我确实安装了Sonata Media的开发主版本(+所有要求),它运行良好。现在我正在尝试使用amazons3文件服务来上传我的图像和文件。(我在本地主机上使用wamp)
这是我的配置:
#...
sonata_media:
default_context: default
db_driver: doctrine_orm # or doctrine_mongodb, doctrine_phpcr it is mandatory to choose one here
default_context: default # you need to set a context
contexts:
default: # the default context is mandatory
providers:
- sonata.media.provider.dailymotion
- sonata.media.provider.youtube
- sonata.media.provider.image
- sonata.media.provider.file
formats:
small: { width: 100 , quality: 70}
big: { width: 500 , quality: 70}
cdn:
server:
path: http://mybucketname.s3-website-us-east-1.amazonaws.com
providers:
image:
filesystem: sonata.media.filesystem.s3
filesystem:
s3:
bucket: #MyBundlename
accessKey: #MyAccessKey
secretKey: #Mysecret key
region: s3-website-us-east-1.amazonaws.com
storage: standard
acl: public #I tried private too
所以对于我的密钥,我尝试了所有者密钥和用户密钥,我用列表+上传/删除权限创建了一个
这也是我的Bucket Policy
{
"Version": "2012-10-17",
"Statement": [
{
"Sid": "AddPerm",
"Effect": "Allow",
"Principal": "*",
"Action": "s3:GetObject",
"Resource": "arn:aws:s3:::mybcucketname/*"
}
]
}
这是我在尝试用sonata媒体捆绑包上传图像时遇到的错误:
Could not write the "default/0001/01/634f09dfda5705a8310c084a92f686ec33449960.png" key content.
这也是我的composer.json文件:
"php": ">=5.3.3",
"symfony/symfony": "2.6.*",
"doctrine/orm": "~2.2,>=2.2.3,<2.5",
"doctrine/dbal": "<2.5",
"doctrine/doctrine-bundle": "~1.2",
"twig/extensions": "~1.0",
"symfony/assetic-bundle": "~2.3",
"symfony/swiftmailer-bundle": "~2.3",
"symfony/monolog-bundle": "~2.4",
"sensio/distribution-bundle": "~3.0,>=3.0.12",
"sensio/framework-extra-bundle": "~3.0,>=3.0.2",
"incenteev/composer-parameter-handler": "~2.0",
"sonata-project/core-bundle": "2.3.*@dev",
"sonata-project/intl-bundle": "2.2.*@dev",
"sonata-project/admin-bundle": "2.4.*@dev",
"sonata-project/doctrine-orm-admin-bundle": "2.4.*@dev",
"sonata-project/datagrid-bundle": "2.2.*@dev",
"sonata-project/classification-bundle": "dev-master",
"jms/serializer-bundle": "~0.13",
"sonata-project/easy-extends-bundle": "2.1.*@dev",
"sonata-project/media-bundle": "2.4.*@dev",
"aws/aws-sdk-php": "2.*"
这是亚马逊s3日志
" 403 AccessDenied 231 149653 16 - "
(日志的其余部分是正确的,存储桶名称和用户)感谢您的帮助。Yohan。
我不知道我所做的是否是最好的解决方案,是否安全,但:-我编辑了bucket策略:
旧的:
{
"Version": "2012-10-17",
"Statement": [
{
"Sid": "AddPerm",
"Effect": "Allow",
"Principal": "*",
"Action": "s3:GetObject",
"Resource": "arn:aws:s3:::mybucket/*"
}
]
}
新产品:
{
"Version": "2012-10-17",
"Statement": [
{
"Sid": "AddPerm",
"Effect": "Allow",
"Principal": "*",
"Action": "s3:GetObject",
"Resource": "arn:aws:s3:::mybucket/*"
},
{
"Sid": "AddCannedAcl",
"Effect": "Allow",
"Principal": {
"AWS": [
"arn:aws:iam::XXXXXXXXXXXX:user/myuser"
]
},
"Action": [
"s3:PutObject",
"s3:PutObjectAcl"
],
"Resource": [
"arn:aws:s3:::mybucket/*"
],
"Condition": {
"StringEquals": {
"s3:x-amz-acl": [
"public-read"
]
}
}
}
]
}
其中arn:aws:iam::XXXXXXXXXXXXX:user/myuser是您创建的具有列表上载/删除权限的用户。
我的问题是s3配置中有默认的acl值。
我把它改成:
filesystem:
s3:
directory: 'upload/media'
acl: private #<------ this is what i change
bucket: '%env(resolve:S3_MEDIA_BUCKET_NAME)%'
accessKey: '%env(resolve:S3_MEDIA_ACCESS_KEY)%'
secretKey: '%env(resolve:S3_MEDIA_SECRET_KEY)%'
region: '%env(resolve:S3_MEDIA_REGION)%'
version: '2006-03-01'
sdk_version: 3
希望能有所帮助。