1Z0-1072-25 exam dumps

1Z0-1072-25 practice question 135 of 318

Oracle Cloud Infrastructure 2025 Architect Associate. Associate level, Oracle. Free question with the correct answer and a full explanation.

1Z0-1072-25 Question 135

Select 2

You have deployed a container-based e-commerce application to Oracle Container Engine for Kubernetes (OKE). You want to expose the application through a publicly accessible load balancer that can provide SSL termination and continue to send encrypted traffic to your node pool. Additionally, you need a health check that quickly detects and removes unhealthy nodes using only port 80. Which two configurations must you implement to meet these requirements?

  1. A

    Deploy a public load balancer that performs SSL bridging, decrypting inbound traffic and re-encrypting it before forwarding to the node pool

  2. B

    Configure an HTTP health check on port 80 for your backend set

  3. C

    Enable SSL offloading on the load balancer and send unencrypted (HTTP) traffic to backend nodes

  4. D

    Use a TCP-level health check on port 443 to detect unhealthy nodes

Show answer and explanation

Correct answers: A, B

Explanation

To ensure secure traffic from external clients all the way to the backend nodes, an SSL bridging configuration is required, so the load balancer decrypts and then re-encrypts traffic for enhanced security and routing control. Additionally, using an HTTP health check on port 80 allows the load balancer to verify application-level responsiveness. For more details, refer to the Oracle Cloud Infrastructure Load Balancer documentation on configuring SSL bridging and health checks.

  • A. Correct.

    Correct. SSL bridging decrypts the traffic at the load balancer and then re-encrypts it before sending to backend nodes, ensuring end-to-end encryption while allowing the load balancer to inspect traffic. This meets the requirement of continuing to send encrypted traffic to the node pool.

  • B. Correct.

    Correct. An HTTP health check on port 80 facilitates detailed monitoring of availability by checking a specific endpoint or path, allowing the load balancer to quickly remove unresponsive or unhealthy nodes from rotation. This aligns with the requirement to use only port 80 for health checks.

  • C. Incorrect.

    Incorrect. SSL offloading decrypts traffic at the load balancer and then sends it unencrypted to backend servers. This violates the requirement to keep traffic encrypted between the load balancer and the node pool.

  • D. Incorrect.

    Incorrect. A TCP-level health check on port 443 does not fully inspect a web request� status, which can delay or fail to detect certain issues at the application level. It also conflicts with the requirement to use port 80 for health checks.

Timed practice exam

Take a 1Z0-1072-25 practice test under exam conditions

50 questions in 90 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam