What is the MOST operationally efficient solution that meets these requirements?

1 Comment

  1. Gary
    Author

    In my experience, the answer is:
    Create an IAM role in the production account. Establish a trust relationship between the production account and the development account. Specify a permissions policy in the role to allow trusted users to put objects in the S3 bucket. Grant sts:AssumeRole permissions to the developers’ IAM group for the role.

Leave a Reply

Your email address will not be published. Required fields are marked *

10 − 6 =