My AWS Notebook
Topics
Consistent view: Allows EMR clusters to check for list and read-after-write consistency for Amazon S3 objects by or synced with EMRFS.
https://[access_point_name]-[accountID].s3-accesspoint.[region].amazonaws.com
.aws s3api get-object --key /Alice/object.zip --bucket arn:aws:s3:us-east-1:[my-account-id]:alices-access-point download.zip
See also Encryption solution for data at rest and data in transit.
x-amz-mfa
request
header in requests to permanently delete an object version or change the versioning state of the bucket.{
"Version":"2008-10-17",
"Id":"",
"Statement":[
{
"Sid":"Stmt123",
"Effect":"Allow",
"Principal":{
"AWS":"arn:aws:iam::source-bucket-owner-AWS-acct-ID:root"
},
"Action":[
"s3:ReplicateObject",
"s3:ReplicateDelete"
],
"Resource":"arn:aws:s3:::destination/*"
}
]
}
<ReplicaKmsKeyID>
to the replication configuration.<ReplicaKmsKeyID>
item, is the CMK to encrypt objects within the destination bucket -
since KMS is regional, it needs to be the region that the destination bucket is in.Lifecycle policy: S3 Standard -> S3 IA -> Glacier
PUTs, POSTs, DELETEs can trigger events.