Amazon S3 Security Flashcards
What are the four encryption options in S3?
How does Server-Side Encryption with Amazon S3-Managed Keys (SSE-S3) in S3 work? And what is the encryption type?
How does Server-Side Encryption with KMS Keys stored in AWS KMS (SSE-KMS) in S3 work?
What are the limits of using Server-Side Encryption with KMS Keys stored in AWS KMS (SSE-KMS)?
How does Server-Side Encryption with Customer-Provided Keys (SSE-C) in S3 work?
How does Client-Side Encryption in S3 work?
How does Encryption in transit (SSL/TLS) in S3 work?
How would you force encryption in transit for an S3 bucket?
How does default encryption in S3 work with encryption enforced by bucket policies?
What is CORS?
How does a CORS request actually work?
How does CORS apply to Amazon S3?
How does the security feature, MFA Delete, work in S3?
What are S3 Access Logs and how do they work?
What happens if you set the logging bucket to be the same as the monitored bucket for S3 Access Logs?