Hacker News new | ask | show | jobs
by phunge 3767 days ago
We had a similar desire: secure, performant egress from S3. We ended up using CloudFront. You can configure cloudfront with signed URLs, that will access private buckets with a special S3 user (http://docs.aws.amazon.com/AmazonCloudFront/latest/Developer...). Any app that holds the private key can sign URLs to download from CloudFront.

It works great, but it really bugs me that we had to do that. The default download speeds from our buckets on S3 are atrocious. We store big datafiles in S3, and our development flow involves downloading them lot. If Amazon had an upgrade to S3 so downloads by chosen users weren't throttled or slow, we'd pay for it in a heartbeat.