Mods
AWS

Policy: AWS > S3 > Bucket > Policy > Trusted Access > CloudFront Origin Access Identities

List of CloudFront Origin Access Identities (OAIs) that are trusted for cross-account access in the AWS S3 bucket policy.

The expected format is an array of CloudFront OAI ARNs or OAI IDs.

example: - "arn:aws:iam::cloudfront:user/CloudFront Origin Access Identity EH1HDMB1FH2TC" - "EH1HDMB1FH2TC" Note: Setting the policy to an Empty array will remove all CloudFront OAIs.

Resource Types

This policy targets the following resource types:

Primary Policy

This policy is used with the following primary policy:

Controls

Policy Packs

This policy setting is used by the following policy packs:

Policy Specification

Schema Type
array
Default
- '*'

Category

In Your Workspace

Developers