- Users can preserve the boot volume associated with the instance
- provider
- Setting the variable as key value pairs in a file in a subdirectory named tfvar
- Go
- Add users in group, define policy to provide group access to the compartment
- Oracle Cloud Infrastructure
- Oracle Cloud at Customer
- A set of images, where each image is a template of a virtual hard drive that consists of the OS and installed software and applications
- A variety of shapes, where each shape determines the number of CPUs and memory allocated to an instance
Minimize infrastructure costs to test application functionality including a hardware failure scenario:
- Two node real application cluster(RAC)
- Compute Instance + Block Volume
- Compartment + Dynamic Group
- Default security list + Default Routing Table
- Emulated
- Paravirtualized
- Bare metal DB systems
- Create a Reserved Public IP and associate it with the VNIC of your compute instance
- Design your system with redundant compute modes in different Availability Domains to support the failover capability
- Create a custom image of your system drive each time you change the image
- It provides strong consistency
- Data is stored redundantly across multiple availability domains(ADs) in a multi-AD region.
- You can access multiple file systems through a single mount target.
- Security list can be used as a virtual firewall to prevent an instance from mounting an FSS mount target within the same subnet
- FSS leverages UNIX user group and permission checking for file access security.
- Mount targets use Oracle-managed keys by default
- Customer can encrypt data in their file system using their own vault encryption key
- There are no security list rules for mount target traffic.
- Block Volume
- A cloned volume is the same as a snapshot that has a dependency on the source volume
- You can change the block volume performance when creating a clone
- You can change the block volume size when creating a clone.
- You can restore a volume to any AD within the same region where the backup is stored.
- You can restore a block volume backup to a larger volume size
- File Storage use NFS protocol but block volume use ISCSI
- You can move object storage buckets, block volumes and file storage mount target between compartment
- A file system is created within an availability domain, whereas object storage buckets exist at the region level
- It exposes an application running on a set of Pods
- By default object storage and block storage are encrypted at rest.
- By default DB systems offer an encrypted database.
- Customer provided encryption keys are always stored in OCI vault service.
- Automatic Backup
- On-premises database version and quantity of data, including indexes.
- On-premises host operating system platform and network bandwidth
- Snapping or cloning storage form on-premise to Oracle Cloud Infrastructure
- Performing RMAN backup to an on-premise storage device, and then shipping to Oracle Cloud Infrastructure
- The database and backups are encrypted by default.
- Customer can manage the TDE wallet after DB systems are provisioned.
- Data Guard in Async mode within a region.
- Backup to Object Storage
- Ensure that your database host can connect to the OCI object storage.
- Restart the dscagent program if it has a status of stop or waiting
- Specify an existing destination bucket.
- Write an IAM policy and authorize the object storage service to manage objects on your behalf. Choose an overwrite rule.
- CPU
Business need to use Database Cloud Service (DBCS) instead of Oracle database on a compute instance:
- To lower license and infrastructure cost
- SQL Developer
- Oracle Enterprise Manager
- You can scale CPU & storage UP & down
- Set resource management rules.
- Monitor database activity and SQL queries.
- Reset the admin password
- Configure ATP resource management rules to manage runtime and IO consumption for the consumer group of batch processes
- Increase Storage allocated for Database.
- Scale up/down CPU
- Automated Backup
- You can backup ADW database only to a standard bucket type in OCI object storage.
- You can perform manual backups to OCI object storage in addition to automated backups available on ADW.
- Changing the bucket visibility does not change existing pre-authenticated request.
- The primary and secondary VNIC association can be in different VCN but must be in the same availability domain.
- OCI IPSec VPN can be configured in tunnel mode only.
- Each OCI IPSec VPN consists of multiple redundant IPSec tunnels.
- Security List
- Static Route CIDR
Setup secure and encrypted connectivity to your workloads running in a single virtual cloud network from all company location:
- Create five IPsec connections with each company location and terminate those connections on a single DRG. Attach that DRG to your VCN
- IPsec VPN.
- Remote VCN peering across region
- It supports other cloud providers such as AWS and Azure.
- It supports segregation of traffic by using the private pool
- Distribute your application servers across all AD within a region.
- Configure your DB to have Data Guard in another AD in Sync mode within a region
Ensure that the OCI load balancer does not forward traffic to this backend server during maintenance:
- Drain all existing connections to this backend server and mark the backend web server offline.
- weighted round robin.
- IP Hash.
- least connection
- A listener.
- A backend set with at least one backend server.
- A security list that is open on the listener port.
- PEM
- Both DB systems must be in the same compartment, same VCN, and they must be the same shape.
- Port 1521 must be open.
- Data guard implementation for Bare Metal shapes requires two DB Systems, one containing the primary DB, and one containing the standby DB.
Deployment architecture to deploy the Platform Service Manager based Database Cloud Service (DBCS) onto OCI:
- Two node Primary RAC database with a two node RAC Data Guard Standby in Maximum Performance mode
- Start and open the database instance
- Switchover and failover in an Oracle Guard configuration
- Patching the primary database deployment
- Oracle Identity Cloud Service.
- Microsoft Active Directory
- PIP
- API Signing Key.
- Console Password.
- Swift Password
- Free-form Tags
- Defined tags
- OS Management
- A transfer package is the logical representation of the physical shipment containing the HDD transfer devices that you ship to Oracle to upload to OCI.
- An Object Bucket
1Z0-1085-20: https://www.udemy.com/course/1z0-1085-20-oraclecloudinfrastructurefoundationsassociate/
1Z0-1072-20: https://www.udemy.com/course/1z0-1072-oracle-cloud-infra-architect-associate/
1Z0-1084-20: https://www.udemy.com/course/oracle-cloud-infra-developer-2020-associate-practice-test/
1Z0-997-20: https://www.udemy.com/course/1z0-997-oracle-cloud-infrastructure-architect-professional-k/
1Z0-1067: https://www.udemy.com/course/oracle-cloud-infrastructure-cloud-operations-associate/
1Z0-931: https://www.udemy.com/course/oracle-autonomous-database-cloud-specialist-1z0-931-practice-test/