E-Commerce 4.0 for the IT Professional IT 28167 Thomas Mantooth/Datatel Stu Story/Datatel Andy Kleehammer/Datatel.

Slides:



Advertisements
Similar presentations
MFA for Business Banking – Security Code Multifactor Authentication: Quick Tip Sheets Note to Financial Institutions: We are providing these QT sheets.
Advertisements

RP Designs Semi-Custom e-Commerce Package. Overview RP Designs semi- custom e-commerce package is a complete website solution. Visitors can browse a catalog.
Lecture 3 Title: Online Payment: Credit Card and PayPal
Pharos Uniprint 8.3.
Using the Self Service BMC Helpdesk
SECURITY IN E-COMMERCE VARNA FREE UNIVERSITY Prof. Teodora Bakardjieva.
WSUS Presented by: Nada Abdullah Ahmed.
Module 6: Configuring Windows XP Professional to Operate in a Microsoft Network.
UI 4.x Ready or not, here it comes.... What is UI4.x? A graphical user interface for Colleague, extending the functionality of UI Web. Added functionality.
©Centre for Development of Advanced Computing 1 State e-governance Service Delivery Gateway (SSDG)‏ A Messaging Middleware for.
©2008 TTW Where “Lean” principles are considered common sense and are implemented with a passion! Product Training Credit Cards.
16.1 © 2004 Pearson Education, Inc. Exam Planning, Implementing, and Maintaining a Microsoft® Windows® Server 2003 Active Directory Infrastructure.
CSLA Presenter Sergey Barskiy, senior consultant at Magenic Technologies your questions Send an in order.
1 Configuring Web services (Week 15, Monday 4/17/2006) © Abdou Illia, Spring 2006.
GPUG ® Summit 2011 November 8-11 Caesars Palace – Las Vegas, NV Payment Processing Online and Within Dynamics GP PCI Compliance and Secure Payment Processing.
Web Servers How do our requests for resources on the Internet get handled? Can they be located anywhere? Global?
1 of 5 This document is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED, IN THIS DOCUMENT. © 2006 Microsoft Corporation.
NETOP ONDEMAND What’s new in version 2.1? DECEMBER 09 NETOP ONDEMAND1.
Payment Card Industry (PCI) Data Security Standard
Welcome Course 20410B Module 0: Introduction Audience
16.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 16: Examining Software Update.
PCI 3.0 Boot Camp Payment Card Industry Data Security Standards 3.0.
Course 6421A Module 7: Installing, Configuring, and Troubleshooting the Network Policy Server Role Service Presentation: 60 minutes Lab: 60 minutes Module.
Terminal Services in Windows Server ® 2008 Infrastructure Planning and Design.
Turkey IDA Info-Day PM Session, September 25, 2003 CIRCA 1 CIRCA : The IDA Collaborative Software Tool Grzegorz Ambroziewicz European Commission - DG Enterprise.
Electronically approve and create Suppliers in Oracle Financials using a combination of APEX and Oracle Workflow. NZOUG Conference 2010 Brad Sayer Team.
Trimble Connected Community
Clarity Educational Community Get the Results You Need When You Need Them Transitioning to CA PPM On Demand Presented by: Joshua.
Classroom User Training June 29, 2005 Presented by:
© Copyright 2013 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. Job Request System v3.0.
©Kwan Sai Kit, All Rights Reserved Windows Small Business Server 2003 Features.
SharePoint and SharePoint Online: Today and what's next? Presented by Luke Abeling – IT Platforms.
ASP.NET 2.0 Chapter 5 Advanced Web Controls. ASP.NET 2.0, Third Edition2 Objectives.
CHAPTER Windows NT Server Installation. Chapter Objectives Give an overview of the installation process Outline the pre-installation and post- installation.
E-commerce Vocabulary Terms. E-commerce Buying and selling of goods, services, or information via World Wide Web, , or other pathways on the Internet.
E-commerce Vocabulary Terms By: Laura Kinchen. Buying and selling of goods, services, or information via World Wide Web, , or other pathways on the.
Module 7: Fundamentals of Administering Windows Server 2008.
Tom Castiglia Hershey Technologies
Database-Driven Web Sites, Second Edition1 Chapter 5 WEB SERVERS.
Activating Clarity  Activating Clarity  Activation  Online Activation  Fax Activation  Review and Verify Activation and License Terms  Updating.
Introduction to WebAdvisor IIPS Conference 2005 WebAdvisor.
Welcome to the Delaware Valley SharePoint User Group Russ Basiura SharePoint Consultant RJB Technical Consulting
Module 4 Planning and Deploying Client Access Services in Microsoft® Exchange Server 2010 Presentation: 120 minutes Lab: 90 minutes After completing.
Computer Emergency Notification System (CENS)
Customer Interface for wuw.com 1.Context. Customer Interface for wuw.com 2. Content Our web-site can be classified as an service-dominant website. 3.
Chapter 11 Working with Credit Card Methods of Processing Credit Cards Preparing for Cyber Cash Authoring a Credit card Transaction.
Security fundamentals Topic 5 Using a Public Key Infrastructure.
Configuring and Troubleshooting Identity and Access Solutions with Windows Server® 2008 Active Directory®
Creating and Managing Digital Certificates Chapter Eleven.
Database Security Cmpe 226 Fall 2015 By Akanksha Jain Jerry Mengyuan Zheng.
Implementing Microsoft Exchange Online with Microsoft Office 365
Installation of Storage Foundation for Windows High Availability 5.1 SP2 1 Daniel Schnack Principle Technical Support Engineer.
NERDug 2009 Session WebAdvisor 101: From Soup to Nuts! 7/30/2009 at 2:00pm Emerald Room Jeff Butera Hampshire College
PAYWARE MOBILE API – APP TO APP INTEGRATION. PAYWARE MOBILE API OVERVIEW VeriFone’s PAYware Mobile API provides iPhone developers the ability to easily.
PCI-DSS: Guidelines & Procedures When Working With Sensitive Data.
State of Georgia Release Management Training
ACCOUNT ADMINISTRATION. Objectives In this session you will learn how to: –Create Business Units. –Create new users and manage security settings. –Configure.
Hands-On Microsoft Windows Server 2008 Chapter 5 Configuring Windows Server 2008 Printing.
CashNet/Colleague Integration NERDug 2005 – July – Hampshire College Rob Allender - CashNet Jeff Butera – Hampshire College Session July 29,
© 2011 IBM Corporation Sterling Commerce Support to IBM Support Transition IBM Industry Solutions | Commerce/Connectivity and Integration.
E-Commerce 4.x for Colleague Advancement (IA 28090) Cindy Stair Lead Developer/Designer Datatel, Inc.
Windows Certification Paths OR MCSA Windows Server 2012 Installing and Configuring Windows Server 2012 Exam (20410) Administering Windows Server.
SAP R/3 User Administration1. 2 User administration in a productive environment is an ongoing process of creating, deleting, changing, and monitoring.
CACI Proprietary Information | Date 1 PD² v4.2 Increment 2 SR13 and FPDS Engine v3.5 Database Upgrade Name: Semarria Rosemond Title: Systems Analyst, Lead.
Interset Support Overview March 2017
InGenius Connector Enterprise Microsoft Dynamics CRM
The Application Lifecycle
Jerald Overstreet, GISP Server Portal SQL Manager Admin
Designing IIS Security (IIS – Internet Information Service)
{Project Name} Organizational Chart, Roles and Responsibilities
Presentation transcript:

e-Commerce 4.0 for the IT Professional IT Thomas Mantooth/Datatel Stu Story/Datatel Andy Kleehammer/Datatel

Agenda What is e-Commerce 4.0? What is the Payment Gateway? Colleague Core Web Service Payment Gateway Requirements Colleague Core Web Service Requirements Deployment and Installation Configuration

The Regulatory Evolution Visa CISP PCI - DSS PABPPA-DSS

The Regulatory Evolution Datatel has been monitoring the evolution of credit card data security standards and evaluated two options with respect to addressing the current PA-DSS data security standards – Option 1: Make the necessary modifications to the Colleague e-Commerce solution and obtain and maintain the necessary certifications – Option 2: Make the necessary modifications to the Colleague e-Commerce solution such that, by definition, Colleague is no longer a payment application This decision will allow us to focus on enhancements to e- Commerce functionality – freeing us from the “regulatory chase” T HE DECISION WAS TO MAKE THE MODIFICATIONS SUCH THAT C OLLEAGUE E -C OMMERCE IS NO LONGER A PAYMENT APPLICATION T HE DECISION WAS TO MAKE THE MODIFICATIONS SUCH THAT C OLLEAGUE E -C OMMERCE IS NO LONGER A PAYMENT APPLICATION

What is e-Commerce 4.0? With e-Commerce 4.0 Datatel is launching the new “hosted model” e-Commerce solution –Colleague will no longer support the entry, transmission, or storage of sensitive credit card information –The entry, transmission, and authorization of credit card transactions will now be completed in a secure partner environment –Any encrypted credit card numbers and CVV2 data currently stored within Colleague will be removed as part of the post installation processes Colleague uses the new Payment Gateway to redirect the user the payment provider’s website This new methodology will be deployed for all Datatel interfaces in all places where credit card payments are accepted – including Datatel Recruiter e-Check processing in Colleague is not impacted

What is the Payment Gateway? A central component of e-Commerce 4.0 that makes moving to hosted credit card entry possible Serves 3 purposes: 1) Directs a user and payment data to a payment provider’s (PayPal or OPC) website 2) Records payment transactions in Colleague or Datatel Recruiter 3) Directs the user back to Colleague or Datatel Recruiter

What is the Payment Gateway? (cont.).NET web application installed on an external facing Windows server One instance of the Payment Gateway can support one Colleague and one Datatel Recruiter environment simultaneously Makes use of the Colleague Core Web Service

Colleague Core Web Service A.NET web application used to authenticate against a specific Colleague environment The Payment Gateway uses this service to acquire a connection to a Colleague environment during the credit card authorization process This component is used by more applications than just the Payment Gateway

Payment Gateway Hardware Requirements External Windows Server P4 w/ 2.1 GHZ processor minimum 5 GB of free disk space 1 GB of available memory If you have Datatel Recruiter, Datatel recommends you install the Payment Gateway on the same server as the Recruiter Admissions Application Datatel does not recommend installing the Payment Gateway on the same server as WebAdvisor or the Datatel Portal

Payment Gateway Software Requirements Windows Server 2003, 2008, or 2008 R2 IIS 6.0, 7.0, or 7.5.NET Framework 3.5 SP1 ASP.NET 2.0.x

Colleague Core Web Service Requirements Same hardware & software requirements as the Payment Gateway except installed on an internal server Separate from the Payment Gateway server in order to centralize it for use by multiple Datatel services Datatel recommends installing this on the same server as UI 4.x

Certificates Certificates required to secure communications between servers Provider’s server to Payment Gateway Certificate Authority’s root certificate for the certificate that the Payment Gateway uses must already be installed with all Datatel supported web browsers Datatel recommends using a wildcard certificate for multiple Payment Gateways on the same server Payment Gateway to Colleague Core Web Service Payment Gateway to DMI secure port Payment Gateway to Datatel Recruiter e- Commerce web service

Recommended Deployment

Installation InstallShields used for both Payment Gateway and Core Web Service Option to install on new or existing IIS website

Payment Gateway Configuration Tool Configuration tool also installed on external server to setup Payment Gateway Tool is a snap-in to Microsoft Management Console (MMC) MMC is utility available on Windows servers that lets you manage many aspects of your server

Payment Gateway Configuration Tool (cont)

e-Commerce 4.0 Software Updates SU – DMI –Can be installed with e-Commerce 3.7 –SU – Critical SU for SOAP/Java 1.5 SU – UT –Can be installed anytime after WA Remaining updates must be installed together –SU – CORE –SU – AR/CR –SU – CA

CORE Setup Changes New e-Commerce data –New files –New fields Setup changes for… –e-Commerce Provider –Payment Method Setup Changes –e-Commerce Provider Account Mapping Post-install subroutine New WebAdvisor forms

New parameters Logical file: EC.PMT.GATEWAY.PARAM Stored in CORE.PARMS Maintained on ECPG form –URL to Payment Gateway start page Detail to HKLM (Hyperlink Maintenance) –UI Payment Timeout Value –WebAdvisor Payment Timeout Value

New e-Commerce file: EC.PAY.TRANS Contains all data for 1-time credit card payments and authorizations –Data for other transactions in ECT.LOG Initial data created by Colleague payment process: CREN, WMPT, GFE, WMAG, etc. Data processed by Payment Gateway –Data passed to e-Commerce provider –Updated data from e-Commerce provider Contains data for WebAdvisor payments

New e-Commerce fields Provider Account setup fields (ECPA) –Username –Account-specific information Name/value pairs –Username and value fields are encrypted Country setup (CTRY) –ISO Code field –Defaults to country code

e-Commerce Provider Setup (ECPA) Username field –Optional –Needed for PayPal best practice Will become future PayPal requirement Name/value pairs –Required for some OPC transactions –Used to activate DMI extension logging

Payment Method/Mapping Changes Payment method changes –Web-enabled payment methods must also be enabled for e-Commerce –Disallows use of non-ecommerce credit cards through Colleague Mapping changes – new transaction types –RCCSETUP – Recurring credit card setup –RCCSALE – Recurring credit card payment New transaction types for Advancement only

Additional setup OPC clients –Change URL on ECPR –Provide return URLs to Payment Gateway PayPal clients –Payflow Link configuration on PayPal Manager –Critical options Return URLs to Payment Gateway Required/editable fields

Automated post-install routine – CORE Updates list of encrypted data elements –ALL Core e-commerce data elements –Not just those added with e-Commerce 4.0 Updates payment methods for non-EC credit cards –Changes web-enabled flag to “No” Sets default timeout values for ECPG –120 seconds for both UI and WA

WebAdvisor changes Payments by e-check –No changes Payments by credit card –Will route to PAYPROCA Special processing for URL and arguments –Goes to provider’s site –Returns to PAYPROCB Only for successful transactions Add to Do Only These security classes

WA Credit Card Payments Workflow

AR/CR Changes – e-Commerce 4.0 Automated post-install subroutine –Updates AR/CR encrypted data elements Adds RCPT.ENCRYPTED.EXPIRE.DATES Removes RCPT.ENCRYPTED.CONTROL.NOS –Clears all values stored in RCPT.ENCRYPTED.CONTROL.NOS Process all non-EC credit card refunds first –Changes “Payment Verify Implemented” flag on FIWP to “No”

UI form changes (CREN, CRAF) Pay Method window changes –Amount to Pay after Pay Method –New Card Reader field –Convenience Fee displayed Credit Card payments –Control number, Expiration date, & Confirmation numbers populated

WA Payment Acknowledgements All payment workflows now… Display all data required by VISA Show payment method used on provider’s web site, if available Send acknowledgement –Looks like web form –Custom entries included on –Uses same CSS as acknowledgement form

WA Payment Acknowledgements Pay on My Account/Payment Plan –Includes acknowledgement paragraph (FIWP) Use “N” option on DPAR to remove line breaks –Shows detail for AR payments Can be multiple terms from WMPT Instant Enrollment –Displays same class info as before –Clients can customize message using UTER

acknowledgement example

Configuration – Colleague Advancement Post-Install subroutine deletes credit card data in CA.PAYMENT records –CAPAY.ENCRYPTED.CONTROL.NO –CAPAY.CCV2 All existing automatic credit card payments will need to be re-authorized Re-enable Make a Gift and Make a Pledge Payment, as necessary on MCWP

Make a Contribution Web Param (MCWP)

Managed Deployment Due to the complexity and crucial nature of e-Commerce 4.0, Datatel adopted a managed deployment program –Access to the software is by retrieval code only –Key steps must be completed and validated by Datatel in order to obtain the retrieval code Program cessation date is March 22nd at which point e-Commerce 4.0 software updates will be available through the normal mechanisms –Safeguards will be gone! Please! Read and understand the documentation well BEFORE you start the process!! A WELL THOUGHT - OUT IMPLEMENTATION PLAN – WITH TIMELINE – IS REQUIRED !

e-Commerce 4.1 Available Q –Subject to availability by providers Support for credit card readers –Not available in e-Commerce 4.0 –OPC clients using card readers must purchase new encrypted card readers –Existing readers work with PayPal All known issues from 4.0 resolved

e-Commerce 4.X Resources Documentation for Migrating e-Commerce Clients –Installation Procedures: Payment Gateway –Installation Procedures: e-Commerce 4.0 –Installation Procedures: e-Commerce coming soon –Release Highlights: e-Commerce 4.0 to coming soon Documentation for newly implementing e- Commerce Clients –Installation Procedures: Payment Gateway –e-Commerce Installation & Administration

e-Commerce 4.X Resources e-Commerce e-Learning Portal – Single-source for accessing on-demand, self-paced training and other resources. Recorded sessions Installation worksheets and implementation tools and checklists Reference a library of end user job-aids Installation Services including the installation and configuration of the Envision software updates, the Colleague Core Web Service and the Payment Gateway – Technical planning call: discussion of the technical planning call to confirm requirements for hardware and software updates and to ensure readiness for installation. – Installation and configuration of the Core Web Services and the Payment Gateway in the Test environment; and turnover to clients for testing – Installation and configuration of production environment Client Communities and the e-Commerce 4.X Forum Sign-up for “Office Hours” with Datatel staff through the webdemo room – Mondays and Wednesdays, 4-5pm eastern through March 30th

Next Steps Decide – Will the institution “go live” on e-Commerce 4.0 or e- Commerce 4.1? Take advantage of the guidance provided by the Managed Deployment; available through March 22 nd Take advantage of Office Hours; available through March 30 th Decide – Will you require installation support from Datatel? Decide – Will you want to take advantage of the e-Commerce 4.X learning Portal? If you are not using Colleague e-Commerce but would like to know more about how it – contact your Client Business Relations team.

e-Commerce 4.0 Betas T HANKS TO OUR B ETAS  Amarillo College  Anne Arundel Community College  Chaffey College  College of Western Idaho  Dallas County Community College District  Metropolitan Community College  North Island College  Union University W E ARE LOOKING FOR BETAS FOR E -C OMMERCE 3.7 TO 4.1!!

Questions ?

IT 28167