Nowadays you do not need to know how to do SSL, because a lot of website providers do it for you. However if you want to create SSL website yourself, it is an easy task. Just enabling SSL on your apache config will not work. Like, why? It is baffling! There is a reason to that which I will discuss in other posts, but for now lets proceed. You would need three things for HTTPS to work....
SIEM. Why scoping environment is important.
SIEM stands for Security Information and Event Management. Log management and notifications is a part of PCI DSS requirements and not optional in case of SAQ D. Activity on your network should be logged and sent to SIEM for analysis. Such activity includes user activity on workstations and servers, also various system events on your network - servers, firewalls, switches. Logs from your network can be used in event of breach to rebuild a picture what was happening....