Prior to attempting to process a transaction the host website must complete authentication with the DNA platform. The authentication process is unique for each transaction and utilises the test account credentials which are supplied following the configuration of the merchant test account, namely;
POST - Request
Authentication is completed via a
POST request to the test URL shown below.
The “client_secret” must always be stored securely. Do not send authorisation requests from the front-end as the user could access the data via the web browser’s console.
POST must contain the below form-data.
|Field Name||State||Data Type||Description|
|client_id||Mandatory||String||Provided to the integrator following the successful creation of a test account.|
|client_secret||Mandatory||String||Provided to the integrator following the successful creation of a test account.|
POST - Response
Following the receipt of a correctly formatted authorisation POST the DNA platform will respond with the below.
|Field Name||Data Type||Description|
|access_token||String||Access token provided by the DNA platform for this transaction. The token should be securely stored ready to be used in the transaction request.|
|expires_in||Integer||Number of seconds from generation until the access_token expires. If the token is not used before this time has passed a new token will need to be requested.|
|refresh_token||String||Reserved for future use.|
|token_type||String||Type of token issued|
Example Request and Response