PDA

View Full Version : VISA PABP Report


hx0ar
10-30-2007, 05:12 AM
In the VISA PABP Report on Validation, Executive Summary, we have an item asking for "End to end authentication, including application authentication mechanism, authentication database, and security of data storage"

Any sample on how to report this?
"Auth database"? Is that the DB name, tables names, etc where the auth data is taken from?

Sorry, perhaps my english is not that good, but I don't know how this should go.

mdahn
10-30-2007, 10:33 PM
I believe they are looking for the transaction flow diagram. This would not the flow of the credit card transactions from the point-of-initialization (POI) to the authorization/settlement phase.

They would like to know how credit card data is transmitted through the payment application. Sometimes with more complex applications that have several components you need to diagram this out to explain how the application works.