Returns information about one or more Amazon Lightsail buckets. The information returned includes the synchronization status of the Amazon Simple Storage Service (Amazon S3) account-level block public access feature for your Lightsail buckets.
For more information about buckets, see Buckets in Amazon Lightsail in the Amazon Lightsail Developer Guide .
See also: AWS API Documentation
get-buckets
[--bucket-name <value>]
[--page-token <value>]
[--include-connected-resources | --no-include-connected-resources]
[--cli-input-json | --cli-input-yaml]
[--generate-cli-skeleton <value>]
[--debug]
[--endpoint-url <value>]
[--no-verify-ssl]
[--no-paginate]
[--output <value>]
[--query <value>]
[--profile <value>]
[--region <value>]
[--version <value>]
[--color <value>]
[--no-sign-request]
[--ca-bundle <value>]
[--cli-read-timeout <value>]
[--cli-connect-timeout <value>]
[--cli-binary-format <value>]
[--no-cli-pager]
[--cli-auto-prompt]
[--no-cli-auto-prompt]
--bucket-name
(string)
The name of the bucket for which to return information.
When omitted, the response includes all of your buckets in the Amazon Web Services Region where the request is made.
--page-token
(string)
The token to advance to the next page of results from your request.
To get a page token, perform an initial
GetBuckets
request. If your results are paginated, the response will return a next page token that you can specify as the page token in a subsequent request.
--include-connected-resources
| --no-include-connected-resources
(boolean)
A Boolean value that indicates whether to include Lightsail instances that were given access to the bucket using the SetResourceAccessForBucket action.
--cli-input-json
| --cli-input-yaml
(string)
Reads arguments from the JSON string provided. The JSON string follows the format provided by --generate-cli-skeleton
. If other arguments are provided on the command line, those values will override the JSON-provided values. It is not possible to pass arbitrary binary values using a JSON-provided value as the string will be taken literally. This may not be specified along with --cli-input-yaml
.
--generate-cli-skeleton
(string)
Prints a JSON skeleton to standard output without sending an API request. If provided with no value or the value input
, prints a sample input JSON that can be used as an argument for --cli-input-json
. Similarly, if provided yaml-input
it will print a sample input YAML that can be used with --cli-input-yaml
. If provided with the value output
, it validates the command inputs and returns a sample output JSON for that command. The generated JSON skeleton is not stable between versions of the AWS CLI and there are no backwards compatibility guarantees in the JSON skeleton generated.
--debug
(boolean)
Turn on debug logging.
--endpoint-url
(string)
Override command’s default URL with the given URL.
--no-verify-ssl
(boolean)
By default, the AWS CLI uses SSL when communicating with AWS services. For each SSL connection, the AWS CLI will verify SSL certificates. This option overrides the default behavior of verifying SSL certificates.
--no-paginate
(boolean)
Disable automatic pagination.
--output
(string)
The formatting style for command output.
json
text
table
yaml
yaml-stream
--query
(string)
A JMESPath query to use in filtering the response data.
--profile
(string)
Use a specific profile from your credential file.
--region
(string)
The region to use. Overrides config/env settings.
--version
(string)
Display the version of this tool.
--color
(string)
Turn on/off color output.
on
off
auto
--no-sign-request
(boolean)
Do not sign requests. Credentials will not be loaded if this argument is provided.
--ca-bundle
(string)
The CA certificate bundle to use when verifying SSL certificates. Overrides config/env settings.
--cli-read-timeout
(int)
The maximum socket read time in seconds. If the value is set to 0, the socket read will be blocking and not timeout. The default value is 60 seconds.
--cli-connect-timeout
(int)
The maximum socket connect time in seconds. If the value is set to 0, the socket connect will be blocking and not timeout. The default value is 60 seconds.
--cli-binary-format
(string)
The formatting style to be used for binary blobs. The default format is base64. The base64 format expects binary blobs to be provided as a base64 encoded string. The raw-in-base64-out format preserves compatibility with AWS CLI V1 behavior and binary values must be passed literally. When providing contents from a file that map to a binary blob fileb://
will always be treated as binary and use the file contents directly regardless of the cli-binary-format
setting. When using file://
the file contents will need to properly formatted for the configured cli-binary-format
.
base64
raw-in-base64-out
--no-cli-pager
(boolean)
Disable cli pager for output.
--cli-auto-prompt
(boolean)
Automatically prompt for CLI input parameters.
--no-cli-auto-prompt
(boolean)
Disable automatically prompt for CLI input parameters.
buckets -> (list)
An array of objects that describe buckets.
(structure)
Describes an Amazon Lightsail bucket.
resourceType -> (string)
The Lightsail resource type of the bucket (for example,
Bucket
).accessRules -> (structure)
An object that describes the access rules of the bucket.
getObject -> (string)
Specifies the anonymous access to all objects in a bucket.
The following options can be specified:
public
- Sets all objects in the bucket to public (read-only), making them readable by anyone in the world. If thegetObject
value is set topublic
, then all objects in the bucket default to public regardless of theallowPublicOverrides
value.
private
- Sets all objects in the bucket to private, making them readable only by you or anyone you give access to. If thegetObject
value is set toprivate
, and theallowPublicOverrides
value is set totrue
, then all objects in the bucket default to private unless they are configured with apublic-read
ACL. Individual objects with apublic-read
ACL are readable by anyone in the world.allowPublicOverrides -> (boolean)
A Boolean value that indicates whether the access control list (ACL) permissions that are applied to individual objects override the
getObject
option that is currently specified.When this is true, you can use the PutObjectAcl Amazon S3 API action to set individual objects to public (read-only) using the
public-read
ACL, or to private using theprivate
ACL.arn -> (string)
The Amazon Resource Name (ARN) of the bucket.
bundleId -> (string)
The ID of the bundle currently applied to the bucket.
A bucket bundle specifies the monthly cost, storage space, and data transfer quota for a bucket.
Use the UpdateBucketBundle action to change the bundle of a bucket.
createdAt -> (timestamp)
The timestamp when the distribution was created.
url -> (string)
The URL of the bucket.
location -> (structure)
An object that describes the location of the bucket, such as the Amazon Web Services Region and Availability Zone.
availabilityZone -> (string)
The Availability Zone. Follows the format
us-east-2a
(case-sensitive).regionName -> (string)
The Amazon Web Services Region name.
name -> (string)
The name of the bucket.
supportCode -> (string)
The support code for a bucket. Include this code in your email to support when you have questions about a Lightsail bucket. This code enables our support team to look up your Lightsail information more easily.
tags -> (list)
The tag keys and optional values for the bucket. For more information, see Tags in Amazon Lightsail in the Amazon Lightsail Developer Guide .
(structure)
Describes a tag key and optional value assigned to an Amazon Lightsail resource.
For more information about tags in Lightsail, see the Amazon Lightsail Developer Guide .
key -> (string)
The key of the tag.
Constraints: Tag keys accept a maximum of 128 letters, numbers, spaces in UTF-8, or the following characters: + - = . _ : / @
value -> (string)
The value of the tag.
Constraints: Tag values accept a maximum of 256 letters, numbers, spaces in UTF-8, or the following characters: + - = . _ : / @
objectVersioning -> (string)
Indicates whether object versioning is enabled for the bucket.
The following options can be configured:
Enabled
- Object versioning is enabled.
Suspended
- Object versioning was previously enabled but is currently suspended. Existing object versions are retained.
NeverEnabled
- Object versioning has never been enabled.ableToUpdateBundle -> (boolean)
Indicates whether the bundle that is currently applied to a bucket can be changed to another bundle.
You can update a bucket’s bundle only one time within a monthly Amazon Web Services billing cycle.
Use the UpdateBucketBundle action to change a bucket’s bundle.
readonlyAccessAccounts -> (list)
An array of strings that specify the Amazon Web Services account IDs that have read-only access to the bucket.
(string)
resourcesReceivingAccess -> (list)
An array of objects that describe Lightsail instances that have access to the bucket.
Use the SetResourceAccessForBucket action to update the instances that have access to a bucket.
(structure)
Describes an Amazon Lightsail instance that has access to a Lightsail bucket.
name -> (string)
The name of the Lightsail instance.
resourceType -> (string)
The Lightsail resource type (for example,
Instance
).state -> (structure)
An object that describes the state of the bucket.
code -> (string)
The state code of the bucket.
The following codes are possible:
OK
- The bucket is in a running state.
Unknown
- Creation of the bucket might have timed-out. You might want to delete the bucket and create a new one.message -> (string)
A message that describes the state of the bucket.
accessLogConfig -> (structure)
An object that describes the access log configuration for the bucket.
enabled -> (boolean)
A Boolean value that indicates whether bucket access logging is enabled for the bucket.
destination -> (string)
The name of the bucket where the access logs are saved. The destination can be a Lightsail bucket in the same account, and in the same Amazon Web Services Region as the source bucket.
Note
This parameter is required when enabling the access log for a bucket, and should be omitted when disabling the access log.
prefix -> (string)
The optional object prefix for the bucket access log.
The prefix is an optional addition to the object key that organizes your access log files in the destination bucket. For example, if you specify a
logs/
prefix, then each log object will begin with thelogs/
prefix in its key (for example,logs/2021-11-01-21-32-16-E568B2907131C0C0
).Note
This parameter can be optionally specified when enabling the access log for a bucket, and should be omitted when disabling the access log.
nextPageToken -> (string)
The token to advance to the next page of results from your request.
A next page token is not returned if there are no more results to display.
To get the next page of results, perform another
GetBuckets
request and specify the next page token using thepageToken
parameter.accountLevelBpaSync -> (structure)
An object that describes the synchronization status of the Amazon S3 account-level block public access feature for your Lightsail buckets.
For more information about this feature and how it affects Lightsail buckets, see Block public access for buckets in Amazon Lightsail .
status -> (string)
The status of the account-level BPA synchronization.
The following statuses are possible:
InSync
- Account-level BPA is synchronized. The Amazon S3 account-level BPA configuration applies to your Lightsail buckets.
NeverSynced
- Synchronization has not yet happened. The Amazon S3 account-level BPA configuration does not apply to your Lightsail buckets.
Failed
- Synchronization failed. The Amazon S3 account-level BPA configuration does not apply to your Lightsail buckets.
Defaulted
- Synchronization failed and account-level BPA for your Lightsail buckets is defaulted to active .Note
You might need to complete further actions if the status is
Failed
orDefaulted
. Themessage
parameter provides more information for those statuses.lastSyncedAt -> (timestamp)
The timestamp of when the account-level BPA configuration was last synchronized. This value is null when the account-level BPA configuration has not been synchronized.
message -> (string)
A message that provides a reason for a
Failed
orDefaulted
synchronization status.The following messages are possible:
SYNC_ON_HOLD
- The synchronization has not yet happened. This status message occurs immediately after you create your first Lightsail bucket. This status message should change after the first synchronization happens, approximately 1 hour after the first bucket is created.
DEFAULTED_FOR_SLR_MISSING
- The synchronization failed because the required service-linked role is missing from your Amazon Web Services account. The account-level BPA configuration for your Lightsail buckets is defaulted to active until the synchronization can occur. This means that all your buckets are private and not publicly accessible. For more information about how to create the required service-linked role to allow synchronization, see Using Service-Linked Roles for Amazon Lightsail in the Amazon Lightsail Developer Guide .
DEFAULTED_FOR_SLR_MISSING_ON_HOLD
- The synchronization failed because the required service-linked role is missing from your Amazon Web Services account. Account-level BPA is not yet configured for your Lightsail buckets. Therefore, only the bucket access permissions and individual object access permissions apply to your Lightsail buckets. For more information about how to create the required service-linked role to allow synchronization, see Using Service-Linked Roles for Amazon Lightsail in the Amazon Lightsail Developer Guide .
Unknown
- The reason that synchronization failed is unknown. Contact Amazon Web Services Support for more information.bpaImpactsLightsail -> (boolean)
A Boolean value that indicates whether account-level block public access is affecting your Lightsail buckets.