UK WEB HOSTING FORUM FOR DISCUSSION ON WEB HOSTING SERVICE AND SUPPORT
LINUX HOSTING WINDOWS HOSTING PACKAGES SHOPPING CART OSCOMMERCE ZEN CART AGORA
ECOMMERCE HOSTING ASP MSSQL FRONTPAGE HOSTING PHP MYSQL HOSTING DISCUSSION FORUM
CPANEL RESELLER HOSTING DEDICATED SERVER VPS HOSTING PLESK VIRTUOZZO
Quick Search
Your forum announcement here!

  eUKhost's Official Web Hosting Forum > Technical Support > VPS Hosting - Virtual Private Servers

Reply
 
Thread Tools Display Modes
  #1 (permalink)  
Old 19-10-2009, 17:17
Junior Member
 
Join Date: Aug 2008
Posts: 27
Default Semi-Dedicated Server - PCI Compliance

Hi there,
I currently have a Semi-Dedicated server. We are applying for a credit card merchant account and our potential credit card company has asked a question about PCI Compliance.

Their question was,
"We will require details of your PCI compliance for the web hosting environment. As you are a small business I would expect that these services are outsourced, so in that case we would need evidence that the hosting company is PCI compliant."


Is there any general eukhost document/statement that I can point them to in relation to PCI compliance?

And, are there any other guidelines that I would need to look at to make sure my semi-dedicated server is compliant?


Many thanks in advance for any advice you can give.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #2 (permalink)  
Old 19-10-2009, 19:52
eUK-Ralf's Avatar
Moderator
 
Join Date: Apr 2008
Posts: 213
Cool

Hi,

You need to contact your PCI Compliance Scanning Vendor and ask them for prerequisite, required before scheduling a scan.
So, we will make the required changes on your server.

Quote:
Is there any general eukhost document/statement that I can point them to in relation to PCI compliance?
You can find document for PCI compliance Here
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #3 (permalink)  
Old 19-10-2009, 20:58
Senior Member
 
Join Date: Sep 2008
Location: Ipswich
Posts: 123
Default

Ralf is PCI-DSS Compliance avaliable on the Semi-dedicated servers? If so is it also avaliable on the VPS?... from the PCI-DSS page, it looks like the services is based on the dedicated server which is what i originally throught was a requirement.

Rob.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #4 (permalink)  
Old 19-10-2009, 21:04
Rock's Avatar
Technical Support (eUKhost.com)
 
Join Date: Oct 2006
Location: localhost
Posts: 3,356
Send a message via MSN to Rock Send a message via Skype™ to Rock
Smile

Quote:
Originally Posted by bedotnet View Post
Ralf is PCI-DSS Compliance avaliable on the Semi-dedicated servers? If so is it also avaliable on the VPS?... from the PCI-DSS page, it looks like the services is based on the dedicated server which is what i originally throught was a requirement.

Rob.
Hi Rob,

Yes, PCI-DSS can be made available on a VPS too. You can find more info here : PCI-DSS Compliance
__________________

Rock _a.k.a._ Jack
Windows Hosting || Windows Reseller Hosting
Cloud Hosting 100% UPTIME! || Powerful Dedicated Servers
Follow eUKhost on Twitter || Join eUKhost Community on Facebook

For complaints, grievances or suggestions kindly email our FeedBack Dept.
Proper action will be taken accordingly & instantaneously!
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #5 (permalink)  
Old 19-10-2009, 21:12
Senior Member
 
Join Date: Sep 2008
Location: Ipswich
Posts: 123
Default

Nice cheers rock!

I thought PCI - was going to be a pain, that makes it seem relatively straight forward.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #6 (permalink)  
Old 19-10-2009, 21:21
Rock's Avatar
Technical Support (eUKhost.com)
 
Join Date: Oct 2006
Location: localhost
Posts: 3,356
Send a message via MSN to Rock Send a message via Skype™ to Rock
Smile

Quote:
Originally Posted by bedotnet View Post
Nice cheers rock!

I thought PCI - was going to be a pain, that makes it seem relatively straight forward.
You're welcome
__________________

Rock _a.k.a._ Jack
Windows Hosting || Windows Reseller Hosting
Cloud Hosting 100% UPTIME! || Powerful Dedicated Servers
Follow eUKhost on Twitter || Join eUKhost Community on Facebook

For complaints, grievances or suggestions kindly email our FeedBack Dept.
Proper action will be taken accordingly & instantaneously!
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #7 (permalink)  
Old 09-11-2009, 13:44
Junior Member
 
Join Date: Aug 2008
Posts: 27
Default

Hi again,
First I'd like to say thanks to the support folks at eukhost. I have been working through the various issues that came out of my PCI scan. Some of them I could resolve myself, some I needed specific support help for. Support were very helpful and experienced, and applied updates quickly and without fuss. Thank you!

When I get through the full list of PCI issues I hope to add to this thread, or perhaps create a new one, detailing all the steps I had to take, for the benefit of others.

There are a couple of issues from the scan that I could use some guidance on - hence the public post.


Using SSL 2.0 has been highlighted as a potential security risk, in particular, it was in relation to port 8443 for the Plesk control panel. They recommend disabling SSL 2.0 and making sure the server just uses SSL 3.0 or TLS.

I have done some reading around this issue, and although this is simple on Linux servers, Windows servers seem to have more of a problem. I can see how to make a registry change to disable IIS from using SSL 2.0 But a lot of people are saying that Plesk doesn't function correctly, or doesn't function at all, without SSL 2.0 on Windows servers.

Has anyone else had to disable SSL 2.0 on a Windows server? And did Plesk work OK after you did this?


There was another security problem relating to security ciphers used by Plesk, but we can come back to that if there's a solution/workaround to the SSL 2.0 issue.


Many thanks in advance.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off



All times are GMT. The time now is 03:04.


Powered by vBulletin® Version 3.8.6
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.
UK Web Hosting by eUKHosting 3.1.0
UK Web Hosting by eUKHosting 3.1.0
Copyright © 2001-2012, eUKhost LTD. All rights reserved.

 


UK VPS Hosting
VPS Hosting plans

Dedicated Server Hosting
Dedicated Server plans

VoIP Dedicated Servers
Asterisk, Trixbox Dedicated Servers

Business Web Hosting
100% uptime Hosting

UK Cpanel Hosting
cPanel Shared Hosting

Domain Hosting
Cheap Domains & Hosting Plans

UK Reseller Hosting
Reseller Web Hosting

Windows Hosting
Windows Shared Hosting

Windows VPS

Windows VPS Hosting

Semi Dedicated Servers
Semi-Dedicated Hosting

Dedicated Server Mirroring
Dedicated Server Mirroring

Webhosting Knowledgebase
Frequently asked Questions

Web Hosting Blog
eUKhost Blog

Web Hosting Support
Support Helpdesk

UK Data Center
eUKhost Datacenter

Web Hosting Forum
eUKhost Forum

Support Tutorials
Online Flash Tutorials

Offsite Back-up Plans
Remote Backup Service

ColdFusion Hosting
ColdFusion Web Hosting
 
 

Android and Apple App


knowledgebase articles
eUKhost.com Services

Pre-Sales Questions
Pre-sales FAQ's

Domain Names
Domain registration FAQ's

cPanel Hosting
cPanel Hosting FAQ's

Windows Web Hosting
Plesk Control Panel

Reseller Hosting
Reseller Hosting FAQ's

VPS Hosting
Virtual Private Server

Semi-Dedicated Servers
Semi-Dedicated FAQ's

Dedicated Servers
Dedicated Server Hosting

Joomla Hosting
Joomla Web Hosting

Mambo Hosting
Mambo Web Hosting

Magento Hosting
Magento Web Hosting

Wordpress Hosting
Wordpress Web Hosting

 

Web Hosting Affiliate Program
 

popular blog categories

UK Web Hosting
UK Hosting articles

Dedicated Server Hosting
Dedicated Server guidelines

VPS Hosting
VPS hosting articles

cPanel Hosting
cPanel Hosting articles

Linux Operating System
Linux Operating techniques

Windows Web Hosting
Windows plesk articles