On This Page 
    2.9: Step-Up Authentication Is Successful
    This test verifies how your system reacts to a successful step-up (or challenge)
                authentication transaction.
Card Numbers
American Express (Card Type = 003)
            
  3-D Secure  2.1.0 | 3-D Secure  2.2.0 | 
|---|---|
—  | 34XXX XX XXXX 2534  | 
JCB J/Secure (Card Type = 007)
            
  3-D Secure  2.1.0 | 3-D Secure  2.2.0 | 
|---|---|
—  | 3338XX XX XXXX X569  | 
Mastercard (Card Type = 002)
            
  3-D Secure  2.1.0 | 3-D Secure  2.2.0 | 
|---|---|
—  | 52XXXX XX XXXX 2151  | 
Visa (Card Type = 001)
            
  3-D Secure  2.1.0 | 3-D Secure  2.2.0 | 
|---|---|
—  | 4XXXXX XX XXXX 25X3  | 
Results for the Check Enrollment Service
            Status
 = PENDING_AUTHENTICATION
The cardholder is enrolled in payer authentication. Authenticate before
                proceeding with authorization.
VERes enrolled = 
Y
PARes status = 
C
XID = <XID value> (American Express only)
Results for the Validation Authentication Service
Status
 = AUTHENTICATION_SUCCESSFUL
                Authentication is validated.
PARes status = 
Y
XID = <XID
                value> 
CAVV = 
<CAVV
            value>
E-Commerce Indicator (ECI) Values
            This table lists the expected raw ECI values and their respective string values from
                validating this transaction. These values indicate whether the payer was
                authenticated by the card network. These values should be passed under this test
                condition when a transaction is submitted for payment authorization. 
Network  | ECI Raw Value  | ECI String Value  | 
|---|---|---|
American Express  | 05  | aesk  | 
Mastercard  | 02  | spa  | 
Visa  | 05  | vbv  | 
Action
            If you request Validate Authentication and authorization services separately, add the
                required payer authentication values to your authorization request. If you request
                the Validate Authentication and authorization services together, the process
                described above occurs automatically. The merchant should include the CAVV and ECI
                values in the authorization message.