Use network perimeters for OCI identity domains to enforce strict access control by location and significantly reducing the attack surface.
Enabling and configuring network perimeters for OCI identity domains is vital for enhancing security by restricting access to users originating from specific, approved IP addresses or IP address ranges. This mitigates unauthorized access from untrusted locations, ensuring only internal or trusted network traffic can reach your identity services.
Audit
To determine if your Oracle Cloud Infrastructure (OCI) identity domains use network perimeters for access control, perform the following operations:
Remediation / Resolution
Enable and configure network perimeters for Oracle Cloud Infrastructure (OCI) identity domains, perform the following operations:
References
- Oracle Cloud Infrastructure Documentation
- Managing Network Perimeters
- Getting a Network Perimeter's Details
- Creating a Network Perimeter
- Oracle Cloud Infrastructure CLI Documentation
- compartment list
- domain list
- network-perimeters list
- network-perimeter create