[171453] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: We hit half-million: The Cidr Report

daemon@ATHENA.MIT.EDU (Valdis.Kletnieks@vt.edu)
Wed Apr 30 12:31:35 2014

X-Original-To: nanog@nanog.org
To: Jamie Bowden <jamie@photon.com>
In-Reply-To: Your message of "Wed, 30 Apr 2014 15:40:43 -0000."
 <465966A5F5B867419F604CD3E604C1E55DD5EE51@PRA-DCA-MAIL.pra.ray.com>
From: Valdis.Kletnieks@vt.edu
Date: Wed, 30 Apr 2014 12:30:51 -0400
Cc: NANOG list <nanog@nanog.org>
Errors-To: nanog-bounces@nanog.org

--==_Exmh_1398875451_2086P
Content-Type: text/plain; charset=us-ascii

On Wed, 30 Apr 2014 15:40:43 -0000, Jamie Bowden said:

> You're not funny.  And if you're not joking, you're wrong.  We just went over
> this on this very list two weeks ago.

And in that discussion, we ascertained that what the PCI standard actually
says, and what you need to do in order to get unclued boneheaded auditors to
sign the piece of paper, are two very different things.

Yes, the PCI standard gives a list of 4 options and then continues on to
say that other creative solutions are acceptable as well.  But if you
discover mid-engagement that your auditor *thinks* it says "Thou shalt NAT",
you have a problem.

Anybody got recommendations on how to make sure the company you engage
for the audit ends up sending you critters that actually have a clue? (Not
necessarily PCI, but in general)


--==_Exmh_1398875451_2086P
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
Comment: Exmh version 2.5 07/13/2001
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=Dd1B
-----END PGP SIGNATURE-----

--==_Exmh_1398875451_2086P--

home help back first fref pref prev next nref lref last post