1Z0-1104-26 Question Preview

Safe Public Question Preview 5

Only the demo-safe public version is shown here. Correct answers, full explanations, internal IDs, and paid-only content stay protected.

Multi SelectImplementing Network, Platform, and Infrastructure Security
Question 5. A company is securing its compute instances (VMs and Bare Metal Machines) in Oracle Cloud infrastructure (OCI) using a network firewall. As shown in the diagram, traffic flows from the internet Gateway (IGW) to the firewall in the Public DMZ Subnet, and then to the compute instances in the Public Subnet. When configuring security lists and network security groups (NSGs) in this setup, what should they consider?
A. If the policy used with the firewall has no rules specified, the firewall allows all traffic.
B. Ensure that any security list or NSG rules allow the traffic to enter the firewall for appropriate evaluation.
C. Add stateful rules to the security list attached to the firewall subnet or include the firewall in an NSG containing stateful rules for better performance.
D. Security list and NSG rules associated with the firewall subnet and VNICs are evaluated after the firewall.
Explanation is locked. Start the demo or unlock full access to review explanations inside the protected test engine.

Related Safe Previews

FAQ

Does this page show the answer?

No. Answers and explanations are protected inside the private test engine.