Puzzle: S3 HTTPS Only Via Bucket Policy

Hey all,

I was charged with thinking up a challenging AWS policy question around S3, and I thought, all the policies around resources are hard, especially S3. I mean, there is a reason unsecured S3 bucket data leaks hit the news like clockwork every month or so — resources policies are HARD.

Does this S3 bucket policy require HTTPS access?

As part of my new job, I get the wonderful opportunity to educate the world, so…

--

--

--

DevNetSecOps, DevRel, cloud security chick. I will teach you, it’s unavoidable. She/Her 🏳️‍⚧️🏳️‍🌈, INFJ-A, support the EFF!

Love podcasts or audiobooks? Learn on the go with our new app.

Recommended from Medium

Want to Beat Fraudsters? Start Sharing Your Data

Don’t Get Ensnared In The Web: Protect Yourself From Online Dating Scammers

Cybersecurity And Much More Newsletter — Week 07 (2022)

actiTIME User Permissions: Your Key to Data Security

Challenges and Opportunities in VLSI IoT Devices and Systems

Virtual machine: why use it?

{UPDATE} QuizTix: Video Games Quiz Hack Free Resources Generator

Dubai Makes Artificial Rain During Extreme Heat as New Information on Pegasus Spyware Reveled

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store
Kyler Middleton

Kyler Middleton

DevNetSecOps, DevRel, cloud security chick. I will teach you, it’s unavoidable. She/Her 🏳️‍⚧️🏳️‍🌈, INFJ-A, support the EFF!

More from Medium

Prototyping Malicious IP Protection on the Cloud in Two Days with CAIOS

Quick Start into OpenStack on AWS

Deploy infrastructure on Openstack on the top of AWS using terraform

Connect an AWS ECS Fargate service to an EFS File System with Pulumi

High Availability & Fault Tolerance for Monitoring Stack