Payment card Industry (PCI) 4.0 IPv6 Address Guidance

The PCI 4.0 standard recommends obscuring IP addresses.  In IPv6. this may mean using a technique like IPvó Privacy Addressing (RFC 4941).

But, that can make after the fact network diagnostics much more difficult!

How will you know what IP address the user was using when they reported a problem when the IPvó privacy address changes every few minutes?

We have seen the IPvó privacy address change every 7 minutes on some operating systems.  Fingerprint can automatically create reports to help you see this.

You may wish to click HERE to see the Azure support for PCI DSS.