Recent FAQ Changes RSS

Latest changes to PCI SSC frequently asked questions.

FAQ 1435 Updated

What is the Council's guidance on the use of SHA-1?

For more information about strong cryptography, refer to the Information Supplement: PCI Cryptography Guidance, available under Guidance Document in the PCI SSC Document Library. Our document library can be …

FAQ 1078 Updated

In what circumstances is multi-factor authentication required?

For more information about multi-factor authentication, refer to the Information Supplement: Authentication Guidance, available under Guidance Document in the PCI SSC Document Library. Our document library can be accessed …

FAQ 1449 Updated

Is two-step authentication acceptable for PCI DSS Requirement 8.4?

For more information about multi-factor authentication, refer to the Information Supplement: Authentication Guidance, available under Guidance Document in the PCI SSC Document Library. Our document library can be accessed …

FAQ 1329 Deleted

What is the current version of PA-DSS?

The current version of PA-DSS is v3.2. Effective 1 September 2016, all new payment applications must be validated using PA-DSS v3.2. New payment application validations and High Impact Changes using …