1Z0-1151-25 Question 4
Select 2Your organization hosts an Oracle Database and critical applications on Oracle Cloud Infrastructure (OCI). However, you also need to run advanced analytics on a service only available in a different public cloud. You want to ensure a secure, low-latency connection and unified identity management between OCI and the other cloud provider. Which two approaches could you implement to achieve this multi-cloud strategy?
- A
A: Use OCI FastConnect to establish a private dedicated link to the other cloud, then configure identity federation between OCI and the external cloud provider.
- B
B: Replace OCI IAM (Identity and Access Management) with third-party software that runs on-premises, assuming the same roles can be pushed to both clouds automatically.
- C
C: Set up a VPN over the public internet as the main connection method, avoiding any dedicated links for cost savings.
- D
D: Deploy a single sign-on solution between OCI and the other cloud provider to unify identity, combined with a direct low-latency connection from a supported network partner.
Show answer and explanation
Correct answers: A, D
Explanation
In a multi-cloud strategy involving OCI and another public cloud, secure and efficient connectivity is paramount. FastConnect or partner-provided private connectivity, combined with identity federation or single sign-on, allows you to control authentication centrally while meeting performance and security requirements. Oracle� documentation on FastConnect and Identity & Access Management recommends using dedicated private links alongside federated identities to maintain consistent security policies across clouds. For more details, refer to Oracle� official documentation on FastConnect (docs.oracle.com/en/solutions/build-multicloud-network) and IAM federation (docs.oracle.com/en-us/iaas/Content/Identity/Concepts/federation.htm).
- A. Correct.
A: CORRECT. Configuring an OCI FastConnect private link and identity federation is a recommended approach for secure, low-latency connectivity and centralized identity management in multi-cloud architectures.
- B. Incorrect.
B: INCORRECT. Merely replacing OCI IAM with third-party software running on-premises does not guarantee seamless or secure multi-cloud identity synchronization. Additional configurations and trust relationships would still be needed.
- C. Incorrect.
C: INCORRECT. While a VPN could provide connectivity, relying solely on the public internet for mission-critical workloads introduces potential latency, bandwidth, and security issues. It is not the best practice for high-performance analytics requirements.
- D. Correct.
D: CORRECT. Single sign-on solutions can streamline identity management, and using a direct, low-latency connection from a certified network partner ensures reliable cross-cloud traffic flow.