Which Oracle Cloud Service provides restricted access to target resources?

You create a new compartment, "apps," to host some production apps and you create an apps_group and added users to it.
What would you do to ensure the users have access to the apps compartment?
Which parameters customers need to configure while reading secrets by name using CL1 or API? Select TWO correct answers.

With regard to vulnerability and cloud penetration testing, which rules of engagement apply? Select TWO correct answers.
