nerdexam
Oracle

1Z0-997 · Question #81

1Z0-997 Question #81: Real Exam Question with Answer & Explanation

The correct answer is D. Setup Azure AD as an Identity Provider, map Azure AD groups to OCI groups, set up the IAM policies to govern access to Azure AD groups. Explanation/Reference: Federating with Microsoft Azure Active Directory To federate with Azure AD, you set up Oracle Cloud Infrastructure as a basic SAML single sign-on application in Azure AD. To set up this application, you perform some steps in the Oracle Cloud Infrastructure

Question

You are working as a security consultant with a global insurance organization which is using Microsoft Azure Active Directory (AD) as identity provided to manager user login/passwords. When a user logs in to Oracle Cloud infrastructure (OCI) console, it should get authenticated by Azure AD. Which set of steps are required to configure at OCI side in order to get it enabled

Options

  • ASetup Azure AD as an Enterprise Application, map Azure AD users and groups and policies to OCI groups and users
  • BSetup Azure AD as an Identity Provider, Import users and groups from Azure AD to OCI, set up IAM policies to govern access to Azure AD groups
  • CSetup Azure AD as an Enterprise Application, configure OCI for single sign-on, map Azure AD groups to OCI groups, set up the IAM policies to govern access
  • DSetup Azure AD as an Identity Provider, map Azure AD groups to OCI groups, set up the IAM policies to govern access to Azure AD groups

Explanation

Explanation/Reference: Federating with Microsoft Azure Active Directory To federate with Azure AD, you set up Oracle Cloud Infrastructure as a basic SAML single sign-on application in Azure AD. To set up this application, you perform some steps in the Oracle Cloud Infrastructure Console and some steps in Azure AD. Following is the general process an administrator goes through to set up the federation. Details for each step are given in the next section. In Oracle Cloud Infrastructure, download the federation metadata document. In Azure AD, set up Oracle Cloud Infrastructure Console as an enterprise application. In Azure AD, configure the Oracle Cloud Infrastructure enterprise application for single sign-on. In Azure AD, set up the user attributes and claims. In Azure AD, download the Azure AD SAML metadata document. In Azure AD, assign user groups to the application. In Oracle Cloud Infrastructure, set up Azure AD as an identity provider. In Oracle Cloud Infrastructure, map your Azure AD groups to Oracle Cloud Infrastructure groups. In Oracle Cloud Infrastructure, set up the IAM policies to govern access for your Azure AD groups. Share the Oracle Cloud Infrastructure sign-in URL with

Community Discussion

No community discussion yet for this question.

Full 1Z0-997 Practice