Results 1 to 3 of 3
  1. #1
    Join Date
    Jul 2010
    Posts
    37
    Plugin Contributions
    0

    Default PCI DSS Compliant host? Can't get site to pass: help

    I have search the site for PCI topics like this but didn't find any. Forgive me if this has been covered.

    We are running the most up to date Zen cart. During our PCI compliance scan, our site failed. I sent the report over to our web host for review as I am not technical and was hoping some of the issues were host based (this was recommended by both the merchant company and scanning company).

    Engineer at my host company says that shared hosting CANNOT ever be PCI compliant I have to get a dedicated hosting at a cost of hundreds per month (money I can't spend right now). The PCI compliance team at the merchant account said there are some compliant shared hosting companies out there but didn't have a list of them. I called godaddy (I have my URL's purchased there) and they said shared hosting through them would not be compliant either. I would have to purchase a dedicated plan (price slightly lower than my current host) OR I could switch to their shopping cart which IS compliant, even on shared hosting.

    I am not technical so getting my site this far on zen is a big accomplishment (thanks to lots of help here over the years...this is a new user name I have). I really don't want to rebuild by site with a new cart, especially before the holidays.

    What are the "little guys" who can't afford the dedicated hosting doing now? Are you guys all moving to Paypal processing? I get some offline phone orders that I process manually. My PC passed compliance so I am good (per scanning and PCI support at merchant account) to continue doing that but I need the site to be compliant by 10/24 (YIKES). I know this has been coming for awhile but I didn't realize I would have this much difficulty.

    Any advise or help would be greatly appreciated.

  2. #2
    Join Date
    Jan 2004
    Posts
    66,373
    Blog Entries
    7
    Plugin Contributions
    274

    Default Re: PCI DSS Compliant host? Can't get site to pass: help

    Some of the hosts on the "Recommended Hosting" page (see link at top) assert that they're PCI compliant. Talk with them.

    Definitely miles better than GoDaddy.
    .

    Zen Cart - putting the dream of business ownership within reach of anyone!
    Donate to: DrByte directly or to the Zen Cart team as a whole

    Remember: Any code suggestions you see here are merely suggestions. You assume full responsibility for your use of any such suggestions, including any impact ANY alterations you make to your site may have on your PCI compliance.
    Furthermore, any advice you see here about PCI matters is merely an opinion, and should not be relied upon as "official". Official PCI information should be obtained from the PCI Security Council directly or from one of their authorized Assessors.

  3. #3
    Join Date
    Jul 2010
    Posts
    37
    Plugin Contributions
    0

    Default Re: PCI DSS Compliant host? Can't get site to pass: help

    Thanks for the advise. I'll check out the recommended hosts.

 

 

Similar Threads

  1. v139h New PCI compliant - emails....HELP
    By gacollege in forum Basic Configuration
    Replies: 11
    Last Post: 1 Apr 2012, 05:08 AM
  2. Replies: 19
    Last Post: 13 Feb 2008, 07:33 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
disjunctive-egg
Zen-Cart, Internet Selling Services, Klamath Falls, OR