PCI Cmpliance?

This forum is for general conversation and user-user networking.

Moderators: TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech, TinCanTech

Post Reply
mobrien99
OpenVpn Newbie
Posts: 3
Joined: Wed Feb 16, 2011 12:50 pm

PCI Cmpliance?

Post by mobrien99 » Wed Feb 16, 2011 12:52 pm

We are using OpenVPN to connect clients to an ERP system on a WIN 2008 server and handle credit card transactions over the OpenVPN links. I am being told that this won't pass PCI/DSS compliance. Can anyone tell me why??

User avatar
maikcat
Forum Team
Posts: 4200
Joined: Wed Jan 12, 2011 9:23 am
Location: Athens,Greece
Contact:

Re: PCI Cmpliance?

Post by maikcat » Wed Feb 16, 2011 2:01 pm

hi there,

i dont think Payment Card Industry/Data Security Standard is openvpn issue....

i think you are in a wrong forum

michael.
Amiga 500 , Zx +2 owner
Long live Dino Dini (Kick off 2 Creator)

Inflammable means flammable? (Dr Nick Riviera,Simsons Season13)

"objects in mirror are losing"

mobrien99
OpenVpn Newbie
Posts: 3
Joined: Wed Feb 16, 2011 12:50 pm

Re: PCI Cmpliance?

Post by mobrien99 » Wed Feb 16, 2011 2:58 pm

If OpenVPN is being challenged, where would you suggest I go with this?
I am just trying to gather information to refute this. Is there another group within this forum?

User avatar
janjust
Forum Team
Posts: 2703
Joined: Fri Aug 20, 2010 2:57 pm
Location: Amsterdam
Contact:

Re: PCI Cmpliance?

Post by janjust » Wed Feb 16, 2011 3:09 pm

PCI/DSS compliance is a rather lengthy checklist - I've never heard of anyone who ran the checklist against an OpenVPN setup. Which part of the checklist would OpenVPN be failing? My bet is that it depends largely on your setup: you could use OpenVPN and be fully PCI/DSS compliance but you might need to configure things differently. My second bet is that nobody on these forums can help you with this, as I don't know anybody who has had to deal with PCI/DSS compliance (and I've been around the openvpn block for quite some time).

HTH,

JJK

mobrien99
OpenVpn Newbie
Posts: 3
Joined: Wed Feb 16, 2011 12:50 pm

Re: PCI Cmpliance?

Post by mobrien99 » Wed Feb 16, 2011 3:19 pm

It is surprising to hear that no one would connect a client via OpenVPN and then exchange credit card information with a server at the other end of the OpenVPN tunnel.

Post Reply