我在亞馬遜s3上創建了一個存儲桶,並添加了存儲桶策略,爲另一個用戶帳戶提供上傳文件的權限。我添加了以下存儲桶策略。無法下載由共享帳戶s3存儲桶上傳的文件
但是,現在我自己無法下載共享者上傳的文件。我想我沒有給他們授予權利。我應該如何繼續下載文件。他們可以授予他們上傳文件的權限嗎?
{
"Version": "2008-10-17",
"Id": "Policyxxxxxxxxxxxx",
"Statement": [
{
"Sid": "Stmtxxxxxxxxxxxxx",
"Effect": "Allow",
"Principal": {
"AWS": "arn:aws:iam::<account_number>:root"
},
"Action": [
"s3:AbortMultipartUpload",
"s3:GetObject",
"s3:ListMultipartUploadParts",
"s3:PutObject"
],
"Resource": "arn:aws:s3:::<bucket_name>/*"
},
{
"Sid": "Stmtxxxxxxxxxxx",
"Effect": "Allow",
"Principal": {
"AWS": "arn:aws:iam::<account_number>:root"
},
"Action": [
"s3:PutBucketLogging",
"s3:PutBucketNotification",
"s3:ListBucket"
],
"Resource": "arn:aws:s3:::<bucket_name>"
}
]
}
設置的主體不是IAM用戶,而是另一個aws帳戶。它是客戶端,我無權訪問該帳戶。 – cnvzmxcvmcx