A user needs to inspect all S3 buckets' access control lists (ACLs) and bucket policies from the S3 console. Which AWS feature provides that capability?
Choose an answer
Tap an option to check your answer.
Correct answer: Access Analyzer for S3.
Why this is the answer
Access Analyzer for S3 is the correct choice because it helps identify S3 buckets that are accessible from outside your AWS account, including through ACLs and bucket policies. It specifically analyzes access configurations to help you review and refine public and cross-account access. S3 Multi-Region Access Points provide a single endpoint for accessing data across multiple S3 buckets in different regions, focusing on data access simplification, not security analysis. S3 Storage Lens is an analytics feature that provides insights into S object storage usage and activity, but it doesn't specifically analyze access policies for external access. AWS IAM Identity Center (AWS Single Sign-On) manages user access to AWS accounts and applications, which is about identity management, not S3 bucket policy analysis.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed