|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/1z0-1072-25/
课程评论:没有评论
课程名称:1Z0-1072-25:Oracle OCI架构师助理2025 [新2025] 课程概述: 本课程旨在帮助专业人士准备通过1Z0-1072-25考试,验证其在Oracle云基础设施(OCI)上架构基础设施解决方案的基础和实践知识。该认证证明您能够有效设计、实施和管理OCI服务,涵盖核心领域,包括计算、网络、存储以及身份和访问管理(IAM),同时确保高可用性、性能和安全配置。 考试主题: 1. **计算**:选择合适的计算实例类型(标准、密集I/O、GPU、高性能计算),根据不同工作负载配置计算实例,启用自动扩展策略以实现弹性,管理自定义和平台镜像,利用操作系统管理进行补丁和更新,以及了解基础设施维护计划和操作。 2. **网络**:设计和管理虚拟云网络(VCN),区分公共和私有子网,分配和管理公共/私有IP地址和VNIC,配置路由表和网关(IGW、DRG、LPG),使用网络安全组和安全列表应用安全性,通过站点到站点VPN、FastConnect和对等连接建立安全的VCN到VCN连接,设置DNS区域和流量管理策略,使用负载均衡器(公共和私有)和网络应用加速提升性能,利用网络可视化工具和路径分析器进行实时网络故障排除。 3. **存储**:集中于块存储(块卷和启动卷)的配置和管理,优化卷性能层,创建卷组,管理备份、克隆和跨区域复制;配置对象存储桶及其正确层级(标准、归档),应用生命周期策略、版本控制和保留规则,设置分段上传及跨区域复制;实施文件存储并设置正确的访问权限,管理快照和克隆,进行使用计量,以及启用高可用性的复制。 4. **身份与访问管理(IAM)**:解释IAM基础知识,包括域、用户、组和隔离区,创建和应用IAM策略以安全地授予资源访问权限,配置动态组进行实例级访问控制,设置网络源以根据IP限制访问,并利用基于标签的访问控制简化大规模策略管理。 本课程为希望获得Oracle云基础设施架构师证明的专业人士提供全面的知识和技能基础。
Prepare to pass exam: 1Z0-1072-25The Oracle Cloud Infrastructure 2025 Architect Associate exam is designed for professionals who aim to validate their foundational and practical expertise in architecting infrastructure solutions on Oracle Cloud Infrastructure (OCI). This certification demonstrates your ability to effectively design, implement, and manage OCI services across core areas such as Compute, Networking, Storage, and Identity & Access Management (IAM), along with ensuring high availability, performance, and secure configurations.Exam Topics:Compute: Includes selecting the right compute instance shape (standard, dense I/O, GPU, HPC), configuring compute instances for various workloads, enabling autoscaling policies for elasticity, managing custom and platform images, utilizing OS Management for patching and updates, and understanding infrastructure maintenance schedules and actions.Networking: Covers designing and managing Virtual Cloud Networks (VCNs), distinguishing between public and private subnets, assigning and managing public/private IP addresses and VNICs, configuring routing tables and gateways (IGW, DRG, LPG), applying security with Network Security Groups and Security Lists, establishing secure VCN-to-VCN connectivity via Site-to-Site VPN, FastConnect, and peering, setting up DNS zones and traffic management policies, using Load Balancers (public and private) and Web Application Acceleration for performance, and employing Network Visualizer and Path Analyzer for real-time network troubleshooting.Storage: Focuses on provisioning and managing block storage (block and boot volumes), optimizing volume performance tiers, creating volume groups, managing backups, clones, and cross-region replication; configuring object storage buckets with the right tier (Standard, Archive), applying lifecycle policies, versioning, and retention rules, setting up multipart uploads, and replicating across regions; as well as implementing File Storage with correct access settings, snapshot and clone management, usage metering, and enabling replication for high availability.Identity and Access Management (IAM): Explains IAM fundamentals including domains, users, groups, and compartments, creating and applying IAM policies to securely grant resource access, configuring dynamic groups for instance-level access control, setting up network sources to restrict access based on IPs, and using tag-based access control to simplify policy management at scale.