Page 1 of 1
Live Store Keys and Firewall Using NAT
Posted: Tue Feb 03, 2009 1:06 am
by pulsar
AC7 Live Keys will only let you you serve a site at port 80 and 443. We host multiple sites on shared servers with firewalls using NAT (port forwarding) (i.e. port 80 -> 14000 in the firewall). The sites will not work in this configuration. Does anyone have a fix for this so multiple sites can be installed on a single server? Sites that are not behind a firewall are not secure or really PCI compliant. This is pretty URGENT as we have multiple sites wanting to go Live in the next few days.
Re: Live Store Keys and Firewall Using NAT
Posted: Thu Feb 05, 2009 11:24 am
by Shopping Cart Admin
Hello,
There are hundreds and hundreds of sites running behind a firewall and no one has EVER brought this up. I wonder what is different about your firewall configuration? It would sure seem if there was any issues, we'd certainly of heard about it by now. Port forwarding is not a requirement of PCI compliance perhaps no one else has done this. Typically the firewall is mapped internal ip to external ip address, without port remapping except for frequently attacked ports such as sql server port. Since the request would be served regardless of the port mapping not quite sure what the security benefit is? Please let me know why you think this improves security, thank you.