首页 文章

Sonata Amazon S3 - 无法写出关键内容

提问于
浏览
2

我确实安装了Sonata Media的dev-master版本(所有要求),它运行正常 . 现在我正在尝试使用amazon s3文件服务上传我的图像和文件 . (我在localhost上使用wamp)

这是我的配置:

#...
sonata_media:
    default_context: default
    db_driver: doctrine_orm # or doctrine_mongodb, doctrine_phpcr it is mandatory to choose one here
    default_context: default # you need to set a context
    contexts:
        default:  # the default context is mandatory
            providers:
                - sonata.media.provider.dailymotion
                - sonata.media.provider.youtube
                - sonata.media.provider.image
                - sonata.media.provider.file

            formats:
                small: { width: 100 , quality: 70}
                big:   { width: 500 , quality: 70}

    cdn:
        server:
            path: http://mybucketname.s3-website-us-east-1.amazonaws.com
    providers:
        image:
            filesystem: sonata.media.filesystem.s3
    filesystem:
        s3:
            bucket: #MyBundlename
            accessKey: #MyAccessKey
            secretKey: #Mysecret key
            region: s3-website-us-east-1.amazonaws.com
            storage: standard
            acl: public #I tried private too

所以对于我的密钥,我尝试使用列表上传/删除权限创建的所有者密钥和用户密钥

这也是我的Bucket Policy

{
    "Version": "2012-10-17",
    "Statement": [
        {
            "Sid": "AddPerm",
            "Effect": "Allow",
            "Principal": "*",
            "Action": "s3:GetObject",
            "Resource": "arn:aws:s3:::mybcucketname/*"
        }
    ]
}

这是我尝试使用奏鸣曲媒体包上传图像时得到的错误:

Could not write the "default/0001/01/634f09dfda5705a8310c084a92f686ec33449960.png" key content.

这也是我的composer.json文件:

"php": ">=5.3.3",
    "symfony/symfony": "2.6.*",
    "doctrine/orm": "~2.2,>=2.2.3,<2.5",
    "doctrine/dbal": "<2.5",
    "doctrine/doctrine-bundle": "~1.2",
    "twig/extensions": "~1.0",
    "symfony/assetic-bundle": "~2.3",
    "symfony/swiftmailer-bundle": "~2.3",
    "symfony/monolog-bundle": "~2.4",
    "sensio/distribution-bundle": "~3.0,>=3.0.12",
    "sensio/framework-extra-bundle": "~3.0,>=3.0.2",
    "incenteev/composer-parameter-handler": "~2.0",
    "sonata-project/core-bundle": "2.3.*@dev",
    "sonata-project/intl-bundle": "2.2.*@dev",
    "sonata-project/admin-bundle": "2.4.*@dev",
    "sonata-project/doctrine-orm-admin-bundle": "2.4.*@dev",
    "sonata-project/datagrid-bundle": "2.2.*@dev",
    "sonata-project/classification-bundle": "dev-master",
    "jms/serializer-bundle": "~0.13",
    "sonata-project/easy-extends-bundle": "2.1.*@dev",
    "sonata-project/media-bundle": "2.4.*@dev",
    "aws/aws-sdk-php": "2.*"

这是亚马逊s3原木

" 403 AccessDenied 231 149653 16 - "

(日志的其余部分是正确的,存储桶名称和用户)感谢您的帮助 . 勒芒 .

1 回答

  • 0

    我不知道我做了什么是最好的解决方案并且是安全的但是: - 我编辑了桶策略:

    旧的:

    {
    "Version": "2012-10-17",
    "Statement": [
        {
            "Sid": "AddPerm",
            "Effect": "Allow",
            "Principal": "*",
            "Action": "s3:GetObject",
            "Resource": "arn:aws:s3:::mybucket/*"
        }
    ]
    

    }

    新的一个 :

    {
        "Version": "2012-10-17",
        "Statement": [
            {
                "Sid": "AddPerm",
                "Effect": "Allow",
                "Principal": "*",
                "Action": "s3:GetObject",
                "Resource": "arn:aws:s3:::mybucket/*"
            },
            {
                "Sid": "AddCannedAcl",
                "Effect": "Allow",
                "Principal": {
                    "AWS": [
                        "arn:aws:iam::XXXXXXXXXXXX:user/myuser"
                    ]
                },
                "Action": [
                    "s3:PutObject",
                    "s3:PutObjectAcl"
                ],
                "Resource": [
                    "arn:aws:s3:::mybucket/*"
                ],
                "Condition": {
                    "StringEquals": {
                        "s3:x-amz-acl": [
                            "public-read"
                        ]
                    }
                }
            }
        ]
    }
    

    其中arn:aws:iam :: XXXXXXXXXXXX:user / myuser是您使用列表上传/删除权限创建的用户 .

相关问题