Edge Rewrite
// HTMLRewriter · presentation

This page was redesigned at the edge.

Cloudflare fetched the original article and streamed it through HTMLRewriter to apply an entirely new visual system without rebuilding the source page.

// request.cf · coarse context

A page that knows where it met you.

Only coarse request metadata is shown. This demo does not display or persist visitor IP addresses.

Country
US
Cloudflare location
CMH
Connection
HTTP/2
Language
Not provided

Ray ID: a239f2bf1ebac20a

Jump to content

Online authorisation

From Wikipedia, the free encyclopedia

Online Authorization (OLA) is a system used to verify a transaction on a payment card (e.g. credit card).[1] The term 'on-line' refers to the real-time nature of the verification. In other words, if the account is overdrawn, in most cases, the transaction will be refused.

OLA is already commonplace for credit card networks such as Visa or Mastercard and is now being implemented in others (such as fuel cards).

During on-line аuthorisation:

  • The cardholder's PIN is encrypted by ATM POS PINpad secure module (HSM) and sent to an issuer bank.
  • A card cryptogram is sent to an issuer bank (smart card, EMV).
  • An issuer bank verifies the PIN or check card cryptogram.
  • An issuer bank makes finance verification (on-time limit, credit limit, ...)
  • An issuer bank sends OK or !OK (+optional command list for EMV card).

(The recrypt PIN block process is not included in list.)

The set of verifications performed by an issuer bank depends on the card type, payment system requests and features of the issuer bank's processing system.

References

[edit]
  1. "Card authorization explained: How it works and what businesses need to know". stripe.com. Stripe, Inc. March 22, 2023. Retrieved 14 August 2023.