PA-DSS 3.1 Released – June 1, 2015
The PCI Security Standards Council (PCI SSC) has released Payment Application Data Security Standard (PA-DSS) Version 3.1 to address vulnerabilities in the Secure Socket Layer (SSL) protocol. This update removes SSL and early TLS as examples of strong cryptography. PA-DSS 3.1 is effective June 1, 2015.
The PCI DSS requirements that are directly affected by this update are:
Requirement 8.2: The payment application must only use or require use of necessary and secure services, protocols, daemons, components, and dependent software...