[7309] in Kerberos

home help back first fref pref prev next nref lref last post

Re: US Export Restrictions

daemon@ATHENA.MIT.EDU (Rich Salz)
Sun May 19 11:53:55 1996

To: kerberos@MIT.EDU
Date: 19 May 1996 15:17:53 GMT
From: rsalz@osf.org (Rich Salz)

In <199605170319.UAA03816@imo.plaintalk.bellevue.wa.us> dennis.glatting@plaintalk.bellevue.wa.us writes:
>I don't know if it is easy, but, CyberSafe has an
>exportable GSS-API Kerberos mechanism *with* user
>level DES encryption.

For identification (gss_sign) not confidentiality (gss_seal), right?

I cannot imagine that CyberSafe got permission to export a system
that lets a user do 56-bit DES for arbitrary data without some sort
of key escrow or similar perversion.  If I'm wrong, I'd love to hear it!
	/r$

home help back first fref pref prev next nref lref last post