1Z0-1072-25 exam dumps

1Z0-1072-25 practice question 126 of 318

Oracle Cloud Infrastructure 2025 Architect Associate. Associate level, Oracle. Free question with the correct answer and a full explanation.

1Z0-1072-25 Question 126

Select 2

You are deploying an e-commerce application on Oracle Cloud Infrastructure with a domain called example.com. The front-end of the application must be publicly accessible at store.example.com. However, you also have internal microservices that should only be resolvable within your Virtual Cloud Network (VCN) and not exposed to the public. Which two configurations would correctly meet these requirements?

  1. A

    Create a Public DNS zone for example.com to manage external resolution (such as store.example.com) and a Private DNS zone for a subdomain (e.g., internal.example.com) that is associated with your VCN for private resolution.

  2. B

    Create a single Public DNS zone for example.com and include all internal microservices� DNS records in the same zone to simplify the configuration.

  3. C

    Associate the Private DNS zone with your VCN so that internal microservices are resolvable only within that VCN; you can also share this zone with additional VCNs if needed.

  4. D

    Use only the Private DNS zone for both public and internal traffic by configuring a traffic steering policy to route external requests to the front-end.

Show answer and explanation

Correct answers: A, C

Explanation

In Oracle Cloud Infrastructure, public DNS zones are resolvable over the internet, while private DNS zones are restricted to specified VCNs. To meet requirements for exposing certain services publicly (store.example.com) and keeping others private (internal microservices), you typically create separate public and private DNS zones. Refer to Oracle Cloud Infrastructure DNS documentation for best practices on creating and associating DNS zones with your VCNs.

  • A. Correct.

    This is correct. A Public DNS zone for the main domain (example.com) handles publicly accessible resources like store.example.com, while a separate Private DNS zone (e.g., internal.example.com) restricts access to microservices within the VCN.

  • B. Incorrect.

    This is incorrect. Mixing private records with public ones in a single Public DNS zone would expose internal microservices to the public internet, violating the requirement of keeping the microservices private.

  • C. Correct.

    This is correct. Private DNS zones in OCI can be associated with one or more VCNs, ensuring that only those VCNs can resolve the internal records. This meets the requirement of internal-only visibility for microservices.

  • D. Incorrect.

    This is incorrect. A Private DNS zone alone cannot handle public-facing subdomains. You need a Public DNS zone to serve records that should be resolvable on the public internet.

Timed practice exam

Take a 1Z0-1072-25 practice test under exam conditions

50 questions in 90 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam