Skip to content

Latest commit

 

History

History
65 lines (50 loc) · 1.4 KB

PCI-IaaS-Checklist.md

File metadata and controls

65 lines (50 loc) · 1.4 KB

Network payload –

  1. Virtual Network
  • Deploy and Configure Virtual Network
  1. NSG
  • Configure NSG

Application Payload –

  1. Web Tier
  • Deploy & Configure VMs with Contoso Webstore
  • Connect Webstore to SQL DB
  1. Data Tier
  • Deploy & Configure SQL Always On Cluster
  • Configure TDE & Column Encryption

DMZ Payload –

  1. Barracuda NGF.
  • Deploy Barracuda NGF.
  • Configure Barracuda NGF
  1. Barracuda WAF
  • Deploy Barracuda WAF
  • Configure Barracuda WAF

Security Payload -

  1. Cloudneeti
  • Deploy Cloudneeti VM
  1. TrendMicro DSM
  • Deploy TrendMicro VM
  • Configure TrendMicro VM
  1. Qualys Virtual Scanner
  • Deploy Qualys VM
  • Configure Qualys
  1. Alert Logic - Threat Manager
  • Deploy Alert Logic VM
  • Configure Alert Logic

Management Payload

  1. ADDS
  • Deploy ADDS PDC & BDC
  • Create necessary user accounts.
  1. Jump box
  • Deploy Jump Box VM
  • Configure Jump Box VM.

PaaS Services Payload

Log Analytics

  • Deploy OMS Work space & Solutions
  • Configure Log analytics for all the deployed resources.

Security Center

  • Configure Azure Security Center.

Azure Key Vault.

  • Deploy Azure Key Vault.
  • Configure Azure Key vault.

Azure Recovery Service Vault

  • Deploy Azure Recovery Service Vault.
  • Add all VMs and VMSS to recovery services vault.