Welcome to WebmasterWorld Guest from 34.228.30.69

Forum Moderators: phranque

Web and email on the same machine?

for ecommerce

     
8:37 pm on Nov 2, 2018 (gmt 0)

Senior Member

WebmasterWorld Senior Member 10+ Year Member

joined:Dec 5, 2002
posts: 1864
votes: 5


I was told that due to PCI Compliance requirements I can't run an email server on the same machine as a web server if the web server is used for ecommerce credit card payments. Is that true?
9:26 pm on Nov 2, 2018 (gmt 0)

Senior Member

WebmasterWorld Senior Member 10+ Year Member Top Contributors Of The Month

joined:Sept 25, 2005
posts:1990
votes: 331


That's part of the Payment Card Industry Data Security Standards (PCI DSS) requirements, yes.
System configuration standards used for general provisioning, hardening, securing and locking-down of system components are to include the following procedures:
o Changing of all vendor-supplied defaults and elimination of unnecessary default accounts
o Implementing only one primary function per server to prevent functions that require different security levels from co-existing on the same server

[pcicompliance.stanford.edu...]

Always best to ask your auditor, of course.
9:41 pm on Nov 2, 2018 (gmt 0)

Senior Member

WebmasterWorld Senior Member 10+ Year Member

joined:Dec 5, 2002
posts: 1864
votes: 5


Can I separate them into different VMs on the same machine?
9:49 pm on Nov 2, 2018 (gmt 0)

Preferred Member

Top Contributors Of The Month

joined:Sept 13, 2018
posts:355
votes: 66


Can I separate them into different VMs on the same machine?

Always best to ask your auditor, of course.
12:02 pm on Nov 4, 2018 (gmt 0)

Senior Member

WebmasterWorld Senior Member essex_boy is a WebmasterWorld Top Contributor of All Time 10+ Year Member

joined:May 19, 2003
posts:3207
votes: 12


Thats a basic question, always keep them seperate
12:50 pm on Nov 4, 2018 (gmt 0)

Senior Member

WebmasterWorld Senior Member 10+ Year Member Top Contributors Of The Month

joined:Sept 25, 2005
posts:1990
votes: 331


Can I separate them into different VMs on the same machine?

Maybe, that's probably not uncommon.