Just a few days ago Amazon S3 team sent an email to many of their customers warning them about the bucket settings with the following subject:
Important Security Notification regarding your Amazon S3 bucket settings
The email was sent to the users with the buckets configured in such as way that allows changing bucket contents by anonymous users causing potential data loss.
This email stirred up a number of discussions such as this one on the Amazon S3 forum and a number of requests for a simple tool to validate the bucket settings and quickly fixed. we have decided to add a simple Security Assessment report to CloudBerry Explorer freeware that will validate the bucket settings, find the buckets configured for anonymous access and offer a quick way to fix it (or in other words disable anonymous access)
To run the report click Security Assessment in the product menu and then Run Now
or select an item in the context menu.
The new tab will open and start analyzing the buckets. Once it is done, you will get a windows with a summary report like the one below:
The buckets with public read access will show up with the exclamation mark icon. Now you can right click the problematic bucket and click Fix to remove anonymous access.
You can also fix the permissions for all buckets at once using the Fix All toolbar button
We hope you like the new feature and keep using CloudBerry S3 Explorer freeware for other S3 and CloudFront related tasks on Windows platform.
+++
Note: this post applies to CloudBerry Explorer 2.9.2 and later.
As always we would be happy to hear your feedback and you are welcome to post a comment.
CloudBerry S3 Explorer is a Windows freeware product that helps managing Amazon S3 storage and CloudFront . You can download it at http://cloudberrylab.com/
CloudBerry S3 Explorer PRO is a Windows program that helps managing Amazon S3 storage and CloudFront . You can download it at http://pro.cloudberrylab.com/ It is priced at $39.99
Like our products? Please help us spread the word about them. Learn here how to do it.
Want to get CloudBerry Explorer PRO for FREE? Make a blog post about us!
10 comments:
Are you planning to add this feature on PRO version?
This is in PRO version too already. Everything that is available in FREE is also available in PRO by default. Thank you for asking!
just checked for an update and it said I was up to date. How do I get this?
We have intentionally not enabled check for updates functionality. You can download the new version free and pro for respective pages on our website. Thanks!
This is a really useful feature! Thanks for adding it. Downloaded the new version this morning and fixed my buckets right up.
It's very useful, yes. Thank you.
One question, though: Is it possible to have public videos, yet restricting access to a particular website so that nobody can access it via other ways?
The thing is, for demo purposes I need to show public videos as well as private videos.
Hi,
Thank you for your question, please check out our blog post on how to prevent content hotlinking
Thanks
Andy
Thanks for creating this tool!
Hi, I'd like to use the security feature that would allow me to "fix" security for all the data in a bucket at once. I share data with partners who sometimes can't (and sometimes can) access the data I upload. If I can usefix the security properties to change security settings to everything in the bucket at once that would be great. Additionally, I would like to know how to set my default upload security settings. I am running Cloudberry Explorer Pro Build 2.9.0.37. When I click the Help menu and Check for updates, a pop up box states that I have the latest version. But I do not have the Security Assessment menu. How can I get it? Thanks!
We have intentionally not enabled the check for updates, but feel free to download the software from our website directly.
Post a Comment