AWS - Identity and Access Management
You want to allow a user to read objects from a specific S3 bucket but deny access to any objects with the prefix
private/. Which policy logic correctly implements this?