In which two ways can you improve data durability in Oracle Cloud Infrastructure Object Storage?
A. Setup volumes in a RAID1 configuration
B. Enable server-sideencryption
C. Enable Versioning
D. Limit delete permissions
E. Enable client-side encryption
As a lead Security Architect, you have tasked to restrict access to and from the worker nodes in pods running in Oracle Container Engine for Kubernetes?
A. Cloud Guard
B. Vulnerability Scanning
C. Security Lists
D. Identity and Access Management
Which type of file system does file storage use?
A. NFSv3
B. iSCSI
C. Paravirtualized
D. NVMe
E. SSD
Which statement is true about Oracle Cloud Infrastructure (OCI) Object Storage server-side encryption?
A. All the traffic to and from object storage is encrypted by using Transport Layer Security.
B. Encryption is not enabled by default.
C. Customer-provided encryption keys are never stored in OCI Vault service.
D. Each object in a bucket is always encrypted with the same data encryption key.
Which OCI cloud service lets you centrally manage the encryption keys thatprotect your data and the secret credentials that you use to securely access resources?
A. Data Safe
B. Cloud Guard
C. Data Guard
D. Vault
A company needs to have somebuckets as public in the compartment. You want Cloud Guard to ignore the problem associated with public bucket. Select TWO correct answers
A. Dismiss the issues associated with these resources
B. Make the bucket private so that Cloud Guard won't detectit
C. Configure Conditional groups for the detector to fix base line
D. First make the bucket private and after few days make the bucket public again
Which resources can be used to create and manage from Vault Service ? Select TWO correct answers
A. Secret
B. IAM
C. Keys
D. Cloud Guard
Which architecture is based on the principle of "never trust, always verify"?
A. Federated identity
B. Zero trust
C. Fluidperimeter
D. Defense in depth
Which of the following is necessary step when creating a secret in vault?
A. Vault-managed key is necessary to encrypt the secret
B. Digest Hash shouldbe created of the secret value
C. Object Storage must be created to run secret service
D. Shamir's secret sharing algorithm should be used to unseal the vault
Bot Management in OCI provides which of the features? Select TWO correct answers.
A. Bad Bot Denylist
B. CAPTCHA Challenge
C. IP Prefix Steering
D. Good Bot Allowlist