VSP Direct contacts 3D-Secure Directory Servers
If you have posted the transaction registration to Protx with the
'Apply3DSecure' flag populated (see
Appendix A1 : Payment Registration Protocol) or 3D Secure is "Switched On" via your VSP Admin account (see our
3D Secure section), VSP Direct will send the card details you provided in the post to the Protx 3D-Secure Merchant Plug-In (MPI). The plug-in will format a request called a
VEReq (Verification Request) which is then sent to the 3D-Secure directory services to query whether the card and card issuer are part of the 3D-secure scheme.
The Visa / Mastercard 3D-Secure directory then looks to see whether the card details provided exist in the directory and formulates an appropriate response message to the Protx 3D-Secure Merchant Plug-In (MPI) - this is called the
VERes (Verification Result).
What happens with the response from the 3D-Secure Directory
If the card details provided are valid for 3D Secure Authentication and 3D Secure is "Switched On" then the appropriate response POST is returned to the Venodor's
'vsp_purchase.asp' page (please see
Step 4: VSP Direct replies to your registration POST)
If the card or the issuer is not part of the scheme, or if an MPI (Protx 3D-Secure Merchant Plug-In) error occurs, VSP Direct will check your
3D-Secure rule base to determine if authentication should occur. By default you will not have a rule base established and transactions that are not, or cannot, be 3D-authenticated will still be forwarded to your acquiring bank for authorisation. (please see example screenshot of this rule base below)