OSCommerce MySql log, credit card encryption

Discussion in 'PHP' started by smrutik, Oct 22, 2009.

  1. #1
    Hi

    How to and where to encrypt credit card no in an oscommerce application before getting stored in sessions table?

    Thanks.
     
    smrutik, Oct 22, 2009 IP
  2. jestep

    jestep Prominent Member

    Messages:
    3,659
    Likes Received:
    215
    Best Answers:
    19
    Trophy Points:
    330
    #2
    Don't. Not a good idea to store CC info at all.

    If you have to, make sure you do so under PCI-DSS guidelines (https://www.pcisecuritystandards.org/), and that it is encrypted using strong encryption. AES128 or better.
     
    jestep, Oct 22, 2009 IP