[Date Prev][Date Next][Thread Prev][Thread Next][Minivend by date
][Minivend by thread
]
Re: [mv] Minivend configuration issues
****** message to minivend-users from jdb@maine.com ******
On Wed, Jul 12, 2000 at 12:00:28PM -0400, cfm@maine.com wrote:
> ****** message to minivend-users from cfm@maine.com ******
>
> On Wed, Jul 12, 2000 at 04:26:34PM +0000, Murray Gibbins wrote:
> > ****** message to minivend-users from Murray Gibbins <murray@scotweb.ltd.uk> ******
> >
> > Bobby Hitt wrote:
> > > - When an order is placed, all the fields are filled in except the credit
> > > card number. Is there a way to not have to do this? The client has entered a
> > > userid and password, so why have to enter the number?
> >
> > Never, ever store credit card details on disk. If you __have__ to store them use
> > a one-way hash.
> > Sending credit card details to someones browers just because they have an active
> > session is not good security. They might have gone to make a cup of tea, or they
> > might be in a internet cafe, and left with out killing there session first.
> >
> > Idiom -: users are stupid as sh*t !
>
> Oh come on. He didn't say anything about sending to browser.
>
> It can be a straightforward registered user scenario where the merchant
> retains the numbers and fills them in later or a PO situation or any
> number of others. Just how to do it is workflow issue, not really
> minivend. Chart out your orders sequence. Use some sort of offline or
> inhouse post processing. Typically if it is known users it might
> be any other sort of payment too.
>
Right on, Mr. Miller.
>
> >
> > --
> > ____
> > \__/ Murray Gibbins murray@scotweb.ltd.uk
> > / \ Programmer
> > _ \__/ _ ================================================
> > \\ || // Scotweb Limited, info@scotweb.ltd.uk
> > \\||// 13a Albert Terrace, http://www.scotweb.ltd.uk
> > \||/ Edinburgh EH10 5EA Tel: +44 (0) 131 270 82 33
> > || Scotland. Europe. Fax: +44 (0) 7020 93 49 04
> > -
> > To unsubscribe from the list, DO NOT REPLY to this message. Instead, send
> > email with 'UNSUBSCRIBE minivend-users' in the body to Majordomo@minivend.com.
> > Archive of past messages: http://www.minivend.com/minivend/minivend-list
>
> --
>
> Christopher F. Miller, Publisher cfm@maine.com
> MaineStreet Communications, Inc 208 Portland Road, Gray, ME 04039
> 1.207.657.5078 http://www.maine.com/
> Database publishing, e-commerce, office/internet integration, Debian linux.
> -
> To unsubscribe from the list, DO NOT REPLY to this message. Instead, send
> email with 'UNSUBSCRIBE minivend-users' in the body to Majordomo@minivend.com.
> Archive of past messages: http://www.minivend.com/minivend/minivend-list
-
To unsubscribe from the list, DO NOT REPLY to this message. Instead, send
email with 'UNSUBSCRIBE minivend-users' in the body to Majordomo@minivend.com.
Archive of past messages: http://www.minivend.com/minivend/minivend-list