Predict the evaluation outcome
One policy is attached to the role your application runs as. It carries the two statements from the video: a broad allow across S3, and a narrow deny on one delete.
{"Effect": "Allow", "Action": "s3:*", "Resource": "*"}
{"Effect": "Deny", "Action": "s3:DeleteObject", "Resource": "*"}
Six requests arrive. Sort each one by the outcome AWS returns.
Это упражнение является частью курса
Using AWS Security for Developers
Практическое интерактивное упражнение
Превратите теорию в практику с помощью одного из наших интерактивных упражнений
Начать упражнение