使用AWS开发工具包Node.js的自定义S3服务器的自签名证书错误

时间:2018-06-29 05:18:17

标签: node.js ssl amazon-s3 aws-sdk boto3

我正在尝试连接到自定义S3服务器(不是基于AWS的服务器)并创建存储桶。

在Python中使用以下代码有效:

session = boto3.session.Session()
s3res = session.resource(service_name='s3',
  use_ssl=True,
  verify=False,
  aws_access_key_id='xxx',
  aws_secret_access_key='xxx',
  endpoint_url='https://xxx',
  config=botocore_client_config)

但是,Node.js中的以下代码却没有:

const AWS = require("aws-sdk");
const https = require('https');

const S3 = new AWS.S3({
  accessKeyId: 'xxx',
  secretAccessKey: 'xxx',
  endpoint: 'https://xxx/',
  s3ForcePathStyle: true,
  httpOptions: {
    agent: new https.Agent({ rejectUnauthorized: false })
  }
});

实际上,在尝试创建存储桶时会导致以下错误:

{ NetworkingError: Protocol "http:" not supported. Expected "https:"
    at new ClientRequest (_http_client.js:109:11)
    at Object.request (http.js:41:10)
    at features.constructor.handleRequest (/home/ec2-user/s3-tests/node_modules/aws-sdk/lib/http/node.js:42:23)

如果删除自定义https代理,则会出现以下错误:

{ Error: self signed certificate
    at TLSSocket.onConnectSecure (_tls_wrap.js:1048:34)

此外,设置process.env.NODE_TLS_REJECT_UNAUTHORIZED = "0";无济于事。

2 个答案:

答案 0 :(得分:1)

这是因为在agent中指定httpOptions时,您使用了https

const https = require('https');

如果您不想使用ssl版本,请改用http

const http = require('http');

const S3 = new AWS.S3({
  accessKeyId: 'xxx',
  secretAccessKey: 'xxx',
  endpoint: 'https://xxx/',
  s3ForcePathStyle: true,
  httpOptions: {
    agent: new http.Agent({ rejectUnauthorized: false })
  }
});

答案 1 :(得分:0)

好像节点版本缺少S3选项中的sslEnabled: false ...