Enforcing S3 Public Access Blocking with AWS Config

Enforcing S3 Public Access Blocking with AWS Config
Enforcing S3 Public Access Blocking with AWS Config

CLOUD LABS



Enforcing S3 Public Access Blocking with AWS Config

In this lab, you’ll enforce S3 public access blocking using AWS Config and automatic remediation with AWS Systems Manager. This challenge-based exercise is designed for hands-on practice; step-by-step instructions will not be provided.

1 Task

intermediate

1hr

Certificate of Completion

Desktop OnlyDevice is not compatible.
No Setup Required
Amazon Web Services

Technologies
Config
Systems Manager
S3 logoS3
Cloud Lab Overview

Amazon S3 public access settings are critical for preventing inadvertent data exposure. AWS Config enables continuous monitoring of bucket compliance, while AWS Systems Manager Automation can automatically remediate any non-compliant resources.

In this Challenge Cloud Lab, you’ll be tested on your ability to configure AWS Config to monitor S3 buckets, enforce public access blocking, and implement automatic remediation via the runbook.

A high-level architecture diagram for this Challenge Cloud Lab is given below:

Enforcing S3 public access block access using AWS Config and AWS Systems Manager
Enforcing S3 public access block access using AWS Config and AWS Systems Manager

AWS services you’ll be tested on:

  • Amazon S3

  • AWS Config

  • AWS Systems Manager Automation

Cloud Lab Tasks
Implementing Continuous S3 Public Access Blocking
Labs Rules Apply
Stay within resource usage requirements.
Do not engage in cryptocurrency mining.
Do not engage in or encourage activity that is illegal.
Hear what others have to say
Join 1.4 million developers working at companies like