To enhance organizational structure and implement granular access control, ensure that Oracle Cloud Infrastructure (OCI) resources are not provisioned within the root compartment. All OCI resources should instead be deployed within designated, non-root compartments.
excellence
The deployment of Oracle Cloud Infrastructure (OCI) resources in the root compartment compromises logical organization and isolation. This obstructs granular access control, complicates cost tracking, and limits the ability to apply specific policies to distinct resource groups within OCI.
Audit
To determine if there are any cloud resources provisioned within the OCI root compartment, perform the following operations:
Remediation / Resolution
To ensure that your Oracle Cloud Infrastructure (OCI) resources are not provisioned within the root compartment, perform the following operations:
References
- Oracle Cloud Infrastructure Documentation
- Managing Compartments
- Learn Best Practices for Setting Up Your Tenancy
- Oracle Cloud Infrastructure CLI Documentation
- compartment list
- structured-search
- change-compartment
- bucket update