1Z0-1151-25 exam dumps

1Z0-1151-25 practice question 98 of 133

Oracle Cloud Infrastructure 2025 Multicloud Architect Professional. Professional level, Oracle. Free question with the correct answer and a full explanation.

1Z0-1151-25 Question 98

Single answer

Your organization has set up the Oracle Database Service for Microsoft Azure to provision an Autonomous Database in Oracle Cloud Infrastructure (OCI) directly from the Azure portal. You have already configured the network interconnect between OCI and Azure. However, when you attempt to provision an OCI Autonomous Database from Azure, you receive an error stating that the Azure application doesn't have sufficient permissions in the OCI tenancy. Which step is required to fix this issue so that the provisioning can succeed?

  1. A

    Create a custom Azure role and assign it to the resource group hosting Oracle Database Service for Azure.

  2. B

    In the OCI Identity and Access Management configuration, add the Azure AD application as an external identity provider and map its roles to an appropriate OCI policy.

  3. C

    Enable multi-factor authentication for the Azure account that is deploying the Autonomous Database.

  4. D

    Assign the Azure AD application a Contributor role in Azure to allow it to manage OCI resources.

Show answer and explanation

Correct answer: B

Explanation

When provisioning Oracle Database@Azure via Oracle Database Service for Microsoft Azure, you must configure both network connectivity (via the interconnect) and cross-cloud identity federation. Simply granting roles in Azure or enabling MFA is insufficient. You must add the Azure AD application as an external identity provider in OCI IAM and map it to a policy that allows resource creation in the OCI tenancy. Refer to Oracle documentation on 'Configuring Identity for Oracle Database Service for Microsoft Azure' for specific steps.

  • A. Incorrect.

    Incorrect. Creating a custom Azure role alone and assigning it to the resource group will not grant the necessary permissions in OCI. Permission needs to be explicitly configured in OCI as well.

  • B. Correct.

    Correct. In order for an Azure AD application to create resources in OCI, it must be recognized in OCI Identity and Access Management. This involves registering the Azure application as an external identity provider and mapping its roles or groups to the appropriate OCI policies.

  • C. Incorrect.

    Incorrect. Enabling multi-factor authentication for the deploying user does not address the permission issue. The error indicates the application itself lacks sufficient authorization in OCI, not the user.

  • D. Incorrect.

    Incorrect. Assigning the Contributor role in Azure only grants permissions within Azure. It does not extend to OCI resources, which require specific identity federation and policy configuration in OCI.

Timed practice exam

Take a 1Z0-1151-25 practice test under exam conditions

50 questions in 90 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam