[UPHPU] Is https enough?

Walt Haas haas at xmission.com
Mon Jun 11 14:40:00 MDT 2007


On Mon, 2007-06-11 at 12:31 -0600, Lonnie Olson wrote:
> Webot Graphics wrote:
> > Is https enough to mostly protect the transmission of credit card data?
> 
> If you are only talking about protecting the actual transmission, then 
> Yes.  HTTPS is enough.
> 
> However, it is probably even more important to pay attention to what 
> happens to the data at both ends of the https transaction.

Here's the actual standard:

http://www.pcisecuritystandards.org/

-- Walt




More information about the UPHPU mailing list