Re: Secure Shopping PHP MySQL??
| From: | Simon Edwards | Date: | Fri, 08 Sep 2000 03:43:24 +0000 |
| Subject: | Re: Secure Shopping PHP MySQL?? | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-15815@lists.php.net to get a copy of this message | ||
PHP List wrote:
> Basically what I am trying to accomplish is to have my customers customer
> place an order online. I want to get the CC information securely to my
> customer so they can process for payment. I was thinking of using the
> database feature because I could store the CC# there until my customer was
> ready to take it and process the order.
Maybe you could use PGP to encrypt the CCs and then when your client
collects the orders and moves them off the web server then can use thier
private key to decrypt. THe important thing here is that you *never* let
the private (decryption) key near the web server.
Alternatively, your client could just collect orders and then invoice
thier customers if that's possible.
> These are small time customers. I can't afford pgp for my server or do my
> customers particularly want to pay the fee's associated with Internet
> Merchant accounts or cybercash type systems.
> I am just attempting to skirt the system and go with a little to no cost
> solution. Isn't that what open source is all about? :)
$$$$$ of credit card fraud, not to mention possible legal action doesn't
strike me as being a "little to no cost solution".
--
Simon Edwards
Animated Design, Melbourne
http://www.animated.net.au/ Ph: (03) 98850990