My AWS Notebook
Topics
Consistent view: Allows EMR clusters to check for list and read-after-write consistency for Amazon S3 objects by or synced with EMRFS.
https://[access_point_name]-[accountID].s3-accesspoint.[region].amazonaws.com.aws s3api get-object --key /Alice/object.zip --bucket arn:aws:s3:us-east-1:[my-account-id]:alices-access-point download.zipSee also Encryption solution for data at rest and data in transit.
x-amz-mfa request
header in requests to permanently delete an object version or change the versioning state of the bucket.{
   "Version":"2008-10-17",
   "Id":"",
   "Statement":[
      {
         "Sid":"Stmt123",
         "Effect":"Allow",
         "Principal":{
            "AWS":"arn:aws:iam::source-bucket-owner-AWS-acct-ID:root"
         },
         "Action":[
           "s3:ReplicateObject",
           "s3:ReplicateDelete"
         ],
         "Resource":"arn:aws:s3:::destination/*"
      }
   ]
}
<ReplicaKmsKeyID> to the replication configuration.<ReplicaKmsKeyID> item, is the CMK to encrypt objects within the destination bucket -
since KMS is regional, it needs to be the region that the destination bucket is in.Lifecycle policy: S3 Standard -> S3 IA -> Glacier
PUTs, POSTs, DELETEs can trigger events.