最近更新时间:2021-08-26 19:23:14
用户可以授予IAM子用户访问并读取存储空间example_bucket的权限
{
"Statement":[
{
"Effect":"Allow",
"Action":[
"ks3:ListBuckets"
],
"Resource":"krn:ksc:ks3:::*"
},
{
"Effect":"Allow",
"Action":[
"ks3:ListBucket",
"ks3:GetBucketLocation",
"ks3:GetBucketAcl",
],
"Resource":"krn:ksc:ks3:::example_bucket"},
{
"Effect":"Allow",
"Action":[
"ks3:GetObject",
],
"Resource":"krn:ksc:ks3:::example_bucket/*"
}
]
}
授权SDK工具方式访问只需要授权ks3:ListBucket(列举出存储空间下的文件)权限和ks3:GetObject(下载文件)权限。
{
"Statement":[
{
"Effect":"Allow",
"Action":[
"ks3:ListBucket"
],
"Resource":"krn:ksc:ks3:::example_bucket"
},
{
"Effect":"Allow",
"Action":[
"ks3:GetObject"
],
"Resource":"krn:ksc:ks3:::example_bucket/*"
}
]
}
纯净模式