Examtopics

AWS Certified Security - Specialty
  • Topic 1 Question 22

    A security engineer creates an Amazon S3 bucket policy that denies access to all users. A few days later, the security engineer adds an additional statement to the bucket policy to allow read-only access to one other employee. Even after updating the policy, the employee sill receives an access denied message. What is the likely cause of this access denial?

    • The ACL in the bucket needs to be updated.

    • The IAM policy does not allow the user to access the bucket.

    • It takes a few minutes for a bucket policy to take effect.

    • The allow permission is being overridden by the deny.


    シャッフルモード