Git Product home page Git Product logo

aws-auth-proxy's Introduction

#aws-auth-proxy

Docker Repository on Quay

##Installation

pre-reqs:

#requires go1.5
export GO15VENDOREXPERIMENT=1

mkdir -p $GOPATH/src/github.com/coreos
cd $GOPATH/src/github.com/coreos
git clone https://github.com/coreos/aws-auth-proxy
cd aws-auth-proxy
glide install
go build github.com/coreos/aws-auth-proxy

##Example

# aws elasticsearch example
./aws-auth-proxy \
-access-key=xxx \
-secret-key=xxxx \
-service-name=es \
-region-name=<your-aws-region> \
-upstream-host=<your-aws-elastic-search-endpoint> \
-upstream-scheme=https \
-listen-address=":9200"

Your proxied elasticsearch endpoint is now here: http://localhost:9200

No more securing elastic search endpoints with IP addresses!

aws-auth-proxy's People

Contributors

colhom avatar ericchiang avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

aws-auth-proxy's Issues

support temp keys

i found this tool while searching for a proxy to sign aws api requests coming from applications which do not support temporary aws access keys, i.e. not access key + secret key pair, but access + secret + session key triplet.

i see it already uses some module which looks like aws go sdk.
would it be feasible to support --profile option and utizile aws sdk built-in logic to get the appropriative key pair / key triplet from default credentials file (aka. shared credentials file) according to the given profile name?

or just support --session-token for let aws sign with the temporary key triplet?

thanks for consideration.

Doesn't work for DELETE requests

It can read indices, but for some reason it can not delete them:

2016-02-12 09:55:43,723 ERROR Got a 403 response from Elasticsearch. Error message: {"message":"The request signature we calculated does not match the signature you provided. Check your AWS Secret Access Key and signing method. Consult the service documentation for details.\n\nThe Canonical String for this request should have been\n'DELETE\n/logstash-2016.02.06%2Clogstash-2016.02.07%2Clogstash-2016.02.08%2Clogstash-2016.02.09%2Clogstash-2016.02.10%2Clogstash-2016.02.11\nmaster_timeout=30000\nhost:search-xontom-staging-xs2f3kyrtp43ivx4fr26ke3rgi.eu-west-1.es.amazonaws.com\nx-amz-date:20160212T095543Z\n\nhost;x-amz-date\ne3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855'\n\nThe String-to-Sign should have been\n'AWS4-HMAC-SHA256\n20160212T095543Z\n20160212/eu-west-1/es/aws4_request\ncd0341526ff24d686ea0bc93e0fd66d985e9e861f6aa96551ad7b2ab02758bd5'\n"}

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.