Restrict access to S3 files with an AWS API Gateway custom authorizer
This project offers a streamlined starting point for building AWS microservices, particularly focusing on the integration of API Gateway and custom authorizers to invoke Lambda functions. It sets up a functional architecture that allows for secure access to static files hosted on S3, demanding a password for downloads. With a robust backend configured via Terraform and a user-friendly interface created using React, Redux, and Material-UI, this setup provides a modern approach for developing web applications with solid security measures.
The operation is straightforward: the application utilizes cookies for user authentication, which not only simplify the user experience but also enhance the security of binary file downloads. By enabling cookie handling, the app allows protected resources like images and videos to be accessed similarly to public content, making it a versatile solution for developers looking to balance ease of use with stringent security protocols.