nerdexam
Oracle

1Z0-1067 · Question #3

To take advantage of cloud agility and burst computing capability, ABC Automobiles have extended their data center to a Virtual Cloud Network (VCN). In Oracle Cloud Infrastructure's (OCI)…

The correct answer is A. Use an existing SAMAL 2.0 compliant identity provider(IdP) to grant CloudOps members federated. Oracle Cloud Infrastructure supports federation with Oracle Identity Cloud Service,and Microsoft Active Directory (via Active Directory Federation Services (AD FS)), Microsoft Azure Active Directory, Okta, and other identity providers that supports the Security Assertion Markup…

Define Security

Question

To take advantage of cloud agility and burst computing capability, ABC Automobiles have extended their data center to a Virtual Cloud Network (VCN). In Oracle Cloud Infrastructure's (OCI) us-phoenlx-1 region. They have several members in their Cloud Operations (CloudOps) team that need I access the OCI management console. The security administrator does not want to create new IAM users and credentials that would then need to be distributed to each CloudOps member. Which option will help solution architect meet the needs for CloudOps?

Options

  • AUse an existing SAMAL 2.0 compliant identity provider(IdP) to grant CloudOps members federated
  • BUse Web Identity Federation to retrieve an AuthToken to enable CloudOps members to sign in to the
  • CUse OAuth 2.0 to retrieve temporary credentials to enable your CloudOps members to sign in to the
  • DUse on-premises SAML2.0 compliant identity provider(IdP) to retrieve an AuthToken to enable

How the community answered

(62 responses)
  • A
    85% (53)
  • B
    5% (3)
  • C
    2% (1)
  • D
    8% (5)

Explanation

Oracle Cloud Infrastructure supports federation with Oracle Identity Cloud Service,and Microsoft Active Directory (via Active Directory Federation Services (AD FS)), Microsoft Azure Active Directory, Okta, and other identity providers that supports the Security Assertion Markup Language (SAML) 2.0 protocol. Federated users choose which identity provider to use for sign-in, and then they're redirected to that identity provider's sign-in experience for authentication. After entering their login and password, they are authenticated by the IdP and redirected back to the Oracle Cloud Infrastructure Console. by this way, you don't need to create IAM user in OCI console for each operation user and can use their credentials in identity provider and user SSO to login to OCI console For instructions for federating with other identity providers, see the following: Federating with SAML 2.0 Identity Providers

Topics

#SAML 2.0#identity federation#IAM#SSO

Community Discussion

No community discussion yet for this question.

Full 1Z0-1067 Practice