Amazon CloudFront now supports Origin Access Control (OAC) for Amazon S3 Multi-Region Access Points

Amazon CloudFront ยท 2026-08-20

Actions

Rate this issue

Technical Details

Regions all except CloudFront China region
Cost Impact Neutral
IaC Impact High

What This Means

For DevOps Teams

Configure CloudFront distributions to use the new OAC for S3 MRAP to leverage native SigV4a signing, eliminating the need for custom Lambda@Edge functions and reducing operational toil.

For Platform Teams

Adopt CloudFront's OAC for S3 MRAP to simplify architecture by natively securing S3 origins, reducing toil, and improving performance for globally distributed content.

For Executives

Evaluate integrating CloudFront's OAC for S3 MRAP to enhance security and performance, leading to faster cache-miss fills and restricted access without custom header computation, ultimately improving global user experience and resilience.

Source

View original AWS announcement โ†’

Related Amazon CloudFront Updates

Weekly AWS Digest in Your Inbox

No spam, no headlines. Just a weekly summary of the 3โ€“7 AWS changes that matter for DevOps and Platform teams.

๐Ÿ“ง Exactly 1 email per week โ€ข Every Tuesday โ€ข Unsubscribe anytime

Today: AWS only. Coming next: Azure and other major clouds.