NO IMAGE YET SUBMITTED .

TRY NOW , PLEASE

^^^Copy this as, awss3payload.png , and use it for testing.

There are no aws secret keys within this PHP script, and no aws keys needed for this script :)

This site creates secret hash that AWS machine recreates to then accept users commands.

For general public use do not use any secret key value pairs in forms.

(access -- secret) --

hash_hmac exists

request-date=2019-05-22T13:38:01+00:00----shortDate=05-22T13----cred-SigningKey=05-22T13/us-west-1/s3//aws4_request----gmt-utc=Wed,22 May 2019 13:38:01 GMT
HMAC_salt=20190522

md5 hash of cred-SigningKey= f1c020aa4678fa871dc44fa12584ffd8

sha1 hash of cred-SigningKey= 465f245df0ac38a036fc8bfbc4054ceb4be7970b

test... sha256 of empty string must match below cf0da173075c281c4213a519d802d993a977449d9c8b0d6bfb4c18c465589c16
test... sha256 of empty string must match above cf0da173075c281c4213a519d802d993a977449d9c8b0d6bfb4c18c465589c16
****hashes match****
sha256 of empty string for aws on 20130708 = e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Todays new hashed HMAC_salt=ee79b679bb0f2e2fab91421221d7d9fe27d349d93d47f2d247f8f23a6c8ca74e

stringToSign= PUT x-amz-acl:public-read /geraldkrug/(filename with extension)
hmachash= c832ac7ef3bd572ed09a9e20ddb5d6e349ba015b29dc42f32a40d114ad752872
hmacRawHash= d021c031107194294983e4635c929cc259be5e344c970739a521a396115f285f
bin2hex= 63383332616337656633626435373265643039613965323064646235643665333439626130313562323964633432663332613430643131346164373532383732

Base64_Decode SGVsbG8 = Hello

AWS s3 signature= yDKsfvO9Vy7Qmp4g3bXW40m6AVsp3ELzKkDRFK11KHI=
AWS s3 signature= ydksfvo9vy7qmp4g3bxw40m6avsp3elzkkdrfk11khi%3D

reverse AWS s3 signature then swap every other character...i=kh11fkdrkklz3espavm640xw3b4gmp7qvyo9fvksyd
reverse AWS s3 signature then swap every other character... i%3Dkh11fkdrkklz3espavm640xw3b4gmp7qvyo9fvksyd
hmacHash is hashed and hashed again... 403f020b2e1194753754a98e840525eff0990740a21f62de19e4656978105956

S3 Form Upload

Upload "PUT" an image to s3 bucket geraldkrug


Create API URL for service s3 ,,, current as of 3/30/2014

Properly do all fields then select a .png .gif .bmp or .jpg image by clicking the 'Browse' button and press 'Create API URL s3' to build your aws API URL ***>>>


access-
secret-- AND/OR shared secret for hmac salt key
expires-microtime-1558532281.32 + 604800 sec. max.
host----OR s3-website-us-west-1.amazonaws.com OR s3.amazonaws.com
verb---OR GET OR POST
bucket-
objkey-
time---OR 2019-05-22T13:38:01Z
act----OR GetObject OR PostObject
ver----
algo---OR X-Amz-Algorithm=AWS4-HMAC-SHA1
cred---hostname
date---OR 2019-05-22T13:38:01Z
cont---OR content-type;AWS4-HMAC-SHA256
sig----
uuid---
mtag---
acl----OR private OR authenticated-read
redir--
presys-

upload max. size 1 MB is set, 5GB possible

save code in box as a file>>>


url---
url----
url-----
information needed inside these areas ( ) must remove the ( and ) around the information you added. UTC/GMT



if you inputted a url into the url fields above you can use the buttons below

url--- use http or field is empty.
PUT


url---- use http or field is empty.
GET


url----- use http or field is empty.
POST


Array ( [accessKEY] => AWSaccesskey [date] => YYYYMMDDTHHMMSSZ [date-region-service-tstring] => scope [encode] => lowercase-Base16 [string-to-sign] => Array ( [0] => access [1] => [2] => RequestDate [3] => [4] => CredentialScope [5] => [6] => HashedCanonicalRequest ) )
a:5:{s:9:"accessKEY";s:12:"AWSaccesskey";s:4:"date";s:16:"YYYYMMDDTHHMMSSZ";s:27:"date-region-service-tstring";s:5:"scope";s:6:"encode";s:16:"lowercase-Base16";s:14:"string-to-sign";a:7:{i:0;s:6:"access";i:1;s:1:" ";i:2;s:11:"RequestDate";i:3;s:1:" ";i:4;s:15:"CredentialScope";i:5;s:1:" ";i:6;s:22:"HashedCanonicalRequest";}}
Array ( [accessKEY] => AWSaccesskey [date] => YYYYMMDDTHHMMSSZ [date-region-service-tstring] => scope [encode] => lowercase-Base16 [string-to-sign] => Array ( [0] => access [1] => [2] => RequestDate [3] => [4] => CredentialScope [5] => [6] => HashedCanonicalRequest ) )


Policy=

form 2... do the, Create API URL s3, form twice...then do this form 2

string_to_sign below...all \r and \n removed / is %2F + is %2B = is %3D , is %2C : is %3A

Poli=


Poli=

HMAC_salt=20190522
sha1 poli-signature= 9yxatrDkq0xs4n3XaW5uqqNTvqE=

sha1 poli-signature= 9yxatrdkq0xs4n3xaw5uqqntvqe%3D

objkey
access
acl
success_action_redirect
policyB64-sts
signature-sha256
mimetype
File to upload to S3: This form will not PUT to here so name keys are not used here.



Unbreakable database quality sha256 passwords and visual for OCR usage.


Visualize the string you signed for OCR usage and add to Dropbox folder save