The S3 bucket will have public read right. Have you consider disabling that and just give CloudFront principal read access and listing for the bucket? Also S3 does not need static web hosting (index.html and error.html definitions) for CloudFront origin at all.
The S3 bucket will have public read right. Have you consider disabling that and just give CloudFront principal read access and listing for the bucket? Also S3 does not need static web hosting (index.html and error.html definitions) for CloudFront origin at all.