FILTER BY TAG

Security Keys

Before you can activate a profile, you must create a security key to protect each transaction from data tampering. A security key expires in two years.
You cannot use the same security key for both test and production transactions. You must download a security key for each versions of
Secure Acceptance
for test and production.
On the Profile Settings page, click
Security
. The Security Keys page appears. The security script signs the request fields using the secret key and the HMAC SHA256 algorithm. To verify data, the security script generates a signature to compare with the signature returned from the
Secure Acceptance
server. You must have an active security key to activate a profile.

Reseller: Creating Security Keys

  1. In the left navigation panel, choose
    Payment Configuration > Key Management.
  2. Click
    Generate Key
    .
  3. Select a key type.
  4. Click
    Next Step
    .
  5. Select the key subtype
    Secure Acceptance
    .
  6. Click
    Next Step
    .
  7. Enter a key name (required).
  8. Choose signature version
    1
    .
  9. Choose signature method
    HMAC-SHA256
    .
  10. Select a security profile.
  11. Click
    Submit
    .
  12. Click
    Generate Key
    . The Create New Key window expands and displays the new access key and secret key. This window closes after 30 seconds.
  13. Copy and save the access key and secret key.

    ADDITIONAL INFORMATION

    • Access key: Secure Sockets Layer (SSL) authentication with
      Secure Acceptance
      . You can have many access keys per profile. See Scripting Language Samples.
    • Secret key: signs the transaction data and is required for each transaction. Copy and paste this secret key into your security script. See Scripting Language Samples.
    When done pasting the secret keys into your script, delete the copied keys from your clipboard or cached memory.
    By default, the new security key is active. The other options for each security key are:
    • Deactivate: deactivates the security key. The security key is inactive.
    • Activate: activates an inactive security key.
    • View: displays the access key and security key.
    When you create a security key, it is displayed in the security keys table. You can select a table row to display the access key and the secret key for that specific security key.
  14. Click
    Key Management
    . The Key Management page appears.