You can grant access to Amazon S3 locations using identity-based policies, bucket resource policies, or both. Whenever you use IAM policies, make sure that you follow IAM best practices. For more information, see Security best practices in IAM in the IAM User Guide.

For detailed information and examples about how to grant Amazon S3 access, see the following resources:


Athena does not support restricting or allowing access to Amazon S3 resources based on the aws:SourceIp condition key.