Any downsides for using this ARN in a bucket policy when want to allow/deny specific action on the bucket and all items in it? Understand that on a group policy this would apply to all buckets, but for a bucket policy that is only supposed to apply to the bucket itself.
"Resource": "arn:aws:s3:::*"