Sample code for 30+ languages & platforms
Dart

Amazon Glacier Set Vault Access Policy

See more Amazon Glacier Examples

Demonstrates how to set an access policy for a vault (will overwrite the existing policy).

Chilkat Dart Downloads

Dart
import 'package:chilkat/chilkat.dart';

void main() {
  // This example requires the Chilkat API to have been previously unlocked.
  // See Global Unlock Sample for sample code.

  final rest = CkRest();

  // Connect to the Amazon AWS REST server in the desired region.
  final bTls = true;
  final port = 443;
  final bAutoReconnect = true;
  rest.connect('glacier.us-west-2.amazonaws.com', port, bTls, bAutoReconnect);

  // Provide AWS credentials.
  final authAws = CkAuthAws();
  authAws.accessKey = 'AWS_ACCESS_KEY';
  authAws.secretKey = 'AWS_SECRET_KEY';
  authAws.serviceName = 'glacier';
  authAws.region = 'us-west-2';

  rest.setAuthAws(authAws);

  // --------------------------------------------------------------------------
  // Note: The above REST connection and setup of the AWS credentials
  // can be done once.  After connecting, any number of REST calls can be made.
  // The "auto reconnect" property passed to rest.Connect indicates that if
  // the connection is lost, a REST method call will automatically reconnect
  // if needed.
  // --------------------------------------------------------------------------

  // For more information, see Glacier Set Vault Access Policy Reference Documentation
  // 
  rest.addHeader('x-amz-glacier-version', '2012-06-01');

  // Create the following JSON
  // Use this online tool to generate the code from sample JSON: 
  // Generate Code to Create JSON

  // {
  //   "Version": "2012-10-17",
  //   "Statement": [
  //     {
  //       "Sid": "Define-owner-access-rights",
  //       "Effect": "Allow",
  //       "Principal": {
  //         "AWS": "arn:aws:iam::AWS_ACCOUNT_ID:root"
  //       },
  //       "Action": "glacier:DeleteArchive",
  //       "Resource": "arn:aws:glacier:us-west-2:AWS_ACCOUNT_ID:vaults/chilkat"
  //     }
  //   ]
  // }

  final jsonPolicy = CkJsonObject();
  jsonPolicy.updateString('Version', '2012-10-17');
  jsonPolicy.updateString('Statement[0].Sid', 'Define-owner-access-rights');
  jsonPolicy.updateString('Statement[0].Effect', 'Allow');
  jsonPolicy.updateString('Statement[0].Principal.AWS', 'arn:aws:iam::AWS_ACCOUNT_ID:root');
  jsonPolicy.updateString('Statement[0].Action', 'glacier:DeleteArchive');
  // Notice here the name of the vault: "chilkat".  Change it to your vault name.  Also use your actual AWS account ID.
  jsonPolicy.updateString('Statement[0].Resource', 'arn:aws:glacier:us-west-2:AWS_ACCOUNT_ID:vaults/chilkat');

  // Wrap the above JSON in this JSON:

  // {
  //    "Policy": "{  ... the above JSON ... }"
  // }
  final json = CkJsonObject();
  json.updateString('Policy', jsonPolicy.emit());

  final sbRequestBody = CkStringBuilder();
  json.emitSb(sbRequestBody);

  final sbResponseBody = CkStringBuilder();
  try {
    rest.fullRequestSb('PUT', '/AWS_ACCOUNT_ID/vaults/chilkat/access-policy', sbRequestBody, sbResponseBody);
  } on ChilkatException catch (e) {
    print(e.lastErrorText);
    return;
  }

  final respStatusCode = rest.responseStatusCode;
  if (respStatusCode >= 400) {
    print('Response Status Code = $respStatusCode');
    print('Response Header:');
    print(rest.responseHeader);
    print('Response Body:');
    print(sbResponseBody.getAsString());
    return;
  }

  // Success is indicated by a 204 response status with an empty response body.
  print('response status code = $respStatusCode');
}