Class: Aws::S3::Types::CORSRule

When passing CORSRule as input to an Aws::Client method, you can use a vanilla Hash:

  allowed_headers: ["AllowedHeader"],
  allowed_methods: ["AllowedMethod"], # required
  allowed_origins: ["AllowedOrigin"], # required
  expose_headers: ["ExposeHeader"],
  max_age_seconds: 1,

Specifies a cross-origin access rule for an Amazon S3 bucket.

Headers that are specified in the Access-Control-Request-Headers header. These headers are allowed in a preflight OPTIONS request. In response to any preflight OPTIONS request, Amazon S3 returns any requested headers that are allowed.


  • (Array<String>)

    Headers that are specified in the Access-Control-Request-Headers header.


An HTTP method that you allow the origin to execute. Valid values are GET, PUT, HEAD, POST, and DELETE.


  • (Array<String>)

    An HTTP method that you allow the origin to execute.


One or more origins you want customers to be able to access the bucket from.


  • (Array<String>)

    One or more origins you want customers to be able to access the bucket from.


One or more headers in the response that you want customers to be able to access from their applications (for example, from a JavaScript XMLHttpRequest object).


  • (Array<String>)

    One or more headers in the response that you want customers to be able to access from their applications (for example, from a JavaScript XMLHttpRequest object).


The time in seconds that your browser is to cache the preflight response for the specified resource.


  • (Integer)

    The time in seconds that your browser is to cache the preflight response for the specified resource.