4 releases
0.2.0 | Jan 18, 2023 |
---|---|
0.1.1 | Dec 30, 2019 |
0.1.0 | Nov 26, 2019 |
#920 in Cryptography
2,665 downloads per month
14KB
198 lines
aws-sign-v4
Use this crate to generate an AUTHORIZATION header for AWS Signature Version 4 services.
Examples
Example AWS S3 GET request
Example usage with reqwest:
const S3_ACCESS: &str = "my-access-key";
const S3_SECRET: &str = "my-secret-key";
#[tokio::main]
async fn main() -> Result<(), reqwest::Error> {
let datetime = chrono::Utc::now();
let url = "https://myHost/s3-bucket-url";
let mut headers = reqwest::header::HeaderMap::new();
headers.insert(
"X-Amz-Date",
datetime
.format("%Y%m%dT%H%M%SZ")
.to_string()
.parse()
.unwrap(),
);
headers.insert("host", "myHost".parse().unwrap());
let s = aws_sign_v4::AwsSign::new(
"GET",
url,
&datetime,
&headers,
"us-east-1",
&S3_ACCESS,
&S3_SECRET,
"s3",
""
);
let signature = s.sign();
println!("{:#?}", signature);
headers.insert(reqwest::header::AUTHORIZATION, signature.parse().unwrap());
let client = reqwest::Client::new();
let res = client
.get(url)
.headers(headers.to_owned())
.body("")
.send()
.await?;
println!("Status: {}", res.status());
let body = res.text().await?;
println!("Body:\n\n{}", body);
Ok(())
}
Example AWS graphql POST request
Example usage with reqwest:
const S3_ACCESS: &str = "my-access-key";
const S3_SECRET: &str = "my-secret-key";
#[tokio::main]
async fn main() -> Result<(), reqwest::Error> {
let datetime = chrono::Utc::now();
let url = "https://myHost/s3-bucket-url";
let mut headers = reqwest::header::HeaderMap::new();
headers.insert(
"X-Amz-Date",
datetime
.format("%Y%m%dT%H%M%SZ")
.to_string()
.parse()
.unwrap(),
);
headers.insert("host", "myHost".parse().unwrap());
let s = aws_sign_v4::AwsSign::new(
"POST",
url,
&datetime,
&headers,
"us-east-1",
&S3_ACCESS,
&S3_SECRET,
"execute-api",
""
);
let signature = s.sign();
println!("{:#?}", signature);
headers.insert(reqwest::header::AUTHORIZATION, signature.parse().unwrap());
let client = reqwest::Client::new();
let res = client
.get(url)
.headers(headers.to_owned())
.body(r#"{"query":"query test_q { mynode { id }} ","variables":{},"operationName":"test_q"}"#)
.send()
.await?;
println!("Status: {}", res.status());
let body = res.text().await?;
println!("Response Body:\n{}", body);
Ok(())
}
To migrate code from 0.1.x to 0.2.x:
let s = aws_sign_v4::AwsSign::new(
"GET",
url,
&datetime,
&headers,
"us-east-1",
&S3_ACCESS,
&S3_SECRET,
);
let s = aws_sign_v4::AwsSign::new(
"GET",
url,
&datetime,
&headers,
"us-east-1",
&S3_ACCESS,
&S3_SECRET,
"s3", // <- explicitly add "s3", since 0.1.x only supported "s3"
"", // <-- body can be ignored for "s3" service GETs
);
References
Dependencies
~8–11MB
~322K SLoC