Câu 117: AWS Certified SysOps Administrator(Old)
A SysOps Administrator is reviewing AWS Trusted Advisor warnings and encounters a warning for an S3 bucket policy that has open access permissions. While discussing the issue the bucket owner, the Administrator realizes the S3 bucket is an origin for an Amazon CloudFront web distribution. Which action should the Admin…
Nội dung câu hỏi
A SysOps Administrator is reviewing AWS Trusted Advisor warnings and encounters a warning for an S3 bucket policy that has open access permissions. While discussing the issue the bucket owner, the Administrator realizes the S3 bucket is an origin for an Amazon CloudFront web distribution. Which action should the Administrator take to ensure that users access objects in Amazon S3 by using only CloudFront URLs?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Encrypt the S3 bucket content with Server-Side Encryption with Amazon S3-Managed Keys (SSE-S3)
- B. Create an origin access identity and grant it permissions to read objects in the S3 bucket — đáp án hiện tại
- C. Assign an IAM user to the CoudFront distribution and whitelist the IAM user in the S3 bucket policy
- D. Assign an IAM role to the CloudFront distribution and whitelist the IAM role in the S3 bucket policy
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.