Security and Cryptography
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me
Go Back   Dev Shed ForumsSystem AdministrationSecurity and Cryptography

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Dev Shed Forums Sponsor:
  #16  
Old June 26th, 2008, 08:09 AM
fishtoprecords's Avatar
fishtoprecords fishtoprecords is offline
Contributing User
Dev Shed Beginner (1000 - 1499 posts)
 
Join Date: Sep 2007
Location: outside Washington DC
Posts: 1,267 fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)  Folding Points: 28001 Folding Title: Starter FolderFolding Points: 28001 Folding Title: Starter Folder
Time spent in forums: 2 Weeks 22 h 16 m 2 sec
Reputation Power: 658
Quote:
Originally Posted by AstroTux
I'm in the UK.

If you are a British citizen in the UK, the US ITAR is of no concern to you. If you are a US citizen in the UK, the ITAR is alive, but it gets more complex.

I don't think the Brits have anything as idiotic as the ITAR, but I don't know. Since breaking the enigma was a key to winning WW2, there may be some sensitivity on the topic to anyone who is glad they aren't speaking German.

I don't know what happens if a Brit has crypto software on his laptop, comes to visit New York, and goes home. Does the return "export" the software?

Reply With Quote
  #17  
Old June 26th, 2008, 08:58 AM
AstroTux AstroTux is offline
Contributing User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Feb 2008
Posts: 261 AstroTux User rank is Sergeant (500 - 2000 Reputation Level)AstroTux User rank is Sergeant (500 - 2000 Reputation Level)AstroTux User rank is Sergeant (500 - 2000 Reputation Level)AstroTux User rank is Sergeant (500 - 2000 Reputation Level)AstroTux User rank is Sergeant (500 - 2000 Reputation Level) 
Time spent in forums: 1 Day 22 h 4 sec
Reputation Power: 10
Quote:
I don't know what happens if a Brit has crypto software on his laptop, comes to visit New York, and goes home. Does the return "export" the software?

Now that's a question!!

Must happen frequently, I'm sure.

Best regards,
AstroTux.

Reply With Quote
  #18  
Old June 28th, 2008, 09:48 PM
B-Con's Avatar
B-Con B-Con is offline
Crypto-Con
Dev Shed God 4th Plane (6500 - 6999 posts)
 
Join Date: Apr 2004
Location: UC Davis
Posts: 6,663 B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level)B-Con User rank is Lieutenant General (80000 - 90000 Reputation Level) 
Time spent in forums: 1 Month 5 Days 20 h 30 m 47 sec
Reputation Power: 879
Crypto legislation is not my fortay, but didn't ITAR declassify strong crypto as of 97ish?

The best crypto legal reference I can provide is here: http://rechten.uvt.nl/koops/cryptolaw/
__________________
- "Cryptographically secure linear feedback shift register based stream ciphers" -- a phrase that'll get any party started.
- Why know the ordinary when you can understand the extraordinary?


- Sponsor my caffeine addiction! (36.70 USD recieved so far -- Latest donor: Mark Foxvog
)

Reply With Quote
  #19  
Old June 28th, 2008, 10:00 PM
fishtoprecords's Avatar
fishtoprecords fishtoprecords is offline
Contributing User
Dev Shed Beginner (1000 - 1499 posts)
 
Join Date: Sep 2007
Location: outside Washington DC
Posts: 1,267 fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)  Folding Points: 28001 Folding Title: Starter FolderFolding Points: 28001 Folding Title: Starter Folder
Time spent in forums: 2 Weeks 22 h 16 m 2 sec
Reputation Power: 658
er, mostly, but not really.

First, it was never a question of "classification" as in Top Secret and other government classifications. The rules were about export of the software. In the mid-90s, with the skipjack and clipper rules, the civil liberties folks, and the serious cryptography folks, were very upset and vocal about how stupid the export rules here. Actually, when I talked to both "department of commerce" and "NIS&T" folks about it at the time, they admitted that the rules were stupid, but they were legally required to follow the laws. And the folks behind the curtain at Commerce and NIS&T, aka the No Such Agency folks, were not about to let it get exported.

If you casually look at the details, open source "source code" is ignored, but you are still supposed to tell Commerce about the URL. And you are supposed to make sure that known terrorist countries don't get it.

They loosened it up a lot of crypto is a minor part of the product. So a web browser that uses crypto has a much easier time being exported than pgp. The problem is that the definition of "minor part" is subjective, so you can't be sure without getting approval.

I got (or the company that I wrote crypto code for) export approval for RSA 1024 and 3DES in 1998. It was not trivial.

For historical background, see
Pat Farrell's notes at NIST key escrow conference

Reply With Quote
  #20  
Old June 29th, 2008, 02:16 PM
fishtoprecords's Avatar
fishtoprecords fishtoprecords is offline
Contributing User
Dev Shed Beginner (1000 - 1499 posts)
 
Join Date: Sep 2007
Location: outside Washington DC
Posts: 1,267 fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)fishtoprecords User rank is Brigadier General (60000 - 70000 Reputation Level)  Folding Points: 28001 Folding Title: Starter FolderFolding Points: 28001 Folding Title: Starter Folder
Time spent in forums: 2 Weeks 22 h 16 m 2 sec
Reputation Power: 658
Per B-Con's note upthread, this came accross one of the professional crypto lists that I'm on. Specific thread is why hasn't Sun released all of the SPARC code when they moved most of the sparc layout to open source. The specifics is that they (Sun) did not release the crypyo acceleration hardware.

"The high-order bit here is that the reason Sun has not open sourced the crypto module of the Sparc T2 along with all the other modules is the US government's export restrictions and their extra-legal implicit threats. I've received another e-mail from a Sun employee stating that crypto export restrictions are the issue and that Sun management feels that it is too risky to defy the government's pressure because the government has the power to do billions of dollars in damage to the company by temporarily suspending their export licences for their whole suite of products.

My conclusions are:

1. We didn't exactly win the free-crypto struggle after all"

Reply With Quote
  #21  
Old June 29th, 2008, 05:26 PM
AstroTux AstroTux is offline
Contributing User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Feb 2008
Posts: 261 AstroTux User rank is Sergeant (500 - 2000 Reputation Level)AstroTux User rank is Sergeant (500 - 2000 Reputation Level)AstroTux User rank is Sergeant (500 - 2000 Reputation Level)AstroTux User rank is Sergeant (500 - 2000 Reputation Level)AstroTux User rank is Sergeant (500 - 2000 Reputation Level) 
Time spent in forums: 1 Day 22 h 4 sec
Reputation Power: 10
Hi,

Quote:
No Such Agency

Nice one!!

Seems like such a minefield, I'm probably best forgetting the idea for now (that or move country?).

I think I posted here a link to some information I found on current UK export law?? Sadly this issue seems to have gone rather quiet since about 1997-1998 when the crypto-wars were in full-swing and current information seems scarce.

Just swapping OS...brrb.

Best regards,
AstroTux.

Reply With Quote
Reply

Viewing: Dev Shed ForumsSystem AdministrationSecurity and Cryptography > Interesting Legal Question


Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump


Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
  
 





© 2003-2008 by Developer Shed. All rights reserved. DS Cluster 3 hosted by Hostway
Stay green...Green IT