In addition to the required bucket policies, Amazon S3 uses access control lists (ACLs)
to manage access to the log files created by a flow log. By default, the bucket
owner has FULL_CONTROL
permissions on each log file. The log delivery
owner, if different from the bucket owner, has no permissions. The log delivery
account has READ
and WRITE
permissions. For more
information, see Access control list
(ACL) overview in the Amazon S3 User Guide.
Did this page help you? - Yes
Thanks for letting us know we're doing a good job!
If you've got a moment, please tell us what we did right so we can do more of it.
Did this page help you? - No
Thanks for letting us know this page needs work. We're sorry we let you down.
If you've got a moment, please tell us how we can make the documentation better.
Previous topic:
Required key policy for use with SSE-KMSNeed help?
PrivacySite termsCookie preferences
© 2025, Amazon Web Services, Inc. or its affiliates. All rights reserved.