Files
doc-exports/docs/obs/perms-cfg/obs_40_0033.html
zhangyue 6ae4b62d6f OBS PREMISSION DOC
Reviewed-by: Sabelnikov, Dmitriy <dmitriy.sabelnikov@t-systems.com>
Co-authored-by: zhangyue <zhangyue164@huawei.com>
Co-committed-by: zhangyue <zhangyue164@huawei.com>
2025-04-25 08:19:55 +00:00

6.8 KiB

Granting Anonymous Users the Read Permission for Certain Objects

Scenario

Enterprise A stores a large volume of map data in OBS, and offers the data for public query. This enterprise sets a read permission for anonymous users, and provides the data URLs on the Internet. Then all users can read or download the data through the URLs.

Procedure

  1. In the navigation pane of OBS Console, choose Object Storage.
  2. In the bucket list, click the bucket name you want to go to the Objects page.
  3. In the navigation pane, choose Permissions > Bucket Policies.
  4. On the Bucket Policies page, click Create.
  5. Configure a bucket policy.

    Figure 1 Configuring a bucket policy
    Table 1 Parameters for configuring a bucket policy

    Parameter

    Description

    Policy view

    Select Visual Editor or JSON based on your own habits. Visual Editor is used here.

    Policy Name

    Enter a policy name.

    Effect

    Select Allow.

    Principal

    • Select All accounts.

    Resources

    • Select Specified objects.
    • Enter an object name prefix for the resource path.
      NOTE:
      1. You can click Add to specify multiple resource paths.
      2. You can specify a specific object or an object set. * indicates all objects in the bucket.

        For one object, enter object name.

        To specify a set of objects, enter Object name prefix*, *Object name suffix, or *.

    Actions

    • Choose Use a template.
    • Select Object Read-Only.

  6. Confirm and click Create.

Verification

After the permission is set, click the object. Its URL is displayed under Link. Share the URL over the Internet, so that all users can access or download the object through the Internet.