Unable to upload files to FileCloud with “Error saving file!”.
Original Question or Issue:
Unable to upload files to FileCloud with “Error saving file!”.
Environment:
- Product - FileCloud Online
- Version - 23.262
- Platform - Any
Steps to Reproduce:
- Configure FileCloud S3 storage with SSE-C encryption on the affected FedRAMP environment.
- Attempt to upload a file through the FileCloud web portal.
- Observe that the upload appears to proceed but fails to store the file.
- Repeat with different file types, such as
.dump,.txt, or.pdf. - Observe the “Error saving file!” message.
Error or Log Message:
ERROR: addFile: Error saving file to storage backend
AWS HTTP error: AccessDenied (client): User is not authorized to perform:
s3:PutObject
because this bucket has blocked upload requests that specify
Server Side Encryption with Customer provided keys (SSE-C).
Please specify a different server-side encryption type.
Defect or Enhancement Number:
Cause:
The FileCloud S3 storage configuration was using SSE-C (Server-Side Encryption with Customer-Provided Keys).
SSE-C encryption is not supported on the FedRAMP site. The S3 bucket blocks PutObject requests that specify SSE-C, resulting in AccessDenied errors and failed uploads.
Resolution or Workaround:
- Confirm the amount of existing encrypted data before making the encryption change.
- Notify users not to upload or modify files during the encryption change.
- From the FileCloud Admin Portal, decrypt the existing encrypted files.
- Disable the existing SSE-C encryption.
- Enable Server-Side Encryption with Amazon S3-Managed Keys (SSE-S3).
- Wait for the encryption process to complete.
- Test a file upload after SSE-S3 has been enabled.
- If the upload succeeds, resume normal file operations.
Notes: