1Z0-1151-25 exam dumps

1Z0-1151-25 practice question 121 of 133

Oracle Cloud Infrastructure 2025 Multicloud Architect Professional. Professional level, Oracle. Free question with the correct answer and a full explanation.

1Z0-1151-25 Question 121

Select 2

You have deployed an Oracle Database instance on Google Cloud that needs to replicate data to an Oracle Autonomous Database in OCI for analytical workloads. However, you discover that your ODI (Oracle Data Integrator) environment in OCI cannot connect to the Oracle Database in Google Cloud, even though the Interconnect between GCP and OCI is established. Which two actions must you take to properly configure and secure connectivity between the Google Cloud instance and OCI?

  1. A

    Configure the Google Cloud firewall to allow inbound connections on the specific Oracle Database ports (e.g., 1521) from the appropriate OCI CIDR blocks.

  2. B

    Disable Google Cloud� default VPC firewall rules to allow all inbound and outbound traffic from any source and destination.

  3. C

    Enable SSL/TLS encryption on the Oracle Database instance using valid certificates to secure the data in transit between GCP and OCI.

  4. D

    Configure inbound firewall rules in OCI to accept traffic from the Google Cloud Interconnect IP ranges on required Oracle Database ports.

  5. E

    Reassign the Oracle Database to a different Google Cloud project with default firewall rules, which automatically opens all ports needed for replication.

Show answer and explanation

Correct answers: A, C

Explanation

When configuring an Oracle Database instance on Google Cloud for connections from OCI, you must explicitly configure firewall rules in Google Cloud to allow inbound traffic on the Oracle ports from OCI� Interconnect IP ranges. Additionally, securing traffic with SSL/TLS helps protect data in transit. Refer to official Oracle Cloud Infrastructure and Google Cloud documentation on configuring interconnect firewall rules, security lists, and database connectivity for multicloud deployments.

  • A. Correct.

    Correct. In Google Cloud, you must explicitly allow traffic on the ports used by Oracle Database. Identifying the correct source CIDR (the OCI subnets or Interconnect IP range) and configuring firewall rules ensures inbound connections can reach the database instance.

  • B. Incorrect.

    Incorrect. Disabling all default VPC firewall rules is a bad practice as it exposes your instance to unnecessary network traffic. Fine-grained firewall configuration is the recommended approach.

  • C. Correct.

    Correct. Enabling SSL/TLS on the database ensures end-to-end encryption for data migrations or replication traffic. It is a standard best practice for secure multicloud communications.

  • D. Incorrect.

    Incorrect. While OCI firewall rules or security lists must be configured appropriately, the question specifically focuses on why the database in Google Cloud cannot be reached from OCI. Typically, OCI� default security lists allow outbound connections unless explicitly blocked. The primary issue is the GCP firewall blocking inbound connections.

  • E. Incorrect.

    Incorrect. Moving the Oracle Database to another project does not automatically configure or open the required ports. Each project� firewall rules must still be configured properly. Default rules do not typically open Oracle-specific ports by default.

Timed practice exam

Take a 1Z0-1151-25 practice test under exam conditions

50 questions in 90 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam