This Standard Operating Procedure (SOP) describes the process for credit card processing against web orders or for B2B customer paying their account via IP1 web services.
This is sub-process following Payment Method Selection.
Procedure
It is your responsibility to ensure that you understand this procedure before performing the following tasks.
| Note |
Deviations from this procedure should be covered by procedures written by your company. Before performing any tasks please ensure all the business rules are set-up accordingly. |
|
Process overview This section documents the Headline Processes for the web user to process payment using credit card. It assumes:
|
|
Ordering scenario Following process assumes an initial pre-authorisation will be done against the credit card when order is taken and that IP1 will settle the funds later (as goods are supplied) utilizing token information returned form the Payment Gateway at this initial pre-authorisation step. Refer Additional Notes & Scenario variations for important notes on supported payment gateways and methods for capturing/processing the credit card.
|
|
Payment of account scenario For payment of account, immediate settlement against credit card is done via the Payment Gateway, once valid card details have been entered. Refer Additional Notes & Scenario variations for important notes on supported payment gateways and methods for capturing/processing the credit card.
|
|
Additional notes and scenario variations Pre-authorisation and settlement variations for orders IP1 allows different configurations for credit card handling to suit different business requirements scenarios. Options for initial credit card entry/validation are:
Typical set up & process is to:
Refer SOP Payment Manager for more information on setup & process requirements in IP1. Payment Gateway options There are many 3rd party Payment Gateway options available in the market, but IP1 cannot support all of these. In release 78 and 79 of IP1, we currently support landing page (LP) functionality with:
We expect to start building LP capability with Curbstone ‘C3’ product once that has GA (general availability) status. Our recommendation is that the website pass control to the 3rd party Payment Gateway Landing Page to allow user to key credit card details. However, some gateways may allow alternative approach whereby their secure entry page may be embedded directly in your website. Previous IP1 versions In earlier versions of IP1, we allowed web site to collect & pass credit card details to IP1. IP1 would then validate, pre-authorise and settle through SSL secured interactions directly with nominated Payment Gateway for each implementation. From release 79 of IP1, however, we will not allow IP1 to ever see the sensitive credit card number at all. Therefore, we expect web sites to interact directly with supported Payment Gateway to validate, pre-authorise or settle credit card details. The web site will then only pass back non-sensitive details (eg. Token, last 4 digits of c/c#, etc.) from the Payment Gateway to IP1 via web services. IP1 will then use the token details to handle any subsequent pre-authorisation or settlement with the Payment Gateway. |
