1 Answer
- Newest
- Most votes
- Most comments
My confusion - why does the "Use website endpoint" not offer this option when its selected. It seems like it is needed.
S3 buckets can use Origin Access Control (OAC) or Origin Access Identity (OAI) to authenticate CloudFront distribution which requests to the bucket.
If you choose the S3 Website endpoint, CloudFront will recognize the origin as a Web Site, not a bucket. Therefore, OAC and OAI are not available.
answered 2 years ago
Relevant content
- Accepted Answerasked 2 years ago
- AWS OFFICIALUpdated 2 years ago
- AWS OFFICIALUpdated a year ago
- AWS OFFICIALUpdated 2 years ago
- AWS OFFICIALUpdated 2 years ago
@jhasimoto Okay, that makes sense to me. But, I still get the 403 no matter what. If I'm setting CloudFront as a static website, does the bucket need to be Public then?
@AWS-User-6328292 That's right.
@AWS-User-6328292 for your reference: https://aws.amazon.com/premiumsupport/knowledge-center/cloudfront-serve-static-website/?nc1=h_ls