Quote:
Originally Posted by WiredGuy
Is your postback directory / folder from your transactions secure/locked down?
WG
|
NATS usually works that way:
Postback URL:
http://your.paysite.com/signup/process_epoch.php
which is not really protected... but I dunno, if it's that easy to hack that, why is NATS installing all their copies that way? I don't have a high-profile paysite in the first place. We have no affiliates, etc.
I'm not sure the email infos are going through the postback either.
Epoch's DataPlus uses GRANT commands on the NATS database tables, but is limited by Epoch's IP range (208.236.105.%) and unique username/password.