Jump to content
  • Checkout
  • Login
  • Get in touch

osCommerce

The e-commerce.

Authorize.Net - ADC Relay Response / OSCommerce


EnigmaBiz

Recommended Posts

Posted

In ref to this (topic here) I managed to fix and have it working.

 

I also got this in the email. We're safe but I feel sorry for some out there using Miva, Agora and bunch of other shopping carts that are designed to take a login/pass.

 

Dear Authorize.Net Merchant:

 

To tighten the security of requests submitted to the Payment Gateway for merchants using the WebLink and ADC Relay Response connection methods, a new submission security standard has been established.

 

As of October 21, 2002, all WebLink and ADC Relay Response payment form requests submitted to the gateway with a password will be rejected. Passwords submitted to the gateway over the Internet in this manner are increasingly subject to being compromised. To better protect the integrity of your gateway account and to safeguard your customers, the Payment Gateway will not accept payment form requests submitted with a password after October 21, 2002.

 

To avoid rejected payment form requests, make sure that Password-Required mode is OFF at all times. To check the status of this setting:

 

1. Log into the Merchant Interface.

2. Click Settings in the main menu.

3. Click Security in the Setting menu.

4. Uncheck the box labeled "Require Password for ALL Transactions." If this box is unchecked already, DO NOT check it.

 

*Note: This security standard does not apply to merchants using the ADC Direct Response integration method.

 

To increase the overall security and performance of your connection to the Payment Gateway, you may want to consider following a few recommended best practices, such as:

 

- Connect to the Payment Gateway using ADC Direct Response, the preferred method for processing transactions through the payment gateway. Using Direct Response, you can connect securely and directly to the gateway server.

- Monitor your batches. Be aware of the transactions that are being processed through your account. Know the time that your transactions are settled and always review transactions before settlement occurs.

- Monitor abnormally high amounts of authorization-only transactions, especially those transactions with identical amounts and/or lacking customer information.

- Be suspicious of transaction amounts that are not in the usual range of your customers' average ticket. Careful monitoring of your account can help you identify and void any unauthorized transactions.

- Monitor all international transactions. Be aware of the differences between international and domestic transactions and pay special attention to all international transactions.

 

For more information about safeguarding your account and transactions, please see the Security "Best Practices" White Paper at http://www.authorize.net/files/securitybes...stpractices.pdf.

 

Sincerely,

Authorize.Net

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...