bm anonymous set

Syntax

The bm anonymous set command sets anonymous (i.e. unauthenticated or public) access policies for a bucket.

Buckets with anonymous policies allow clients to access the bucket contents and perform actions consistent with the specified policy without authentication.

To set anonymous bucket policies using an IAM JSON policy, use the bm anonymous set-json command.

The following command sets anonymous access policies for several buckets on the mybuckit Buckit deployment:

bm anonymous set upload mybuckit/uploads
bm anonymous set download mybuckit/downloads
bm anonymous set public mybuckit/public

Applications can perform the following operations without authentication:

  • PUT objects to mybuckit/uploads and mybuckit/public.

  • GET objects from mybuckit/downloads and mybuckit/public.

The command has the following syntax:

bm [GLOBALFLAGS] policy set PERMISSION ALIAS
  • Brackets [] indicate optional parameters.

  • Parameters sharing a line are mutually dependent.

  • Parameters separated using the pipe | operator are mutually exclusive.

Copy the example to a text editor and modify as-needed before running the command in the terminal/shell.

Parameters

PERMISSION

Required Name of the policy to assign to the specified ALIAS. Specify one of the following values:

  • none - Disable anonymous access to the ALIAS.

  • download - Enable download-only access to the ALIAS.

  • upload - Enable upload-only access to the ALIAS.

  • public - Enable download and upload access to the ALIAS.

ALIAS

Required The full path to the bucket or bucket prefix to which the command applies the specified PERMISSION.

Specify the alias of the Buckit or other S3-compatible service and the full path to the bucket or bucket prefix. For example:

bm anonymous set public play/mybucket

Specify a bucket prefix to set the policy on only that prefix. For example, this command sets distinct anonymous bucket policies on the mybucket/downloads and mybucket/uploads prefixes:

bm anonymous set download play/mybucket/downloads
bm anonymous set upload play/mybucket/uploads

Global Flags

This command supports any of the global flags.

Examples

Set Anonymous Policy for Bucket

Use bm anonymous set to set the anonymous policy for a bucket:

bm anonymous set POLICY ALIAS/PATH
  • Replace POLICY with a supported permission.

  • Replace ALIAS with the alias of a configured S3-compatible host.

  • Replace PATH with the destination bucket.

Behavior

S3 Compatibility

The bm commandline tool is built for compatibility with the AWS S3 API and is tested with Buckit and AWS S3 for expected functionality and behavior.

Buckit provides no guarantees for other S3-compatible services, as their S3 API implementation is unknown and therefore unsupported. While bm commands may work as documented, any such usage is at your own risk.