Type object
Schema URL https://catalog.lintel.tools/schemas/schemastore/serverless-framework-configuration/_shared/latest--aws-s3-accesspoint.json
Parent schema serverless-framework-configuration
Type: object

The AWS::S3::AccessPoint resource is an Amazon S3 resource type that you can use to access buckets.. Source:- https://github.com/aws-cloudformation/aws-cloudformation-resource-providers-s3

Properties

Bucket string | Aws_CF_FunctionString required

The name of the bucket that you want to associate this Access Point with.

Name string | Aws_CF_FunctionString

The name you want to assign to this Access Point. If you don't specify a name, AWS CloudFormation generates a unique ID and uses that ID for the access point name.

BucketAccountId string | Aws_CF_FunctionString

The AWS account ID associated with the S3 bucket associated with this access point.

VpcConfiguration object

The Virtual Private Cloud (VPC) configuration for a bucket access point.

1 nested properties
VpcId string | Aws_CF_FunctionString

If this field is specified, this access point will only allow connections from the specified VPC ID.

PublicAccessBlockConfiguration object
4 nested properties
BlockPublicAcls boolean

Specifies whether Amazon S3 should block public access control lists (ACLs) for buckets in this account. Setting this element to TRUE causes the following behavior:

  • PUT Bucket acl and PUT Object acl calls fail if the specified ACL is public.
  • PUT Object calls fail if the request includes a public ACL. . - PUT Bucket calls fail if the request includes a public ACL. Enabling this setting doesn't affect existing policies or ACLs.
IgnorePublicAcls boolean

Specifies whether Amazon S3 should ignore public ACLs for buckets in this account. Setting this element to TRUE causes Amazon S3 to ignore all public ACLs on buckets in this account and any objects that they contain. Enabling this setting doesn't affect the persistence of any existing ACLs and doesn't prevent new public ACLs from being set.

BlockPublicPolicy boolean

Specifies whether Amazon S3 should block public bucket policies for buckets in this account. Setting this element to TRUE causes Amazon S3 to reject calls to PUT Bucket policy if the specified bucket policy allows public access. Enabling this setting doesn't affect existing bucket policies.

RestrictPublicBuckets boolean

Specifies whether Amazon S3 should restrict public bucket policies for this bucket. Setting this element to TRUE restricts access to this bucket to only AWS services and authorized users within this account if the bucket has a public policy. Enabling this setting doesn't affect previously stored bucket policies, except that public and cross-account access within any public bucket policy, including non-public delegation to specific accounts, is blocked.

Policy object

The Access Point Policy you want to apply to this access point.

Definitions

VpcConfiguration object

The Virtual Private Cloud (VPC) configuration for a bucket access point.

VpcId string | Aws_CF_FunctionString

If this field is specified, this access point will only allow connections from the specified VPC ID.

PublicAccessBlockConfiguration object
BlockPublicAcls boolean

Specifies whether Amazon S3 should block public access control lists (ACLs) for buckets in this account. Setting this element to TRUE causes the following behavior:

  • PUT Bucket acl and PUT Object acl calls fail if the specified ACL is public.
  • PUT Object calls fail if the request includes a public ACL. . - PUT Bucket calls fail if the request includes a public ACL. Enabling this setting doesn't affect existing policies or ACLs.
IgnorePublicAcls boolean

Specifies whether Amazon S3 should ignore public ACLs for buckets in this account. Setting this element to TRUE causes Amazon S3 to ignore all public ACLs on buckets in this account and any objects that they contain. Enabling this setting doesn't affect the persistence of any existing ACLs and doesn't prevent new public ACLs from being set.

BlockPublicPolicy boolean

Specifies whether Amazon S3 should block public bucket policies for buckets in this account. Setting this element to TRUE causes Amazon S3 to reject calls to PUT Bucket policy if the specified bucket policy allows public access. Enabling this setting doesn't affect existing bucket policies.

RestrictPublicBuckets boolean

Specifies whether Amazon S3 should restrict public bucket policies for this bucket. Setting this element to TRUE restricts access to this bucket to only AWS services and authorized users within this account if the bucket has a public policy. Enabling this setting doesn't affect previously stored bucket policies, except that public and cross-account access within any public bucket policy, including non-public delegation to specific accounts, is blocked.

Arn string | Aws_CF_FunctionString

the Amazon Resource Name (ARN) of the specified accesspoint.