1Z0-932 exam – The Oracle Cloud Infrastructure Architect Associate certification is designed for individuals who possess a strong foundation knowledge
in architecting infrastructure using Oracle Cloud Infrastructure services. This certification covers topics such as Cloud computing
concepts (HA, DR, Security), regions, availability domains, OCI terminology and services, networking, databases,
load balancing, IAM, DNS, FAST CONNECT, VPN, Compartments, tagging, Terraform, with a focus on how to use it with OCI and Exadata.
This certification validates a deep understanding of OCI services to spin up infrastructure and provides a competitive edge in the industry.
Free Oracle 1Z0-932 Exam Practice Questions

You want an instance in your compartment to make API calls to other services within Oracle Cloud Infrastructure without
storing credentials in a configuration file. What do you need to do?
A. No action is required. By default, all VM instances are created with an Instance Principal.
B. Instances cannot access services outside their compartment.
C. VM instances are treated as users. Create a user and assign the user to that VM instance.
D. Create appropriate matching rules in the Dynamic Group to create an Instance Principal.
Correct Answer: A


You have an application running on Oracle Cloud Infrastructure. You identified that the read and write operations are
slowing your application down enough to impair user access. The application is currently using a VM.Standard1.2
without any block storage attached to it.
Which two options allow you to increase disk performance?
A. Terminate the compute instance preserving the boot volume. Create a new compute instance a VM Dense IO shape
using the boot volume preserved.
B. Terminate the compute instance preserving the boot volume. Create a new compute instance using a VM Standard
shape and attach a new block volume to host your application.
C. Create a backup of the boot volume. Create a new compute instance a VM Dense IO shape and restore the backup.
D. Terminate the compute instance and create a backup of the boot volume. Create a new compute instance using a
VM Dense IO shape and restore the backup.
Correct Answer: BC


Which scaling option does Database Cloud Service (DBCS) on Bare Metal Shape offer?
A. network bandwidth
C. storage
D. memory
Correct Answer: C


Which two statements are true about the Oracle Cloud Infrastructure Object Storage Service? (Choose two.)
A. It provides higher IOPS than Block Storage.
B. It can be directly attached or detached from a compute instance.
C. Data is stored redundantly only in one Availability Domain.
D. Data is stored redundantly across multiple storage servers across multiple Availability Domains.
E. It provides strong consistency.
Correct Answer: DE


Which two statements are true about encryption on Oracle Cloud Infrastructure (OCI)? (Choose two.)
A. By default, Object Storage and Block Storage are encrypted at rest.
B. A customer is responsible for data encryption in all services of OCI.
C. By default, DBCS offers an encrypted database.
D. By default, NVMe drives are encrypted but the block volume service is not.
Correct Answer: AC


Which two options are true for Autonomous Transaction Processing (ATP) database?
A. You can add/remove Diskgroup in ATP
B. You can scale storage up or down in ATP
C. You can scale CPU up or down in ATP
D. You can add more Pluggable Database for consolidating multiple databases in ATP
E. You can add new ORACLE_HOME for bringing older versions of on-premises databases to ATP
Correct Answer: BD


Which service would you use if your big data workload required shared access and NFS-based connectivity?
A. block volume
B. archive storage
C. object storage
D. file storage
Correct Answer: D


You have created a virtual cloud network (VCN) with three private subnets. Two of the subnets contain application
servers and the third subnet contains a DB System. The application requires a shared file system so you have
provisioned one
using the file storage service (FSS). You also created the corresponding mount target in one of the application subnets.
The VCN security lists are properly configured so that both application servers and the DB System can access the file
system. The security team determines that the DB System should have read-only access to the file system.
What change would you make to satisfy this requirement?
A. Create an NFS export option that allows READ_ONLY access where the source is the CIDR range of the DB System
B. Connect via SSH to one of the application servers where the file system has been mounted. Use the Unix command
chmod to change permissions on the file system directory, allowing the database user read only access.
C. Modify the security list associated with the subnet where the mount target resides. Change the ingress rules
corresponding to the DB System subnet to be stateless.
D. Create an instance principal for the DB System. Write an Identity and Access Management (IAM) policy that allows
the instance principal read-only access to the file storage service.
Correct Answer: C


You had an outage in your application caused by the loss of a shared volume provisioned by File Storage Service
(FSS). At this point, you need to restore the data from a snapshot you created of the FSS. What are the steps to restore
the data?
A. Access the directory where the shared volume is mounted, then cd into .snapshot folder, find the snapshot folder you
want to recover and use cp or rsync tool to copy the files to the original location.
B. Open OCI Console, select File Storage Service, find the shared storage, then click on snapshot and restore.
C. Open OCI Console, select File Storage Service, find the snapshot you created and click restore.
D. Access the directory, where you mounted the shared volume, then cd into .snapshot folder and find the snapshot
folder you want to recover and rename that folder to the original folder name.
Correct Answer: B


You have just created an Autonomous Data Warehouse (ADW) and you want to connect to the ADW using SQL
Developer. What three items are needed to connect to the ADW using SQL Developer?
A. the keystore password
B. a security list with an ingress rule for TCP port 1521
C. the client credentials file
D. the public IP address of the ADW server
E. the admin password
Correct Answer: ACE


Which two statements are true about data guard service on DB Systems in Oracle Cloud Infrastructure (OCI)?
A. Data guard implementation requires two DB Systems, one running the primary database on a virtual machine and the
standby database running on bare metal
B. Data guard configuration on the OCI is limited to one standby database per primary database
C. Data guard configuration on the OCI is limited to a virtual machine only
D. Data guard implementation requires two DB Systems, one containing the primary database and one containing the
standby database
Correct Answer: BD


You need to create a high performance shared file system service, and have been advised to use OCI File Storage
Service. You have logged into the OCI Console, created a File System in an availability domain, and followed the steps
to mount the shared file system on your Oracle Linux virtual Instance. However, you are still unable to access the
shared file system from your Linux instance.
What is the likely reason for this?
A. There are no security list rules for mount target traffic
B. There is no IGW set up for mount target traffic
C. There is no IAM policies set up to allow you to access the mount target
D. There is no route in your VCN\\’s route table for mount target traffic
Correct Answer: C


Which statement is true about Oracle Cloud Infrastructure Object Storage Service?
A. An Archive Object Storage tier bucket can be upgraded to the Standard Object Storage tier.
B. You cannot directly download an object from an Archive Object Storage bucket.
C. An existing Standard Object Storage tier bucket can be downgraded to the Archive Object Storage tier.
D. Data retrieval in Archive Object Storage is instantaneous.
Correct Answer: B

