Hi folks, a few thoughts along the line while looking at the project
1) would it be possible to integrate non-Java application for SSO, e.g. using agents communicating to a central server or is this not the scope of the project (i.e. Java only) - might be a stupid question but I miss the big picture here
2) you expose strong cryptography based on Blowfish - please note that in Apache land this requires an ECCN code (for the brave and fearless see http://www.apache.org/dev/crypto.html) - you might consider exposing weak cryptography (up to 56 bit) to avoid the legal work ... :)
3) You are using retroweaver to support JDK 1.4 - are there two deliverables (one for 1.4 and 1.5) or only the backported one?
Cheers, Siegfried Goeschl --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]