ECS:如何创建存储区策略以仅允许一个 IP 地址访问特定存储区。

Summary: 本知识库文章介绍如何创建存储区策略,以仅允许一个 IP 地址访问特定存储区。

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Instructions

1.连接到用户界面,位于 manage>Buckets>Edit>Edit Policy

连接到 管理>存储区编辑>编辑策略下的>用户界面。

 

2.根据需要更改存储桶名称和 IP 地址后,添加以下存储桶策略。

{
  "Version": "2012-10-17",
  "Id": "null",
  "Statement": [
    {
      "Condition": {
        "NotIpAddress": {
          "aws:SourceIp": [
            "x.x.x.x"
          ]
        }
      },
      "Action": "s3:*",
      "Resource": "Islam-Bucketpolicy-test",
      "Effect": "Deny",
      "Principal": "*"
    }
  ]
}

3.测试存储区策略。如果尝试使用另一个 IP 地址,则应该会出现 403 错误。

Affected Products

ECS, ObjectScale
Article Properties
Article Number: 000311063
Article Type: How To
Last Modified: 26 Sept 2025
Version:  2
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.