This section includes some common policies you might want to use in your organization.


These policies use example group and compartment names. Make sure to replace them with your own names.

Let the Help Desk manage users
Let auditors inspect your resources
Let network admins manage a cloud network
Let network admins manage load balancers
Let users launch instances
Let users list and subscribe to images from the Partner Image catalog
Let volume admins manage block volumes and backups
Let volume backup admins manage only backups
Let users create, manage, and delete file systems
Let Object Storage admins manage buckets and objects
Let users write objects to Object Storage buckets
Let users download objects from Object Storage buckets
Let database admins manage database systems
Let security admins manage vaults and keys
Let security admins manage all keys in a specific vault in a compartment
Let security admins use a specific key in a compartment
Let a user group delegate key usage in a compartment
Let Block Volume and Object Storage services encrypt and decrypt volumes and buckets
Let database admins manage Autonomous Transaction Processing databases
Let database admins manage Autonomous Data Warehouse databases
Let group admins manage group membership
Let users manage their own passwords and credentials
Let a compartment admin manage the compartment
Restrict admin access to a specific region
Restrict user access to view only summary announcements
Let users view details of announcements