question

MrJSmith-5263 avatar image
0 Votes"
MrJSmith-5263 asked ·

Is an ASE required for PCI SAQ A-EP compliance?

Is an ASE required for PCI SAQ A-EP compliance? or as long as the web application is correctly secured, simply using 'standard' Web Apps will provide the necessary network security required for compliance.

Our design would have Application Gateway in front of the Web Apps and the web application would use Azure SQL.

Thanks for your help

azure-webapps-security
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

1 Answer

DanielJPowell avatar image
0 Votes"
DanielJPowell answered ·

You would need an application gateway or other WAF component (e.g. an NVA with WAF features). You could also use containers/AKS

· Share
10 |1000 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.