1Z0-997-25 exam dumps

1Z0-997-25 practice question 100 of 175

Oracle Cloud Infrastructure 2025 Architect Professional. Professional level, Oracle. Free question with the correct answer and a full explanation.

1Z0-997-25 Question 100

Select 2

Your organization runs a mission-critical data analytics application that collects logs from an on-premises environment, processes them in Oracle Cloud Infrastructure (OCI) using an Autonomous Database, and then sends aggregated metrics to dashboards in AWS. You have been asked to design a secure, low-latency data transfer solution across on-prem, OCI, and AWS, while also ensuring a consistent identity management strategy that minimizes overhead. Which two solutions are recommended by Oracle best practices for this multi-cloud/hybrid design?

  1. A
    1. Establish a dedicated private connection using Oracle Cloud Infrastructure FastConnect from on-premises to OCI and leverage AWS Direct Connect to connect OCI to AWS, ensuring low latency traffic flow between the environments.
  2. B
    1. Implement Oracle Cloud Infrastructure Identity Federation with AWS IAM Identity Center to provide unified user management across clouds without requiring multiple sign-ons or user stores.
  3. C
    1. Create separate local user accounts in each environment to maintain independence and eliminate potential issues with cross-cloud identity dependencies.
  4. D
    1. Rely on secure tunnels over the public internet for data transfer to keep costs low, configuring site-to-site VPNs only for selected sensitive data traffic.
Show answer and explanation

Correct answers: A, B

Explanation

To achieve secure and reliable connectivity in a multi-cloud/hybrid solution, Oracle recommends using private network connections (FastConnect, Direct Connect) for critical and data-intensive workloads rather than relying on the public internet. For identity management, federating OCI with external Identity Providers (IdPs), including AWS IAM Identity Center, streamlines access control, reduces complexity, and enforces consistent security policies. For additional guidance, refer to Oracle's documentation on multi-cloud architecture and identity federation at https://docs.oracle.com/en/solutions and https://docs.oracle.com/en-us/iaas/Content/Identity/federation/federation.htm.

  • A. Correct.

    Option 1 is CORRECT. Using OCI FastConnect for on-prem to OCI connectivity and AWS Direct Connect for OCI to AWS ensures a dedicated, private network path. This approach provides lower latency, more consistent performance, and better security compared to using the public internet. It is a recommended best practice for mission-critical workloads.

  • B. Correct.

    Option 2 is CORRECT. Enabling Identity Federation between OCI and AWS IAM Identity Center (formerly AWS Single Sign-On) provides a centralized identity management system, allowing users to access resources across clouds with a single set of credentials. This reduces administrative overhead and improves security posture, aligning with multi-cloud best practices.

  • C. Incorrect.

    Option 3 is INCORRECT. Having separate local user accounts in each environment can lead to fragmented identity management, redundant administration, and potential security gaps. Federation is preferred for scalability and consistency.

  • D. Incorrect.

    Option 4 is INCORRECT. Relying primarily on the public internet for data transfers is typically not recommended for high-throughput or latency-sensitive workloads. While site-to-site VPNs can secure traffic, they may not meet performance requirements for large-scale data analytics solutions.

Timed practice exam

Take a 1Z0-997-25 practice test under exam conditions

60 questions in 90 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam