search

Home  >  Q&A  >  body text

php - How to implement a security verification mechanism for APIs related to amounts.

Scenario: Cooperating with a traditional enterprise, user transactions are settled using their offline cashier system. Before checkout, they will interact with the API provided by us, request the coupon provided by our platform, confirm the actual amount receivable, complete the transaction, and finally Provide us with transaction order details.

Because the interface data involves some transaction amounts, etc., what should be done to ensure the legitimacy, security, etc. of the interface request.

过去多啦不再A梦过去多啦不再A梦2785 days ago735

reply all(3)I'll reply

  • 巴扎黑

    巴扎黑2017-05-27 17:45:20

    Please refer to Alipay. . Public key private key ssl

    reply
    0
  • 習慣沉默

    習慣沉默2017-05-27 17:45:20

    SSL is a must, and the other thing is the security of the interface and data. Not much to say about interface verification, it is best to keep the coupon identification code unique and destroy it after use.

    reply
    0
  • 迷茫

    迷茫2017-05-27 17:45:20

    sign(consistent hashing) + token(login verification)

    reply
    0
  • Cancelreply