Skip to main content

Origin Access Identity Should Be Enabled For CloudFront Distributions

Back

More Info:

The origin access identity feature should be enabled for all your AWS Cloudfront CDN distributions that utilize an S3 bucket as an origin in order to restrict any direct access to your objects through Amazon S3 URLs.

Risk Level

Medium

Address

Security

Compliance Standards

CBP

Additional Reading: