View Single Post
Old 12-21-2007, 04:20 AM  
the indigo
Confirmed User
 
the indigo's Avatar
 
Industry Role:
Join Date: Sep 2001
Location: North America
Posts: 2,016
Quote:
Originally Posted by WiredGuy View Post
Is your postback directory / folder from your transactions secure/locked down?
WG
NATS usually works that way:

Postback URL: http://your.paysite.com/signup/process_epoch.php

which is not really protected... but I dunno, if it's that easy to hack that, why is NATS installing all their copies that way? I don't have a high-profile paysite in the first place. We have no affiliates, etc.

I'm not sure the email infos are going through the postback either.

Epoch's DataPlus uses GRANT commands on the NATS database tables, but is limited by Epoch's IP range (208.236.105.%) and unique username/password.
__________________
"There he goes. One of God's own prototypes. A high-powered mutant of some kind never even considered for mass production. Too weird to live, and too rare to die." -Hunter S. Thompson
the indigo is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote