On 8/4/11 10:50 PM, "Russell Beall" <beall at usc.edu> wrote: > >BouncyCastle is trusted and used within the IdP internally, correct? I believe we use it for things like ASN.1 parsing. To use it for actual cryptography requires modifying the JVM in the fashion you did, the IdP doesn't assume that. -- Scott