[ic] PCI Compliance

Lyn St George lyn at zolotek.net
Wed Jul 14 13:56:30 UTC 2010


On Wednesday 14 July 2010 13:01:10 Mike Heins wrote:
> > This one passes with Comodo (note that medium is disallowed):
> > SSLCipherSuite
> > ALL:!ADH:RC4+RSA:+HIGH:!MEDIUM:!LOW:+SSLv3:!EXP:!eNULL:!aNULL
> 
> You mean those spammers run PCI compliance too? I can't believe
> anyone would trust them.
> 
> -- 
> Mike Heins
> 

They're only accredited by the PCI people for doing scans - so they're not 
trusted for assessments:)

I suppose the best thing about them is that they will do a free scan for the 
first time, with sufficiently explicit explanations of failure that you know what 
needs to be fixed.

Cheers
Lyn



More information about the interchange-users mailing list