Home icon

Restrict access to AWS Elemental MediaPackage v2 using origin access control

Networking & Content Delivery Blog



This article explains how to restrict access to AWS Elemental MediaPackage v2 endpoints using origin access control (OAC) when using Amazon CloudFront as the content delivery network (CDN).

Specifically, the article covers:

  • The need for secure communication between CloudFront and MediaPackage v2 to prevent bypassing CloudFront security controls
  • How to create an OAC policy for MediaPackage v2 in the CloudFront console
  • How to configure the CloudFront distribution to use the OAC policy for the MediaPackage v2 origin
  • How to update the MediaPackage v2 endpoint policy to allow access from the CloudFront distribution using the OAC policy
  • Validation steps to confirm that direct access to the MediaPackage v2 endpoint is denied, but access through CloudFront is allowed


Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

Jun 14
2024
Cross-region failover now available in AWS Elemental MediaPackage
Nov 12
2024
Support for AWS Elemental MediaStore ending soon
Feb 6
2025
AWS Elemental MediaTailor
Nov 19
2025
AWS Announces Elemental MediaConnect Router

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.