Amazon CloudFront now supports Origin Access Control (OAC) for Amazon S3 Multi-Region Access Points
Amazon CloudFront ยท 2026-08-20
Actions
Technical Details
| Regions | all except CloudFront China region |
|---|---|
| Cost Impact | Neutral |
| IaC Impact | High |
What This Means
For DevOps Teams
Configure CloudFront distributions to use the new OAC for S3 MRAP to leverage native SigV4a signing, eliminating the need for custom Lambda@Edge functions and reducing operational toil.
For Platform Teams
Adopt CloudFront's OAC for S3 MRAP to simplify architecture by natively securing S3 origins, reducing toil, and improving performance for globally distributed content.
For Executives
Evaluate integrating CloudFront's OAC for S3 MRAP to enhance security and performance, leading to faster cache-miss fills and restricted access without custom header computation, ultimately improving global user experience and resilience.