How We Secured Our AWS S3 URLs — Strategy & Implementation

Jobin Abraham
Nov 14, 2018 · 5 min read
  1. The second approach uses S3 pre-signed URLs to serve the client with S3 URLs that are short-lived while keeping the buckets private. Once the URL is generated, it can be reused as many numbers of times as we want until the duration of the signed URL expires.
  1. Check the user permissions on the requested resource
  2. If both 1 and 2 are satisfied, generate a signed s3 url and return to the client.

Building Aasaanjobs

Stories from tech & design team at Aasaanjobs | www.aasaanjobs.com

Jobin Abraham

Written by

Building Aasaanjobs

Stories from tech & design team at Aasaanjobs | www.aasaanjobs.com