What is the SIMPLEST approach the SysOps administrator can take to ensure S3 buckets in those accounts can never be deleted?

1 Comment

  1. Beverly
    Author

    I evaluate that the answer is:
    Use service control policies to deny the s3:DeleteBucket action on all buckets in production accounts.

Leave a Reply

Your email address will not be published. Required fields are marked *

seventeen − 4 =