Skip to main content

aws_cloudfront_origin_access_control

Description

AWS CloudFront Origin Access Control is a security feature that restricts access to Amazon S3 bucket content, ensuring it's only accessible through CloudFront. It creates a trust relationship between CloudFront and S3, preventing direct access to S3 objects. This mechanism enhances content protection by controlling who can retrieve files from the origin, reducing potential security risks.

Base Hierarchy

Hierarchy of CloudFront Origin Access Control

Relationship to other Resources

Diagram of CloudFront Origin Access Control resource relationships

Properties

Diagram of CloudFront Origin Access Control data model