Schmidlin, Franck wrote:
Hans,
looking into this a bit more, it would seem that the JCE provider in the
JSSE.jar is indeed "RSA Security's old commercial JSAFE".
I guess there is an agreement between SUN and RSA.
Hi Franck,
The initial reason for my knee-jerk reaction was some issues with
"the old" RSA provider (as in pre-2000) that I have never seen
with the Sun one -- sorry for the confusion.
I have tried examining a JADed version of the classes, but the problem
occurs too deep in the algorithm for me to pinpoint.
That said, when you ask
Do you get the same error on the customer site using non-jsafe provider?
which non-jsafe provider would you recommend?
I am going to run some tests with BouncyCastle, but maybe you can advise
me with other alternatives.
BouncyCastle is the one I'd test, too!
Apart from that, not sure of your choices unless you want to pay $$$.
-Hans
---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]