Java Cryptography Extension (JCE)

Holtzman, Donn (donnh@SDEXGATE.SANDIEGOCA.NCR.com)
Mon, 18 Aug 1997 15:08:49 -0700

Message-Id: <199708182205.PAA28186@ncr-sd.SanDiegoCA.NCR.COM>
From: "Holtzman, Donn" <donnh@SDEXGATE.SANDIEGOCA.NCR.com>
To: "'Gong, Li (JavaSoft)'" <gong@Eng>
Subject: Java Cryptography Extension (JCE)
Date: Mon, 18 Aug 1997 15:08:49 -0700

Li,

I greatly enjoyed your presentation at the WICS Internet Security class.

I have a question regarding the JCE. I'm under the impression that the
government frowns on exporting products with cryptography hooks, and
requires some sort of control so that only "certified" products will
work together. Will the JCE have some control, like a signature or key,
to control which products will work? I got the impression from your talk
that Sun planned on publishing the API which seems to fly in the face of
the regulations unless you have signature based certification program.
We (NCR) have similar issues with our middleware product TOP END so I'd
be interested in how you handled the issue.

Thanks in advance,

--Donn Holtzman
NCR Corporation
TOP END Product Center
17095 Via Del Campo
San Diego, CA 92127
(619) 485-3396
(619) 485-3408 fax
donn.holtzman@sandiegoca.ncr.com