Q: 6
In Oracle Cloud Infrastructure (OCI), how can an administrator enforce fine-grained access control to
OCI resources for a group of users, ensuring that they can only manage resources within a specific
compartment?
Options
Discussion
Option A. IAM policies scoped to compartments are the best for this. Clear and matches what I've seen in practice.
A tbh, NSGs (option C) are only for network traffic, not access control at resource level.
I don’t think it’s C. A is right since only IAM policies let you restrict a group’s access to just one compartment. NSGs only affect network traffic, not permissions. Pretty common trap with these types of options.
Pretty sure it's A, IAM policies let you control who can do what in a specific compartment. NSGs and Cloud Guard don't handle user permissions like that. Has anyone seen a scenario where B or C would apply here? Open to corrections.
Be respectful. No spam.
Question 6 of 30