How to decrypt the encrypted S3 file using aws-encryption-cli --decrypt

I am trying to decrypt an encrypted file using aws-encryption-cli --decrypt.

Is there a way I can specify the encrypted S3 object location? I am using role based decryption where the current role has permission to decrypt the object even if i do not specify the KMS key.

I was trying to use below command:

aws-encryption-cli --decrypt --input s3://XXX/encryptedfile.text --encryption-context purpose=test --metadata-output ~/metadata --output
Oct 22, 2018 in AWS by findingbugs
• 4,750 points

Use command : aws s3 presign s3://mybucket/abc_count.png

you get presign URL for access uploaded file/object

Output :

than you can directly download Encrypted file/object using below command :

wget -P /home/ubuntu/Desktop/abc_count1.png "your presign URL"

Hope it will work.

answered Oct 22, 2018 by Priyaj
• 56,900 points

