Which solution should the Solutions Architect use to meet the security requirements?

1 Comment

  1. Sophia
    Author

    I design that the answer is:
    In the build account, create a new IAM role, which can be assumed by Amazon EC2 only. Attach the role to the EC2 instance running the continuous integration process. Create an IAM policy to allow s3: PutObject calls on the S3 bucket in the web account. In the web account, create an S3 bucket policy attached to the S3 bucket that allows the newly created IAM role to use s3:PutObject calls.

Leave a Reply

Your email address will not be published. Required fields are marked *

19 + 20 =