Oracle 1z0-1072-23 Exam Practice Questions (P. 5)
- Full Access (59 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #21
Each admin group has full access over their respective compartments as shown in the graphic below.
Your organization has set up a tag namespace, EmployeeGroup.Role and all your admin groups are tagged with a value of 'Admin'.

You want to set up a Test compartment for members of the three projects to share. You also need to provide admin access to all three of your existing admin groups.
Which policy would you write to accomplish this task?
- AAllow all-group to manage all-resources in compartment Test where request.principal.group.tag.EmployeeGroup.Role='Admin'
- BAllow dynamic-group to manage all-resources in compartment Test where request.principal.group.tag.EmployeeGroup.Role='Admin'
- CAllow any-user to manage all-resources in compartment Test where request.principal.group.tag.EmployeeGroup.Role='Admin'Most Voted
- DAllow group any-group to manage all-resources in compartment Test where request.principal.group.tag.EmployeeGroup.Role='Admin'
A

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #22
A developer in your team has already configured the application built using an OCI SDK to authenticate using the instance principals provider.
Which is NOT a necessary step to complete this set up?
- ACreate a policy granting permissions to the dynamic group to access services in your compartment or tenancy.
- BGenerate Auth Tokens to enable instances in the dynamic group to authenticate with APIs.Most Voted
- CCreate a dynamic group with matching rules to specify which instances can make API calls against services.
- DDeploy the application and the SDK to all the instances that belong to the dynamic group.
B

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #23
- AFile systems use Oracle-managed keys by default.
- BCustomer can encrypt data in their file system using their own Vault encryption key.
- CMount targets use Oracle-managed keys by default.
- DCommunication with file systems in a mount target is encrypted via HTTPS.
- ECustomer can encrypt the communication to a mount target via export options.
AB

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #24
You have also created the corresponding mount target in one of the application subnets. The VCN security lists are properly configured so that the application servers can access FSS. The security team changed the settings for the DB System to have read-only access to the file system. However, when they test it, they are unable to access FSS.
How would you allow access to FSS?
- ACreate an NFS export option that allows READ_ONLY access where the source is the CIDR range of the DB System subnet.
- BModify the security list associated with the subnet where the mount target resides. Change the ingress rules corresponding to the DB System subnet to be stateless.
- CCreate an instance principal for the DB System. Write an Identity and Access Management (IAM) policy that allows the instance principal read-only access to the file storage service.
- DModify the security list associated with the subnet where the mount target resides. Change the ingress rules corresponding to the DB System subnet to be stateful.Most Voted
A

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
Question #25
- AAllow group A-Developers to create volumes in compartment Project-AMost Voted
- BAllow group A-Admins to manage all-resources in compartment Project-A
- CAllow any-user to inspect users in tenancy
- DAllow dynamic-group FrontEnd to manage instance-family in compartment Project-A
C

Hi! Do you need help with this question ?
- Why isn't the A the right answer?
- Traducir la pregunta al español
Contributor get free access to an augmented ChatGPT 4 trained with the latest IT Questions.
All Pages