Download as txt, pdf, or txt
Download as txt, pdf, or txt
You are on page 1of 2

IAM User

{
"Version": "2012-10-17",
"Statement": [
{
"Sid": "Stmt1709926073681",
"Action": [
"s3:GetAccessPointPolicy",
"s3:ListAccessPoints",
"s3:ListAllMyBuckets",
"s3:ListBucket",
"s3:ListMultiRegionAccessPoints"
],
"Effect": "Allow",
"Resource": "*"
}
]
}

S3 Bucket Policy

{
"Id": "Policy1709927189562",
"Version": "2012-10-17",
"Statement": [
{
"Sid": "Stmt1709926985268",
"Action": "s3:*",
"Effect": "Allow",
"Resource": [
"arn:aws:s3:::dataaccesspoints",
"arn:aws:s3:::dataaccesspoints/*"
],
"Condition": {
"StringEquals": {
"s3:DataAccessPointAccount": "375864438630"
}
},
"Principal": "*"
}
]
}

arn:aws:s3:ap-northeast-3:375864438630:accesspoint/datauser1/object/dataset/*
S3 ARN :Region :Account ID :accesspoint/IAM User Name/object/Folder name
of s3/Content in folder

Access Point Policy

{
"Id": "Policy1709928733103",
"Version": "2012-10-17",
"Statement": [
{
"Sid": "Stmt1709928627380",
"Action": [
"s3:GetObject",
"s3:PutObject"
],
"Effect": "Allow",
"Resource":
"arn:aws:s3:ap-northeast-3:375864438630:accesspoint/datauser1/object/
dataset/*",
"Principal": {
"AWS": [
"arn:aws:iam::375864438630:user/datauser1"
]
}
}
]
}

You might also like