Req. advice on automated gpg batch job and storage of private key/keyring offline

Faramir faramir.cl at gmail.com
Sun Sep 14 21:25:11 CEST 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

John French escribió:
> I need to store credit card numbers in my server's database (server
> co-located elsewhere).  I want to keep the public key on the server to
> encrypt the card numbers when entered by account holders and prior to db
> storage.  I have to keep the cc number on record for recurring billing
> purposes.  It makes me feel more secure to keep the private key and

  A couple of months ago, I had to setup an eCommerce site for as a
class project at university. And my group (and me) chose to use paypal
to handle the payments... that way, we didn't have to worry about how to
keep that info secure... I know this is not the answer you are expecting
to receive, and maybe that solution is not suitable for what you need,
but...

  If you want to test the security of your site, www.comodo.com issues
paid x.509 certificates, but they also provide free trial certificates
(and they are "working" certificates, the same thing the sell, but very
short lived), and they have services to check your security too... but
be aware these kind of test can make your server to need a reset...
Probably there are other sites offering those services, I recommend
Comodo because it is the one I know (and because I like their free stuff).

  Best Regards
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iQEcBAEBCAAGBQJIzWUWAAoJEMV4f6PvczxAuBoH/0bfkcUTGiaPsBXWPU7AaVKS
0K8gRKmGRZ3oBxtTgPtESfHKPmOOqSIbitZhbC+3UHeZlaptX5HZe/QosGbgJE/l
wIGn4tQEwdpN03vHq89wPTtewhayiaJBHL9nbnDyhRgpgkOSVxcod6aAWR9NpOXN
0fmIPs9udZdf5MUQMB9ROsb+D6cUu3PB8ADHOwRko/HyTlbJVl+CcXdfKIjBaHyU
goQFe16M8G8oZCj/i61BlDmAzVaVMBTIZ3oPndDEZGumsH29MYthLdPcrP1viSxs
1Sgg5vCGebDauC1t5aUHGWAl0BNrh6gguB2EBxlN7zscEZ+wqicC6oFNgUPGQT4=
=e/Fm
-----END PGP SIGNATURE-----



More information about the Gnupg-users mailing list