Rank: Member
Joined: 3/20/2009(UTC) Posts: 6
|
Thanks for the clarification, Marcus. Much appreciated.
I'm fairly new to PCI lingo. You mentioned that you're working toward PCI-DSS 1.2 - do you mean PA-DSS 1.2?
Are you able to share time frame information for service pack 5.5?
Do you have any idea how long the PA-QSA will take to review BV Commerce 5.5?
Many thanks for the information. We're all rooting for a certified BV Commerce 5.5!
- Ben
|
|
|
|
Rank: Member
Joined: 2/21/2007(UTC) Posts: 1,113
|
If McAfee Security (Formerly HackerSafe) has determined that our store is currently PCI compliant with BV6 -- what is going to change in the near future that requires "BV6 to be PCI Compliant"? |
|
|
|
|
Rank: Member
Joined: 11/5/2003(UTC) Posts: 1,786
|
Merchants will be required to the PCI Compliant APPLICATIONS as well as have quarterly scans on their web sites. To have a compliant application we have to support things like "one click" encryption key changing and some other security and auditing features.
|
|
|
|
Rank: Member
Joined: 3/20/2009(UTC) Posts: 6
|
Marcus, The roadmap suggests PCI certification will be coming in 5.6. Is that correct? When will the service pack ship? PCI certification is huge issue for our customers. Please keep us updated. Sincerely, - Ben
|
|
|
|
Rank: Member
Joined: 11/5/2003(UTC) Posts: 1,786
|
We are working through the certification process now with our vendor. A major part of the PA-DSS 1.2 specification is paperwork related to procedures used by us during development. I wish that I could give you an exact date for when the certification will be complete.
Right now, the plan is for service pack 5.6 to be out before August 31st to ensure the PayPal updates are available in time for their switch. If PCI certification can be completed before then we will include it in 5.6. Otherwise it will be in the following service pack.
|
|
|
|
Rank: Member
Joined: 3/20/2009(UTC) Posts: 6
|
Marcus,
What's the status of service pack 5.6? Did it ship on August 31st? If so, did the service pack achieve PCI certification?
Is there any other news you can share regarding PCI matters?
Sincere thanks,
- Ben Henderson
|
|
|
|
Rank: Member
Joined: 11/5/2003(UTC) Posts: 1,786
|
Service Pack 5.6 was released at the end of July. We moved up the schedule because of PayPal updates taking effect Sept 1st. We are targeting version 5.7 for PCI compliance. We are wrapping up the documentation phase now and hope to complete certification next month (October 2009) with 5.7.
|
|
|
|
Rank: Member
Joined: 3/20/2009(UTC) Posts: 6
|
Hello Marcus,
I hope all is well for you.
Has 5.7 released with the PCI certification updates mentioned on 9/6, below?
Thanks, - Ben
|
|
|
|
Rank: Member
Joined: 11/5/2003(UTC) Posts: 1,786
|
We have completed documentation certification and are just now completing the code changes required. 403 Labs will be reviewing the code changes and we anticipate they will issue our official compliance this month. As soon as we get the official word we will publish service pack 5.7. We do not want to publish 5.7 only to have to release 5.8 a few weeks later if there are changes required by 403.
|
|
|
|
Rank: Member
Joined: 6/25/2008(UTC) Posts: 92
|
Hi Marcus - I am scheduling resources for several 2010 projects, one of which will be our BV update for PCI compliance. Can you share a projected release date for the service pack containing this critical update? Thank you
Krista
|
|
|
|
Rank: Member
Joined: 3/20/2009(UTC) Posts: 6
|
Hello Marcus,
Has the PCI certification service pack been released yet?
Thanks, - Ben
|
|
|
|
Forum Jump
You cannot post new topics in this forum.
You cannot reply to topics in this forum.
You cannot delete your posts in this forum.
You cannot edit your posts in this forum.
You cannot create polls in this forum.
You cannot vote in polls in this forum.