Re: Encrypting Credit Card Numbers

This WebDNA talk-list message is from

2004


It keeps the original formatting.
numero = 58802
interpreted = N
texte = Allen: It is essential, from a business perspective (as well as common sense) that you encrypt the credit card numbers and personally identifiable information in the database. New laws in California stipulate that if you have a database with any California resident or business in it and it is somehow compromised and you DID NOT have encryption, you must inform ALL Californians in your system that there was a compromise. Use the ENCRYPT function in WebDNA. It will likely be the most difficult thing you do with WebDNA in that the documentation is so poor on the topic, but it will work. Review the TalkList archive carefully. Set up a simple set of templates to get encryption working before you implement it into your stream. Look at making the encrypt/decrypt of your data elements as include files with the .tpl or .inc extension. We further encypt these include files for protection of the SEED value. Others may have tips as well. Christian F. Gurney Managing Director KG InterDev, LLC cfgurney@kginterdev.com -----Original Message----- From: Allen Frye [mailto:allen@allenfrye.com] Sent: Thursday, July 15, 2004 3:20 PM Subject: Encrypting Credit Card Numbers I'm setting up my own database of orders and customer information to use in addition to the shopping cart files. Should I encrypt the customer information in the database, like their card numbers and other billing info? Is there a standard way to handle this security issue? I'm running Webstar 5 on OSX and webdna 5.1g. Allen Frye Zambooie http://www.zambooie.com ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://webdna.smithmicro.com/ Associated Messages, from the most recent to the oldest:

    
  1. Re: Encrypting Credit Card Numbers ( "Allen Frye" 2004)
  2. Re: Encrypting Credit Card Numbers ( "Christian F. Gurney" 2004)
  3. Re: Encrypting Credit Card Numbers ( Donovan Brooke 2004)
  4. Encrypting Credit Card Numbers ( "Allen Frye" 2004)
Allen: It is essential, from a business perspective (as well as common sense) that you encrypt the credit card numbers and personally identifiable information in the database. New laws in California stipulate that if you have a database with any California resident or business in it and it is somehow compromised and you DID NOT have encryption, you must inform ALL Californians in your system that there was a compromise. Use the ENCRYPT function in WebDNA. It will likely be the most difficult thing you do with WebDNA in that the documentation is so poor on the topic, but it will work. Review the TalkList archive carefully. Set up a simple set of templates to get encryption working before you implement it into your stream. Look at making the encrypt/decrypt of your data elements as include files with the .tpl or .inc extension. We further encypt these include files for protection of the SEED value. Others may have tips as well. Christian F. Gurney Managing Director KG InterDev, LLC cfgurney@kginterdev.com -----Original Message----- From: Allen Frye [mailto:allen@allenfrye.com] Sent: Thursday, July 15, 2004 3:20 PM Subject: Encrypting Credit Card Numbers I'm setting up my own database of orders and customer information to use in addition to the shopping cart files. Should I encrypt the customer information in the database, like their card numbers and other billing info? Is there a standard way to handle this security issue? I'm running Webstar 5 on OSX and webdna 5.1g. Allen Frye Zambooie http://www.zambooie.com ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://webdna.smithmicro.com/ "Christian F. Gurney"

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

Email within tmpl ? (1997) What kind of request is this? (2002) Spawn doesn't work as advertised ... (2000) Re:How to Display text in empty fields (1997) Re1000001: Setting up shop (1997) Proper file locations (1997) Math (1997) Next (1997) Free Utility (2003) Using the sendmail command on CGate Pro (Unix) (2000) FW: weird problem (2004) WC1.6 to WC2 date formatting (1997) Sendmail and attachments? (1998) Creating main- and sub-category search (1997) Multiple fields on 1 input (1997) required fields (1998) Add to Cart & List of Products (1997) Superfilous Characters (1998) suggestion (1997) Roundup function? (1997)