A discussion has been started on the openssl-dev list
about the current (since January 14th, 2000) US export regulations.
Eben Moglen
The following is the discussion tree as I've been able to follow and document it:
A forward and comment from Ben Laurie
|
+-> Ulf Möller asks about a detail
|
+-> Eben replies
|
+-> I ask privately for verification that I've interpreted it correctly
| |
| +-> Affermative response from Eben
| |
| +-> To be on the safe side, I ask permission to show anyone our exchange...
| |
| +-> ... and got it
|
+-> Ben Laurie seems to be dubious
|
+-> Jean-Marc Desperrier is as well
| |
| +-> I forward the private response I got from Eben, since what was said was exactly what I asked about
|
+-> Geoff Thorpe makes the conclusion that US code is still unusable to us
There are still questions about what we would need to do about the "Terrorist countries" and how it would affect the OpenSSL project or any person if that was broken.