[NTLUG:Discuss] OT? security comparsion

Greg Edwards greg at nas-inet.com
Mon Nov 28 19:32:58 CST 2005


m m wrote:

> 
> An example:
> If there is a e-commerce website
> you want to buy something from them
> they offer 4 type of payment method
> (the credit, address... information need to be submitted/sent)
> 
> 1. submit information with regular http:// form
> 2. submit information with SSL https:// form
> 3. Fax information to them
> 4. Call them and give the information (leave message)
> 
> 
> which way(s) you will not (never) do?
> why? most of the answer would be security reason.
> 

SSL is just as safe and secure as handing your credit card to the waiter 
at your favorite restaurant.  The risk is not in the transaction, it's in 
the establishment handling your credit card.

I would never send a CC number via fax or http.  Neither are secure enough 
for that kind of information, IMHO.  If the person getting the fax is 
standing there at the time, and both your end and their's are hard wired 
to real fax machines, still not for me.

I don't have any problems with a phone, only with a live person on the 
other end though.  There's a paranoia level each individual reaches when 
they won't do a phone purchase.  You'd probably give Sears catalog your 
number, but not Joe's Eats.

-- 
Greg Edwards
New Age Software, Inc. - Software Engineering Services
http://www.nas-inet.com




More information about the Discuss mailing list