本篇文章为大家展示了如何更换S3用户access-key和secret-key,内容简明扼要并且容易理解,绝对能使你眼前一亮,通过这篇文章的详细介绍希望你能有所收获。
部分场景下需要变更用户的AK和SK,特别是发生泄漏或者人员变更的情况,可以用两条命令解决这个问题。
使用radosgw-admin命令更新key
root@user:/home/demo# radosgw-admin key create --uid=s3user --gen-access-key #新建一组key
{
"user_id": "s3user",
"display_name": "s3user",
"email": "",
"suspended": 0,
"max_buckets": 1000,
"auid": 0,
"subusers": [],
"keys": [
{
"user": "s3user",
"access_key": "old-access-key",
"secret_key": "old-secret-key"
},
{
"user": "s3user",
"access_key": "new-access-key",
"secret_key": "new-secret-key"
}
],
"swift_keys": [],
"caps": [],
"op_mask": "read, write, delete",
"default_placement": "",
"placement_tags": [],
"bucket_quota": {
"enabled": false,
"max_size_kb": -1,
"max_objects": -1
},
"user_quota": {
"enabled": false,
"max_size_kb": -1,
"max_objects": -1
},
"temp_url_keys": []
}
root@user:/home/demo# radosgw-admin key rm --uid=s3user --access-key=old-access-key #删除旧key
{
"user_id": "s3user",
"display_name": "s3user",
"email": "",
"suspended": 0,
"max_buckets": 1000,
"auid": 0,
"subusers": [],
"keys": [
{
"user": "s3user",
"access_key": "new-access-key",
"secret_key": "new-secret-key"
}
],
"swift_keys": [],
"caps": [],
"op_mask": "read, write, delete",
"default_placement": "",
"placement_tags": [],
"bucket_quota": {
"enabled": false,
"max_size_kb": -1,
"max_objects": -1
},
"user_quota": {
"enabled": false,
"max_size_kb": -1,
"max_objects": -1
},
"temp_url_keys": []
}
更新数据库对应的用户记录
更新业务层面的数据库相关记录(如果有的话)
上述内容就是如何更换S3用户access-key和secret-key,你们学到知识或技能了吗?如果还想学到更多技能或者丰富自己的知识储备,欢迎关注天达云行业资讯频道。