Page 1 of 1

Federal Government Export Law Compliance

Posted: Wed Aug 05, 2009 6:25 pm
by 9079199
We are looking for feedback regarding the use of encryption technology within teeChart because we have to provide answers to the following questions to the Federal Government. (We must include any Third Party Products which we use.)

Thank you.
  • 1. Does your product perform "cryptography", or otherwise contain any parts or components that are capable of performing any of the following "information security" functions?
    (Mark with an "X" all that apply)
    • a. _ encryption
      b. _ decryption only (no encryption)
      c. _ key management / public key infrastructure (PKI)
      d. _ authentication (e.g., password protection, digital signatures)
      e. _ copy protection
      f. _ anti-virus protection
      g. _ other, e.g., home grown scrambling (please explain): _______________________________
      h. _ NONE / NOT APPLICABLE
    2. For items with encryption, decryption and/or key management functions (1.a, 1.b, 1.c above):
    • a. What symmetric algorithms and key lengths (e.g., 56-bit DES, 112 /168-bit Triple-DES, 128 / 256-bit AES / Rijndael) are implemented or supported?
      b. What asymmetric algorithms and key lengths (e.g., 512-bit RSA /Diffie-Hellman, 1024 / 2048-bit RSA / Diffie-Hellman) are implemented or supported?
      c. What encryption protocols (e.g., SSL, SSH, IPSEC or PKCS standards) are implemented or supported?
      d. What type of data is encrypted?
    3. For products that contain an "encryption component", can this encryption component be easily used by another product, or else accessed / re-transferred by the end-user for cryptographic use?

Re: Federal Government Export Law Compliance

Posted: Wed Aug 12, 2009 10:47 am
by Marc
Hello,

TeeChart does not encrypt or use any type of cryptography outside of the authenticode certificate it is signed with. ie:
cwdave wrote:
  • 1. Does your product perform "cryptography", or otherwise contain any parts or components that are capable of performing any of the following "information security" functions?
    (Mark with an "X" all that apply)
    • a. _ encryption
No
cwdave wrote:
    • b. _ decryption only (no encryption)
No
cwdave wrote:
    • c. _ key management / public key infrastructure (PKI)
No
cwdave wrote:
    • d. _ authentication (e.g., password protection, digital signatures)
TeeChart is digitally signed with Authenticode verification (http://technet.microsoft.com/en-us/libr ... 50035.aspx)
cwdave wrote:
    • e. _ copy protection
No
cwdave wrote:
    • f. _ anti-virus protection
No
cwdave wrote:
    • g. _ other, e.g., home grown scrambling (please explain): _______________________________
No

Regards,
Marc Meumann