Grant access to AWS S3 bucket/folder to users without AWS account

Kostas Demiris

I want to make a Video On Demand service using AWS S3 , and I would like to restrict each of my clients to his own bucket/folder (which one schema is best..) . I want a client to have access only to his bucket/folder, but these people are not going to have an AWS account.

I read ,and still reading, about IAM users,roles and policies but I have not found something pointing to what I want to achieve.

Neal Magee

If you know the IP address (or CIDR blocks) of each client, you can then restrict your bucket with a policy.

http://blogs.aws.amazon.com/security/post/TxPOJBY6FE360K/IAM-policies-and-Bucket-Policies-and-ACLs-Oh-My-Controlling-Access-to-S3-Resourc

http://docs.aws.amazon.com/AmazonS3/latest/dev/example-bucket-policies.html

Alternatively, you could just set up IAM accounts for them within your own account, and scope their access accordingly. That would let them use a very limited form of the AWS Console. You can even write your IAM policies so that users automatically have access to something like:

s3://your-bucket/%username%/

이 기사는 인터넷에서 수집됩니다. 재 인쇄 할 때 출처를 알려주십시오.

침해가 발생한 경우 연락 주시기 바랍니다[email protected] 삭제

에서 수정
0

몇 마디 만하겠습니다

0리뷰
로그인참여 후 검토

관련 기사

분류에서Dev

Is it possible to access a public AWS S3 bucket without providing keys?

분류에서Dev

Problem on creating access tokens for IAMUSER via aws educate account

분류에서Dev

AWS S3 Download Link Issues

분류에서Dev

nodejs, multer, aws S3

분류에서Dev

AWS S3 putBucketLifecycleConfiguration overwiting

분류에서Dev

AWS :: S3 :: Errors :: InvalidAccessKeyId

분류에서Dev

Druid not storing to AWS S3

분류에서Dev

Rails AWS assets on Cloudfront & s3

분류에서Dev

AWS S3 Java API

분류에서Dev

AWS S3, CloudFront 및 SSL

분류에서Dev

CORS AWS S3 및 Cloudfront

분류에서Dev

`aws s3 cp` vs`aws s3 sync` 동작 및 비용

분류에서Dev

How to grant sudo access to users abc,def,ghi on user jkl

분류에서Dev

Icacls Grant all users access to a folder including new files?

분류에서Dev

AWS CLI S3 버킷 간 복사?

분류에서Dev

aws s3에 json 파일 저장

분류에서Dev

React Native AWS S3 업로드

분류에서Dev

AWS Lambda S3 액세스 거부

분류에서Dev

HTTPS, AWS ELB, CloudFront 및 S3

분류에서Dev

AWS S3 REST API "RequestTimeTooSkewed"오류

분류에서Dev

Trouble accessing methods in aws/s3 gem

분류에서Dev

AWS S3 Gzip 매우 느림

분류에서Dev

amazon s3 aws url path subdirectories buckets

분류에서Dev

aws s3 php: fails to upload directory using UploadSyncBuilder

분류에서Dev

AWS S3 Gradle 종속성 라인

분류에서Dev

Generate Expiring AWS S3 URL links in Brightscript

분류에서Dev

Android AWS S3 액세스 거부

분류에서Dev

AWS elasticbeanstalk automating deletion of logs published to S3

분류에서Dev

Amazon AWS S3 콘텐츠 헤더