Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Password Length and PCI Compliance Issues #7

Closed
RapidTransit opened this issue Sep 17, 2011 · 1 comment
Closed

Password Length and PCI Compliance Issues #7

RapidTransit opened this issue Sep 17, 2011 · 1 comment

Comments

@RapidTransit
Copy link

LC's target audience will most likely involve Small Business users who will use their own credit card terminal for manual credit card entry in the default install I was allowed to make a user: 'root@localhost.com' with a Password: 'root' at installation. At issue is PCI DSS v2 Sections 8.5.9 - 8.5.15 a password best practice when handling potentially sensitive data whether PCI compliance even matters or not.

I haven't personally went through all of LC for PCI Issues if a summary is needed one can be rovided.

@maxmukhin
Copy link
Member

There will be no manual card processing payments in LC.

If there is a manual processing then LC must be PA-DSS and PCI-DSS certified.
This certification costs a lot of money.

Actually there is a programming product from our partner: X-Payments which is PA-DSS and PCI-DSS certified,
http://www.x-cart.com/x-payments.html

Thank you.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants