Objects are being replicated from a production S3 bucket in one account to a destination bucket in a nonproduction account using cross-account, cross-Region replication. When trying to access the replicated objects in the destination bucket, the administrator gets Access Denied. What change will allow access to the replicated objects?
Choose an answer
Tap an option to check your answer.
Correct answer: Adjust the replication configuration so that the replicated objects’ ownership is assigned to the owner of the destination S3 bucket..
Why this is the answer
When objects are replicated across accounts, by default, the replicated objects in the destination bucket are still owned by the source account. This means the destination account's users or roles will receive "Access Denied" errors when trying to access these objects, even if they have permissions on the destination bucket itself. To resolve this, the replication configuration must be set to change the ownership of the replicated objects to the destination bucket owner. This is typically done by enabling S3 Object Ownership (Bucket Owner Preferred or Object Writer) on the destination bucket and configuring the replication rule to transfer ownership. The other options are incorrect because: Replication rule coverage (Option B) does not affect access permissions once an object is replicated. S3 RTC (Option C) ensures timely replication but doesn't address access issues for already replicated objects. Storage class consistency (Option D) is important for replication but doesn't cause "Access Denied" errors.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed