<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Solutions for integrating with Authorize.NET in Integration and Testing</title>
    <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46513#M23519</link>
    <description>&lt;DIV&gt;&lt;DIV&gt;Hello,&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;I want to integrate my system with a payment gateway and have some expectation:&lt;/DIV&gt;&lt;DIV&gt;- Our system uses credit/debit cards.&lt;/DIV&gt;&lt;DIV&gt;- Support future charges without retransmitting credit/debit card information.&lt;/DIV&gt;&lt;DIV&gt;- Simplify my work to comply PCI.&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;I researched Authorize.NET and come up with following solution.&lt;/DIV&gt;&lt;DIV&gt;- Using Customer Information Manager (CIM) to support future payment.&lt;/DIV&gt;&lt;DIV&gt;- CIM needs customers' credit card&amp;nbsp;information, so I would use Direct Post Method (DPM) to collect the information and forward them to&amp;nbsp;Authorize.NET CIM service.&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;However, I have concerns with that solution&lt;/DIV&gt;&lt;DIV&gt;1. By using&amp;nbsp;DPM, credit cards information still goes through my web server and I need to consider it for PCI compliant. Are there any ways to support future payment and bypassing my server? For example, is it possible to use Server Integration Method (SIM) for the first payment and using the response result for CIM services to support future charges?&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;2. The solution with DPM is for client facing web interface because DPM has Web UI&amp;nbsp;components and I guess it could help me to simplify PCI compliant by encrypting credit card information before transmitting to our server. In the future, I could support native mobile apps, my customers could submit card information from their mobile devices directly, does DPM have similar UI components for native mobile apps? If NOT, using SSL is enough for PCI&amp;nbsp;compliant?&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;3. From&amp;nbsp;&lt;A href="http://www.authorize.net/resources/pcicompliance," target="_blank"&gt;http://www.authorize.net/resources/pcicompliance,&lt;/A&gt;&amp;nbsp;I understand that&amp;nbsp;validations from independent scan vendor&amp;nbsp;for level 4 merchants are optional. Assuming that I apply the solution for my system, what is the process I should go through so that Authorize.NET considers my system is&amp;nbsp;PCI compliant at level 4?&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Please guide me a right direction to integrate Authorize.NET to my system.&lt;/DIV&gt;&lt;/DIV&gt;</description>
    <pubDate>Fri, 22 Aug 2014 07:59:27 GMT</pubDate>
    <dc:creator>khoata</dc:creator>
    <dc:date>2014-08-22T07:59:27Z</dc:date>
    <item>
      <title>Solutions for integrating with Authorize.NET</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46513#M23519</link>
      <description>&lt;DIV&gt;&lt;DIV&gt;Hello,&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;I want to integrate my system with a payment gateway and have some expectation:&lt;/DIV&gt;&lt;DIV&gt;- Our system uses credit/debit cards.&lt;/DIV&gt;&lt;DIV&gt;- Support future charges without retransmitting credit/debit card information.&lt;/DIV&gt;&lt;DIV&gt;- Simplify my work to comply PCI.&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;I researched Authorize.NET and come up with following solution.&lt;/DIV&gt;&lt;DIV&gt;- Using Customer Information Manager (CIM) to support future payment.&lt;/DIV&gt;&lt;DIV&gt;- CIM needs customers' credit card&amp;nbsp;information, so I would use Direct Post Method (DPM) to collect the information and forward them to&amp;nbsp;Authorize.NET CIM service.&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;However, I have concerns with that solution&lt;/DIV&gt;&lt;DIV&gt;1. By using&amp;nbsp;DPM, credit cards information still goes through my web server and I need to consider it for PCI compliant. Are there any ways to support future payment and bypassing my server? For example, is it possible to use Server Integration Method (SIM) for the first payment and using the response result for CIM services to support future charges?&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;2. The solution with DPM is for client facing web interface because DPM has Web UI&amp;nbsp;components and I guess it could help me to simplify PCI compliant by encrypting credit card information before transmitting to our server. In the future, I could support native mobile apps, my customers could submit card information from their mobile devices directly, does DPM have similar UI components for native mobile apps? If NOT, using SSL is enough for PCI&amp;nbsp;compliant?&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;3. From&amp;nbsp;&lt;A href="http://www.authorize.net/resources/pcicompliance," target="_blank"&gt;http://www.authorize.net/resources/pcicompliance,&lt;/A&gt;&amp;nbsp;I understand that&amp;nbsp;validations from independent scan vendor&amp;nbsp;for level 4 merchants are optional. Assuming that I apply the solution for my system, what is the process I should go through so that Authorize.NET considers my system is&amp;nbsp;PCI compliant at level 4?&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Please guide me a right direction to integrate Authorize.NET to my system.&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Fri, 22 Aug 2014 07:59:27 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46513#M23519</guid>
      <dc:creator>khoata</dc:creator>
      <dc:date>2014-08-22T07:59:27Z</dc:date>
    </item>
    <item>
      <title>Re: Solutions for integrating with Authorize.NET</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46517#M23521</link>
      <description>&lt;P&gt;DPM can't forward cc info to CIM, but CIM do have a hosted form options. read the doc in&lt;/P&gt;&lt;P&gt;&lt;A target="_blank" href="http://developer.authorize.net/api/cim/"&gt;http://developer.authorize.net/api/cim/&lt;/A&gt; chapter 4&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;By using&amp;nbsp;DPM, credit cards information still goes through my web server and I need to consider it for PCI compliant. Are there any ways to support future payment and bypassing my server?&lt;/P&gt;&lt;P&gt;DPM don't go thru your server, the form post directly to authorize.net&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For example, is it possible to use Server Integration Method (SIM) for the first payment and using the response result for CIM services to support future charges?&lt;/P&gt;&lt;P&gt;No. same answer as DPM&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2)right now it either using their SDKs for mobile apps(under download) where you would need to register every device.&lt;/P&gt;&lt;P&gt;or thru web browser interface.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 22 Aug 2014 11:16:48 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46517#M23521</guid>
      <dc:creator>RaynorC1emen7</dc:creator>
      <dc:date>2014-08-22T11:16:48Z</dc:date>
    </item>
    <item>
      <title>Re: Solutions for integrating with Authorize.NET</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46569#M23547</link>
      <description>&lt;P&gt;Thank you very much for your advice. I have read CIM hosted option and looked at sample code, but still have one concern.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My system supports users to enter card information one time, and reuse&amp;nbsp;that information for future payments. Even if using CIM hosted option, to create a payment transaction for a customer, my&amp;nbsp;system need to know:&lt;/P&gt;&lt;P&gt;1. Customer profile id: will be generated by my system using API&amp;nbsp;createCustomerProfileRequest.&lt;BR /&gt;2. Payment id: this should be created by customers using CIM hosted form (creating payment id needs credit card information, my server code should NOT handle this to simplify PCI compliant)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Because&amp;nbsp;Payment id is created by using&amp;nbsp;CIM hosted form, my system never know the id and could not create payment transactions. Please correct me if my understanding is not correct.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Aug 2014 05:08:57 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46569#M23547</guid>
      <dc:creator>khoata</dc:creator>
      <dc:date>2014-08-25T05:08:57Z</dc:date>
    </item>
    <item>
      <title>Re: Solutions for integrating with Authorize.NET</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46573#M23549</link>
      <description>&lt;P&gt;1)Your system would create the customer profile, then use the hosted form to have the end user enter then credit card info.&lt;/P&gt;&lt;P&gt;If you read chapter 4, you would see that the token required the customer profile id.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2)Once the end user create their payment profile, there GetCustomerProfile to get their payment profile id.&lt;/P&gt;&lt;P&gt;You probably would list the their cc entry and let the customer select which one to create the transaction from.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Aug 2014 11:22:23 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46573#M23549</guid>
      <dc:creator>RaynorC1emen7</dc:creator>
      <dc:date>2014-08-25T11:22:23Z</dc:date>
    </item>
    <item>
      <title>Re: Solutions for integrating with Authorize.NET</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46589#M23557</link>
      <description>&lt;P&gt;Thank you for quick response. By using&amp;nbsp;GetCustomerProfile&amp;nbsp;request,&amp;nbsp;I could get payment profile id, but the response also includes credit cards information. It's&amp;nbsp;my concern for PCI compliance.&amp;nbsp;I reviewed the document again, but didn't find APIs that only return&amp;nbsp;payment profile id. Please help if you have other solutions that completely ignore credit card information.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Aug 2014 04:04:37 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46589#M23557</guid>
      <dc:creator>khoata</dc:creator>
      <dc:date>2014-08-26T04:04:37Z</dc:date>
    </item>
    <item>
      <title>Re: Solutions for integrating with Authorize.NET</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46595#M23560</link>
      <description>&lt;P&gt;the credit card return from authorize.net is all masked cc#(e.g. xxxx1111). And your customer would probably want it because if they have multiple cc on files, they would want to know which one they are using.&lt;/P&gt;&lt;P&gt;And that the only one the return payment profile id.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Aug 2014 11:02:24 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46595#M23560</guid>
      <dc:creator>RaynorC1emen7</dc:creator>
      <dc:date>2014-08-26T11:02:24Z</dc:date>
    </item>
    <item>
      <title>Re: Solutions for integrating with Authorize.NET</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46671#M23594</link>
      <description>&lt;P&gt;Thank you very much for your kindly help. Your advices help me a lot in PCI compliant.&lt;/P&gt;</description>
      <pubDate>Wed, 27 Aug 2014 02:56:20 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Solutions-for-integrating-with-Authorize-NET/m-p/46671#M23594</guid>
      <dc:creator>khoata</dc:creator>
      <dc:date>2014-08-27T02:56:20Z</dc:date>
    </item>
  </channel>
</rss>

