


質問 # 46
You launched a Linux compute instance to host the new version of your company website via Apache Httpd server on HTTPS (port 443). The instance is created in a public subnet along with other instances. The default security list associated to the subnet is:

You want to allow access to the company website from public internet without exposing websites eventually hosted on the other instances in the public subnet.
Which actionwould you take to accomplish the task? (Choose the best answer.)

  • A. Create a network security group, add a stateful rule to allow ingressaccess on port 443 and associate it to the instance that hosts the company website.
  • B. Create a network security group, add a stateful rule to allow ingress access on port 443 and associate it to the public subnet that hosts the company website.
  • C. Create a new security list with a stateful rule to allow ingress access on port 443 and associate it to the public subnet.
  • D. In default security list,add a stateful rule to allow ingress access on port 443.

正解:A

解説:
Explanation
Since we want to avoid exposing other instances in the same public subnet to the internet, Network Security Groups (NSG) must be used instead of Security Lists. NSG are attached to the vnic of the instance and not to the subnet


質問 # 47
You have ordered two FastConnect connections that provide a high availability connection architecture between your on-premises data center and Oracle Cloud Infrastructure (OCI). You want to run these connections in an ACTIVE/PASSIVE architecture.
How can you accomplish this? (Choose the best answer.)

  • A. Use AS PATH prepending with your routes.
  • B. Adjust one of the connections to have a higher ASN.
  • C. Decrease the prefix length of AS for the FastConnect you want touse as PASSIVE connection.
  • D. Enable BGP on the FastConnect that you want as the ACTIVE connection.

正解:A


質問 # 48
......

1z0-1067-22問題集はあなたの合格を必ず保証します:https://jp.fast2test.com/1z0-1067-22-premium-file.html

1z0-1067-22テスト問題集とオンライン試験エンジン:https://drive.google.com/open?id=1RnWS7NqnmKtED-XdIGZYBpyUiUk3mq5K


弊社を連絡する

我々は12時間以内ですべてのお問い合わせを答えます。

我々の働いている時間: ( GMT 0:00-15:00 )
月曜日から土曜日まで

サポート: 現在連絡 

English Deutsch 繁体中文 한국어