




















Assume we have
Assume the Cloudfront has Original associated with the bucket, let's create signed URL for the file for restricted access.
Create private key firstly.
openssl genrsa -out private_key.pem 2048
Extract public key from private key.
openssl rsa -pubout -in private_key.pem -out public_key.pem
Create key group at CloudFront according here, assume the public key ID is test-public-id.
Do not mess up with the Policy CloudFront at panel, the Policy here means the content of signed URL.
Create a JSON text file as below and save it to /tmp/test-policy.txt
{ "Statement":[ { "Resource":"https://test-cdn.cloudfront.net/test-file.jpg", "Condition":{ "DateLessThan":{ "AWS:EpochTime":1649815417 } } } ] }
Use one line command to generate signed signature for the URL.
cat /tmp/test-policy.log | tr -d "\n" | tr -d " \t\n\r" | openssl sha1 -sign private_key.pem | openssl base64 -A | tr -- '+=/' '-_~'
It would print text test-signature at console which is the signature part of final URL.
The URL would be
https://test-cdn.cloudfront.net/test-file.jpg?Expires=1649815417&Signature={test-signature}&Key-Pair-Id={test-public-id}
Done.
posted on 2022-04-12 11:07 Bo Schwarzstein 阅读(416) 评论() 收藏 举报
此内容由惯性聚合(RSS阅读器)自动聚合整理,仅供阅读参考。 原文来自 — 版权归原作者所有。