Sign Up

Sign Up to our social questions and Answers Engine to ask questions, answer people’s questions, and connect with other people.

Have an account? Sign In

Have an account? Sign In Now

Sign In

Login to our social questions & Answers Engine to ask questions answer people’s questions & connect with other people.

Sign Up Here

Forgot Password?

Don't have account, Sign Up Here

Forgot Password

Lost your password? Please enter your email address. You will receive a link and will create a new password via email.

Have an account? Sign In Now

You must login to ask a question.

Forgot Password?

Need An Account, Sign Up Here

Please briefly explain why you feel this question should be reported.

Please briefly explain why you feel this answer should be reported.

Please briefly explain why you feel this user should be reported.

Sign InSign Up

The Archive Base

The Archive Base Logo The Archive Base Logo

The Archive Base Navigation

  • SEARCH
  • Home
  • About Us
  • Blog
  • Contact Us
Search
Ask A Question

Mobile menu

Close
Ask a Question
  • Home
  • Add group
  • Groups page
  • Feed
  • User Profile
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Buy Points
  • Users
  • Help
  • Buy Theme
  • SEARCH
Home/ Questions/Q 6861753
In Process

The Archive Base Latest Questions

Editorial Team
  • 0
Editorial Team
Asked: May 27, 20262026-05-27T02:34:32+00:00 2026-05-27T02:34:32+00:00

let’s start off with the problem statement: My iOS application has a login form.

  • 0

let’s start off with the problem statement:

My iOS application has a login form. When the user logs in, a call is made to my API and access granted or denied. If access was granted, I want the user to be able to upload pictures to his account and/or manage them.

As storage I’ve picked Amazon S3, and I figured it’d be a good idea to have one bucket called “myappphotos” for instance, which contains lots of folders. The folder names are hashes of a user’s email and a secret key. So, every user has his own, unique folder in my Amazon S3 bucket.

Since I’ve just recently started working with AWS, here’s my question:

What are the best practices for setting up a system like this? I want the user to be able to upload pictures directly to Amazon S3, but of course I cannot hard-code the access key. So I need my API to somehow talk to Amazon and request an access token of sorts – only for the particular folder that belongs to the user I’m making the request for.

Can anyone help me out and/or guide me to some sources where a similar problem was addressed? Don’t think I’m the first one and the amazon documentation is so extensive that I don’t really know where to start looking.

Thanks a lot!

  • 1 1 Answer
  • 0 Views
  • 0 Followers
  • 0
Share
  • Facebook
  • Report

Leave an answer
Cancel reply

You must login to add an answer.

Forgot Password?

Need An Account, Sign Up Here

1 Answer

  • Voted
  • Oldest
  • Recent
  • Random
  1. Editorial Team
    Editorial Team
    2026-05-27T02:34:33+00:00Added an answer on May 27, 2026 at 2:34 am

    Have you looked at the Amazon AWS SDK for iOS?

    From the docs:

    The AWSiOSDemoTVM and AWSiOSDemoTVMIdentity samples demonstrate a more
    secure mechanism for transferring AWS security credentials to a mobile
    client. These samples require a server application, in this case the
    token vending machine (TVM), which is provided as a separate download.
    The sample applications register with TVM, either anonymously or with
    a user-supplied user name and password. The TVM uses the AWS Security
    Token Service to get temporary security credentials and pass them to
    the mobile application.

    The TVM is available in two forms, one that supports anonymous
    registration and one that requires a user name and password to
    register a device and receive security tokens. To download and install
    the TVM for Anonymous Registration, go to
    http://aws.amazon.com/code/8872061742402990. To download and install
    the TVM for Identity Registration, go to
    http://aws.amazon.com/code/7351543942956566.

    From Authenticating Users of AWS Mobile Applications with a Token Vending Machine:

    This article discusses an architecture that enables applications
    running on a mobile device to more securely interact with Amazon Web
    Services such as Amazon Simple Storage Service (S3), Amazon SimpleDB,
    Amazon Simple Notification Service (SNS), and Amazon Simple Queue
    Service (SQS). The architecture discussed uses a “Token Vending
    Machine” to distribute temporary security credentials to the mobile
    application.

    Your token can limit access to a specific bucket on S3, so it appears to be the best option.

    • 0
    • Reply
    • Share
      Share
      • Share on Facebook
      • Share on Twitter
      • Share on LinkedIn
      • Share on WhatsApp
      • Report

Sidebar

Related Questions

Let's say I have two assemblies: BusinessLogic and Web. BusinessLogic has an application setting
Let me start off by stating that I know the assignment operator in C#
Let's say you create a wizard in an HTML form. One button goes back,
Let's say I'm building a data access layer for an application. Typically I have
Let's say I have a simple Login servlet that checks the passed name and
Let's create WinForms Application (I have Visual Studio 2008 running on Windows Vista, but
Let's say an Owner has a collection of Watch(es). I am trying to create
let's say i want to build a smartphone app that tells a user when/where
Let's say that I have a rails plugin called wipy on GitHub. It has
Let's say I'm writing a Windows Forms (.NET Framework 3.5) application which shows the

Explore

  • Home
  • Add group
  • Groups page
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Users
  • Help
  • SEARCH

Footer

© 2021 The Archive Base. All Rights Reserved
With Love by The Archive Base

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.