Secure > Overview: WebSphere Commerce and the PCI Data Security Standard > Address the PCI Data Security Standard within WebSphere Commerce


Requirement 3: Protect stored cardholder data

Attention: For all secure disposal of old database files (for example, from previous versions of WebSphere Commerce) as well as old key files and other important data, develop a disposal policy using one or more of the following tools:

SDelete

SDelete is a tool for secure removal on Windows platforms.

Use the -D parameter for PCI compliant removal.

SRM

SRM is a tool for secure removal on Unix platforms.

Use the -p 7 parameter to specify 7 removal passes. SDelete implements the Department of Defense clearing and sanitizing standard DOD 5220.22-M, to give you confidence that once deleted with SDelete, the file data is gone forever.

Recommendations...


Previous topic: Requirement 2: Do not use vendor-supplied defaults for system passwords and other security parameters


Next topic: Requirement 4: Encrypt transmission of cardholder data across open, public networks


+

Search Tips   |   Advanced Search