Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
CSPモデルにおけるOCI設計ガイドライン / OCI Design Guide for CSPs
Search
Oracle Cloud Infrastructure ソリューション・エンジニア
December 28, 2022
Technology
0
1.5k
CSPモデルにおけるOCI設計ガイドライン / OCI Design Guide for CSPs
Cloud Solutions Provider (CSP) モデルでOracle Cloud Infrastructureを利用するにあたって、設計上の考慮事項をまとめた資料です。
Oracle Cloud Infrastructure ソリューション・エンジニア
December 28, 2022
Tweet
Share
More Decks by Oracle Cloud Infrastructure ソリューション・エンジニア
See All by Oracle Cloud Infrastructure ソリューション・エンジニア
OCI セキュア・デスクトップ 概要
ocise
0
2.8k
OCI技術資料 : リソース・マネージャ(Resource Manager)概要
ocise
0
2.8k
OCI技術資料 : ロード・バランサー 詳細 / Load Balancer 200
ocise
2
13k
Oracle Cloud Migrations Service概要
ocise
0
2.9k
OCI技術資料 : ロード・バランサー 概要 / Load Balancer 100
ocise
3
16k
OCI サービス基本情報
ocise
3
8.5k
Oracle Cloud Infrastructure はじめの一歩
ocise
1
36k
OCI 仮想テスト・アクセス・ポイント(VTAP)概要
ocise
0
1.1k
FastConnect 冗長性のベスト・プラクティス
ocise
0
6.5k
Other Decks in Technology
See All in Technology
AI研修【MIXI 24新卒技術研修】
mixi_engineers
PRO
0
130
サービスの持続的な成長と技術負債について
siva_official
PRO
10
4.4k
Classmethod Odyssey 登壇資料
yamahiro
0
390
ペパボのオブザーバビリティ研修2024 説明資料
kesompochy
0
1.1k
RAGのサービスをリリースして1年3ヶ月が経ちました
segavvy
4
900
OSSコミットしてZennの課題を解決した話
dyoshikawa1993
0
150
データベース研修 分析向けSQL入門【MIXI 24新卒技術研修】
mixi_engineers
PRO
0
110
公共領域から学ぶ クラウド移行についてエンジニアが意識していること
kawakawa2222
0
140
累計ダウンロード数1億8000万を超えるアプリケーションプラットフォームのレガシーシステム脱却とモダン化への道
kmitsuhashi
0
120
Azure AI ことはじめ
tsubakimoto_s
0
130
What is DRE? - Road to SRE NEXT@広島
chanyou0311
3
620
[NIKKEI Tech Talk]Bias for Action!! 実践から学ぶための仕組とコミュニティ / Community for Practice and Learning
kanamasa
0
260
Featured
See All Featured
Designing for Performance
lara
604
67k
ReactJS: Keep Simple. Everything can be a component!
pedronauck
662
120k
What the flash - Photography Introduction
edds
65
11k
Design by the Numbers
sachag
277
18k
Web development in the modern age
philhawksworth
203
10k
BBQ
matthewcrist
82
9k
A Tale of Four Properties
chriscoyier
155
22k
Sharpening the Axe: The Primacy of Toolmaking
bcantrill
26
1.6k
XXLCSS - How to scale CSS and keep your sanity
sugarenia
245
1.2M
Practical Orchestrator
shlominoach
185
10k
What’s in a name? Adding method to the madness
productmarketing
PRO
21
2.9k
Testing 201, or: Great Expectations
jmmastey
33
6.9k
Transcript
Cloud Solutions Provider(CSP)モデルにおける OCI設計のガイドライン 2022/12/30
Copyright © 2022, Oracle and/or its affiliates 2 Oracle Cloud
Infrastructure( OCI) Cloud Solutions Provider (CSP) • • OCI
CSP* OCI / → Identity Domain CSP Copyright © 2022,
Oracle and/or its affiliates 3 OCI OCI+ *CSP( ): https://www.oracle.com/jp/partnernetwork/expertise/cloud-solutions-provider/
Oracle IaaS/Paas/Saas Copyright © 2022, Oracle and/or its affiliates 4
OCI IAM Identity Domains SSO (Outbound) • • SAML, OIDC, OAuth • • App Gateway • RADIUS • Linux PAM **** Oracle Cloud IaaS/PaaS • • • • OCI • ID • Console | CLI | APIs • / • • SCIM • AD • ( ) ! ? ü (Inbound) • ID/ • IdP • (SNS) • • • OATH OAuth FIDO2 REST APIs SAML OIDC SCIM IAM OCI IAM IDCS OCI IAM Identity Domains
( ) • 1 ※ • ( ) • Copyright
© 2022, Oracle and/or its affiliates 5 001 A (A ) B (B ) A B (A ) (B ) Default ( )
Copyright © 2022, Oracle and/or its affiliates 6 (1 )
(2 ) (3 ) Default Virtual Machine Block Storage Database ( ) Policies ( ) Policies Groups Groups
( ) Administrators ( ) • • (manage all-resources) ※
( ) ( ) Copyright © 2022, Oracle and/or its affiliates 7 Allow Group <Domain Name>/<Group Name> to manage all-resources in Compartment <Compartment Name>
Copyright © 2022, Oracle and/or its affiliates 8 • (
) ( ) • • • OCI CLI SDK • Free 10 • 6
( ) Copyright © 2022, Oracle and/or its affiliates 9
OCI (…in tenancy ) ( ) • (Cloud Shell ) • ( : Cloud Guard ) • (use) ( : ) • ( ) ( )
(allow group <domain/group> to…) inspect tenancies in tenancy IAM inspect
compartments in tenancy IAM manage tenancy-preferences in tenancy IAM manage network-sources in tenancy IAM ( ) use tag-namespaces in tenancy where any {target.tag-namspace.name ='XXX' } IAM ( ) read announcements in tenancy Announcement (Announcement) read objectstorage-namespaces in tenancy Object Storage API use cloud-shell in tenancy Cloud Shell ( ) ( ) (…in tenancy) Copyright © 2022, Oracle and/or its affiliates 10
Thank you 11 Copyright © 2022, Oracle and/or its affiliates
None
Our mission is to help people see data in new
ways, discover insights, unlock endless possibilities.