Skip to main content

aws_cloudfront_origin_access_control

Description​

AWS CloudFront Origin Access Control is a security feature that restricts access to Amazon S3 bucket content, ensuring it's only accessible through CloudFront. It creates a trust relationship between CloudFront and S3, preventing direct access to S3 objects. This mechanism enhances content protection by controlling who can retrieve files from the origin, reducing potential security risks.

Base Hierarchy​

Hierarchy of CloudFront Origin Access Control

Relationship to other Resources​

Diagram of CloudFront Origin Access Control resource relationships

Properties​

Diagram of CloudFront Origin Access Control data model