認証トレーニング1Z0-1085-21試験問題集テストエンジン [2022]
2022年02月02日ガイド準備で1Z0-1085-21試験合格
質問 34
A customer is looking to migrate their old database backups from their on-premises data center to Oracle Cloud Infrastructure (OCI). Which OCI service is the most cost-effective?
- A. Block Volume
- B. File Storage
- C. Object Storage (standard)
- D. Archive Storage
正解: D
質問 35
Which Oracle cloud infrastructurecapability can be used to protect against power failures within an availability Domain?
- A. Fault Domains
- B. Data Plane
- C. Top of Rack Switch
- D. Services Cells
正解: A
解説:
Explanation
A fault domain is a grouping of hardware and infrastructure within an availability domain. Each availability domain contains three fault domains. Fault domains provide anti-affinity: they let you distribute your instances so that the instances are not on the same physical hardware within a single availability domain. A hardware failure orCompute hardware maintenance event that affects one fault domain does not affect instances in other fault domains. In addition, the physical hardware in a fault domain has independent and redundant power supplies, which prevents a failure in the power supply hardware within one fault domain from affecting other fault domains.
To control the placement of your compute instances, bare metal DB system instances, or virtual machine DB system instances, you can optionally specify the fault domain for a new instance or instance pool at launch time. If you don't specify the fault domain, the system selects one for you. Oracle Cloud Infrastructure makes a best-effort anti-affinity placement across different fault domains, while optimizing for available capacity in the availability domain. To change the fault domain for an instance, terminate it and launch a new instance in the preferred fault domain.
Use fault domains to do the following things:
Protect against unexpected hardware failures or power supply failures.
Protect against planned outages because of Compute hardware maintenance.
質問 36
Which is the process of connecting two VCNs in the same region so that their resources can communicate using private IP addresses?
- A. Local VCN Peering
- B. VCN Peering
- C. VCN Routing
- D. Remote VCN Peering
正解: A
解説:
Local VCN Peering is the process of connecting two VCNs in the same region so that their resources can communicate using private IP addresses.
質問 37
Which of the following is an example of an edge service in OCI?
- A. DNS Zone Management
- B. Virtual Machines
- C. Oracle Data Guard
- D. OCI compute instances
正解: A
質問 38
Which feature is NOT acomponent of Oracle Cloud Infrastructure (OCI) Identity and Access management service?
- A. User Credentials
- B. Federation
- C. Network Security Group
- D. Policies
正解: B
質問 39
Which storage need to use for backup?
- A. Block Storage
- B. Object Storage
- C. File Storage
- D. Local NVMe
正解: B
解説:
Reference:
https://www.youtube.com/watch?v=XXqTGF8G0dk&list=PLKCk3OyNwIzuHYigVbdtDOZOfChcotfj2&inde x=6
質問 40
Which Oracle Cloud Infrastructure (OCI) service leverages Terraform to configure infrastructure-as- code?
- A. Compute
- B. Oracle Container Engine for Kubernetes (OKE)
- C. Compartment Explorer
- D. Events
- E. Resource Manager
正解: E
質問 41
Which two Oracle Cloud Infrastructure resources can be used to group/categorize expenses? (Choose two.)
- A. Compartments
- B. Groups
- C. Tags
- D. Users
- E. Policies
正解: A,C
質問 42
How is total network throughput allocated to a Virtual Machine (VM) instance?
- A. Each VM is allocated 10 Gbps of network bandwidth regardless of the selected shape.
- B. When launching a compute instance, customers may select the desired maximum network bandwidth.
- C. Network bandwidth is proportional to the number of OCPUs in the instance shape.
- D. Network bandwidth is variable.
正解: C
解説:
Reference: https://docs.cloud.oracle.com/en-
us/iaas/Content/Compute/References/computeshapes.htm
質問 43
Which Oracle Cloud Infrastructure (OCI) capability allows you to set up alerts to notify you if a budget forecast is to be exceeded or spending surpasses a certain amount?
- A. Budget
- B. Cost Analysis
- C. Monitoring
- D. Events
正解: A
質問 44
Your company hasdeployed a business critical application in Oracle Cloud Infrastructure. What should you do to ensure that your application has the highest level of resilience and availability?
- A. Deploy the application across multiple Regions and Availability Domains
- B. Deploy the application across multiple Virtual Cloud Networks
- C. Deploy the application across multiple Availability Domains and Subnets
- D. Deploy the application across multiple Availability Domains and Fault Domains
正解: A
解説:
Explanation
To design a high availability architecture, three key elements should be considered- redundancy, monitoring, and failover:
1) Redundancy means that multiple components can perform the same task. The problem of a single point of failure is eliminated because redundant components cantake over a task performed by a component that has failed.
2) Monitoring means checking whether or not a component is working properly.
3) Failover is the process by which a secondary component becomes primary when the primary component fails.
The best practices introduced here focus on these three key elements. Although high availability can be achieved at many different levels, including the application level and the cloud infrastructure level, here we will focus on the cloud infrastructure level.
An Oracle Cloud Infrastructure region is a localized geographic area composed of one or more availability domains, each composed of three fault domains. High availability is ensured by a redundancy of fault domains within the availability domains.
An availability domain is one or more data centers located within a region. Availability domains are isolated from each other, fault tolerant, and unlikely to fail simultaneously. Because availability domains do not share physical infrastructure, such as power or cooling, or the internal availability domain network, a failure that impacts one availability domain is unlikely to impact the availability of others.
A fault domain is a grouping of hardware and infrastructure within an availability domain. Each availability domain contains three fault domains. Fault domains let you distribute your instances so that they are not on the same physical hardware within a single availability domain. As a result, an unexpected hardware failure or a Compute hardware maintenance that affects one fault domain does not affect instances in other fault domains.
You can optionally specify the fault domain for a new instance at launch time, or you can let the system select one for you.
All the availability domains in a region are connected toeach other by a low-latency, high bandwidth network.
This predictable, encrypted interconnection between availability domains provides the building blocks for both high availability and disaster recovery.
質問 45
What does Oracle's Payment Card Industry Data Security Standard (PCI DSS) attestation of compliance provide to customers?
- A. Customers can use these services for workloads that store, process, or transmit cardholder data.
- B. Customers can use these services for workloads that provides validation of card holder transaction but only as 3rd party
- C. Customers can use these services for workloads that process, or transmit cardholder data but not store it.
- D. Customers can use these services for workloads to process applications for credit card approval securely.
正解: A
解説:
Explanation
The Payment Card Industry Data Security Standard (PCI DSS) isa global set of security standard designed to encourage and enhance cardholder data security and promote the adoption of consistent data security measures around the technical and operational components related to cardholder data.
Oracle has successfully completed a Payment Card Industry Data Security Standard (PCI DSS) audit and received an Attestation of Compliance (AoC) covering several Oracle Cloud Infrastructure services and the Oracle RightNow Service Cloud Service. As a PCI Level 1 Service Provider, customers can now use these services for workloads that store, process or transmit cardholder data.
質問 46
You are setting up a proof of concept (POC) and need to quickly establish a secure between an on-premises data center andOracle Cloud Infrastructure (OCI).
Which OCI service should you implement?
- A. IPSec VPN
- B. Internet Gateway
- C. VCN Peering
- D. FastConnect
正解: A
解説:
Explanation
You can set up a single IPSec VPN with a simple layout that you might use for a proof of concept (POC).
質問 47
You are analyzing your Oracle Cloud Infrastructure (OCI) usage with Cost Analysis tool in the OCI console.
Which of the following is NOT a default feature of the tool?
- A. Filter costs by date
- B. Filter costs by tags
- C. Filter costs by compartments
- D. Filter costs by applications
正解: D
解説:
Explanation
Cost Analysis is an easy-to-use visualization tool to help you track and optimize your Oracle Cloud Infrastructure spending, allows you to generate charts, and download accurate, reliable tabular reports of aggregated cost data on your Oracle Cloud Infrastructure consumption. Use the tool for spot checks of spending trends and for generating reports

質問 48
(CHK) Which three components are part of Oracle Cloud Infrastructure Identity and Access Management service? (Choose three.)
- A. Dynamic Groups
- B. Users
- C. Virtual Cloud Networks
- D. Policies
- E. Regional Subnets
正解: A,B,D
解説:
Reference: https://docs.cloud.oracle.com/en-us/iaas/Content/Identity/Concepts/overview.htm#one
質問 49
Which gateway can be used to provide internet access to an Oracle Cloud Infrastructure compute instance in a private subnet?
- A. Internet Gateway
- B. NAT Gateway
- C. Dynamic Routing Gateway
- D. Service Gateway
正解: B
解説:
Explanation
A NAT gateway gives cloud resources without public IP addresses access to the internet without exposingthose resources to incoming internet connections.


質問 50
you are analyzing your Oracle Cloud Infrastructure (OCI) usage with Cost Analysis tool in OCI Console.
Which is not a default feature of the tool?
- A. Filter costs by date
- B. Filter costs by tags
- C. Filter costs by compartments
- D. Filter costs by applications
正解: D
解説:
Explanation
You can filter Costs Analysis Tools by following three ways
To filter costs by dates
To filter costs by tags
To filter costs by compartments
質問 51
A company has developed an eCommerce web application In Oracle CloudInfrastructure.
What should they do to ensure that the application has the highest level of resilience?
- A. Deploy the application across multiple Availability Domains and subnet.
- B. Deploy the application across multiple Virtual Cloud Networks.
- C. Deploy the application across multiple Availability Domains and Fault Domains.
- D. Deploy the application across multiple Regions and Availability Domains.
正解: D
解説:
Explanation
For highest level of resilience you can deploy the application between regions and distribute onavailability domain and fault domains.
質問 52
What does compute instance horizontal scaling mean?
- A. changing compute instance size
- B. adding additional compute instances
- C. stopping/starting the instance
- D. backing up data to object storage
正解: B
解説:
Reference: https://medium.com/oracledevs/scaling-your-oci-web-server-203895180102
質問 53
Which OCI service would you use to distribute incoming web traffic among a set of web servers?
- A. Private Load Balancer
- B. Internet Gateway
- C. Public Load Balancer
- D. Autoscaling
正解: C
質問 54
What are true of Hardware Security Module(HSM) which are used in Key management in OCI? (Choose two.)
- A. HSM hardware is tamper evident, has physical safeguards for tamper resistance, requires identity based authentication, and deletes keys from the device when it detects tampering.
- B. HSM hardware is not tamper evident, has physical safeguards for tamper resistance, requires identity based authentication, and deletes keys from the device when it detects tampering.
- C. HSMs meet Federal Information Processing Standards (FIPS) 140 2 Security Level 3 security certification.
- D. HSMs meet HIPAA security certification.
正解: A,C
解説:
Managed service that enables you to encrypt your data using keys that you control
* Key Management provides you with
* Centralized key management capabilities
* Highly available, durable, and secure key storage in hardware security modules (HSMs)
* Integration with select Oracle Cloud Infrastructure services
* Uses HSMs that meet Federal Information Processing Standards (FIPS) 140 2 Security Level 3 security certification
* HSM hardware is tamper evident, has physical safeguards for tamper resistance, requires identity based authentication, and deletes keys from the device when it detects tampering
* A HSM is a physical computing device that safeguards digital keys and provides crypto processing Key Management Reference:
https://www.youtube.com/watch?v=N1Tqqg3jUmc&list=PLKCk3OyNwIzuHYigVbdtDOZOfChcotfj2&inde x=9
質問 55
Which Oracle Cloud Infrastructure storage service can provide a shared file system across multiple compute instances?
- A. Object Storage
- B. Archive storage
- C. File Storage
- D. Local NVMe
正解: C
解説:
Oracle Cloud Infrastructure File Storage Service is a persistent, shared file system in Oracle Cloud. It provides a durable, scalable, distributed, enterprise-grade network file system. Oracle Cloud Infrastructure File Storage Service supports Network File System version 3.0 (NFSv3) and Network Lock Manager (NLM) for file locking functionality. Reference: https://docs.oracle.com/en/solutions/learn- storage-options-cloud/design-learn-shared-storage-options-oracle-cloud-infrastructure.html#GUID-
2E07B558-27CA-41B5-A142-D159560A82A4
質問 56
(CHK) A new customer/user has logged into Oracle Cloud Infrastructure (OCI) as an administrator for the first time. The admin would like to deploy infrastructure into a region other than their home region.
What is the first step they must take in order to accomplish this task?
- A. Use API endpoints to create resources in the desired region.
- B. File a service request for access to each additional region.
- C. Subscribe to the desired region.
- D. Navigate to the desired region and begin creating resources.
正解: C
解説:
Reference: https://developer.rackspace.com/blog/overview-of-IAM-in-oracle-cloud-infrastructure/
https://docs.oracle.com/en/cloud/paas/content-cloud/administer/create-instance-oracle-cloud- console.html#GUID-4855750C-F400-4FB4-85AA-96CC98FC5A06
質問 57
......
究極のガイド1Z0-1085-21認証試験準備Oracle Cloud:https://www.goshiken.com/Oracle/1Z0-1085-21-mondaishu.html