Question 227:
A Solutions Architect has been asked to design a solution that will deliver digital content to users through Amazon CloudFront. You have set up an Amazon S3 bucket as the origin and by default, CloudFront never exposes Amazon S3 URLs. The contents should only be accessed through the CloudFront distribution. How can this be achieved?
Answer options:
A.Store the digital contents in the S3 bucket and create signed URLs to access S3 through CloudFront. B.Create OAI in CloudFront. Use the S3 bucket policy to ensure that only the OAI can access the files in the Amazon S3 bucket. C.Store the digital contents as private objects in the S3 buckets and use the S3 ACL to ensure that only the CloudFront distribution ARN can access the bucket. D.Store the digital contents in the S3 bucket and configure signed cookies for users to access contents through CloudFront.