Tenerum Payment Gateway & SREDkey Device Integration for a Timeshare Company
Summary
INNERLUXES boosted security and compliance by seamlessly integrating the Tenerum payment gateway with a SREDkey device for a timeshare company.
The Client
The Client is a growing timeshare company that sought out INNERLUXES's technological services. The Client wanted to move to the Tenerum payment gateway for credit card encryption, tokenization, and credit card processing. The implementation required support for transactions where the card is not present and is manually entered by personnel. A SREDkey device was configured at an employee's workstation so credit card information could be manually entered into the SREDkey device, then sent for credit authorization via the Tenerum payment gateway.
Tenerum Payment Gateway & SREDkey
The Tenerum Payment Gateway is a cloud-based platform designed to de-scope the merchant's point-of-sale and property management systems from handling sensitive payment card data, enabling PCI compliance. The Client wanted to transition to this payment gateway but needed the SREDkey device to begin use.
SREDkey is a USB-based hardware encryption device used to secure data entry — especially in point-of-sale (POS) systems and other environments where sensitive information needs to be protected. The term "SRED" stands for Secure Reading and Exchange of Data. SREDkey devices typically feature physical keypads for data entry and encryption capabilities that keep entered data secure during transmission and processing, helping prevent unauthorized access or interception of sensitive information.
The Approach
INNERLUXES analyzed the existing Oracle forms and their respective database objects — packages and procedures — in the Oracle database, and modified those objects to meet the business requirements. UI design elements were implemented through Oracle Form Builder. The implementation of functionality depended on the payment processing service APIs, and the modification of Oracle's existing forms was based on the requirements for credit card processing, reading SREDkey input data to perform the payment.
How It Works
INNERLUXES maintained the current functionality within the Oracle MR forms to display the masked credit card number received, and maintained the functionality of storing the returned token with the associated guest/customer in the Oracle database for future use. The amount charged is entered in the Oracle form, and the billing ZIP code is sent to the payment processor as part of the credit card authorization/sale or card-check transaction. The billing ZIP is stored in the transaction database with a token to use with the credit card on file, and the payment processor handles the SREDkey parsing logic.
The Results
- INNERLUXES successfully transitioned the Client to the Tenerum payment gateway with SREDkey device integration for secure credit card processing.
- The work included Oracle form modification and payment processing API integration, enhancing security and compliance for the growing timeshare company.
Technologies and Tools
Oracle PL/SQL, Oracle 12C, Oracle Form Builder, Tenerum payment gateway APIs, SREDkey hardware encryption device.