RE: [PHP] Secure Shopping PHP MySQL??

From: Date: Mon, 11 Sep 2000 13:31:22 +0000
Subject: RE: [PHP] Secure Shopping PHP MySQL??
References: 1  Groups: php.general 
Request: Send a blank email to php-general+get-16170@lists.php.net to get a copy of this message
Openlink's ODBC drivers provide a robust authentication mechanism, with configurable session rules, so the usual problem of authenticating either at the application or database level with a single password can be overcome. In addition, the connection rules can be set to account for several combinations of connection attributes, and can use multiple rulesets at once. Hope this helps! Best regards, Andrew > -----Original Message----- > From: Thomas Deliduka [mailto:thomas@neweve.com] > Sent: Thursday, September 07, 2000 6:04 PM > To: PHP List > Subject: Re: [PHP] Secure Shopping PHP MySQL?? > > > On 9/7/00 5:46 PM this was written: > > > I am using Sybase SQL-AnyWhere (via ODBC) for user > authentication and I'm > > trying to make this as secure as possible. Is it possible to read the > > database over the web? How imporntant is it to encrypt the > information in > > the database? The database is running on the server (Win NT - Apache). > > It's extrememly important for the data to be encrypted in the database. I > don't know if you remember all those reports a year or so back that > mentioned all these online companies that had credit card > information stored > and hackers got into their systems and stole credit card numbers. I am not > going to speculate on which sites because I can't remember and I > don't want > to name a site it didn't happen to. > > Either way the problem happened because: > > 1. not enough security on their db's > 2. the cc information wasn't encrypted within the database so the numbers > were vulnerable. > > Many poeple believe that just because the information is in a > password-protected database that it's secure and it's not. Encryption is > important, especially if you're reading the information across > the web in a > PHP/ASP connection to the database. > > -- > > Thomas Deliduka > IT Manager > ------------------------- > New Eve Media > The Solution To Your Internet Angst > http://www.neweve.com/ > > > > -- > PHP General Mailing List (http://www.php.net/) > To unsubscribe, e-mail: php-general-unsubscribe@lists.php.net > For additional commands, e-mail: php-general-help@lists.php.net > To contact the list administrators, e-mail: php-list-admin@lists.php.net > >

« previous php.general (#16170) next »