There are a number of areas where user access security and security mechanisms provided by the operating system and the database management system are not sufficient to protect transaction and customer data from unauthorised access and tampering: this is where the data is transmitted through communication lines. Whereas data security within the payments networks is the responsibility of card scheme operators, and the SmartVista Processing solution fully supports their requirements, SmartVista addresses security issues on those lines, connections and interfaces that it offers to its customers and users, including:
SmartVista approach to secure transactions between the system and terminal devices is to use Hardware Security Modules (HSM) to encrypt PIN's and, optionally, to provide message integrity control by calculating and adding an ANSI X.9.19 Message Authentication Code (MAC) to each message.
For e-commerce transactions that arrive through public communications infrastructure, SmartVista offers support of all major industry standard security technologies and protocols, such as 3DES, SSL, SET, 3D-Secure and UCAF.
Copyright © 20012007, Banking Production Center. All rights reserved.