<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Sumeet Singh &#187; pci</title>
	<atom:link href="http://sumeetsingh.net/tag/pci/feed/" rel="self" type="application/rss+xml" />
	<link>http://sumeetsingh.net</link>
	<description></description>
	<lastBuildDate>Wed, 18 Feb 2009 15:12:35 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>PCI DSS 6.6 Supplement</title>
		<link>http://sumeetsingh.net/2008/04/23/pci-dss-66-supplement/</link>
		<comments>http://sumeetsingh.net/2008/04/23/pci-dss-66-supplement/#comments</comments>
		<pubDate>Tue, 22 Apr 2008 18:58:09 +0000</pubDate>
		<dc:creator>sumeet</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[test]]></category>
		<category><![CDATA[pci]]></category>

		<guid isPermaLink="false">http://sumeetsingh.net/2008/04/23/pci-dss-66-supplement/</guid>
		<description><![CDATA[PCI SSC finally released &#8220;Information Supplement: Payment Card Industry Data Security Standard (PCI DSS) Requirement 6.6 Code Reviews and Application Firewalls&#8221; that would clean some air on how much application security is really required for PCI DSS compliance. I have often had long discussions on the intent of 6.6 requirement, and to me it always [...]]]></description>
			<content:encoded><![CDATA[<p>PCI SSC finally released &#8220;Information Supplement: Payment Card Industry Data Security Standard (PCI DSS) Requirement 6.6 Code Reviews and Application Firewalls&#8221; that would clean some air on how much application security is really required for PCI DSS compliance. I have often had long discussions on the intent of 6.6 requirement, and to me it always was clear that Section 6.6 wanted application owners to be cautious against web based attacks than just web-application security testing.</p>
<p>The supplement is a must read and can be downloaded from <a href="https://www.pcisecuritystandards.org/pdfs/infosupp_6_6_applicationfirewalls_codereviews.pdf">here</a> </p>
]]></content:encoded>
			<wfw:commentRss>http://sumeetsingh.net/2008/04/23/pci-dss-66-supplement/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
