Dave Tenerowicz wrote:

Or is the only safe approach to use XML import?

disclaimer: I just sat through a credit card security webinar this afternoon and of course the purpose was to convince you that you should treat cc info like plutonium unless you buy a certain vendors black boxes, so of course now I see that its really impossible because of every nifty thing you should do (or could buy), I know of a way to defeat it.>

You can build a bridge entity that you populate your cc info into using normal database transfers, and let a service do the lifting for you. I believe the current Opentaps has a "dataimport" module in the hot-deploy directory that has the ability to import credit card numbers with parties.

http://www.opentaps.org/index.php?option=com_content&task=view&id=51&Itemid=78

We have built several import tools like this (with Si's help) that have a ton of customization and logic that we needed.

--
Walter

Reply via email to