Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

PowerScale OneFS 9.8.0.0 Web Administration Guide

S3 Permissions

The following is a list of S3 permissions which OneFS supports.

  • AbortMultipartUpload
  • DeleteObject
  • DeleteObjectVersion
  • GetObject
  • GetObjectAcl
  • GetObjectVersion
  • GetObjectVersionAcl
  • ListMultipartUploadParts
  • PutObject
  • PutObjectAcl
  • PutObjectVersionAcl
  • CreateBucket
  • DeleteBucket
  • ListBucket
  • ListBucketVersions
  • ListAllMyBuckets
  • ListBucketMultipartUploads
  • GetBucketAcl
  • PutBucketAcl

Some of these permissions require special handling. The following permissions are handled outside of the bucket, and may be handled in PAPI:

Table 1. S3 PermissionsThis table displays a list of S3 permissions and their effects.
Permissions Effect
ListAllMyBuckets This permission gives an IAM user the ability to list all their buckets. However, it is only applied in user policies, which OneFS does not support. OneFS users are automatically given the ability to list their own buckets without must set this permission. Also, a user with ISI_PRIV_S3 privilege can list buckets using PAPI.
CreateBucket This permission gives the users the ability to create a bucket. This can only be used in S3 user policies. Users are allowed or denied this permission using PAPI bucket configuration.

The following permissions interact with file system ACLs and require extra handling:

Table 2. S3 PermissionsThis table displays a list of S3 permissions and their effects.
Permissions Effect
DeleteObject S3 gives a user permission to delete a particular object.
CreateBucket S3 gives a user permission to create or update a particular object.
ListBucket S3 gives a user permission to list objects in the bucket.

You cannot bypass file system permissions. If a user has the ListBucket permission, but does not have read permission on a directory, then the user cannot list the files in that directory.


Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\