| ||||||||||
Shopping cart software Solutions for online shops and malls | ||||||||||
|
X-Cart Home | FAQ | Forum rules | Calendar | User manuals | Login |
X-Payments 1.0 beta5 announcement | ||||
|
|
Thread Tools |
#41
|
|||||||||
|
|||||||||
Re: X-Payments 1.0 beta5 announcement
From your suggested thread:
Quote:
If the above is correct, all PA DSS requires is a standard for X-Cart going forward that assures merchants that they can be compliant using the software provided. The Merchant GOAL is still PCI DSS compliance, which according to McAffee and the questionaire I fill out there, I am compliant now. Where am I wrong here? If I am wrong where is the official PA DSS document that states the new method by which cc info must be transmitted? Exactly how does the current payment module not meet the requirement? Surely they can not simply say DO IT without providing the proper information. Probably not, but they may be the world's biggest organized crime ring leading us to slaughter. I'm just an old man, but I need to read for myself what the requirements are to send cc data starting July 1 and I have not received it or any communication about it from First Data.
__________________
Dedicated Server provided by EWD Hosting X-Cart version 4.1.12 PHP 5.3.2 MySQL server 5.0.87-community Operation system Linux Perl 5.008008 dogbytecomputer.com |
|||||||||
#42
|
|||||||
|
|||||||
Re: X-Payments 1.0 beta5 announcement
Here are a few reg for:
SAQ Validation Type 4 / SAQ C: Merchants with Payment Application Systems Connected to the Internet SAQ C has been developed to address requirements applicable to merchants whose payment application systems (for example, point-of-sale or shopping cart systems) are connected to the Internet (via highspeed connection, DSL, cable modem, etc.) either because: 1. The payment application system is on a personal computer that is connected to the Internet (for example, for e-mail or web browsing), or 2. The payment application system is connected to the Internet to transmit cardholder data. Merchants in Validation Type 4 process cardholder data via payment application systems connected to the Internet, do not store cardholder data on any computer system, and may be either brick-and-mortar (card-present) or e-commerce or mail/telephone-order (card-not-present) merchants. Merchants in PCI DSS Self-Assessment Questionnaire Instructions and Guidelines, v1.2 October 2008 Copyright 2008 PCI Security Standards Council LLC Page 10 Validation Type 4 must validate compliance by completing SAQ C and the associated Attestation of Compliance, confirming that: Your company has a payment application system and an Internet connection on the same device; The payment application system/Internet device is not connected to any other systems within your environment; Your company retains only paper reports or paper copies of receipts; Your company does not store cardholder data in electronic format; and Your company’s payment application software vendor uses secure techniques to provide remote support to your payment application system. I hig lighted a section that applies to us as online venders.
__________________
Xcart 5.1.6 Building New Store Xcart4.6.4 Gold Plus Xcart 4.6.4 Platinum Smart Template, Mail Chimp Upgrade Checkout One (One Page Checkout) Checkout One X-Payments Connector Checkout One Deluxe Tools Call For Price On Sale Module Buy Together Module MAP Price MOD |
|||||||
#43
|
|||||||||
|
|||||||||
Re: X-Payments 1.0 beta5 announcement
Quote:
So the storefront is considered an "other system"?
__________________
Dedicated Server provided by EWD Hosting X-Cart version 4.1.12 PHP 5.3.2 MySQL server 5.0.87-community Operation system Linux Perl 5.008008 dogbytecomputer.com |
|||||||||
#44
|
|||||||
|
|||||||
Re: X-Payments 1.0 beta5 announcement
Will Xpayments handle recurring billing for subscriptions?
__________________
Xcart 5.1.6 Building New Store Xcart4.6.4 Gold Plus Xcart 4.6.4 Platinum Smart Template, Mail Chimp Upgrade Checkout One (One Page Checkout) Checkout One X-Payments Connector Checkout One Deluxe Tools Call For Price On Sale Module Buy Together Module MAP Price MOD |
|||||||
#45
|
|||||||
|
|||||||
Re: X-Payments 1.0 beta5 announcement
Dog, read here: https://www.pcisecuritystandards.org/index.shtml
If you process credit cards you MUST use a certified cart - and believe me, you won't be able to afford to certify a cart that was built for you. The credit card companies are sick of losing money by home made shopping carts with no security. This is their way of ensuring that the data transmitted from the cart to the gateway is absolutely secure - if there are any security holes, the cart won't pass the certification test. Qualiteam is getting by the requirement for now by making X-Payments handle the cc data, not the core X-Cart. So therefore the cart itself doesn't need to be certified. It isn't a load of crap, this is actually a very good idea and one that is long overdue. I can't tell you how many people come to me and have thousands of credit card numbers stored unencrypted in their database and don't even know it. This eliminates that from ever happening. Makes me feel better about online shopping, I can tell you that. Aqua, you won't have to upgrade, BCS Engineering will be making the module compatible with prior versions - just waiting on the final release of X-Payments before they release their 'bridge' application.
__________________
Padraic Ryan Ryan Design Studio Professional E-Commerce Development |
|||||||
|
#46
|
|||||||||
|
|||||||||
Re: X-Payments 1.0 beta5 announcement
OK, got both carts upgraded to be ready for PHP 5.3 and I have let Emerson go on getting that done. Ryan, you say BCSE is going to release connectors or just code patches for the connectors. What about X-Cart, aren't they going to release connectors for 4.1,4.2 & 4.3?
__________________
Dedicated Server provided by EWD Hosting X-Cart version 4.1.12 PHP 5.3.2 MySQL server 5.0.87-community Operation system Linux Perl 5.008008 dogbytecomputer.com |
|||||||||
#47
|
|||||||||
|
|||||||||
Re: X-Payments 1.0 beta5 announcement
Quote:
No, X-Payments has nothing to do this requirement of MasterCard/Discover X-Cart v4.4 is going to have it met.
__________________
Sincerely yours, Alex Mulin VP of Business Development for X-Cart X-Payments product manager |
|||||||||
#48
|
|||||||||
|
|||||||||
Re: X-Payments 1.0 beta5 announcement
Quote:
Screenshots were published at http://forum.x-cart.com/showthread.php?p=289568#post289568
__________________
Sincerely yours, Alex Mulin VP of Business Development for X-Cart X-Payments product manager |
|||||||||
#49
|
|||||||||
|
|||||||||
Re: X-Payments 1.0 beta5 announcement
@DogByteMan
> I had sales-n-stats enterprise, which used a connector I assume is > similar to what they are using here, I paid $400+, it didn't work so > good. Does this connector seem to work better? SnS Connector has nothing to do with the X-Payments one. They are very different. SnS connector was posting data about your web-site visitors behavior real-time while X-PaymentConnector is to pass a buyer from X-Cart into X-Payments to handle payment stuff.
__________________
Sincerely yours, Alex Mulin VP of Business Development for X-Cart X-Payments product manager |
|||||||||
#50
|
|||||||||
|
|||||||||
Re: X-Payments 1.0 beta5 announcement
@Duramax 6.6L:
> Will Xpayments handle recurring billing for subscriptions? X-Payments doesn't handle recurring billing itself. You are to use a payment gateway that supports recurring billing. I.e. you can sell a recurring product via X-Cart couples with X-Payments but maintaining recurring billing cycles are to be done by the payment gateway.
__________________
Sincerely yours, Alex Mulin VP of Business Development for X-Cart X-Payments product manager |
|||||||||
|
|||
X-Cart forums © 2001-2020
|