nerdexam
Oracle

1Z0-1067 · Question #49

You have shared your Oracle Cloud Infrastructure (OCI) tenancy with a group of developers in your organization by creating a compartment called developer. You are an administrator in the tenancy…

The correct answer is D. Create a group called IdPAdmins. Assign the following IAM policy statement. Here's limited policy that restricts access to only the resources related to identity providers and group Allow group IdPAdmins to manage identity-providers in tenancy Allow group IdPAdmins to manage groups in tenancy

Implement OCI Tagging and Governance

Question

You have shared your Oracle Cloud Infrastructure (OCI) tenancy with a group of developers in your organization by creating a compartment called developer. You are an administrator in the tenancy with privileges to modify IAM policies. Developers need privileges to configure Federation to a Single Sign-On (SSO). m would you give them permissions to complete their task In the most secure manner?

Options

  • ACreate a new policy with the following statements:
  • BCreate a group called Developers. Set up the following IAM policy:
  • CCreate a group called IdPAdmins. Assign the following IAM policy statement:
  • DCreate a group called IdPAdmins. Assign the following IAM policy statement:

How the community answered

(27 responses)
  • A
    15% (4)
  • B
    7% (2)
  • C
    4% (1)
  • D
    74% (20)

Explanation

Here's limited policy that restricts access to only the resources related to identity providers and group Allow group IdPAdmins to manage identity-providers in tenancy Allow group IdPAdmins to manage groups in tenancy

Topics

#IAM policies#federation#SSO#least privilege

Community Discussion

No community discussion yet for this question.

Full 1Z0-1067 Practice