> You propose to put a key into a physical device and give it > to the public, and expect that they will never recover > the key from it? Seems unwise.
You think "the public" can crack FIPS devices? This is mass-market, not govt-level attackers. Second, if the key's in hardware you *know* it's been stolen. You don't know that for software. /r$ -- Rich Salz Chief Security Architect DataPower Technology http://www.datapower.com XS40 XML Security Gateway http://www.datapower.com/products/xs40.html XML Security Overview http://www.datapower.com/xmldev/xmlsecurity.html --------------------------------------------------------------------- The Cryptography Mailing List Unsubscribe by sending "unsubscribe cryptography" to [EMAIL PROTECTED]