OCI Exams

Security & Networking - 1Z0-1124-26

OCI Networking Professional

3 practice tests150 questions68% to pass
Enroll on Udemy
Open notebook and pen next to a laptop, ready for study notes

Three full-length practice tests for the Oracle Cloud Infrastructure Networking Professional (1Z0-1124-26) certification exam - 50 questions per test, 90 minutes, 68% to pass, unlimited retakes.

Every question is grounded in Oracle's official exam objectives and product documentation - written fresh for this course, not recycled from public dumps.

What you'll be tested on

  • VCN design: subnets, route tables, gateways, and security lists
  • Hybrid connectivity: FastConnect, Site-to-Site VPN, and DRGs
  • Load balancing: Load Balancer, Network Load Balancer, and traffic management
  • Advanced networking: transit routing, hub-and-spoke, and multi-VCN topologies
  • Network troubleshooting, monitoring, and Network Visualizer

Where candidates lose points

Transitive routing is the domain that trips up the most candidates: hub-and-spoke topologies built on a DRG, local peering gateways, and multiple route tables require holding several routing states in your head at once, and it's easy to route traffic somewhere it shouldn't reach (or block traffic that should flow). FastConnect versus Site-to-Site VPN tradeoffs and BGP fundamentals are the other weak spot, especially for candidates who've only clicked through the console and never designed a hybrid connectivity architecture from a blank page.

Sample question

A company runs a hub VCN with a DRG attached, and two spoke VCNs peered to the hub through local peering gateways. Traffic from Spoke VCN A must be able to reach Spoke VCN B, but must NOT be able to reach the on-premises network over the DRG's Site-to-Site VPN attachment. Which routing configuration achieves this?

  • A. Add a single DRG route table shared by both spoke VCN attachments, with a route rule pointing 0.0.0.0/0 to the VPN attachment
  • B. Configure Spoke VCN A's route table to send traffic for Spoke VCN B's CIDR to the LPG, and give the DRG a route table for that attachment that excludes the VPN attachment as a route target
  • C. Remove the DRG attachment from Spoke VCN A entirely and rely only on the LPG for all outbound traffic
  • D. Attach a Dynamic Routing Gateway directly to each spoke VCN's local peering gateway to isolate routing domains

Full explanations and 149 more questions like this are in the practice tests.

How long to prepare

If you already manage VCNs, FastConnect, or Site-to-Site VPN hands-on, 2-4 weeks of focused review is a reasonable target given the 68% pass mark. Without prior hybrid-connectivity experience, budget more time to actually build a hub-and-spoke topology yourself rather than just reading about one.

Not ready to buy? Get a free OCI Networking Professional sample

15 free practice questions, sent straight to your inbox.

Who's behind this?

Arnold Gálovics

Arnold Gálovics

Certified AWS, GCP, Oracle Cloud Solution Architect

I'm the CEO of Docktape Technologies, a certified Solutions Architect, and instructor with hands-on, multi-cloud expertise across AWS, Google Cloud, and Oracle Cloud Infrastructure.

I hold multiple Oracle Cloud Infrastructure certifications, along with AWS and Google Cloud certifications. I've earned these myself, so every practice test I build is grounded in the same material I studied and the same exam experience I sat through.