OKPAY guides. Security Guide



Similar documents
General tips for increasing the security of using First Investment Bank's internet banking

Malware & Botnets. Botnets

Secure Message Center User Guide

U.S. Bank Secure Mail

Administrator's Guide

Directory and Messaging Services Enterprise Secure Mail Services

Frequently Asked Questions

Contents. McAfee Internet Security 3

Business ebanking Fraud Prevention Best Practices

Information Security. Louis Morgan, CISSP Information Security Officer

ONLINE BANKING SECURITY TIPS FOR OUR BUSINESS CLIENTS

Patient Portal: Policies and Procedures & User Reference Guide

More Details About Your Spam Digest & Dashboard

Word Secure Messaging User Guide. Version 3.0

Secure Recipient Guide

Yale Secure File Transfer User Guide

UNFCCC Online Registration System

FILTERING FAQ

Learn to protect yourself from Identity Theft. First National Bank can help.

Personal Online Banking & Bill Pay. Guide to Getting Started

Microsoft and Windows are either registered trademarks or trademarks of Microsoft Corporation in the United States and/or other countries.

eprism Security Suite

Enhanced Security for Online Banking

Computer Security Self-Test: Questions & Scenarios

Quick Start Guide to Logging in to Online Banking

Secure FAQs for External Stakeholders

Zimbabwe. Online Banking User s Guide

Frequently Asked Questions (FAQ)

Honeywell Secure External User Guide August 2013

Business Internet Banking / Cash Management Fraud Prevention Best Practices

Quarantined Messages 5 What are quarantined messages? 5 What username and password do I use to access my quarantined messages? 5

Safe Practices for Online Banking

High Speed Internet - User Guide. Welcome to. your world.

TriCore Secure Web Gateway User Guide 1

Secure Client Guide

Business Online Banking & Bill Pay Guide to Getting Started

Overview of Registered Envelopes. Registered Envelope Notification Message

National Cyber Security Month 2015: Daily Security Awareness Tips

Portal Recipient Guide

Stewart Secure User Guide. March 13, 2015

U.S. Bank Secure Quick Start Guide

Common Cyber Threats. Common cyber threats include:

Secure Actions for Recipients

How To Protect Yourself Online

CBI s Corporate Internet Banking Inquiry Services gives you the ability to view account details and transactions anytime, anywhere.

Frequently Asked Questions For Investors

MUTUAL OF OMAHA SECURE SYSTEM CLIENT/PARTNER USER GUIDE

Using Barracuda Spam Firewall

Internet basics 2.3 Protecting your computer

Migration Manual (For Outlook 2010)

Online Security Awareness - UAE Exchange - Foreign Exchange Send Money UAE Exchange

SEC External Guide for Using Accellion

Payment Systems Department

Retail/Consumer Client. Internet Banking Awareness and Education Program

Secure Client User Guide Receiving Secure from Mercantile Bank

Encryption Recipient Guidelines

Why is a strong password important?

OCT Training & Technology Solutions Training@qc.cuny.edu (718)

Welcome to HomeTown Bank s Secure ! User Guide

Icebox - Sendio SPAM Filter

PC Security and Maintenance

ing from The E2 Shop System address Server Name Server Port, Encryption Protocol, Encryption Type, SMTP User ID SMTP Password

Protecting Yourself from Identity Theft

CC File Transfer. User Manual

Icebox - Sendio SPAM Filter

2. _General Help and Technical Support

The Key to Secure Online Financial Transactions

3. Security Security center. Open the Settings app. Tap the Security option. Enable the option Unknown sources.

How To Use Secureanything On A Mac Or Ipad (For A Mac)

GO!Enterprise MDM Device Application User Guide Installation and Configuration for Android with TouchDown

Our website Internet Banking

ESET Mobile Security Business Edition for Windows Mobile

How To Manage Your Quarantine On A Blackberry.Com

Sophos Endpoint Security and Control Help

Tips for Banking Online Safely

& INTERNET FRAUD

Instructions For Opening UHA Encrypted

Android App User Guide

Sophos Enterprise Console Help. Product version: 5.1 Document date: June 2012

Secure and Safe Computing Primer Examples of Desktop and Laptop standards and guidelines

NASDAQ Web Security Entitlement Installation Guide November 13, 2007

Multi-Factor Authentication (FMA) A new security feature for Home Banking. Frequently Asked Questions 8/17/2006

Outlook Web Access (OWA) with Exchange Server 2007 (Windows version)

EJGH Encryption User Tip Sheet of 8

Online Services User Guide

POLICY PATROL MFT. Manual

Sophos Endpoint Security and Control Help. Product version: 11

Virtual Receptionist Manual

ONE Mail Direct for Mobile Devices

UC Irvine Health Secure Mail Message Center

MICROSOFT OUTLOOK 2003

Baylor Secure Messaging. For Non-Baylor Users

GO!Enterprise MDM Device Application User Guide Installation and Configuration for Android

1. Any requesting personal information, or asking you to verify an account, is usually a scam... even if it looks authentic.

Transcription:

Название раздела OKPAY guides www.okpay.com Security Guide 2012

Contents SECURITY GUIDE Contents Introduction 1. OKPAY Security Overview 2. Security Tips 3. Security Center 3.1. Basic Protection 3.2. Email Protection Level 3.3. Phone Protection Level 3.4. Security Questions 3.5. IP Security 4. Troubleshooting Security Settings 4.1. Assigning a New Password 4.2. Email/SMS Delivery Troubleshooting 5. Notes 3 4 5 7 8 10 12 14 16 18 18 20 22 2 www.okpay.com

Introduction Internet security is a branch of computer security specifically related to the Internet, often involving browser security but also network security on a more general level as it applies to other applications or operating systems on a whole. Its objective is to establish rules and measures to use against attacks over the Internet. The Internet represents a vulnerable channel for exchanging information leading to a high risk of intrusion or fraud, such as phishing. Different methods have been used to protect the transfer of data from a website to user, including encryption, website identity validation, etc. Avoiding or ignoring importance of the internet security may lead to a data loss, money loss, and in some cases even identity theft. You should be aware that hackers and all sorts of cyber-criminals are becoming more and more sophisticated in the ways of obtaining desired information. Maintaining your Internet security on the appropriate level is not as hard as you might think. Be careful and get into the habit of using simple and reliable security tips and settings that OKPAY has to offer. 3 www.okpay.com

1. OKPAY Security Overview OKPAY Company is offering top-notch security system supporting industry leading technologies and solutions to protect the account from unauthorized access. Money and data loss or identity theft are major risks associated with internet security breaches. Please remember that OKPAY transactions are non-refundable, safety of your money is in your hands. Customers that want uncompromising protection of their money have the following optional features at their disposal: Login PIN-Codes - PIN codes are a convenient and reliable measure of financial security that has proven its effectiveness for all prominent financial institutions of the world. Having enabled this security option, you get a PIN code on your email address or on your cell phone via SMS. From then on every log in attempt will have to be confirmed with a 7-digit PIN code. If a PIN code was not received within some time, you can request a new one by clicking on the appropriate link. Security Questions - This is additional protection against unauthorized access to your account. These questions will be asked, for example, if someone tries to reset the account password by clicking the Forgot your password? link, which will thwart the offender s attempt to break into your account even if he/she has access to your email. Access Authorization - This instrument is like a surveillance camera for OKPAY which may not be able to see and recognize the customer s face but has the ability to identify the computer accessing the account. Whenever customer authentication is attempted from a subnet of IP addresses that is not associated with the account owner, the system blocks the access and sends an additional security code to the registered e-mail address. IP-address associations are modified on a case-by-case basis via the OKPAY Support Center. IP Security - Use this to block access to your account from selected countries or IP addresses. Furthermore you will find out what security features OKPAY has to offer to keep your money safe and also talk about general safety precautions on the Internet. 4 www.okpay.com

2. Security Tips There are 3 security levels offered by OKPAY: basic protection, protection by email and protection by phone. Besides these security levels the features of IP filtering and security questions are also available. OKPAY does not force any security settings above Basic level. It is up to a client to select an appropriate protection level and tune settings when needed. OKPAY System utilizes all necessary features aimed at protecting your account, such as: validating members e-mail address, accepting only strong enough passwords. Password requirements are: at least 8 characters in length containing upper and lower case latin characters and at least one numerical or a special character. A duly issued Extended Validation SSL Certificate confirms authenticity of the OKPAY.COM website. 5 www.okpay.com

Security Specialists strongly recommend accessing account only from safe networks and computers and as far as possible avoiding any public internet access points or computers. Always keep in mind the importance of having active and up-to-date antivirus and firewall software installed. Saving password option of the web-browser must be only used on personal (home) computers, which can be accessed by the account holder only. Nevertheless it is still a much better way to enter your password and login manually each time you access your OKPAY account. Auto-logout within 10 minutes of inactivity is an additional precaution against leaving the computer unattended. Remember to logout manually after you finish using your OKPAY account. The functionality and normal operations of OKPAY are maintained by its security system and a set of remedies. However, the OKPAY Security Department considers it necessary to warn the customers once again of potential security threats on the Internet and remind them to exercise extreme caution at all times. A message from OKPAY Security Department Specialists: Dear customers! Be aware of any hacker activities! For your own security, keep your firewall and anti-virus software up and running, watch out for key-loggers and spoofed websites, and make sure the URL in your web browser s address bar always begins with https://www.okpay.com/ Upgrade your browser and computer Operating System (OS) regularly - security issues make this upgrading essential. Practically all new browsers contain built-in protection from phishing (and therefore identity theft) and spyware. Please keep your passwords and access codes very safe. Remember to change your account password as often as reasonably possible. Keep in mind that we never ask you to email us your passwords and access codes. Be careful with email and don t open messages from unknown senders. Don t answer such messages. They may contain viruses which can get into your computer and give swindlers everything they need to access your account. Don t download unknown programs even if they offer to reinforce your computer s protection - such programs may contain malware, adware, viruses, exploits, bots, etc. We recommend you to enable all the security options provided by OKPAY and use them at all times. 6 www.okpay.com

3. Security Center OKPAY Security Center is the main security page featuring account protection settings. Open www.okpay.com website to access your OKPAY account. Click on Log In link to open your OKPAY account this will bring you to the next page My Account overview. Open your OKPAY account Profile and locate the Security section: Go to the Security Center OKPAY Security Center allows users to select one of the 3 Protection Levels: Basic, Email or Phone. Additional security settings are: Security Questions and IP Security. 7 www.okpay.com

3.1. Basic Protection Basic protection level is enabled by default and in fact has a very minimum protection features. Account Access Authorization feature is tracking IP address and Country when client accesses OKPAY account. And if the new access point (IP address or Country) differs from the previous one the system will automatically send an access PIN code to a client s email address. This code needs to be entered in order to complete accessing account from another country. If we were accessing our test account regularly within United States, and once we will try to login to it from United Kingdom - Account Access Authorization feature will trigger: A Security Code required to access the account has been emailed to a client s address. Enter the Code you received to proceed to your account. 8 www.okpay.com

IMPORTANT NOTE: If you can not find the Account access email in your Inbox, try looking into the Spam/Junk mail folders. Due to increased number of hacked email addresses, if the client wishes to keep the Basic security level OKPAY Security Specialists are strongly recommending to limit account access by certain IP Addresses (more in 3.3.) and to enable Security Questions to protect from unauthorized password reset (more in 3.2.). 9 www.okpay.com

3.2. Security Questions Security Questions can help you to protect your OKPAY account from unauthorized password reset. Even if somebody gains access to the client s email address and will try to reset the password to OKPAY account he will have to answer correctly on 2 security questions first. I.e. the probability of guessing the answers to properly composed security questions is practically eliminated. Open your Profile, and go to the Security Questions 10 www.okpay.com

On the Security Questions page you will find your current Phone Password which you need to provide in some cases via phone support. Tick the checkbox to enable security questions and enter the questions and answers accordingly. It is also important not to use questions that are easy to guess or something that will contain your personal information (e.g. date of birth). Best way is to ask something personal, things that only you know. Click on the Save button to save these settings. Information saved dialog will appear and you will receive a confirmation email shortly. Now you don t have to worry that someone possibly can reset password to your account without answering security questions. 11 www.okpay.com

3.3. IP Security Due to safety concerns OKPAY records IP addresses used to access the account. Your current session information can be found in the left top side of My Account page. You can also monitor your access for any unfamiliar, and therefore suspicious, IP addresses. Open your Profile and go to the IP Security: 12 www.okpay.com

On top of the IP Security page you will be able to find a table of IP Addresses your account has been accessed from as well as 3 levels of security settings. By Country option will limit any access to your account from outside the selected country (or several countries). Select a country from a list and click on the Add button to whitelist it. By Network option will block any access attempts outside of the known network (i.e. account can be accessed only from home or work network). Enter the IP Address and network Subnet Mask and click on the Add button to whitelist it. 13 www.okpay.com

3.4. Email Protection Level Protection by email is a second level offered in OKPAY Security Center. It is more advanced and secure compared to Basic level. This level implies using of the variable PIN-codes in order to access OKPAY account. The codes are sent respectively to the verified email address. On Security Settings page click on the Email protection: You can select the email address used to receive PIN-codes. And then click on the Save button. Information saved dialog will appear. On the next account access you will be asked to provide a login PIN-code. 14 www.okpay.com

If you lost an email with PIN-codes or used all the codes, click on the Resend PIN button to obtain a new email with a PIN-code. You need to enter received PIN-code into the dialog on the OKPAY.com website to access your account. 15 www.okpay.com

3.5. Phone Protection Level Protection by phone is a third and the most advanced level offered in OKPAY Security Center. This level implies using of the variable PIN-codes in order to access OKPAY account. The codes are sent respectively to the verified mobile phone number. Even if the access to email address can be lost, or email can be simply hacked, mobile phone number always remains with you; receiving sms codes is as easy as receiving an email. On the Security Settings page click on the Phone protection: You can select the phone number used to receive PIN-codes. And then click on the Save button. Information saved dialog will appear. On the next account access you will be asked to provide a login PIN-code. 16 www.okpay.com

If you lost an email with PIN-codes or used all the codes, click on the Resend PIN button to obtain a new sms with a PIN-code. You need to enter received PIN-code into the dialog on the OKPAY.com website to access your account. 17 www.okpay.com

4. Troubleshooting Security Settings There are different non-standard situations when something is not working properly or customers are unable to receive emails/sms messages on mobile phone. 4.1. Assigning a New Password Assigning a strong password is a first thing you should do while thinking about account protection. Open your Profile and go to the Change Password : On the Change password page you will need to enter your current password and a new password. Keep in mind the password requirements, which are: at least 8 characters in length containing upper and lower case only Latin characters and at least one numerical or a special character. 18 www.okpay.com

Right after all the password requirements are met, you will see that the red boxes became green: Click on the Next button to continue and assign a new password. You will receive a confirmation email shortly. New password will be activated right after you save these changes. 19 www.okpay.com

4.2. Email/SMS Delivery Troubleshooting In some cases when you are unable to receive emails or your email is not working properly please try doing the following steps: 1. First of all check your Inbox mail folder again. It may take up to 10 minutes to receive an email in some cases. If the email will not arrive during 10 minutes also check the Spam/Junk folders. 2. Request PIN-codes once more (click on the Resend PIN button), another email will be sent out instantly: 3. If you still do not receive it, please contact your email provider support and make a complaint. Most likely it is having some temporary technical issues. 4. Contact OKPAY Support Service and request to temporarily disable protection by Email, until the issue with your email provider will be resolved or assign another email address/phone number. If you are unable to receive sms codes on your cell phone for some reason please try doing the following steps: 1. First of all check your phone reception level. It may take up to 10 minutes to receive sms in some cases. Check if you can receive sms from another recipients. 2. Request PIN-codes once more (click on the Resend PIN button), another sms will be sent out instantly: 20 www.okpay.com

3. If you still do not receive it, please contact your phone carrier support and make a complaint. Most likely it is having some temporary technical issues. 4. Contact OKPAY Support Service and request to temporarily disable protection by Phone, until the issue with your phone carrier will be resolved or assign another email address/phone number. 21 www.okpay.com

5. Notes OKPAY Security Tips: https://www.okpay.com/en/support/security.html Frequently Asked Questions: https://www.okpay.com/en/support/faq.html 22 www.okpay.com

23 Copyright 2007 2012 OKPAY. All rights reserved. www.okpay.com www.okpay.com