QuestionQ4

Resilient Cloud Solutions

A DevOps engineer configures two Amazon S3 event notifications for an S3 bucket through the S3 console. Both event notifications are invoked when an object PUT action takes place. One event notification invokes an AWS Lambda function when the file suffix is .csv. Another event notification invokes an Amazon Simple Notification Service (Amazon SNS) topic when the file suffix is .xlsx.

The DevOps engineer observes that files with the .csv suffix successfully invoke the Lambda function. However, files with the .xlsx suffix do not invoke the SNS topic.

Which reason explains why the SNS topic is not invoked when .xlsx files are added to the S3 bucket?

Explanation

Amazon S3 must have permission to publish event messages to an Amazon SNS topic. This permission is granted through an IAM resource policy on the destination SNS topic that allows the S3 service principal to perform sns:Publish, typically constrained to the source bucket and account. Lambda and SNS can both receive ObjectCreated:Put notifications, and separate non-overlapping suffix filters can coexist.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!