Home › Forums › WordPress › Web Invoice – Invoicing and billing for WordPress › Secure Connections via Authorize.net
Tagged: authorize.net, SSL, web invoice
- This topic has 5 replies, 2 voices, and was last updated 13 years, 11 months ago by
S H Mohanjith.
-
AuthorPosts
-
April 14, 2009 at 22:04 #3406
kimminick
MemberLoving this plugin so far! But I’m stuck. I really don’t want this to sound stupid as I am very computer literate. I use authorize.net to accept payment. When paying online its a secure connection. How do I get the right information to have it be a secure connection via this plugin?
April 15, 2009 at 03:09 #4444S H Mohanjith
MemberI’m not sure I understand you. Is the issue with securing connection between
1) your clients and your server or
2) your server and Authorize.net.
AFAIK, 2) is not an issue as you are using https for communitcation between your server and Authorize.net.
You should get a SSL certificate to achieve 1) and use https and force your clients to use https. Technically speaking most SSL certificates provide the same level of security but not the same level of assurance, therefor choose your SSL certificates wisely.
In Web Invoice settings page (‘Web Invoice’ -> ‘Settings’), set ‘Protocol to Use for Invoice URLs:’ to https and ‘Enforce HTTPS’ to Yes.
Hope I answered you question. If not please elaborate on your problem.
April 15, 2009 at 19:14 #4447kimminick
MemberThanks for your reply. I realized I wasn’t very clear in my explanation. When I have a client pay me via the authorize.net site its a secure connection. Do I still need to get a SSL certificate to utilize this plugin?
April 15, 2009 at 19:40 #4450S H Mohanjith
MemberYes, at least if you care about security of your client’s personal details (Credit Card and contact information). You need to use https and also force all connections via https. As credit card details are first sent to your server and then sent to Authorize.net to do the actual transaction (i.e. AIM(Advanced Integration Method), see http://developer.authorize.net/faqs/#7411).
IMHO, all Web Invoice installations should use https at least in the admin area. If not, you are exposing your client’s contact details to any eavesdropper/packet sniffer. If you are using credit card as the payment method, you must use https, no exceptions.
April 16, 2009 at 00:10 #4453kimminick
MemberI know that I want a secure connection as I would never put my info into a place that isn’t secure. What I was asking is if I could piggyback off of the authorize.net site. But it doesn’t look like it. Thanks for answering and the email.
April 16, 2009 at 10:57 #4456S H Mohanjith
MemberYou can do that with Moneybookers, AlertPay and PayPal as the information is submitted to their secure servers.
-
AuthorPosts
- You must be logged in to reply to this topic.