Please post all pre-sales questions of all products on this forum

Urgent: Compliance with new PayPal regulations

  • drjjw
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
9 years 6 months ago - 9 years 6 months ago #68660 by drjjw
Hello,

As you likely know, PayPal is implementing restrictions on its minimum security requirements. Can you tell me if your EventBooking PayPal and PayPal Pro plugins are compliant with these regulations:

www.paypal-knowledge.com/infocenter/inde...nd=true&locale=en_US

Jordan
Last edit: 9 years 6 months ago by drjjw.

Please Log in or Create an account to join the conversation.

More
9 years 6 months ago - 9 years 6 months ago #68665 by Tuan Pham Ngoc
Replied by Tuan Pham Ngoc on topic Urgent: Compliance with new PayPal regulations
Hi Jordan

As you see, the change if needed is from the server where your site is hosted. So please contact your hosting provider and ask them to make sure the server is SHA - 256 compliant.

More information about this can be found from this can be found below (from Nicholas K. Dionysopoulos, author of Akeeba Backup www.akeebabackup.com )

All you need to do is make sure that your server runs on OpenSSL (libssl) 1.0.1 or later.

IMPORTANT!!! SSL certificates signed with SHA-256 will NOT work with OpenSSL 0.9.x, including OpenSSL 0.9.8 included in the previous generation LTS versions of most Linux distributions. As a rule of thumb, if you can install updates of our Professional software on your server (delivered through our own site which uses an SHA-256 signed EV SSL certificate, NOT the Core versions which are delivered over plain HTTP) your server is most likely ready for this change.


Regards,

Tuan
Last edit: 9 years 6 months ago by Tuan Pham Ngoc.

Please Log in or Create an account to join the conversation.

  • drjjw
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
9 years 6 months ago #68726 by drjjw
Hi Tuan,

Actually, I just spoke to PayPal and there are changes required not just to SSL certificate strength but also to payment integrations embedded on websites. According to this document, payment integrations need to be updated, not just SSL certificates:

www.paypal-knowledge.com/infocenter/inde...nd=true&locale=en_US

Jordan

Please Log in or Create an account to join the conversation.

More
9 years 6 months ago #68739 by Tuan Pham Ngoc
Replied by Tuan Pham Ngoc on topic Urgent: Compliance with new PayPal regulations
Hi Jordan

Looking at it, I still don't see any changes needed from the extension itself.

Regards,

Tuan

Please Log in or Create an account to join the conversation.

More
9 years 5 months ago #69051 by Ryan Wildauer
Replied by Ryan Wildauer on topic Urgent: Compliance with new PayPal regulations
This was a really helpful link I came across as I was attempting to figure out the implications of PayPal's message.
wpgeodirectory.com/paypal-sha-256-compliance-and-what-it-means/

Please Log in or Create an account to join the conversation.

Moderators: Tuan Pham NgocGiang Dinh TruongMr. Dam