Re[2]: POSTing to a secure server ...

This WebDNA talk-list message is from

2000


It keeps the original formatting.
numero = 27619
interpreted = N
texte = Although the RSA algorithms are indeed patented (through Sept 2000), there are other algorithms that are now public domain like DES. All SSL implementations understand multiple encryption schemes. The OpenSSL library explicitly includes options to exclude specific cyphers (like RSA and DSA) and would then be legal to use without a license.Even though DES is considered less secure than RC5 et al, for SSL it is perfectly acceptable, since the transaction is so brief compared to how long it would take to decrypt it. Yes, someone could use a sniffer to capture the transactions and decrypt them off line; but if some is using a sniffer in the first place, they probably have resources that would allow them to break into the host machine itself.John Peacock ____________________Reply Separator____________________ Subject: Re: POSTing to a secure server ... Author: (WebCatalog Talk) Date: 2/15/00 8:53 PM The availability of the modules does not obviate the need for licensing. Some RSA licenses are free for non-commercial use, but I doubt that any commercial use is free. The code alone is not the issue, it's the patent and their licensing practices.David------------------------------------------------------------- Brought to you by CommuniGate Pro - The Buzz Word Compliant Messaging Server. To end your Mail problems go to .This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Associated Messages, from the most recent to the oldest:

    
  1. Re[2]: POSTing to a secure server ... (jpeacock@univpress.com 2000)
Although the RSA algorithms are indeed patented (through Sept 2000), there are other algorithms that are now public domain like DES. All SSL implementations understand multiple encryption schemes. The OpenSSL library explicitly includes options to exclude specific cyphers (like RSA and DSA) and would then be legal to use without a license.Even though DES is considered less secure than RC5 et al, for SSL it is perfectly acceptable, since the transaction is so brief compared to how long it would take to decrypt it. Yes, someone could use a sniffer to capture the transactions and decrypt them off line; but if some is using a sniffer in the first place, they probably have resources that would allow them to break into the host machine itself.John Peacock ____________________Reply Separator____________________ Subject: Re: POSTing to a secure server ... Author: (WebCatalog Talk) Date: 2/15/00 8:53 PM The availability of the modules does not obviate the need for licensing. Some RSA licenses are free for non-commercial use, but I doubt that any commercial use is free. The code alone is not the issue, it's the patent and their licensing practices.David------------------------------------------------------------- Brought to you by CommuniGate Pro - The Buzz Word Compliant Messaging Server. To end your Mail problems go to .This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to jpeacock@univpress.com

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

Date Formats (1997) Sum of Quantities (1997) syntax question, not in online refernce (1997) How can I Add several Items into the cart at once? (1997) Quitting WebMerchant ? (1997) Translator. (1998) CSS positioning!!! (2001) NT Manual (1997) WebCat2b12 CGI Mac -- Problems propagating the cart through (1997) IIS4b2 and WebCatalog b19 (1997) SSL, WebSTAR, WebCatalog (1998) How true is this? (1999) Problem with listfields with WC 4.0.2rc2/Webstar 4.4 (2001) Classified (1999) Getting total number of items ordered (1997) passing a variable in a pulldown (2005) Only charge card when product shipped ? (1997) WebCatalog-NT?'s (1996) Search design (1997) A multi-processor savvy WebCatalog? (1997)