nerdexam
AmazonAmazon

SCS-C02 · Question #403

SCS-C02 Question #403: Real Exam Question with Answer & Explanation

Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #403. The question stem and answer options stay visible for context.

Submitted by mateo_ar· Mar 6, 2026

Question

You are building a large-scale confidential documentation web server on AWSand all of the documentation for it will be stored on S3. One of the requirements is that it cannot be publicly accessible from S3 directly, and you will need to use Cloud Front to accomplish this. Which of the methods listed below would satisfy the requirements as outlined? Choose an answer from the options below

Options

  • ACreate an Identity and Access Management (IAM) user for CloudFront and grant access to the
  • BCreate an Origin Access Identity (OAI) for CloudFront and grant access to the objects in your S3
  • CCreate individual policies for each bucket the documents are stored in and in that policy grant
  • DCreate an S3 bucket policy that lists the CloudFront distribution ID as the Principal and the target

Unlock SCS-C02 to see the answer

You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full SCS-C02 PracticeBrowse All SCS-C02 Questions