Oracle Cloud Infrastructure 2025 Developer Professional 1z0-1084-25 Question # 4 Topic 1 Discussion

Oracle Cloud Infrastructure 2025 Developer Professional 1z0-1084-25 Question # 4 Topic 1 Discussion

1z0-1084-25 Exam Topic 1 Question 4 Discussion:
Question #: 4
Topic #: 1

Your organization has mandated that all deployed container images used for microservices must be signed by a specified master encryption key (MEK). You have appropriately signed the container images as part of your build process, but must now ensure that they are automatically verified when they are deployed to Oracle Cloud Infrastructure (OCI) Container Engine for Kubemetes (OKE) clusters. Which option should be used to mandate image verification when deploying to OKE clusters, assuming that MEK is already stored in an available OCI Vault? (Choose the best answer.)


A.

Enable image verification policies separately for each Kubemetes pod deployment because this is enforced at the pod level.


B.

Enable image verification policies separately for each node pool within each OKE cluster because this is enforced at the node pool level.


C.

Enable image verification policies separately for each OKE cluster because this is enforced at the cluster level.

(Correct)


D.

Enable Image verification policies for your OKE service control plane which will enforce this for all OKE clusters.


Get Premium 1z0-1084-25 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.