Resource Type: AWS > CloudFront > CloudFront Origin Access Identity
The CloudFront Origin Access Identity resource type is a special CloudFront user that can be used to securely allow CloudFront to fetch a private content in your Amazon S3 bucket.
Resource Context
CloudFront Origin Access Identity is a part of the CloudFront service.
Each CloudFront Origin Access Identity lives under an Account.
Controls
The primary controls for AWS > CloudFront > CloudFront Origin Access Identity are:
Quick Actions
- Delete
 - Router
 - Skip alarm for Active control
 - Skip alarm for Active control [90 days]
 - Skip alarm for Approved control
 - Skip alarm for Approved control [90 days]
 
Category
In Your Workspace
- Controls by Resource Type report
 - Policy Settings by Resource Type report
 - Resources by Resource Type report
 
Developers
- tmod:@turbot/aws-cloudfront#/resource/types/cloudFrontOriginAccessIdentity
 
- tmod:@turbot/turbot#/resource/categories/networking
 
- turbot graphql resource --id "tmod:@turbot/aws-cloudfront#/resource/types/cloudFrontOriginAccessIdentity"
 
Get Resource- select * from guardrails_resource where resource_type_uri = 'tmod:@turbot/aws-cloudfront#/resource/types/cloudFrontOriginAccessIdentity';
 - select * from guardrails_policy_setting where filter = 'resourceTypeId:"tmod:@turbot/aws-cloudfront#/resource/types/cloudFrontOriginAccessIdentity"';
 - select * from guardrails_notification where resource_type_uri = 'tmod:@turbot/aws-cloudfront#/resource/types/cloudFrontOriginAccessIdentity' and notification_type in ('resource_updated', 'resource_created');
 
Get ResourceGet Policy Settings (By Resource ID)Get Resource Notification
Resource Type URI
Category URI
GraphQL
CLI
Steampipe Query