• Skip to main content
  • Skip to primary sidebar

Victor Font Consulting Group, LLC

The DEX Intranet Specialists

  • Home
  • Care Plans
    • Care Articles
    • Optional Subscriptions
  • Consultations
  • Products
    • Code Snippets
    • Public GitHub Repositories
    • Gist Snippets
    • Pastebin Snippets (Free)
    • Free Plugins
  • FAQs
  • Support
    • Graphic Design
  • Contact
    • Speakers
    • Portfolio
  • Resources
    • Free WordPress Video Training
    • Tutorials
    • Articles
    • Cybersecurity
    • EU Referral Network

Does PayPal’s SHA-256 Email Concern You?

September 16, 2015 By Victor M. Font Jr.

HTTPS image courtest of FreeImages.com/Svilen MilevQuite a few of our customers that operate eCommerce sites have emailed to ask if they need to be concerned about a message they received from PayPal regarding an upcoming security change. The message reads as follows:

REMINDER: ACTION MAY BE REQUIRED: Payflow service upgrades for merchants

We’re contacting our merchants with a reminder about some important information in response to an industry-wide security upgrade which is not unique to PayPal. This change involves upgrading Secure Sockets Layer (SSL) certificates for payflowpro.paypal.com to the SHA-256 hashing algorithm in October 2015.

Because these changes are technical in nature, we advise that you consult with your partner, website vendor, or individuals responsible for your Payflow integration. They will be able to identify what, if any, changes are needed. If you do not have a technology team, we recommend you find one, and we can work with them to ensure you continue to process payments through your current integration with Payflow.

Full technical details can be found in our Merchant Security System Upgrade Guide. In addition, our 2015 SSL Certificate Change microsite contains a schedule of our service upgrade plan.

Questions can be directed to our Merchant Technical Services team on our Technical Support website. Click here for more information.

Thanks for your patience as we continue to improve our services.

For the most part, this isn't anything to be concerned about. This change has been coming for a while. Because of security concerns, the eCommerce industry in general is phasing out support for the old 1024-bit SSL (https) certificates (SHA-1) in favor of the newer 2048-bit certificates (SHA-256). Google Chrome is deprecating support for SHA-1 by the end of 2015, and all support for SHA-1 will be deprecated by the end of 2016.

If you have any concerns whatsoever that your site might have an old style SSL certificate, you can run a site check at http://www.networking4all.com/en/support/tools/site+check/. The site check reports on the security type and strength of the SSL certificate installed on your server.

  • 4shares
  • Facebook0
  • Twitter0
  • Pinterest0
  • LinkedIn4
  • Print
  • SMS0

Filed Under: eCommerce, Security Tagged With: eCommerce, Security

About Victor M. Font Jr.

Victor M. Font Jr. is an award winning author, entrepreneur, and Senior IT Executive. A Founding Board Member of the North Carolina Executive Roundtable, he has served on the Board of Advisors, of the North Carolina Technology Association, the International Institute of Business Analysis, Association of Information Technology Professionals, Toastmasters International, and the North Carolina Commission for Mental Health, Developmental Disabilities, and Substance Abuse Services. He is author of several books including The Ultimate Guide to the SDLC and Winning With WordPress Basics, and Cybersecurity.

Primary Sidebar

Shopping Cart

Books

  • Winning With WordPress Basics 2nd Edition Winning With WordPress Basics 2nd Edition $19.95
  • Ultimate Guide to the SDLC front cover The Ultimate Guide to the SDLC
    Rated 5.00 out of 5
    $74.95

Recent Articles

  • Modern Scam Defense: How Consumers and Businesses Can Recognize and Stop Email, Phone, and Text Fraud
  • How to Write a PRD So Dense It’s Technically a Novel
  • Top 5 Plugin Names That Scare Our Legal Department
  • When Agile Meets Our 3-Year Waterfall Roadmap: A Love Story
  • Why Our Enterprise Needs 27 Stakeholders to Approve a Button Color Change

Top 10 Article Categories

Best Practice Code Snippet Computers and Internet Genesis How To Leadership Programming Servant Leadership Tutorial WordPress

 
We only use analytical cookies on our website that allow us to recognize and count the number of visitors, but they do not identify you individually. They help us to improve the way our website works. By clicking Accept you, agree to cookies being used in accordance with our Cookie Policy.