
Shared Values. Shared Success.
System Security
McIntosh Commercial Bank's Online Banking System brings together a combination
of industry-approved security technologies to protect data for the bank
and for you, our customer. It features password-controlled system entry,
a VeriSign-issued Digital ID for the bank's server, Secure Sockets Layer
(SSL) protocol for data encryption, and a router loaded with a firewall
to regulate the inflow and outflow of server traffic.
Secure Access and Verifying User Authenticity
To access the Online Banking System you must key in a Log-in ID and a password.
The system will allow three attempts at login prior to "locking out" further
attempts, in order to deter unauthorized users from repeated login attempts.
If you experience a "lock-out", you will be required to call McIntosh
Commercial Bank to verify the password before re-entry into the system.
Upon successful login, the Digital ID from VeriSign, the experts in digital
identification certificates, authenticates the user's identity and establishes
a secure session.
Secure Data Transfer
Once the session is established, the user and the server are in a secured
environment. Because VeriSign has certified the server as a 128-bit secure
server, data traveling between the user and the server is encrypted with
Secure Sockets Layer (SSL) protocol. With SSL, data that travels between
the bank and customer is encrypted and can only be decrypted with the public
and private key pair. In short, the bank's server issues a public key to
the end user's browser and creates a temporary private key. These two keys
are the only combination possible for that session. When the session is
complete, the keys expire and the whole process starts over upon your next
login.
Router and Firewall
Requests must filter through a router and firewall before they are permitted
to reach the server. A router, a piece of hardware, works in conjunction
with the firewall, a piece of software, to block and direct traffic coming
to the server. The configuration begins by disallowing ALL traffic and then
opens holes only when necessary to process acceptable data requests, such
as retrieving web pages or sending requests to the bank.
Using the above technologies, your Online Banking transactions are secure.