Re: Encrypting Credit Card Numbers

This WebDNA talk-list message is from

2004


It keeps the original formatting.
numero = 58804
interpreted = N
texte = Thanks Christian and Donavon. I'll work the encryption into my customer database. -----Original Message----- From: WebDNA Talk [mailto:WebDNA-Talk@talk.smithmicro.com] On Behalf Of Christian F. Gurney Sent: Friday, July 16, 2004 9:05 AM To: WebDNA Talk Subject: Re: Encrypting Credit Card Numbers Allen: It is essential, from a business perspective (as well as common sense) that you encrypt the credit card numbers and personally identifiable information in the database. New laws in California stipulate that if you have a database with any California resident or business in it and it is somehow compromised and you DID NOT have encryption, you must inform ALL Californians in your system that there was a compromise. Use the ENCRYPT function in WebDNA. It will likely be the most difficult thing you do with WebDNA in that the documentation is so poor on the topic, but it will work. Review the TalkList archive carefully. Set up a simple set of templates to get encryption working before you implement it into your stream. Look at making the encrypt/decrypt of your data elements as include files with the .tpl or .inc extension. We further encypt these include files for protection of the SEED value. Others may have tips as well. Christian F. Gurney Managing Director KG InterDev, LLC cfgurney@kginterdev.com -----Original Message----- From: Allen Frye [mailto:allen@allenfrye.com] Sent: Thursday, July 15, 2004 3:20 PM Subject: Encrypting Credit Card Numbers I'm setting up my own database of orders and customer information to use in addition to the shopping cart files. Should I encrypt the customer information in the database, like their card numbers and other billing info? Is there a standard way to handle this security issue? I'm running Webstar 5 on OSX and webdna 5.1g. Allen Frye Zambooie http://www.zambooie.com ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://webdna.smithmicro.com/ ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://webdna.smithmicro.com/ Associated Messages, from the most recent to the oldest:

    
  1. Re: Encrypting Credit Card Numbers ( "Allen Frye" 2004)
  2. Re: Encrypting Credit Card Numbers ( "Christian F. Gurney" 2004)
  3. Re: Encrypting Credit Card Numbers ( Donovan Brooke 2004)
  4. Encrypting Credit Card Numbers ( "Allen Frye" 2004)
Thanks Christian and Donavon. I'll work the encryption into my customer database. -----Original Message----- From: WebDNA Talk [mailto:WebDNA-Talk@talk.smithmicro.com] On Behalf Of Christian F. Gurney Sent: Friday, July 16, 2004 9:05 AM To: WebDNA Talk Subject: Re: Encrypting Credit Card Numbers Allen: It is essential, from a business perspective (as well as common sense) that you encrypt the credit card numbers and personally identifiable information in the database. New laws in California stipulate that if you have a database with any California resident or business in it and it is somehow compromised and you DID NOT have encryption, you must inform ALL Californians in your system that there was a compromise. Use the ENCRYPT function in WebDNA. It will likely be the most difficult thing you do with WebDNA in that the documentation is so poor on the topic, but it will work. Review the TalkList archive carefully. Set up a simple set of templates to get encryption working before you implement it into your stream. Look at making the encrypt/decrypt of your data elements as include files with the .tpl or .inc extension. We further encypt these include files for protection of the SEED value. Others may have tips as well. Christian F. Gurney Managing Director KG InterDev, LLC cfgurney@kginterdev.com -----Original Message----- From: Allen Frye [mailto:allen@allenfrye.com] Sent: Thursday, July 15, 2004 3:20 PM Subject: Encrypting Credit Card Numbers I'm setting up my own database of orders and customer information to use in addition to the shopping cart files. Should I encrypt the customer information in the database, like their card numbers and other billing info? Is there a standard way to handle this security issue? I'm running Webstar 5 on OSX and webdna 5.1g. Allen Frye Zambooie http://www.zambooie.com ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://webdna.smithmicro.com/ ------------------------------------------------------------- This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://webdna.smithmicro.com/ "Allen Frye"

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

Unexpected comparison behavior change in 4.5.1 (2003) What is WebDNA (1997) Fun with dates (1997) [input]?? (1998) searchable list archive (1997) Emailer setup (1997) [WebDNA] Need some PHP help (2009) Multi-Row Tables from a search. (1997) problem serving foreign languages text (1997) what servers are supported for Typhoon? (1997) back one? (2000) PCS Frames (1997) Swear words (2002) Rollovers (1999) listing [text] variables? (1999) [OT] Bad Cookie / Internet Option / Internet Explorer (2004) Pithy questions on webcommerce & siteedit (1997) RAM variables (1997) Protecting Realms (was: IIS Brain Dead) (1998) Solution help needed (1998)