nk23x
3/18/2016 - 2:54 PM

PCI DSS. Useful resources

PCI DSS. Useful resources

PCI DSS

NOTE: Work in progress

TODO: Identity management, two-factor auth, OpenVPN, Logstash, log shippers, IIS logs, OSSEC, Snort, Suricata, snorby, restart iis w/o admin role,

PCI DSS. Guidelines

REQ 10.1, 10.2. Tools. Resource access tracking

REQ 10.1, 10.2. Tools. Resource access tracking. auditd

REQ 10.1, 10.2. Tools. Resource access tracking. rootsh

REQ 10.3. Tools. Log management

REQ 10.3. Tools. Log management. nxlog

PCI DSS. Tools. Vulnerability management

PCI DSS. Tools. Penetration testing

PCI DSS. Python apps