Jump to content

PCI Compliant


davet

Recommended Posts

I'm required by one of my merchant providers to become PCI Compliant. I passed the scan but now have some Tasks that I need to complete. One of them is as follows:

 

==============================

PCI Milestone 2 - Network Protection

 

All systems that store card holder data must be protected from the external network and direct public access by a DMZ and the firewall configured to only allow outbound traffic from payment applications to IP addresses within the DMZ.

==============================

 

Should I assume that if I am using WHMCS and storing customers' credit card info then I will not be able to be PCI compliant?

 

Is there any way of setting up WHMCS to store credit card info and still be PCI compliant?

Link to comment
Share on other sites

 

Thanks but I don't see any info about storing cc info within a DMZ zone.

 

It appears that in order to be PCI compliant I need to store credit card data on a non-external server. Stored credit card info needs to be stored on a server within a DMZ zone which would require me to host a separate server for MySQL services.

 

It appears I cannot host the MySQL data (credit card data) on the cPanel server which handles HTTP requests for WHMCS.

 

Instead I will need to bring another server online which is in a DMZ zone accessible only from my external facing cPanel server.

 

How does everyone else host their MySQL data for WHMCS? Do you have 2 separate servers to run WHMCS? One for Apache and one for MySQL services?

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use & Guidelines and understand your posts will initially be pre-moderated