On Thu, Jan 02, 2020 at 12:16:33PM -0500, James B. Byrne wrote:
> We recently were forced by our PCI compliance audit to change our
> permissible ciphers.  I speculate that this is the source of our
> problem.   Our revised cipher list is:

Don't, as long as you don't enforce encryption as well.

> I would appreciate any guidance as to how to correct this issue
> without running afoul of the PCI DSS.

Don't use mail to transport payment data, so PCI is not applicable.

Bastian

-- 
You can't evaluate a man by logic alone.
                -- McCoy, "I, Mudd", stardate 4513.3

Reply via email to