Block Public Access enabled by default for buckets created by calling API operations, using OSS SDKs
Mar 24, 2025
Object Storage ServiceAdjusted on
from October 13, 2025 10:00:00 (UTC+08)
Regions
All Alibaba Cloud public cloud regions that support OSS
Description
Block Public Access will be enabled by default for buckets created by calling API operations, using OSS SDKs, or OSSUtil.
Impact
Block Public Access will be enabled by default for buckets created by calling API operations, using OSS SDKs, or OSSUtil. This reduces the risk of data leaks due to public access and prevents outbound traffic due to malicious access. After Block Public Access is enabled for a bucket, anonymous access to the bucket will no longer be allowed, and you will no longer be able to configure bucket policies and ACLs that allow public access, such as setting the ACLs of objects or buckets to public-read or public-read-write. If public access is required, you can disable Block Public Access by using the OSS console or calling API operations after the bucket is created. Existing buckets will not be affected by this upgrade. For more information, see Block Public Access. The scheduled upgrade dates for each region are outlined below:
- from October 13, 2025, 10:00:00 (UTC+08): Japan (Tokyo), South Korea (Seoul), Malaysia (Kuala Lumpur), Indonesia (Jakarta), Philippines (Manila), Thailand (Bangkok), UK (London), UAE (Dubai), SAU (Riyadh - Partner Region) 、Mexico and China (Nanjing-Local Region).
- from October 20, 2025, 10:00:00 (UTC+08): China (Qingdao), China (Hohhot), China (Ulanqab), China (Heyuan), China (Guangzhou), China (Chengdu), China (Hong Kong), Singapore, Germany (Frankfurt), US (Silicon Valley), and US (Virginia).
- from October 27, 2025, 10:00:00 (UTC+08): China (Beijing), China (Zhangjiakou), China (Hangzhou), China (Shanghai), and China (Shenzhen).
We apologize for the inconvenience this may cause. If you have questions, please submit a ticket or call the service support hotline.