2 Answers
0
403, i.e. some permission issue...
Assuming you are not allowing access via direct S3 URL
- please check the Restricting access to Amazon S3 content by using an origin access identity (OAI)
- Check (and post if you can) the config of the bucket policy pertaining to the OAI - the encryption config and that the principal OAI is granted access
answered a month ago
@Jules_N I just update the question adding the bucket policy (with account & bucket details redacted) and, also provided an screenshot for encryption settings
0
Hi,
Do you have WAF enabled for Cloudfront. Not sure how that could impact SSE-S3 object request but just good to rule that out. If WAF enabled, you might want to check this document - https://aws.amazon.com/premiumsupport/knowledge-center/cloudfront-error-request-blocked/
--Syd
answered a month ago
Relevant questions
How can customers find out the S3 bucket with the highest cost or sort the cost for each S3 bucket?
Accepted Answerasked 2 years agoS3 object lock on existing S3 objects?
Accepted AnswerUsing S3 bucket as a file server for the public
asked 2 months agoHow to determine if an object is encrypted with a "regular" S3-SSE KMS key, or an S3 Bucket Key with S3 Inventory?
Accepted Answerasked 2 years agoAccess denied when trying to GET objects uploaded to s3 bucket via aws sdk using cloudfront
asked 8 months agoCloudFront 403 errors with S3 (SSE-S3)
asked a month agoIssue with S3 bucket
asked 4 months agoVirtual hosting an S3 bucket using Cloudfront + SSL
asked 3 years agoS3 Bucket Keys and CRR
Accepted Answerasked 2 years agoCloudtrail S3 bucket objects
asked 2 months ago
Hi, @gvasquez.
There may be a problem with your bucket policy. Can you provide it?
@iwasa I just provided a "redacted" version of the bucket policy