Cards and Payments - Part 12 - 3DS & 3DS2 Authentication Overview | Strong Customer Authentication

Sdílet
Vložit
  • čas přidán 22. 07. 2024
  • #payments #3DS #3DS2 #StrongCustomerAuthentication #PSD2
    Hi Everyone , In this video we are discussing about Card authentication protocols using 3DS and 3DS2. Both these 2 protocols have been in the industry for more than 22 years now.
    3DS2 is a newer version with lots of improvements over 3DS
    We also talk about the implementation of Strong customer Authentication in the European Union and how it shifts the liability of Fraud chargebacks from the Merchants and Acquirers to the Issuers .
    3DS V1 sun setting was announced last year and I believe this year by Oct 22 everyone has to switch to EMV 3DS (3DS V2) .
    As far as liability in EMV 3DS is concerned, in most cases it will be issue me in case of chargebacks but not all. In some cases , for instance particular cases where the card was not authenticated or the authentication was rejected , the transaction liability could be with the merchant.
    ECI (Electronic Commerce Indicator) value determines whether the authentication was successful or not. For example a visa transaction with ECI value of 7 would indicate that the transaction authentication was rejected hence liability with merchant. Similarly there could be other cases and values for other card schemes .
    From a merchant perspective it’s always best to check with acquirer on more details specific to each card scheme.
    Hope this helps
    Links that you can refer to to know and understand more about these areas are mentioned below :
    www.payments.service.gov.uk/3...
    stripe.com/docs/payments/3d-s...
    3dsecure2.com
    www.visa.co.uk/dam/VCOM/regio...
    www.fca.org.uk/consumers/stro...
    If you need some information on how to migrate from 3DS to 3DS2 then here is a great resource from PayPal developer website:
    developer.paypal.com/braintre...
    Master the Cards and Payments Domain! Enroll in my Udemy course using my referral link and boost your career today
    www.udemy.com/course/understa...
    Please also visit my website www.ezeefied.com for a lot more useful resources.
    Photo credits :
    Photo by Dom J from Pexels: www.pexels.com/photo/natwest-...
    Photo by Pixabay from Pexels: www.pexels.com/photo/security...
    Photo by Mikhail Fesenko from Pexels: www.pexels.com/photo/man-peop...
    Pleas don't forget to like, share and subscribe the video within your professional network and friends.
    For any feedback or in case the video helped you or didn't at all , do let me know by putting in a comment . This is the only way I get to know about areas of improvement.
    Feel free to connect with me on Twitter and LinkedIn .Tag me if you share the video on LinkedIn so that I can acknowledge and thank you :)
    Linkedin: / saurabh-khandelwal-896...
    Twitter: @saurabhkhandel
    Photo credits: Pexels.com

Komentáře • 52

  • @benjiecatipay1552
    @benjiecatipay1552 Před 2 lety +1

    Please kindly discuss issuer and merchant liabilities changes from 3DS V1 and EMV 3DS. Thank you and more power!

    • @ezeefied
      @ezeefied  Před 2 lety

      3DS V1 sun setting was announced last year and I believe this year by Oct 22 everyone has to switch to EMV 3DS (3DS V2) .
      As far as liability in EMV 3DS is concerned, in most cases it will be issue me in case of chargebacks but not all. In some cases , for instance particular cases where the card was not authenticated or the authentication was rejected , the transaction liability could be with the merchant.
      ECI (Electronic Commerce Indicator) value determines whether the authentication was successful or not. For example a visa transaction with ECI value of 7 would indicate that the transaction authentication was rejected hence liability with merchant. Similarly there could be other cases and values for other card schemes .
      From a merchant perspective it’s always best to check with acquirer on more details specific to each card scheme.
      Hope this helps

  • @RGI17
    @RGI17 Před 2 měsíci

    You are great. No words for sharing such a valuble domain knowledge !

  • @gauravthalpati
    @gauravthalpati Před 2 lety

    very nicely presented Saurabh - learning from you how to present our thoughts with utmost clarity & conviction. Keep on sharing more such videos.

    • @ezeefied
      @ezeefied  Před 2 lety +1

      Thank you Gaurav. Looking forward to more exciting content from you as well !

  • @muzammilahmadullah887
    @muzammilahmadullah887 Před 2 lety

    awesome explanation, Thank you so much Saurabh

  • @ellaedeh3693
    @ellaedeh3693 Před 2 lety

    Thank you as always for these videos

  • @shwesk7176
    @shwesk7176 Před rokem

    Thank you so much for the video… it’s so helpful. I should have came across it sooner

  • @SuperYou39
    @SuperYou39 Před 3 měsíci

    very good planation in simple terms. Thank You

  • @aadambeydrees7291
    @aadambeydrees7291 Před 2 lety

    I have learned a lot with your help
    thanks

  • @dfrontierit2114
    @dfrontierit2114 Před 2 lety

    Great video, thank you

  • @betelhemteshom4162
    @betelhemteshom4162 Před 2 lety

    Thanks Saurabh for your explanation.

    • @ezeefied
      @ezeefied  Před 2 lety

      Thank you Betelhem. Glad you liked it 😊

  • @manishachawla2070
    @manishachawla2070 Před rokem

    Great explanation, thank you 😊

    • @ezeefied
      @ezeefied  Před rokem

      Thank you Manisha 🙏🏽

  • @melissabahormal2055
    @melissabahormal2055 Před rokem

    Very helpful

  • @chetnajamthe6199
    @chetnajamthe6199 Před rokem

    please do make a video on 3DS2. This video is very good and easy to understand the 3DS concepts

  • @123asif123
    @123asif123 Před rokem

    Thanks for your videos, it's really helpful like an induction or much better:). I have a question in an online txion as you described in 3DS flow why the verification to be taken to issuer web site, an AUTH message will do the same thing rt?

  • @devanggandevia3664
    @devanggandevia3664 Před rokem

    Simply understanding, thankyou. Please if you can make video on PSD2

  • @nihalshetty6073
    @nihalshetty6073 Před měsícem

    Nice explanation..i am planning to pivot my career in product management in payment domain..this would help me to gain knowledge on payment domain

    • @ezeefied
      @ezeefied  Před měsícem

      Payments needs a lot of talented people like you ! All the best

  • @Arun-dx1hr
    @Arun-dx1hr Před 2 lety +1

    Good video once again. Can you do a series on open banking & alternate payments

    • @ezeefied
      @ezeefied  Před 2 lety

      Yes thanks Arun ! You always suggest great topics 😊

  • @MrMikomi
    @MrMikomi Před rokem

    Many thanks.

  • @priyankshah8
    @priyankshah8 Před rokem

    Thank you!

  • @gosayezenebebeyene3280

    Thank you Saurabh.

    • @ezeefied
      @ezeefied  Před 2 lety

      Hey Gosaye ! How are you buddy ! Thank you 😊

  • @Th3Mafia
    @Th3Mafia Před rokem

    cool vid, thank you

  • @venelinkabakchiev9942

    Is the Liability shift from the merchant/acquirer to the issuing banks mainly to make business conditions fairer for everyone, or would you add additional reasons?
    Thanks for the great content!

    • @ezeefied
      @ezeefied  Před rokem +1

      Thank you for liking the content . Correct liability shift sort of allows merchant to run business accepting payments without worrying about liability in case something goes wrong . Obviously issuers are large institutions better equipped to handle such cases

  • @deepu1200
    @deepu1200 Před 6 měsíci

    Hi Saurabh, You have imparted vast knowledge on PCI , Can you also please help providing What are the standard day to day activities could be with a Business Analyst in Payments and Cards domain. Like What type of usual requirements, Can you provide an example internal usage of an application for reconciliation or security monitoring. etc.
    This will help me in cracking interviwe and be really appreciated. thanks in advance,

  • @vamseekrishna7242
    @vamseekrishna7242 Před rokem

    can you also make a video on how to migrate to 3ds 2, would be very helpful :)

  • @nitendragupta1831
    @nitendragupta1831 Před 2 lety +1

    Hi
    My questing is that, when we do an ECOM transaction so it always ask for the OTP, but you mentioned in 3DS2 there is no OTP required, the system just do a risk assessment and if the transaction is under low risk so the transaction happen successfully.
    OTP does not required in POS transaction, so your statement is correct here but not with the ECOM transaction.
    Please confirm, I am getting you correctly or not.

    • @ezeefied
      @ezeefied  Před rokem +1

      Sorry for late reply, but it appears you are right

  • @AilsaZhong
    @AilsaZhong Před rokem

    Hi Saurabh, thanks for the informative lecture, and the way to introduce it with simple words.
    It would be great if you can answer the following two questions that I have.
    1) Is the PSP that is making funds transaction a part in the 3DS?
    2) If the seller turns on 3DS, and issuer bank does not, what will happen? In terms of buyer user experience.
    3) Can the seller turn on 3DS based on which issuer bank has turned on 3DS?
    Thanks a lot!

    • @ezeefied
      @ezeefied  Před rokem

      1. Yes - there is something called PSP initiated 3DS
      2. The issuing bank will not be able to respond. With PSD2 and SCA is kind of mandatory to support though
      3. Merchant connects to directory server for 3DS auth however there are out of scope and exemption cases. For example low value under 30 euro transaction may not be required to be authenticated. I don’t think they can turn it off in any case of their choice though

  • @qwizzwizz
    @qwizzwizz Před rokem

    how do we migrate from 3ds to 3ds 2? is there any php library available?

    • @ezeefied
      @ezeefied  Před rokem

      I have added a link in the description of the video that explains migration details. It is from the paypal developer community website

  • @kevinnjoroge8236
    @kevinnjoroge8236 Před rokem

    Kindly make a video on PDS2, thanks

    • @ezeefied
      @ezeefied  Před rokem

      there is some content already on that topic .Could you elaborate what additionally would you like to see on PSD2

  • @stephanmoney7493
    @stephanmoney7493 Před rokem

    Can I buy a 3d debit card?

  • @UbaidUrRehman-it4qn
    @UbaidUrRehman-it4qn Před rokem

    How the 3DS Authentication of card is done?

    • @ezeefied
      @ezeefied  Před rokem

      this is what the video intended to cover , could you elaborate your question

  • @manishhcet
    @manishhcet Před rokem

    please create video on PSD2- Thanks

    • @ezeefied
      @ezeefied  Před rokem

      What would you like to see on PSD2

  • @poojatoda6426
    @poojatoda6426 Před 2 lety

    PLEASE MAKE SOME VIDEO ON DIGITALISITION ALSO IN BANKING

    • @ezeefied
      @ezeefied  Před 2 lety

      Hi Pooja , could you please elaborate

  • @mohinderbiring8953
    @mohinderbiring8953 Před rokem

    Thank you for the informational video. I am trying to pay with my Barclays Bank - VISA Card from UK for PAN card (INR1017) and keep getting "CARD NOT ENROLLED FOR 3DSECURE". Checked with Barclays and they can not find anything wrong. I have been in touch via Email with PAN (Proteantech in India) and they are saying card is not 3D secure. I have tried other UK cards (some belong to Mastercard) as well, same message. Not getting anywhere and any ideas?

    • @ezeefied
      @ezeefied  Před rokem

      sorry for late reply . There could you many reasons but ultimately you need to check either with the issuer or the acquirer side to fix this