Adding an OCI Instance
After completing the necessary configurations in Oracle Cloud Infrastructure, add or register the OCI instance in Oracle CASB Cloud Service.
Prerequisites: Complete the steps in Preparing a Public/Private Key Pair and Preparing OCI.
Note:
-
Only OCI administrator users should register an OCI instance with Oracle CASB Cloud Service.
-
You should not add, or register, the same application instance more than once. An additional registration seriously impacts performance and doesn’t provide any additional information.
-
You can only register Oracle Cloud Infrastructure in monitor-only mode.
You have several options when you add an OCI instance in Oracle CASB Cloud Service, based on the type of OCI compartment that is monitored - in each instance, a single compartment is monitored:
-
OCI Tenancy - the root compartment that contains all of your organization's compartments and other Oracle Cloud Infrastructure cloud resources.
-
Compartment under a registered Tenancy - a specified compartment under a registered OCI tenancy. Only the collection of related resources within the specified compartment, which are accessible only by certain groups that have been given permission by an administrator in your organization, are monitored.
Note:
If bulk registration of OCI compartments is enabled on your Oracle CASB Cloud Service tenant, this option of registering one component at a time is no longer available. Instead, after you register the OCI tenancy (Adding an OCI Tenancy), you register multiple compartments that you want Oracle CASB Cloud Service to monitor in that tenancy (Updating Registered Compartments for an OCI Instance).
To enable bulk registration of OCI compartments, contact Oracle Support (http://support.oracle.com). If you have not registered yet, you will need your Customer Support Identifier (CSI) in order to register to submit service request tickets. As an alternative, you can also contact your Oracle CASB Customer Success Manager.
When you register a compartment inside a tenancy that is already registered in Oracle CASB Cloud Service, the compartment inherits access credentials from the parent tenancy, so you only have to specify the compartment name.
See Adding an OCI Compartment under a Registered Tenancy.
Note:
If the OCI instance for the parent tenancy is ever deleted from Oracle CASB Cloud Service, the Compartment under a registered Tenancy automatically becomes a Standalone Compartment that retains the credentials from the parent tenancy.
-
A Standalone Compartment – an OCI compartment that is accessed directly, without first registering the OCI tenancy in Oracle CASB Cloud Service. As with a compartment under a registered tenancy, only the collection of related resources within the specified compartment, which are accessible only by certain groups that have been given permission by an administrator in your organization, are monitored.
When you register a standalone compartment, you have to specify all the credentials required to access the parent tenancy.
Adding an OCI Tenancy
Add an OCI instance with tenancy as the type of OCI compartment that Oracle CASB Cloud Service monitors.
Initial data typically begins to appear in 30 minutes to 2 hours, but can take longer in some cases. For status, check the Dashboard. If no data appears within 24 hours, contact Oracle Support.
Next Steps
If you want to customize the security control baseline settings for this OCI instance, perform the steps in Updating the Security Control Baseline for an OCI Instance.
If bulk registration of compartments is enabled, you can specify the exact combination of compartments you want Oracle CASB Cloud Service to Monitor for this OCI instance. Perform the steps in Updating Registered Compartments for an OCI Instance.
Adding an OCI Compartment under a Registered Tenancy
Add an OCI instance with compartment as the type of OCI compartment that Oracle CASB Cloud Service monitors.
Note:
If bulk registration of OCI compartments is enabled on your Oracle CASB Cloud Service tenant, this option of registering one component at a time is no longer available. Instead, after you register the OCI tenancy (Adding an OCI Tenancy), you register multiple compartments that you want Oracle CASB Cloud Service to monitor in that tenancy (Updating Registered Compartments for an OCI Instance).
Initial data typically begins to appear in 30 minutes to 2 hours, but can take longer in some cases. For status, check the Dashboard. If no data appears within 24 hours, contact Oracle Support.
Next Steps
If you want to customize the security control baseline settings for this OCI instance, perform the steps in Updating the Security Control Baseline for an OCI Instance.
Adding an OCI Standalone Compartment
Add an OCI instance with standalone compartment as the type of OCI compartment that Oracle CASB Cloud Service monitors.
Initial data typically begins to appear in 30 minutes to 2 hours, but can take longer in some cases. For status, check the Dashboard. If no data appears within 24 hours, contact Oracle Support.
Next Steps
If you want to customize the security control baseline settings for this OCI instance, perform the steps in Updating the Security Control Baseline for an OCI Instance.
If bulk registration of compartments is enabled, you can specify the exact combination of compartments you want Oracle CASB Cloud Service to Monitor for this OCI instance. Perform the steps in Updating Registered Compartments for an OCI Instance.