Security aspects of ISO 8583

879 views
Skip to first unread message

rahul

unread,
Feb 7, 2013, 6:32:08 AM2/7/13
to jpos-...@googlegroups.com
Hello guys, I am new to ISO 8583. Can someone please explain, how is the ISO 8583 client expected to encrypt and send the data over the network.

Mark Salter

unread,
Feb 7, 2013, 7:46:21 AM2/7/13
to jPOS Users
On Feb 7, 11:32 am, rahul <jainrahulse...@gmail.com> wrote:
> Hello guys, I am new to ISO 8583. Can someone please explain, how is the
> ISO 8583 client expected to encrypt and send the data over the network.

That would be an arrangement between the client and a server, both
ends would need to implement the same for the network exchange. Or the
two parties can secure the physical network, or let it secure the
exchange?

Currently any secure data will (ok should) be encrypted individually
(like PINs in a PIN block).

Why and how the data needs to be secured is another question.

The wider world of google should help you as this is not really a jPOS
specific question...


... not until you decide you really want to use jPOS to achieve such
an approach anyway.

Just wondering what caused you to ask this question?

--
Mark

Mark Salter

unread,
Feb 7, 2013, 7:52:50 AM2/7/13
to jPOS Users

On Feb 7, 12:46 pm, Mark Salter <marksal...@talktalk.net> wrote:
> The wider world of google should help you as this is not really a jPOS
> specific question...

I googled and can see why you asked on this group :-)

One of the results I got was :-

http://www.paymentsystemsblog.com/2009/01/20/when-end-to-end-encryption-is-really-not-end-to-end/

The author may happen to be a member of this list and may chime in (if
he is), but I would suggest you take a read of this nice explination -
it might help you.

--
Mark
Reply all
Reply to author
Forward
0 new messages