FrostFS S3 Protocol Gateway
 
 
 
Go to file
Alexey Vanin 6bf6a3b1a3
/ DCO (pull_request) Successful in 4m8s Details
/ Vulncheck (pull_request) Successful in 4m10s Details
/ Builds (1.20) (pull_request) Successful in 5m33s Details
/ Builds (1.21) (pull_request) Successful in 5m24s Details
/ Lint (pull_request) Successful in 8m32s Details
/ Tests (1.20) (pull_request) Successful in 5m9s Details
/ Tests (1.21) (pull_request) Successful in 4m52s Details
[#362] Check user and groups during policy check
Signed-off-by: Alex Vanin <a.vanin@yadro.com>
2024-05-08 15:25:14 +03:00
.docker [#203] Add go1.21 to CI 2023-08-31 15:26:07 +03:00
.forgejo/workflows [#297] .forgejo: Check only PR commits in dco-go 2024-01-26 15:11:52 +00:00
.github [#2] Keep issue templates in .github 2023-06-07 15:35:57 +00:00
api [#362] Check user and groups during policy check 2024-05-08 15:25:14 +03:00
authmate [#367] Add check of AccessBox attributes 2024-04-19 06:25:26 +00:00
cmd [#380] Add test for credentials versioning 2024-05-03 07:24:13 +00:00
config [#371] Add custom Source IP header configuration 2024-04-22 07:42:45 +00:00
creds [#380] creds: Increase test coverage 2024-05-03 07:24:13 +00:00
debian [#68] Fix pre-commit issues 2023-03-24 16:22:06 +03:00
docs [#371] Add custom Source IP header configuration 2024-04-22 07:42:45 +00:00
internal [#362] Check user and groups during policy check 2024-05-08 15:25:14 +03:00
metrics [#321] Use correct owner id in billing metrics 2024-02-28 14:52:44 +03:00
pkg/service [#362] Expand control service 2024-05-08 15:15:49 +03:00
.dockerignore [#471] Add docker/* target in Makefile 2022-06-16 11:12:42 +03:00
.gitignore [#133] Drop sync-tree 2023-06-09 09:34:36 +03:00
.gitlint [#65] Enable pre-commit 2023-03-24 07:28:04 +00:00
.golangci.yml [#195] Add log constants linter 2023-08-28 12:58:44 +03:00
.pre-commit-config.yaml [#195] Add log constants linter 2023-08-28 12:58:44 +03:00
CHANGELOG.md [#379] Add Iana CharsetReader for Oracle integration 2024-04-25 17:44:38 +03:00
CONTRIBUTING.md [#2] Update CONTRIBUTING 2023-06-07 15:35:57 +00:00
CREDITS.md [#68] Fix pre-commit issues 2023-03-24 16:22:06 +03:00
LICENSE [#264] Change NeoFS S3 Gateway license to AGPLv3 2021-09-20 10:38:28 +03:00
Makefile [#308] Update linter versions 2024-02-16 18:24:53 +03:00
README.md [#2] Keep issue templates in .github 2023-06-07 15:35:57 +00:00
VERSION [#296] Port v0.28.1 release changelog 2024-01-24 17:50:24 +03:00
go.mod [#379] Add Iana CharsetReader for Oracle integration 2024-04-25 17:44:38 +03:00
go.sum [#367] Add check of AccessBox attributes 2024-04-19 06:25:26 +00:00
help.mk [#725] Fix help 2022-10-17 19:16:05 +03:00
updateTestsResult.sh [#68] Fix pre-commit issues 2023-03-24 16:22:06 +03:00

README.md

FrostFS logo

FrostFS is a decentralized distributed object storage integrated with the NEO Blockchain.


Report Release License

FrostFS S3 Gateway

FrostFS S3 gateway provides API compatible with Amazon S3 cloud storage service.

Installation

go get -u git.frostfs.info/TrueCloudLab/frostfs-s3-gw

Or you can call make to build it from the cloned repository (the binary will end up in bin/frostfs-s3-gw with authmate helper in bin/frostfs-s3-authmate). To build binaries in clean docker environment, call make docker/all.

Other notable make targets:

dep          Check and ensure dependencies
image        Build clean docker image
dirty-image  Build dirty docker image with host-built binaries
format       Run all code formatters
lint         Run linters
version      Show current version

Or you can also use a Docker image provided for released (and occasionally unreleased) versions of gateway (:latest points to the latest stable release).

Execution

Minimalistic S3 gateway setup needs:

  • FrostFS node(s) address (S3 gateway itself is not a FrostFS node) Passed via -p parameter or via S3_GW_PEERS_<N>_ADDRESS and S3_GW_PEERS_<N>_WEIGHT environment variables (gateway supports multiple FrostFS nodes with weighted load balancing).
  • a wallet used to fetch key and communicate with FrostFS nodes Passed via --wallet parameter or S3_GW_WALLET_PATH environment variable.

These two commands are functionally equivalent, they run the gate with one backend node, some keys and otherwise default settings:

$ frostfs-s3-gw -p 192.168.130.72:8080 --wallet wallet.json

$ S3_GW_PEERS_0_ADDRESS=192.168.130.72:8080 \
  S3_GW_WALLET=wallet.json \
  frostfs-s3-gw

It's also possible to specify uri scheme (grpc or grpcs) when using -p or environment variables:

$ frostfs-s3-gw -p grpc://192.168.130.72:8080 --wallet wallet.json

$ S3_GW_PEERS_0_ADDRESS=grpcs://192.168.130.72:8080 \
  S3_GW_WALLET=wallet.json \
  frostfs-s3-gw

Domains

By default, s3-gw enable only path-style access. To be able to use both: virtual-hosted-style and path-style access you must configure listen_domains:

$ frostfs-s3-gw -p 192.168.130.72:8080 --wallet wallet.json --listen_domains your.first.domain --listen_domains your.second.domain

So now you can use (e.g. HeadBucket. Make sure DNS is properly configured):

$ curl --head http://bucket-name.your.first.domain:8080
HTTP/1.1 200 OK
...

or

$ curl --head http://your.second.domain:8080/bucket-name
HTTP/1.1 200 OK
...

Also, you can configure domains using .env variables or yaml file.

Documentation

Credits

Please see CREDITS for details.