AWS API GW资源策略文档大于最大允许大小

时间:2020-09-17 06:04:48

标签: amazon-web-services amazon-s3 aws-api-gateway

尝试将API GW中的IP列入白名单,我们无法在条件源IP中添加更多IP

{
    "Version": "2012-10-17",
    "Statement": [
        {
            "Effect": "Deny",
            "Principal": "*",
            "Action": "execute-api:Invoke",
            "Resource": "execute-api:/{{stageNameOrWildcard}}/{{httpVerbOrWildcard}}/{{resourcePathOrWildcard}}",
            "Condition" : {
                "IpAddress": {
                    "aws:SourceIp": [ "{{sourceIpOrCIDRBlock}}", "{{sourceIpOrCIDRBlock}}" ]
                }
            }
        },
        {
            "Effect": "Allow",
            "Principal": "*",
            "Action": "execute-api:Invoke",
            "Resource": "execute-api:/{{stageNameOrWildcard}}/{{httpVerbOrWildcard}}/{{resourcePathOrWildcard}}"
        }
    ]
}

在上述策略中,有什么方法可以从s3存储桶中获取IP阵列或增加策略文档的大小

1 个答案:

答案 0 :(得分:0)

“ API网关资源策略的长度(以字符为单位)”可以按照here所述来增加。您可以从服务配额中请求增加限额。