This reference architecture creates an AWS Service Catalog Portfolio called "Service Catalog S3 Reference Architecture" with five associated products. The AWS Service Catalog Product references cloudformation templates for the Amazon S3 buckets which can be launched by end users through Service Catalog. The AWS Service Catalog S3 products create S3 buckets with varying configurations:
- Read-Only bucket with access from anywhere
- Private bucket with access restricted to a source CIDR block
- Private bucket with access requiring multi-factor authentication
- Private bucket with contents encrypted with S3 server side encryption
- Private bucket with a transition ruleset to migrate innactive objects to S3-IA and Glacier.