PDA

View Full Version : PCI Compliance Inquiry


hoagieland
11-02-2009, 08:27 AM
DASP.Net Staff,

I'm trying to make a .net app that is e-commerce based and complies with the Payment Card Industry specifications for secure and stable systems right out of the box, so to speak. Part of the spec require server level details. Is DASP.Net in a position to 1) already fulfill the requirements on a server level or 2) be willing to publicly provide information to verify the status of PCI compliance or 3) be willing to work in itself or in concert with myself to make a PCI compliant environment?

Thanks.

Ramses
11-02-2009, 08:30 AM
We recommend that you write to support about this, as they'll be able to assist you best with these sort of requests.

Basically (for the record) DASP will help you with the changes to the web server to make sure it's PCI compliant, as most of these changes do not affect any of the current users. In some occasions, the server will already have the changes made, so you should try doing the PCI compliance check and then provide support with the results if there's any problems.

hoagieland
11-09-2009, 05:28 PM
Just an update on this. I got a free PCI scan and a system administrator turned off SSLv2 connections to my server thereby making my site PCI compliant. Thanks guys.

Ramses
11-10-2009, 05:47 AM
Awesome! Great to hear everything worked out