Credit Card Security

  • Posts: 260
  • Thank you received: 25
11 years 9 months ago #87045

Hi,

I am using eWay credit card merchant facility but unlike Paypal and others, it collects the credit card numbers in the site.

How do I apply security to the card detail when entering? (Do I need SSL etc?, and how do I do that)

Thanks in advance.


Don't look at what is and ask 'why?'; look at what isn't and ask 'Why Not!'

Please Log in or Create an account to join the conversation.

  • Posts: 13201
  • Thank you received: 2322
11 years 9 months ago #87129

Hi,

You can securise you website with SSL, you can enable the option "Force SSL on checkout" in Configuration > Checkout.
Many topics are talking about SSL on this forum ;)

The following user(s) said Thank You: sambob

Please Log in or Create an account to join the conversation.

  • Posts: 260
  • Thank you received: 25
11 years 9 months ago #87197

Thanks Xavier,

Appreciate it.


Don't look at what is and ask 'why?'; look at what isn't and ask 'Why Not!'

Please Log in or Create an account to join the conversation.

  • Posts: 329
  • Thank you received: 94
11 years 9 months ago #87209

It's very important when you are accepting credit cards inline, to be aware of all of the Payment Card Industry guidelines and requirements, and ensure you are in compliance. SSL alone is not sufficient. You can learn more about PCI here: www.pcisecuritystandards.org/merchants/

Compliance includes security scans by authorized vendors on your hosting account/server, and documented business processes to ensure that card holder data is securely handled at every point in your business. Failure to meet PCI compliance requirements (enforced by Visa, MasterCard and other credit card companies) can result in fines and loss of merchant privileges. It's important to educate yourself on the requirements and make sure that your eCommerce site is up to the standards.

While we are not a "certified" PCI compliance company, at Polished Geek we have provided consulting and technical services for many store owners to ensure they are PCI compliant with their Joomla eCommerce stores. If you would like to chat about your security needs, just open a ticket in our Client Area: PolishedGeek.com/clients/contact.php


~ Deb Cinkus, CEO

Polished Geek: more with monday․com
eCommerce Business Process Automation Experts
The following user(s) said Thank You: sambob

Please Log in or Create an account to join the conversation.

  • Posts: 43
  • Thank you received: 3
11 years 9 months ago #87294

You might want to avoid collecting credit card information, especially storing it locally on your server. In many countries you will become legally responsible if you you get hacked. I don't know how eWay works...but a typical website passing off payment processing to Paypal (or similar) is really the safest way to go.

just my opinion

The following user(s) said Thank You: sambob

Please Log in or Create an account to join the conversation.

  • Posts: 260
  • Thank you received: 25
11 years 9 months ago #87320

Thanks PolishedGeek & eskimoroll

Great info, Appreciate


Don't look at what is and ask 'why?'; look at what isn't and ask 'Why Not!'

Please Log in or Create an account to join the conversation.

Time to create page: 0.090 seconds
Powered by Kunena Forum