1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
|
# Guide - Setup CodiMD S3 image upload
***Note:** This guide was written before the renaming. Just replace `HackMD` with `CodiMD` in your mind :smile: thanks!*
1. Go to [AWS S3 console](https://console.aws.amazon.com/s3/home) and create a new bucket.
data:image/s3,"s3://crabby-images/6490c/6490c458e384d69fdf49cbfbc0a2e7ce86ee5ce6" alt="create-bucket"
2. Click on bucket, select **Properties** on the side panel, and find **Permission** section. Click **Edit bucket policy**.
data:image/s3,"s3://crabby-images/04958/049584e0b65668a357111abbdf94d62ee2254fc1" alt="bucket-property"
3. Enter the following policy, replace `bucket_name` with your bucket name:
data:image/s3,"s3://crabby-images/d1a4e/d1a4e6f2fd604ffa1094648b8ccfd2fd065944b7" alt="bucket-policy-editor"
```json
{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Principal": "*",
"Action": "s3:GetObject",
"Resource": "arn:aws:s3:::bucket_name/uploads/*"
}
]
}
```
4. Go to IAM console and create a new IAM user. Remember your user credentials(`key`/`access token`)
5. Enter user page, select **Permission** tab, look at **Inline Policies** section, and click **Create User Policy**
data:image/s3,"s3://crabby-images/f3a97/f3a97a595c01d0f5ae66af07ac93ff0c830f14d8" alt="iam-user"
6. Select **Custom Policy**
data:image/s3,"s3://crabby-images/79ffc/79ffcf9f76781a069eecb41b0127e0b54eb143d3" alt="custom-policy"
7. Enter the following policy, replace `bucket_name` with your bucket name:
data:image/s3,"s3://crabby-images/0d057/0d0572d18f10fa6db6b777592f330ebc1d46a892" alt="review-policy"
```json
{
"Version": "2012-10-17",
"Statement": [
{
"Effect": "Allow",
"Action": [
"s3:*"
],
"Resource": [
"arn:aws:s3:::bucket_name/uploads/*"
]
}
]
}
```
8. Edit `config.json` and set following keys:
```javascript
{
"production": {
...
"imageuploadtype": "s3",
"s3": {
"accessKeyId": "YOUR_S3_ACCESS_KEY_ID",
"secretAccessKey": "YOUR_S3_ACCESS_KEY",
"region": "YOUR_S3_REGION" // example: ap-northeast-1
},
"s3bucket": "YOUR_S3_BUCKET_NAME"
}
}
```
9. In additional to edit `config.json` directly, you could also try [environment variable](https://github.com/codimd/server#environment-variables-will-overwrite-other-server-configs).
## Related Tools
* [AWS Policy Generator](http://awspolicygen.s3.amazonaws.com/policygen.html)
|