Home › Forums › AWS › AWS Certified Solutions Architect Professional › Test 2 OAC/CloudFront
-
I’d like to request a correction to the content of a question in the test 2. There appears to be an error in the description of Origin Access Control (OAC) in the following sentence:
” Create a special CloudFront user called an origin access control (OAC) and associate it with your distribution. Configure the S3 bucket policy to only access from the OAC.”
OAC is not a special CloudFront user, but rather a feature used to control access to S3 buckets. The concept closer to a “special CloudFront user” would be CloudFront Origin Access Identity (OAI). However, OAI is currently being phased out in favor of the newer OAC feature.
Given this information, please revise the content to accurately reflect the concept of OAC.
Thank you for your attention to this matter.
-
Hello pote,
Good day!
Thank you for your feedback regarding the content of the question in Test 2. We appreciate your attention to detail.
You’re right—Origin Access Control (OAC) is a feature that manages and secures access to Amazon S3 buckets and is not a “special CloudFront user.” The reference to a “special CloudFront user” would indeed be more applicable to the Origin Access Identity (OAI), which, as you mentioned, is being phased out in favor of OAC.
We will revise the content to clarify that OAC is the newer mechanism for controlling access between CloudFront and S3 and update the description to avoid confusion.
Thank you again for bringing this to our attention!
Regards,
Neil @ Tutorials Dojo
Log in to reply.