防盜鏈
防盜鏈可(ke)以防止您存儲在COS的資源被其他網站盜用。您可(ke)在【Bucket管(guan)理】頁(ye)面,點擊桶對應的【設置】按鈕,進入(ru)桶基礎設置頁(ye)面;
找到【防盜鏈】,點擊【設置(zhi)】按鈕配置(zhi)referer白名單,以(yi)及是(shi)否允許(xu)空referer。
說明:
- 防盜鏈的配置支持 * 和 ? 通配符,分別表示一組字符和一個字符;
- 是否允許空referer表示當請求的Referer頭為空時,是否允許訪問,該配置只有referer白名單不為空時才有效;
例子?
按照(zhao)以(yi)上的配(pei)置(zhi)方(fang)式,可以(yi)進(jin)行(xing)簡單(dan)的驗證(zheng)確認配(pei)置(zhi)是(shi)否生效(xiao),如下(xia):
cos@macbook ~$ curl -I -H "Referer://image.victor.com/" //example2.cos-cn-suzhou.cn-henji.com/image.jpg
HTTP/1.1 200 OK
Server: openresty/1.9.3.2
Date: Fri, 17 Jun 2016 04:04:20 GMT
Content-Type: image/jpeg
Content-Length: 101747
Connection: keep-alive
x-cos-request-id: c12f90420a0a000001555c87ef02640d
ETag: "e2be8e1cab3113771b284e43ccea8f47"
Last-Modified: Fri, 17 Jun 2016 04:02:59 GMT
cos@macbook ~$ curl -I -H "Referer://image.victor.xxx/" //example2.cos-cn-suzhou.cn-henji.com/image.jpg
HTTP/1.1 403 Forbidden
Server: openresty/1.9.3.2
Date: Fri, 17 Jun 2016 04:04:32 GMT
Content-Type: text/html
Content-Length: 174
Connection: keep-alive