Sitemap
Cloud Security

Cybersecurity Attacks and Defenses in a Cloudy World

Member-only story

Using Q To Deploy CloudFront and a TLS Certificate — Yet Another Problem With the ACM Deployment Process

7 min readJun 11, 2025

--

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

⚙️ A series on Security Automation. The Code.

🔒 Related Stories: Cybersecurity | Penetration Tests | AI

💻 Free Content on Jobs in Cybersecurity | ✉️ Sign up for the Email List

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

I have some code that will deploy a website hosted in an S3 bucket, fronted by CloudFront with a TLS certificate. You can use it to deploy any website.

Initially, I only tested the basic domain option where only the primary domain is used to visit the website as I wrote about in the last post.

When I tried to add a website with a www record or a wildcard it failed, so fixing that in this post and a few other things.

I figured out the problem with some help from Q, which told me to go look at the certificate details. So heading over to ACM the problem is now obvious:

--

--

Cloud Security
Cloud Security

Published in Cloud Security

Cybersecurity Attacks and Defenses in a Cloudy World

Teri Radichel
Teri Radichel

Written by Teri Radichel

CEO 2nd Sight Lab | Pentesting | Research | AWS Security Hero | Masters of Infosec & Masters Software Engineering | GSE | IANS | SANS Difference Makers Award