Need help to get the correct CA certificate for Amazon s3 endpoints

0

Hello, Need help to find which CA certificate to use for the Amazon s3 endpoints? I see the list of certificates here - https://www.amazontrust.com/repository/

Tried https://www.amazontrust.com/repository/AmazonRootCA1.pem with "ap-southeast-1" but it failed.

Please can someone help me to understand which certificate to use and if we need to use separate certificates for every AWS region (such as ap-south-1, us-east-1, etc.) then how to identify them? Thanks.

已提問 1 年前檢視次數 2571 次
1 個回答
0

The CA Certificates required to work with s3 are covered in the FAQ in following blog post[1] which goes over the s3/CloudFront migration to Amazon Trust Services. See the question "What do I need to do?" which mentions that you need to "update your client certificate trust store to include all of Amazon Trust Services’ root certificates".

So to answer your question, you will need to trust all of the root CA certificates that are available on the Amazon Trust Services Repository[2].


[1] Reminder: Amazon S3 and Amazon CloudFront service certificates migrating to Amazon Trust Services starting March 23, 2021 - https://aws.amazon.com/blogs/storage/reminder-amazon-s3-and-amazon-cloudfront-migrating-service-certificates-to-amazon-trust-services-starting-march-23-2021/

[2] Amazon Trust Services Repository - https://www.amazontrust.com/repository/

AWS
支援工程師
已回答 1 年前

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南