Re: Encrypting Credit Card Numbers

This WebDNA talk-list message is from

2004


It keeps the original formatting.
numero = 58802
interpreted = N
texte = Allen: It is essential, from a business perspective (as well as common sense) that you encrypt the credit card numbers and personally identifiable information in the database. New laws in California stipulate that if you have a database with any California resident or business in it and it is somehow compromised and you DID NOT have encryption, you must inform ALL Californians in your system that there was a compromise. Use the ENCRYPT function in WebDNA. It will likely be the most difficult thing you do with WebDNA in that the documentation is so poor on the topic, but it will work. Review the TalkList archive carefully. Set up a simple set of templates to get encryption working before you implement it into your stream. Look at making the encrypt/decrypt of your data elements as include files with the .tpl or .inc extension. We further encypt these include files for protection of the SEED value. Others may have tips as well. Christian F. Gurney Managing Director KG InterDev, LLC cfgurney@kginterdev.com -----Original Message----- From: Allen Frye [mailto:allen@allenfrye.com] Sent: Thursday, July 15, 2004 3:20 PM Subject: Encrypting Credit Card Numbers I'm setting up my own database of orders and customer information to use in addition to the shopping cart files. Should I encrypt the customer information in the database, like their card numbers and other billing info? Is there a standard way to handle this security issue? I'm running Webstar 5 on OSX and webdna 5.1g. Allen Frye Zambooie http://www.zambooie.com ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://webdna.smithmicro.com/ Associated Messages, from the most recent to the oldest:

    
  1. Re: Encrypting Credit Card Numbers ( "Allen Frye" 2004)
  2. Re: Encrypting Credit Card Numbers ( "Christian F. Gurney" 2004)
  3. Re: Encrypting Credit Card Numbers ( Donovan Brooke 2004)
  4. Encrypting Credit Card Numbers ( "Allen Frye" 2004)
Allen: It is essential, from a business perspective (as well as common sense) that you encrypt the credit card numbers and personally identifiable information in the database. New laws in California stipulate that if you have a database with any California resident or business in it and it is somehow compromised and you DID NOT have encryption, you must inform ALL Californians in your system that there was a compromise. Use the ENCRYPT function in WebDNA. It will likely be the most difficult thing you do with WebDNA in that the documentation is so poor on the topic, but it will work. Review the TalkList archive carefully. Set up a simple set of templates to get encryption working before you implement it into your stream. Look at making the encrypt/decrypt of your data elements as include files with the .tpl or .inc extension. We further encypt these include files for protection of the SEED value. Others may have tips as well. Christian F. Gurney Managing Director KG InterDev, LLC cfgurney@kginterdev.com -----Original Message----- From: Allen Frye [mailto:allen@allenfrye.com] Sent: Thursday, July 15, 2004 3:20 PM Subject: Encrypting Credit Card Numbers I'm setting up my own database of orders and customer information to use in addition to the shopping cart files. Should I encrypt the customer information in the database, like their card numbers and other billing info? Is there a standard way to handle this security issue? I'm running Webstar 5 on OSX and webdna 5.1g. Allen Frye Zambooie http://www.zambooie.com ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://webdna.smithmicro.com/ "Christian F. Gurney"

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

Exclamation point (1997) Pop-up menu (1998) orderfile and setlineitems (1998) quantity minimum problem (1997) is [Bankres] an internal webcat variable? (1999) Cart# (1997) ImageMagick Commands? (2003) emailer settings and control questions (1997) Stumpted Again (1997) [isfile] ? (1997) Deleting Multiple Database Records based on Checkbox (1998) [WebDNA] Clean URLS job - will pay (2010) Truncated text (2006) pc (1997) Languages (1997) syntax question, not in online refernce (1997) WebMerch/Emailer Error (1998) Locking up with WebCatalog... (1997) Ready,Set; Print! (1999) Missing Cart Information (2003)