1 Answer
- Newest
- Most votes
- Most comments
0
They all look good to me, one more way would be using MFA delete to protect your data.
You can lock root out of that as well but as root user, you have permissions to delete bucket policies. So, you delete existing one and put a new one back.
Relevant content
- asked 5 years ago
- AWS OFFICIALUpdated 3 months ago