An Amazon S3 bucket in a SysOps Administrator's account can be accesses by users in other SWS accounts. How can the Administrator ensure that the bucket is only accessible to members of the Administrator's AWS account?
A.
Move the S3 bucket from a public subnet to a private subnet in the Amazon VPC.
B.
Change the bucket access control list (ACL) to restrict access to the bucket owner.
C.
Enable server-side encryption for all objects in the bucket.
D.
Use only Amazon S3 presigned URLs for accessing objects in the bucket.
Ans is D. Q states users not just bucket owners. Besides signed URLs are for everyone inside and outside an account. https://docs.aws.amazon.com/AmazonS3/latest/userguide/ShareObjectPreSignedURL.html
DEFINITELY B. PRE SIGNED URL IS MOSTLY USED FOR THOSE WHO DON'T HAVE ANY CONNECTIONS WITH THE ACCOUNT BUT THIS SITUATION IS DIFFERENT AS THERE ARE ALL MEMBERS OF THE SAME COMPANY.
B
and not D bcz
All objects and buckets by default are private. The presigned URLs are useful if you want your user/customer to be able to upload a specific object to your bucket, but you don't require them to have AWS security credentials or permissions
no B - I believe bucket access lists only GRANT and cannot deny access https://docs.aws.amazon.com/AmazonS3/latest/user-guide/set-bucket-permissions.html
@milan, you are right. Reviewed again. Thru Canonical ID, access can be granted thru ACL. Ans is B.
Note : access can be granted to other account Users or Groups.
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
AWSum1
Highly Voted 3 years agoe45af42
Most Recent 4 months, 3 weeks agoTroyMcLure
2 years, 12 months agoRicardoD
3 years agoCountryGent
3 years agoabhishek_m_86
3 years agokiev
3 years agojackdryan
3 years agogilbertlelancelo
3 years agofirstabed
3 years agoWmatt
3 years agokarmaah
3 years agomilan24_2000
3 years, 1 month agokarmaah
3 years, 1 month agokarmaah
3 years agokarmaah
3 years, 1 month ago