Meeting PCI DSS compliance standards for authentication.
For communities that manage cardholder data, storing that data in other products can be a challenge. To address this, we have implemented PCI/DSS requirements (Version 4.0) on authentication. Our goal is to be PCI/DSS compliant. We will make the following changes:
Increase the complexity of passwords
Reduce the length of the inactive session
Allow the community administrator to not enforce 2FA on their users.
In Progress Added