Oracle Cloud Infrastructure Foundation

  • Release:15/08/2023
  • Client:Oracle Cloud Infrastructure
  • Live Demo: https://www.oracle.com/in/cloud/
  • Skills: cloud infrastructure

There is a free course available in Oraclye university mylearn.oracle.com for OCI Foundation exam. I heard certification is also free of cost. So I am attending this online course and making notes here.

Core Infrastructure contains.

  1. Compute
  2. Containers
  3. OS, Vmware
  4. Storage
  5. Networking

Database

Data & AI

Government & Administration

Analytics

Developer Services

Applications

OCI Architecture

Region is localized.

  1. Choosing a region closer to your user for lowest latency and highest performance.
  2. Many countries have strict data residency requirements.
  3. Service Availability
    1. New cloud services are available only in certain regions.

Availability Domain

  1. Region comprises of availability domains.
  2. Isolated from each other.
  3. Fault tolerant
  4. Unlikely to fail simultaneously.
  5. They don’t share same power, so failing one availability domain unlikely will affect others.
  6. Particular region has many (3) availability domains.

Fault Domain

  1. Each availability domain has 3 fault domains.
  2. Fault Domains are logical separation.
  3. Resources placed in FDs will not share single point of hardware failure. They will have different hardware stack, different power supplies.
  4. Avoid single point of failure.

OCI Distributed Cloud

Hybrid Cloud Services

  1. Dedicated Region Cloud@Customer
    1. Data residency to meet data compliance requirements.
    2. Latency sensitive application
    3. Go at customer place and install oracle cloud racks at customer place.
  2. OCI Azure Interconnect
    1. private interconnect
    2. latency is less than 2ms.
    3. Running database on oracle and application tier on azure.
    4. Oracle database service for Azure
  3. Oracle Cloud VMWare Solution
  4. Autonomous DB on Exadata

OCI IAM

IAM stands for Identity and Access Management Service

  • Authentication – Who are you?
  • Authorization – What are you allowed to access.

Keywords in OCI IAM

Identity Domains -> Contains Users and Groups

  1. Create Identity Domains
  2. Create Users and Groups
  3. Create Policies
    1. Policies are assigned to tenancy or compartments.
    2. Policies – you can add predefined roles.
    3. Policies can be attached to tenancy or compartments.
    4. Policies are defined using simple English phrases.
    5. Polices are define at a group level and not at user level.
  4. Verbs
    1. Manage – all permission.
    2. Use – read.
    3. Inspect – ability to list resources.
    4. Read – inspect +??
  5. Authentication in OCI can be done using 3 ways.
    1. username/password
    2. tokens

How to identify OCI resource -> it has Unique oracle assigned identifier -> also called as Oracle Cloud ID (OCID)

What is “Principals”

 

OCI Compartments

What is Compartment -> When you open an account you get tenancy/root compartment.

  1. In order to isolate your resources, you can create your own compartments in “root compartment”. So, you can create a compartment for network resources etc.
  2. Each resource belongs to a single compartment.
  3. Block storage can be in compartment A. Then you can define groups and policies that have to access only to resources belong to compartment A.
  4. Resources in compartment A can interact with resources in compartment B.
  5. Resources can be moved from one compartment to another.
  6. Compartments are global constructs, resources from multiple regions can be in same compartment.
  7. Compartments can also be nested, it has max 6 levels of nesting.
  8. You can also set quotas and budget on compartments. Qutoas meaning lets say you cannot create a block storage in networking compartment.

Drop me a line

Use this form to tell me about your project goals and needs. I will be in touch within 24 hours.

Verified by MonsterInsights