Oracle Cloud Infrastructure US Government Cloud with FedRAMP Authorization

This topic contains information specific to Oracle Cloud Infrastructure US Government Cloud with FedRAMP High Joint Authorization Board.

Authorizations

Oracle Cloud Infrastructure US Government Cloud has obtained the following authorizations:

  • FedRAMP High
  • DISA Impact Level 4

For information about the US Government Cloud, see For All US Government Cloud Customers.

Regions

The region names and identifiers for the US Government Cloud with FedRAMP High Joint Authorization Board are shown in the following table:

Region Name Region Identifier Region Location Region Key Realm Key Availability Domains
US Gov East (Ashburn) us-langley-1 Ashburn, VA LFI OC2 1
US Gov West (Phoenix) us-luke-1 Phoenix, AZ LUF OC2 1

After your tenancy is created in one of these regions, you can subscribe to the other region. Tenancies in the FedRAMP-authorized regions cannot subscribe to the commercial regions, or to the US Federal Cloud regions. For information about subscribing to a region, see Managing Regions.

US Government Cloud with FedRAMP Authorization API Reference and Endpoints

US Government Cloud with FedRAMP High Joint Authorization Board has these APIs and corresponding regional endpoints:

Analytics API

API reference

  • https://analytics.us-langley-1.ocp.oraclegovcloud.com
  • https://analytics.us-luke-1.ocp.oraclegovcloud.com

Oracle Analytics Cloud uses identity domains in the IAM service to manage users. Identity domains are only available for US Government Cloud tenancies created after January 17, 2023. If you're not sure if your tenancy supports identity domains, use the steps described in Do You Have Access to Identity Domains? to find out.

For more information, see Oracle Analytics Cloud on US Government Cloud - Tenancies on US Government Cloud Created Before January 2023 .

Announcements API

API reference

  • https://announcements.us-langley-1.oraclegovcloud.com
  • https://announcements.us-luke-1.oraclegovcloud.com
Anomaly Detection API

API reference

  • https://anomalydetection.aiservice.us-langley-1.oci.oraclegovcloud.com
  • https://anomalydetection.aiservice.us-luke-1.oci.oraclegovcloud.com
Application Performance Monitoring Configuration API

API reference

  • https://apm-config.us-langley-1.oci.oraclegovcloud.com
  • https://apm-config.us-luke-1.oci.oraclegovcloud.com
Application Performance Monitoring Control Plane API

API reference

  • https://apm-cp.us-langley-1.oci.oraclegovcloud.com
  • https://apm-cp.us-luke-1.oci.oraclegovcloud.com
Application Performance Monitoring Synthetic Monitoring API

API reference

  • https://apm-synthetic.us-langley-1.oci.oraclegovcloud.com
  • https://apm-synthetic.us-luke-1.oci.oraclegovcloud.com
API Gateway API

API reference

  • https://apigateway.us-langley-1.oci.oraclegovcloud.com
  • https://apigateway.us-luke-1.oci.oraclegovcloud.com
Artifacts and Container Images API

API reference

  • https://artifacts.us-langley-1.oci.oraclegovcloud.com
  • https://artifacts.us-luke-1.oci.oraclegovcloud.com
Autoscaling API

API reference

  • https://autoscaling.us-langley-1.oci.oraclegovcloud.com
  • https://autoscaling.us-luke-1.oci.oraclegovcloud.com
Bastion API

API reference

  • https://bastion.us-langley-1.oci.oraclegovcloud.com
  • https://bastion.us-luke-1.oci.oraclegovcloud.com
Big Data Service API

API reference

  • https://bigdataservice.us-langley-1.oci.oraclegovcloud.com
  • https://bigdataservice.us-luke-1.oci.oraclegovcloud.com
Budgets API

API reference

  • https://usage.us-langley-1.oci.oraclegovcloud.com
  • https://usage.us-luke-1.oci.oraclegovcloud.com
Certificates Service Management API

API reference

  • https://certificatesmanagement.us-langley-1.oci.oraclegovcloud.com
  • https://certificatesmanagement.us-luke-1.oci.oraclegovcloud.com
Certificates Service Retrieval API

API reference

  • https://certificates.us-langley-1.oci.oraclegovcloud.com
  • https://certificates.us-luke-1.oci.oraclegovcloud.com
Cloud Guard API

API reference

  • https://cloudguard-cp-api.us-langley-1.oci.oraclegovcloud.com
  • https://cloudguard-cp-api.us-luke-1.oci.oraclegovcloud.com
Cloud Advisor API

API reference

  • https://optimizer.us-langley-1.oci.oraclegovcloud.com
  • https://optimizer.us-luke-1.oci.oraclegovcloud.com
Connector Hub API

API reference

  • https://service-connector-hub.us-langley-1.oci.oraclegovcloud.com
  • https://service-connector-hub.us-luke-1.oci.oraclegovcloud.com
Container Engine for Kubernetes API

API reference

  • https://containerengine.us-langley-1.oci.oraclegovcloud.com
  • https://containerengine.us-luke-1.oci.oraclegovcloud.com
Core Services (covering Networking, Compute, and Block Volume)

The Networking, Compute, and Block Volume services are accessible with the following API:

Core Services API

API reference

  • https://iaas.us-langley-1.oraclegovcloud.com
  • https://iaas.us-luke-1.oraclegovcloud.com
Data Catalog API

API reference

  • https://datacatalog.us-langley-1.oci.oraclegovcloud.com
  • https://datacatalog.us-luke-1.oci.oraclegovcloud.com
Data Flow API

API reference

  • https://dataflow.us-langley-1.oci.oraclegovcloud.com
  • https://dataflow.us-luke-1.oci.oraclegovcloud.com
Data Integration API

API reference

  • https://dataintegration.us-langley-1.oci.oraclegovcloud.com
  • https://dataintegration.us-luke-1.oci.oraclegovcloud.com
Data Labeling API

API reference

  • https://datalabeling-dp.us-langley-1.oci.oraclegovcloud.com
  • https://datalabeling-dp.us-luke-1.oci.oraclegovcloud.com
Data Labeling Management API

API reference

  • https://datalabeling-cp.us-langley-1.oci.oraclegovcloud.com
  • https://datalabeling-cp.us-luke-1.oci.oraclegovcloud.com
Data Safe API

API reference

  • https://datasafe.us-langley-1.oci.oraclegovcloud.com
  • https://datasafe.us-luke-1.oci.oraclegovcloud.com
Data Science API

API reference

  • https://datascience.us-langley-1.oci.oraclegovcloud.com
  • https://datascience.us-luke-1.oci.oraclegovcloud.com
Database API

API reference

  • https://database.us-langley-1.oraclegovcloud.com
  • https://database.us-luke-1.oraclegovcloud.com

You can track the progress of long-running Database operations with the Work Requests API.

Database Management API

API reference

  • https://dbmgmt.us-langley-1.oci.oraclegovcloud.com
  • https://dbmgmt.us-luke-1.oci.oraclegovcloud.com
DevOps API

API reference

  • https://devops.us-langley-1.oci.oraclegovcloud.com
  • https://devops.us-luke-1.oci.oraclegovcloud.com
Digital Assistant API

API reference

  • https://digitalassistant.us-langley-1.oci.oraclegovcloud.com
  • https://digitalassistant.us-luke-1.oci.oraclegovcloud.com
DNS API
Note

This information is for private DNS only. Public DNS is not available in government realms.

API Reference

  • https://dns.us-langley-1.oraclegovcloud.com
  • https://dns.us-luke-1.oraclegovcloud.com
Email Delivery API

API reference

  • https://ctrl.email.us-langley-1.oci.oraclegovcloud.com
  • https://ctrl.email.us-luke-1.oci.oraclegovcloud.com
Events API

API reference

  • https://events.us-langley-1.oci.oraclegovcloud.com
  • https://events.us-luke-1.oci.oraclegovcloud.com
File Storage API

API reference

  • https://filestorage.us-langley-1.oraclegovcloud.com
  • https://filestorage.us-luke-1.oraclegovcloud.com
Functions API

API reference

  • https://functions.us-langley-1.oci.oraclegovcloud.com
  • https://functions.us-luke-1.oci.oraclegovcloud.com
GoldenGate API

API reference

  • https://goldengate.us-langley-1.oci.oraclegovcloud.com
  • https://goldengate.us-luke-1.oci.oraclegovcloud.com
Generic Artifacts Content API

API reference

  • https://generic.us-langley-1.oci.oraclegovcloud.com
  • https://generic.us-luke-1.oci.oraclegovcloud.com
IAM API

API reference

  • https://identity.us-langley-1.oraclegovcloud.com
  • https://identity.us-luke-1.oraclegovcloud.com

The IAM service supports identity domains for US Government Cloud tenancies created after January 17, 2023. Identity domains are used to manage users and groups, integration standards, external identities, and secure application integration through Oracle Single Sign-on (SSO) configuration. If you're not sure if your tenancy supports identity domains, use the steps described in Do You Have Access to Identity Domains? to find out.

To use identity domains in tenancies created before this date, you need to wait until your tenancy is upgraded to include identity domains.

Note

Use the Endpoint of Your Home Region for All IAM API Calls

When you sign up for Oracle Cloud Infrastructure, Oracle creates a tenancy for you in one region. This is your home region. Your home region is where your IAM resources are defined. When you subscribe to a new region, your IAM resources are replicated in the new region, however, the master definitions reside in your home region and can only be changed there. Make all IAM API calls against your home region endpoint. The changes automatically replicate to all regions. If you try to make an IAM API call against a region that is not your home region, you will receive an error. See What is the tenancy home region? How do I find my tenancy home region?

Java Management API

API reference

  • https://javamanagement.us-langley-1.oci.oraclegovcloud.com
  • https://javamanagement.us-luke-1.oci.oraclegovcloud.com
Key Management API (for the Vault service)

API reference

  • https://kms.us-langley-1.oraclegovcloud.com
  • https://kms.us-luke-1.oraclegovcloud.com

In addition to these endpoints, each vault has a unique endpoint for create, update, and list operations for keys. This endpoint is referred to as the control plane URL or management endpoint. Each vault also has a unique endpoint for cryptographic operations. This endpoint is known as the data plane URL or the cryptographic endpoint.

Language API

API reference

  • https://language.aiservice.us-langley-1.oci.oraclegovcloud.com
  • https://language.aiservice.us-luke-1.oci.oraclegovcloud.com
License Manager API

API reference

  • https://licensemanager.us-langley-1.oci.oraclegovcloud.com
  • https://licensemanager.us-luke-1.oci.oraclegovcloud.com
LogAnalytics API

API reference

  • https://loganalytics.us-langley-1.oraclegovcloud.oci.com
  • https://loganalytics.us-luke-1.oraclegovcloud.oci.com

Sample Log Data is not supported in US Government Cloud.

Logging Ingestion API

API reference

  • https://ingestion.logging.us-langley-1.oraclegovcloud.com
  • https://ingestion.logging.us-luke-1.oraclegovcloud.com
Logging Management API

API reference

  • https://logging.us-langley-1.oraclegovcloud.com
  • https://logging.us-luke-1.oraclegovcloud.com
Logging Search API

API reference

  • https://logging.us-langley-1.oraclegovcloud.com
  • https://logging.us-luke-1.oraclegovcloud.com
Managed Access API

API reference

  • https://managed-access.us-langley-1.oraclegovcloud.com
  • https://managed-access.us-luke-1.oraclegovcloud.com
Management Agent API

API reference

  • https://management-agent.us-langley-1.oraclegovcloud.com
  • https://management-agent.us-luke-1.oraclegovcloud.com
Marketplace Service API

API reference

  • https://marketplace.us-langley-1.oci.oraclegovcloud.com
  • https://marketplace.us-luke-1.oci.oraclegovcloud.com
Monitoring API

API reference

  • https://telemetry-ingestion.us-langley-1.oraclegovcloud.com
  • https://telemetry-ingestion.us-luke-1.oraclegovcloud.com
  • https://telemetry.us-langley-1.oraclegovcloud.com
  • https://telemetry.us-luke-1.oraclegovcloud.com
Network Firewall API

API reference

  • https://network-firewall.us-langley-1.oci.oraclegovcloud.com
  • https://network-firewall.us-luke-1.oci.oraclegovcloud.com
Network Load Balancer API

API reference

  • https://network-load-balancer-api.us-langley-1.oci.oraclegovcloud.com
  • https://network-load-balancer-api.us-luke-1.oci.oraclegovcloud.com
NoSQL Database API

API reference

  • https://nosql.us-langley-1.oci.oraclegovcloud.com
  • https://nosql.us-luke-1.oci.oraclegovcloud.com
Notifications API

API reference

  • https://notification.us-langley-1.oraclegovcloud.com
  • https://notification.us-luke-1.oraclegovcloud.com

The source service must be available in US Government Cloud regions for messages to be successfully sent through the Notifications service. If the source service is not available in these regions, then the message is not sent. For a list of unavailable services, see Services Not Supported in US Government Cloud with FedRAMP Authorization.

Object Storage and Archive Storage APIs

Both Object Storage and Archive Storage are accessible with the following APIs:

Object Storage API

API reference

  • https://objectstorage.us-langley-1.oraclegovcloud.com
  • https://objectstorage.us-luke-1.oraclegovcloud.com
Amazon S3 Compatibility API

API reference

  • https://<object_storage_namespace>.compat.objectstorage.us-langley-1.oraclegovcloud.com
  • https://<object_storage_namespace>.compat.objectstorage.us-luke-1.oraclegovcloud.com
Tip

See Understanding Object Storage Namespaces for information regarding how to find your Object Storage namespace.
Swift API (for use with Oracle RMAN)
  • https://swiftobjectstorage.us-langley-1.oraclegovcloud.com
  • https://swiftobjectstorage.us-luke-1.oraclegovcloud.com
OpenSearch API

API reference

  • https://opensearch.us-langley-1.oci.oraclegovcloud.com
  • https://opensearch.us-luke-1.oci.oraclegovcloud.com
Operations Insights API

API reference

  • https://operationsinsights.us-langley-1.oci.oraclegovcloud.com
  • https://operationsinsights.us-luke-1.oci.oraclegovcloud.com
Oracle Cloud VMware Solution API

API reference

  • https://ocvps.us-langley-1.oci.oraclegovcloud.com
  • https://ocvps.us-luke-1.oci.oraclegovcloud.com
Oracle Content Management API

API reference

  • https://cp.oce.us-langley-1.oci.oraclegovcloud.com
  • https://cp.oce.us-luke-1.oci.oraclegovcloud.com
Oracle Integration API

API reference

  • https://integration.us-langley-1.oci.oraclegovcloud.com
  • https://integration.us-luke-1.oci.oraclegovcloud.com

For more information, see Using Oracle Integration Generation 3 on US Government Cloud.

Organizations Management API

API reference

  • https://organizations.us-langley-1.oci.oraclegovcloud.com
  • https://organizations.us-luke-1.oci.oraclegovcloud.com
OS Management API

API reference

  • https://osms.us-langley-1.oci.oraclegovcloud.com
  • https://osms.us-luke-1.oci.oraclegovcloud.com
Process Automation API

API Reference

  • https://process.us-langley-1.oci.oraclegovcloud.com
  • https://process.us-luke-1.oci.oraclegovcloud.com
Registry

Registry

  • US Gov East (Ashburn)
    • ocir.us-langley-1.oci.oraclegovcloud.com
  • US Gov West (Phoenix)
    • ocir.us-luke-1.oci.oraclegovcloud.com
Resource Manager API

API reference

  • https://resourcemanager.us-langley-1.oci.oraclegovcloud.com
  • https://resourcemanager.us-luke-1.oci.oraclegovcloud.com
Scanning API

API reference

  • https://vss-cp-api.us-langley-1.oci.oraclegovcloud.com
  • https://vss-cp-api.us-luke-1.oci.oraclegovcloud.com
Speech API

API reference

  • https://speech.aiservice.us-langley-1.oci.oraclegovcloud.com
  • https://speech.aiservice.us-luke-1.oci.oraclegovcloud.com
Stack Monitoring API

API reference

  • https://stack-monitoring.us-langley-1.oci.oraclegovcloud.com
  • https://stack-monitoring.us-luke-1.oci.oraclegovcloud.com
Streaming API

API reference

  • https://streaming.us-langley-1.oci.oraclegovcloud.com
  • https://streaming.us-luke-1.oci.oraclegovcloud.com
Threat Intelligence API

API reference

  • https://api-threatintel.us-langley-1.oci.oraclegovcloud.com
  • https://api-threatintel.us-luke-1.oci.oraclegovcloud.com
Vault Service Key Management API

API reference

  • https://kms.us-langley-1.oraclegovcloud.com
  • https://kms.us-luke-1.oraclegovcloud.com
Vault Service Secret Management API

API reference

  • https://vaults.us-langley-1.oraclegovcloud.com
  • https://vaults.us-luke-1.oraclegovcloud.com
Vault Service Secret Retrieval API

API reference

  • https://secrets.us-langley-1.oraclegovcloud.com
  • https://secrets.us-luke-1.oraclegovcloud.com
Vison API

API reference

  • https://vision.aiservice.us-langley-1.oci.oraclegovcloud.com
  • https://vision.aiservice.us-luke-1.oci.oraclegovcloud.com
Visual Builder API

API reference

  • https://visualbuilder.us-langley-1.ocp.oraclegovcloud.com
  • https://visualbuilder.us-luke-1.ocp.oraclegovcloud.com
Visual Builder Studio API

API reference

  • https://vbstudio.us-langley-1.ocp.oraclegovcloud.com
  • https://vbstudio.us-luke-1.ocp.oraclegovcloud.com
Web Application Firewall (WAF) API

API reference

  • https://waf.us-langley-1.oci.oraclegovcloud.com
  • https://waf.us-luke-1.oci.oraclegovcloud.com
Work Requests API (for Compute and Database work requests)

API reference

  • https://iaas.us-langley-1.oraclegovcloud.com
  • https://iaas.us-luke-1.oraclegovcloud.com

Oracle YUM Repo Endpoints

The Oracle YUM repo regional endpoints for US Government Cloud with FedRAMP High Joint Authorization Board are shown in the following table

Region YUM Server Endpoint
US Gov East (Ashburn)
  • https://yum.us-langley-1.oci.oraclegovcloud.com
  • https://yum-us-langley-1.oracle.com
US Gov West (Phoenix)
  • https://yum.us-luke-1.oci.oraclegovcloud.com
  • https://yum-us-luke-1.oracle.com

SMTP Authentication and Connection Endpoints

Email Delivery only supports the AUTH PLAIN command when using SMTP authentication. If the sending application is not flexible with the AUTH command, an SMTP proxy/relay can be used. For more information about the AUTH command, see AUTH Command and its Mechanisms.

Region SMTP Connection Endpoint
US Gov East (Ashburn) smtp.email.us-langley-1.oci.oraclegovcloud.com
US Gov West (Phoenix) smtp.email.us-luke-1.oci.oraclegovcloud.com

SPF Record Syntax

An SPF record is a TXT record on your sending domain that authorizes Email Delivery IP addresses to send on your behalf. SPF is required for subdomains of oraclegovcloud.com and recommended in other cases. The SPF record syntax for each sending region is shown in the following table:

Realm Key SPF Record
OC2 v=spf1 include:rp.email.oci.oraclegovcloud.com ~all
The Realm Key is applicable for any sending regions in that realm.

Services Not Supported in US Government Cloud with FedRAMP Authorization

The following services are currently not available or not supported for tenancies in the US Government Cloud with FedRAMP High Joint Authorization Board.

Note

This list is not exhaustive. Other services and features might also be unavailable or unsupported.

Networking services and features not available:

  • DNS Zone Management - public DNS zones (private DNS zones are supported)
  • Traffic Management
  • Network Visualizer - export map data

Oracle Database services and features not available:

  • Data Catalog - Data asset of type MySQL

Storage services and features not available:

  • In-transit encryption for bare metal instances
  • File Storage LDAP authorization and Kerberos authentication.

Analytics & AI services not available:

  • Fusion Analytics Warehouse

Developer Services features not supported:

  • Container Instances
  • Process Automation

Identity & Security services not available:

  • Compliance Documents
  • SMS-based Notifications

Observability & Management services and features not available:

  • Health Checks
  • Logging Analytics - Sample Log Data
  • Management Agent - Enabling Management Agent from Compute instances. As an alternative, you can manually install the Management Agent. See Install Management Agents for more information.

Governance & Administration features not supported:

  • Auto-federation with Oracle Identity Cloud Service

Integration with Oracle SaaS and PaaS services, including those listed here: Get Started with Oracle Platform Services

Oracle Cloud Infrastructure Free Tier, including promotional trial and Always Free offers are not available in US Government Cloud regions.

Additional Information for US Government Cloud with FedRAMP Authorization Customers