
Ultimate access to all questions.
A large firm utilizes Amazon S3 buckets to store its static data assets, with each service line operating under its own AWS account. Currently, the Finance department needs to grant the Human Resources department access to data stored in their specific S3 bucket for a particular business requirement.
Which of the following methods is NOT a viable option for enabling cross-account access to S3 bucket objects?
A
Use Cross-account IAM roles for programmatic and console access to S3 bucket objects
B
Use Access Control List (ACL) and IAM policies for programmatic-only access to S3 bucket objects
C
Use Resource-based policies and AWS Identity and Access Management (IAM) policies for programmatic-only access to S3 bucket objects
D
Use IAM roles and resource-based policies delegate access across accounts within different partitions via programmatic access only