exam questions

Exam Certified Integration Architect All Questions

View all questions & answers for the Certified Integration Architect exam

Exam Certified Integration Architect topic 1 question 25 discussion

Actual exam question from Salesforce's Certified Integration Architect
Question #: 25
Topic #: 1
[All Certified Integration Architect Questions]

Universal Containers (UC) currently owns a middleware tool and has developed an API-led integration architecture with three API tiers. The first tier interfaces directly with the systems of engagement, the second tier implements business logic and aggregates data, and while the third tier interfaces directly with the systems of record. Some of the systems of engagement will be a mobile application, a web application, and Salesforce.
UC has a business requirement to return data to the systems of engagement in different formats while also enforcing different security protocols.
What should an integration architect recommend to meet these requirements?

  • A. Enforce separate security protocols and return formats at the second tier of the API-led architecture.
  • B. Leverage an Identity Provider solution that communicates with the API tiers via SAML.
  • C. Implement an API Gateway that all systems of engagement must interface with first.
  • D. Enforce separate security protocols and return formats at the first tier of the API-led architecture.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
satya_y
3 weeks, 5 days ago
Selected Answer: D
This is so subtle and not easy, but the answer has to be D. First the requirement is about the formating and security for the data coming into systems of engagement. ( not going out) . So the way its done is like this Consider a Synchronous request call from Systems of Engagement ( Mobile UI) to System of Record ( Lets say Oracle) to get Orders. The flow will be ideally like this Request : Systems of Engement ---> (API Gateway Policies) ---> Experience APIs ( Tier 1) --> ( Api gateway policies) Process APIs ---> ( API Gateway policies) --> System API --> System of record Response : ( IN the same context and thread of the request) System of record --> System API ---> Process API --> Experience API -->(THIS IS THE PLACE WHERE THIS QUESTION ASKS FOR DATA FORMATTING AND SECURITY) System of Engagement.. So there is no API gateway calls while going back..
upvoted 1 times
...
Paul421
1 month, 2 weeks ago
Selected Answer: C
provides a clear way to provide multiple security implementations
upvoted 3 times
...
Alf8
2 months, 2 weeks ago
Selected Answer: D
This first layer, called Experience Layer in the API-Led - is meant to deal with different type of consumers (format, authentication, etc) while the other two layers remain the same. https://blogs.mulesoft.com/api-integration/patterns/patterns-to-debunk-api-led-connectivity-myths/
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago