Wildcard AWS ACM cert for *

The cert was created with the following command.

aws --region us-east-1 acm request-certificate --domain-name '*' --validation-method DNS

Static Asset

Static asset is hosted on Amazon S3 bucket The bucket was created with the command

aws --region us-east-1 s3api create-bucket --acl public-read --bucket "" --no-object-lock-enabled-for-bucket
aws --region us-east-1 s3api put-bucket-policy --bucket "" --policy file://policy.json
    "Version": "2012-10-17",
    "Statement": [
            "Action": "s3:GetObject",
            "Effect": "Allow",
            "Resource": "*",
            "Principal": "*"

A cloudfront distribution was created with the command

aws cloudfront create-distribution --distribution-config file://

where is

    "CallerReference": "1583126441638",
    "Aliases": {
        "Quantity": 1,
        "Items": [
    "DefaultRootObject": "index.html",
    "Origins": {
        "Quantity": 1,
        "Items": [
                "Id": "",
                "DomainName": "",
                "OriginPath": "",
                "CustomHeaders": {
                    "Quantity": 0
                "S3OriginConfig": {
                    "OriginAccessIdentity": ""
    "OriginGroups": {
        "Quantity": 0
    "DefaultCacheBehavior": {
        "TargetOriginId": "",
        "ForwardedValues": {
            "QueryString": false,
            "Cookies": {
                "Forward": "none"
            "Headers": {
                "Quantity": 0
            "QueryStringCacheKeys": {
                "Quantity": 0
        "TrustedSigners": {
            "Enabled": false,
            "Quantity": 0
        "ViewerProtocolPolicy": "allow-all",
        "MinTTL": 0,
        "AllowedMethods": {
            "Quantity": 2,
            "Items": [
            "CachedMethods": {
                "Quantity": 2,
                "Items": [
        "SmoothStreaming": false,
        "DefaultTTL": 86400,
        "MaxTTL": 31536000,
        "Compress": true,
        "LambdaFunctionAssociations": {
            "Quantity": 0
        "FieldLevelEncryptionId": ""
    "CacheBehaviors": {
        "Quantity": 0
    "CustomErrorResponses": {
        "Quantity": 0
    "Comment": "",
    "Logging": {
        "Enabled": false,
        "IncludeCookies": false,
        "Bucket": "",
        "Prefix": ""
    "PriceClass": "PriceClass_All",
    "Enabled": true,
    "ViewerCertificate": {
        "ACMCertificateArn": "!!!redacted!!!",
        "SSLSupportMethod": "sni-only",
        "MinimumProtocolVersion": "TLSv1",
        "Certificate": "!!!redacted!!!",
        "CertificateSource": "acm"
    "Restrictions": {
        "GeoRestriction": {
            "RestrictionType": "none",
            "Quantity": 0
    "WebACLId": "",
    "HttpVersion": "http2",
    "IsIPV6Enabled": true