Reference documentation for ScaleCloud’s standard Oracle Cloud Infrastructure landing zone pattern, covering the compartment hierarchy, standard IAM policy set, and network topology conventions used across our OCI engagements.
Compartment hierarchy
The standard pattern uses a top-level compartment per environment (Production, Non-Production, Shared Services), with workload-level compartments nested beneath each, keeping IAM policy inheritance predictable.
Standard IAM policy set
A baseline set of policies grants environment-scoped administrator access to environment owners and read-only tenancy-wide access to a central security team, with all workload-specific access granted at the workload compartment level, never at the tenancy root.
Leave a Reply