1Z0-1072-25 exam dumps

1Z0-1072-25 practice question 255 of 318

Oracle Cloud Infrastructure 2025 Architect Associate. Associate level, Oracle. Free question with the correct answer and a full explanation.

1Z0-1072-25 Question 255

Select 2

A healthcare organization has deployed an Oracle Cloud Infrastructure File Storage file system to store and share patient records. They created a single mount target in a private subnet and configured the export to allow access from the entire VCN range. Although instances in the same subnet as the mount target can successfully mount the file system, instances in other subnets within the same VCN report 'access denied' errors. Which two steps must you take to ensure that all compute instances in the VCN can mount the file system?

  1. A

    A. Add each additional subnet's CIDR block to the export settings with the required access permissions.

  2. B

    B. Update the mount target's security rules or network security group to allow inbound NFS traffic from the entire VCN range.

  3. C

    C. Create one mount target for every subnet within the VCN so each instance has a dedicated target.

  4. D

    D. Attach the File Storage file system to a block volume and present it to each instance in the VCN.

Show answer and explanation

Correct answers: A, B

Explanation

To make an OCI File Storage file system accessible from all subnets within a VCN, you must configure the export rules to include those subnets� CIDR blocks and update the mount target� security rules or NSG to allow inbound NFS traffic from the VCN. For detailed information, refer to the Oracle Cloud Infrastructure documentation on File Storage exports, access control, and mount target security configuration.

  • A. Correct.

    A. Correct. In Oracle File Storage, you must configure the export to allow traffic from the specific IP addresses or subnets that will connect. Even though the export was set to allow the entire VCN initially, you often need to verify or explicitly specify additional subnet CIDRs for correct permissions.

  • B. Correct.

    B. Correct. By default, the mount target� subnet security list or NSG might only allow NFS traffic from its own subnet. You should enable inbound NFS and related ports from the full VCN CIDR range if you want all subnets in the VCN to access it.

  • C. Incorrect.

    C. Incorrect. You do not need separate mount targets for every subnet. A single mount target can serve multiple subnets as long as the networking and export rules permit it.

  • D. Incorrect.

    D. Incorrect. Oracle File Storage acts at the file level (using NFS), whereas block volumes are attached at the block device level. You cannot simply attach a File Storage file system as a block volume to each instance.

Timed practice exam

Take a 1Z0-1072-25 practice test under exam conditions

50 questions in 90 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam