Installation of Aws Cli

To install the AWS CLI, run the following commands.

$ curl "" -o ""
sudo ./aws/install

To update your current installation of the AWS CLI, add your existing symlink and installer information to construct the install command using the --bin-dir, --install-dir, and --update parameters. The following command block uses an example symlink of /usr/local/bin and example installer location of /usr/local/aws-cli to install the AWS CLI locally for the current user.

$ curl "" -o ""
sudo ./aws/install --bin-dir /usr/local/bin --install-dir /usr/local/aws-cli --update
Guided installation steps
  1. Download the installation file in one of the following ways:

    • Use the curl command – The -o option specifies the file name that the downloaded package is written to. The options on the following example command write the downloaded file to the current directory with the local name

        $ curl "" -o ""
    • Downloading from the URL – To download the installer with your browser, use the following URL:

  2. (Optional) Verifying the integrity of your downloaded zip file

    If you chose to manually download the AWS CLI installer package .zip in the above steps, you can use the following steps to verify the signatures by using the GnuPG tool.

    The AWS CLI installer package .zip files are cryptographically signed using PGP signatures. If there is any damage or alteration of the files, this verification fails and you should not proceed with installation.

    1. Download and install the gpg command using your package manager. For more information about GnuPG, see the GnuPG website.

    2. To create the public key file, create a text file and paste in the following text.

       -----END PGP PUBLIC KEY BLOCK-----

      For reference, the following are the details of the public key.

       Key ID:           A6310ACC4672475C
       Type:             RSA
       Size:             4096/4096
       Created:          2019-09-18
       Expires:          2025-07-24
       User ID:          AWS CLI Team <>
       Key fingerprint:  FB5D B77F D5C1 18B8 0511  ADA8 A631 0ACC 4672 475C
    3. Import the AWS CLI public key with the following command, substituting public-key-file-name with the file name of the public key you created.

       $ gpg --import public-key-file-name
       gpg: /home/username/.gnupg/trustdb.gpg: trustdb created
       gpg: key A6310ACC4672475C: public key "AWS CLI Team <>" imported
       gpg: Total number processed: 1
       gpg:               imported: 1
    4. Download the AWS CLI signature file for the package you downloaded. It has the same path and name as the .zip file it corresponds to, but has the extension .sig. In the following examples, we save it to the current directory as a file named awscliv2.sig.

      For the latest version of the AWS CLI, use the following command block:

       $ curl -o awscliv2.sig

      For a specific version of the AWS CLI, append a hyphen and the version number to the filename. For this example the filename for version 2.0.30 would be resulting in the following command:

       $ curl -o awscliv2.sig

      For a list of versions, see the AWS CLI version 2 Changelog on GitHub.

    5. Verify the signature, passing both the downloaded .sig and .zip file names as parameters to the gpg command.

       $ gpg --verify awscliv2.sig

      The output should look similar to the following.

       gpg: Signature made Mon Nov  4 19:00:01 2019 PST
       gpg:                using RSA key FB5D B77F D5C1 18B8 0511 ADA8 A631 0ACC 4672 475C
       gpg: Good signature from "AWS CLI Team <>" [unknown]
       gpg: WARNING: This key is not certified with a trusted signature!
       gpg:          There is no indication that the signature belongs to the owner.
       Primary key fingerprint: FB5D B77F D5C1 18B8 0511  ADA8 A631 0ACC 4672 475C

      The warning in the output is expected and doesn't indicate a problem. It occurs because there isn't a chain of trust between your personal PGP key (if you have one) and the AWS CLI PGP key. For more information, see Web of trust.

  3. Unzip the installer. If your Linux distribution doesn't have a built-in unzip command, use an equivalent to unzip it. The following example command unzips the package and creates a directory named aws under the current directory.

     $ unzip

    When updating from a previous version, the unzip command prompts to overwrite existing files. To skip these prompts, such as with script automation, use the -u update flag for unzip. This flag automatically updates existing files and creates new ones as needed.

     $ unzip -u
  4. Run the install program. The installation command uses a file named install in the newly unzipped aws directory. By default, the files are all installed to /usr/local/aws-cli, and a symbolic link is created in /usr/local/bin. The command includes sudo to grant write permissions to those directories.

     $ sudo ./aws/install

    You can install without sudo if you specify directories that you already have write permissions to. Use the following instructions for the install command to specify the installation location:

    • Ensure that the paths you provide to the -i and -b parameters contain no volume name or directory names that contain any space characters or other white space characters. If there is a space, the installation fails.

    • --install-dir or -i – This option specifies the directory to copy all of the files to.

      The default value is /usr/local/aws-cli.

    • --bin-dir or -b – This option specifies that the main aws program in the install directory is symbolically linked to the file aws in the specified path. You must have write permissions to the specified directory. Creating a symlink to a directory that is already in your path eliminates the need to add the install directory to the user's $PATH variable.

      The default value is /usr/local/bin.

    $ ./aws/install -i /usr/local/aws-cli -b /usr/local/bin

To update your current installation of the AWS CLI, add your existing symlink and installer information to construct the install command with the --update parameter.

    $ sudo ./aws/install --bin-dir /usr/local/bin --install-dir /usr/local/aws-cli --update

To locate the existing symlink and installation directory, use the following steps:

  1. Use the which command to find your symlink. This gives you the path to use with the --bin-dir parameter.

     $ which aws
  2. Use the ls command to find the directory that your symlink points to. This gives you the path to use with the --install-dir parameter.

     $ ls -l /usr/local/bin/aws
     lrwxrwxrwx 1 ec2-user ec2-user 49 Oct 22 09:49 /usr/local/bin/aws -> /usr/local/aws-cli/v2/current/bin/aws
  1. Confirm the installation with the following command.

     $ aws --version
     aws-cli/2.19.1 Python/3.11.6 Linux/5.10.205-195.807.amzn2.x86_64 botocore/2.4.5
Subscribe to my newsletter

Read articles from Aniket Nandakishor Zade directly inside your inbox. Subscribe to the newsletter, and don't miss out.

Written by

Aniket  Nandakishor Zade
Aniket Nandakishor Zade