Add functionality to define per-object permissions, and bucket default permissions. We need to ensure that buckets and/or objects can be made private, accessible only via signed URLs and/or the user who uploaded them.