Learn how to use a custom HTTP header to restrict access to your Amazon S3 bucket to only the CloudFront distributions that you control.
Table of Contents
Question
Which of the following allows you to restrict access to your Amazon Simple Storage Service (Amazon S3) bucket to Amazon CloudFront distributions that you control?
A. Preshared keys
B. Custom HTTP header
C. Origin Access Control (OAC)
D. AWS Lambda@Edge
Answer
B. Custom HTTP header
Explanation
The correct answer is B. Custom HTTP header. This is because Amazon CloudFront supports using a custom HTTP header to restrict access to your Amazon S3 bucket to only the CloudFront distributions that you control. You can configure CloudFront to add a custom header whenever it forwards a request to your origin, and configure your origin to allow requests only when they include the custom header and its value that you specify. This way, you can prevent users from accessing your content directly from Amazon S3.
The latest AWS Certified Advanced Networking – Specialty ANS-C01 certification actual real practice exam question and answer (Q&A) dumps are available free, which are helpful for you to pass the AWS Certified Advanced Networking – Specialty ANS-C01 exam and earn AWS Certified Advanced Networking – Specialty ANS-C01 certification.