Not sure if this is a user or developer question, but I thought I'd
start here:

Does anybody know if an Apache/Tomcat combination connected through
ajpv13 meetings VISA's security requirements?

http://usa.visa.com/media/business/cisp8_pd.pdf

In particular, the bottom half of page 12 refers to "Network encryption
(VPN) may be used betweeen any merchant system and any back-end
database" and on page 14: "When transmitting data across networks,
always use encryption techniques..."

If I'm reading this correctly, it sound like traffic between Apache and
Tomcat need to be encrypted. 

I know that ajpv13 can detect SSL requests, but is there any support for
encrypting traffic between the two systems? Or am I just reading this
wrong?

Thanks in advance.

Brian



--
To unsubscribe, e-mail:   <mailto:[EMAIL PROTECTED]>
For additional commands, e-mail: <mailto:[EMAIL PROTECTED]>

Reply via email to