Configure integration with Oracle Cloud Infrastructure (OCI)
IT Asset Management
(Cloud)
Complete the following configuration steps to set up groups and users and grant them permission to access Oracle Cloud Infrastructure. For more information on adding users, see Adding Users in the Oracle Cloud Infrastructure documentation.
- Open the Oracle Cloud Infrastructure Console, and sign in.
- Set up a group:
- Open the navigation menu and click Identity Security. Under Identity, click Domains.
- Select the domain for your group, for example Default.
- Under the Identity domain resources on the left, click Groups.
- Click Create group.
- In the Create group dialog:
- Name: Enter a unique name for your group, for example,
"FnmsOCIReaderGroup".Note: The name cannot contain spaces.
- Description: Enter a description (required).
- Name: Enter a unique name for your group, for example,
"FnmsOCIReaderGroup".
- Click Create.
- Set up a user:
- Open the navigation menu and click Identity Security. Under Identity, click Domains.
- Click on the domain chosen for your group, for example Default.
- Under the Identity domain resources on the left, click Users.
- Click Create user.
- In the First name and Last name fields of the Create user window, enter the user's first and last name.
- For the user to log in with their email address:
- Leave the Use the email address as the username check box selected.
- In the Username / Email field, enter the email address
for the user account.
or for the user to log in with their user name:
- Clear the Use the email address as the username check box.
- In the Username field, enter the user name that the user will use to log into the Oracle Cloud Infrastructure Console.
- In the Email field, enter the email address for the user account.
- Under Select groups to assign this user to, select the check box for the group you created, "FnmsOCIReaderGroup".
- Click Create.
- Set up reading policies:
- Open the navigation menu and click Identity & Security. Under Identity, click Policies.
- Under List Scope, ensure that you are in your root compartment.
- Click Create Policy.
- Enter a unique Name for your policy, for example,
"FnmsOCIReaderPolicy".Note: The name cannot contain spaces.
- Enter a Description (required), for example, "Grants users read permissions for Oracle Autonomous Database information for all compartments".
- Enter the following Statements:
Allow group ‘Default’/’FnmsOCIReaderGroup’ to inspect compartments in tenancy
. This statement grants members of the "FnmsOCIReaderGroup" group in the “Default” domain inspect permissions for compartment information for the complete tenant.Allow group ‘Default’/’FnmsOCIReaderGroup’ to inspect autonomous-database-family in tenancy
. This statement grants members of the "FnmsOCIReaderGroup" group in the “Default” domain inspect permissions for information on Autonomous databases and related resources for all compartments.Allow group ‘Default’/’FnmsOCIReaderGroup’ to read instance-family in tenancy
. This statement grants members of the "FnmsOCIReaderGroup" group in the “Default” domain inspect permissions for information on Compute instance and related resources for all compartments.Allow group ‘Default’/’FnmsOCIReaderGroup’ to read compute-clusters in tenancy
. This statement grants members of the "FnmsOCIReaderGroup" group in the “Default” domain read permissions for information on Compute clusters for all compartments.
- Click Create.
IT Asset Management (Cloud)
Current