Get startedGet started for free

Predict the evaluation outcome

One policy is attached to the role your application runs as. It carries the two statements from the video: a broad allow across S3, and a narrow deny on one delete.

{"Effect": "Allow", "Action": "s3:*",           "Resource": "*"}
{"Effect": "Deny",  "Action": "s3:DeleteObject", "Resource": "*"}

Six requests arrive. Sort each one by the outcome AWS returns.

This exercise is part of the course

Using AWS Security for Developers

View Course

Hands-on interactive exercise

Turn theory into action with one of our interactive exercises

Start Exercise