Forums

Skip to content

Advanced search
  • Quick links
    • Unanswered topics
    • Active topics
    • Search
  • FAQ
  • Login
  • Register
  • Board index Assistance Other Things Gentoo
  • Search

PCI Compliance, hosting, and OS

Still need help with Gentoo, and your question doesn't fit in the above forums? Here is your last bastion of hope.
Post Reply
Advanced search
2 posts • Page 1 of 1
Author
Message
Krogen
Tux's lil' helper
Tux's lil' helper
Posts: 103
Joined: Thu May 26, 2005 1:44 am
Location: Chicago PL

PCI Compliance, hosting, and OS

  • Quote

Post by Krogen » Mon Sep 26, 2011 4:59 am

Hey guys,

I have recently started working on a web store. One of the requirements from my bank that I had to fulfill was a PCI compliance test. One major part of PCI compliance is to pass a vulnerability scan. On my server (a lightweight VPS), I am running Ubuntu 10.04 LTS (just keep reading... This is about Gentoo, I promise :P). The scan determined that I was using a version of PHP that is prone to multiple exploits, and so I failed the scan. I always keep the system up to date, it's just that the stable version of PHP in Ubuntu 10.04 has these vulnerabilities. I eventually passed the test by compiling my own version of PHP.

Now, the problem is, since at this point it looks like I might have to look out for a lot of software myself, I am beginning to look for a new distribution, or perhaps another way to solve this problem.

As a remedy, I was thinking about going for Gentoo. While my system will never reach the stability of, say, Ubuntu or Redhat, I will have very little, if any, security issues since Gentoo is much more cutting edge. My VPS provider also offers it as one of the choices, so that's another mark out of the way.

I have used and performed multiple desktop installations of Gentoo myself also, so maintaining and configuring is also mostly non-issue.

However, one thing that I will need to know is how to configure a kernel to work on a VPS. I have used genkernel earlier today on a VPS node. Unsurprisingly, the O/S did not boot back up. Not a big deal, since this was a test node.

I am guessing I should be looking at this guide in order to make it work out?
http://www.gentoo.org/doc/en/xen-guide.xml

Anyways, before I waste any more time on this... Is this even a good idea what I am about to do? I really don't want to regret moving a server to Gentoo...

Suggestions and ideas much appreciated. :)
Top
cach0rr0
Bodhisattva
Bodhisattva
User avatar
Posts: 4123
Joined: Thu Nov 13, 2008 11:14 pm
Location: Houston, Republic of Texas

  • Quote

Post by cach0rr0 » Mon Sep 26, 2011 5:30 am

if you're certain it's xen, that's indeed one place to look for doc
but
I found this useful as well, since we use gentoo Xen guests from Rackspace for some of our stuff at work:
http://www.rackspace.com/knowledge_cent ... th_pv-grub

main thing to look out for, is you'll want a kernel with all of the Xen guest support bits, and if you use the xen disk drivers, your devices will be xvda, xvdb, etc, instead of sda, sdb, etc. The grub.conf and fstab will need to be updated accordingly, detailed in the guide above.

For the rest of it: check out the links in my sig
Lost configuring your system?
dump lspci -n here | see Pappy's guide | Link Stash
Top
Post Reply

2 posts • Page 1 of 1

Return to “Other Things Gentoo”

Jump to
  • Assistance
  • ↳   News & Announcements
  • ↳   Frequently Asked Questions
  • ↳   Installing Gentoo
  • ↳   Multimedia
  • ↳   Desktop Environments
  • ↳   Networking & Security
  • ↳   Kernel & Hardware
  • ↳   Portage & Programming
  • ↳   Gamers & Players
  • ↳   Other Things Gentoo
  • ↳   Unsupported Software
  • Discussion & Documentation
  • ↳   Documentation, Tips & Tricks
  • ↳   Gentoo Chat
  • ↳   Gentoo Forums Feedback
  • ↳   Duplicate Threads
  • International Gentoo Users
  • ↳   中文 (Chinese)
  • ↳   Dutch
  • ↳   Finnish
  • ↳   French
  • ↳   Deutsches Forum (German)
  • ↳   Diskussionsforum
  • ↳   Deutsche Dokumentation
  • ↳   Greek
  • ↳   Forum italiano (Italian)
  • ↳   Forum di discussione italiano
  • ↳   Risorse italiane (documentazione e tools)
  • ↳   Polskie forum (Polish)
  • ↳   Instalacja i sprzęt
  • ↳   Polish OTW
  • ↳   Portuguese
  • ↳   Documentação, Ferramentas e Dicas
  • ↳   Russian
  • ↳   Scandinavian
  • ↳   Spanish
  • ↳   Other Languages
  • Architectures & Platforms
  • ↳   Gentoo on ARM
  • ↳   Gentoo on PPC
  • ↳   Gentoo on Sparc
  • ↳   Gentoo on Alternative Architectures
  • ↳   Gentoo on AMD64
  • ↳   Gentoo for Mac OS X (Portage for Mac OS X)
  • Board index
  • All times are UTC
  • Delete cookies

© 2001–2026 Gentoo Foundation, Inc.

Powered by phpBB® Forum Software © phpBB Limited

Privacy Policy

 

 

magic