hiexam
oracle · 1z0-997-20 · Q606 · multiple_choice · topic_1

A hospital in Austin has hosted its web-based medical records portal entirely in Oracle Cloud Infrastructure (OCI) usin…

A hospital in Austin has hosted its web-based medical records portal entirely in Oracle Cloud Infrastructure (OCI) using compute instances for its web-tier and DB System database for its data tier. To validate compliance with Health Insurance Portability and Accountability (HIPAA), the hospital hired an IT security professional to check their systems. It was found that there were a lot of unauthorized requests coming from a set of IP addresses originating from a county in Southeast Asia. Which option can mitigate this type of attack? (Choose the best answer.)
  • A.Block the attacking IP addresses by creating a Security List rule to deny access to the subnet where the web server is running.
  • B.Block the attacking IP addresses by creating a Network Security Group rule to deny access to the compute instance where the web server is running.
  • C.Implementing an OCI Web Application Firewall Bot Management policy to identify the attacking IP addresses and mitigate the threat.
  • D.Block the attacking IP addresses by implementing an OCI Web Application Firewall policy using Access Control Rules.
Explanation
I think proper answer is D. WAF can protect any internet facing endpoint, providing consistent rule enforcement across a customer's applications. Access rules can limit based on geography or the signature of the request.

Reference: examtopics_top_comment

Practice with progress tracking

Sign in to track wrong answers, get spaced-repetition reminders, and run timed exam mode.