Site SecurityOver the years, a persistant issue with servers is security. Volumes have been written about site security, and hardening a server and secure coding practices are essential for operational reasons as well as credit card processing organizations are requireing before doing business. The PCI DSS standard lays out guidelines neccessary to pass a security audit. Below is plagerized from the PCI DSS web site: Build and Maintain a Secure Network Requirement 1: Install and maintain a firewall configuration to protect cardholder data Protect Cardholder Data Requirement 3: Protect stored cardholder data Maintain a Vulnerability Management Program Requirement 5: Use and regularly update anti-virus software Implement Strong Access Control Measures Requirement 7: Restrict access to cardholder data by business need-to-know Regularly Monitor and Test Networks Requirement 10: Track and monitor all access to network resources and cardholder data Maintain an Information Security Policy Requirement 12: Maintain a policy that addresses information security |