Jon Spillett JS
Wed 14 Oct · 16:50 · Hall II Track 02 — Security, Compliance & Law

Jon Spillett

Reel · coming soon ▷ preview

— On the schedule —

Jipher FIPS cryptography provider - Wrapping OpenSSL and the FIPS module using Java’s FFM API

A guided tour of Jipher’s layered design for delivering OpenSSL-backed, FIPS-compliant cryptography through standard Java Cryptography Architecture APIs. The presentation delves into the architecture and design decisions leading to the current provider. Throughout the talk we trace a cryptographic request from JCA engine and provider services through key and parameter handling, an FFM-based Java-to-native bridge, and into OpenSSL’s FIPS module. Along the way we explore how Jipher enforces approved cryptographic use, translates errors and manages native-memory lifecycles. The presentation then concludes with operational considerations and tips for maintaining FIPS-compliant deployment.

— Compositor's note —

A principal developer and expert in applied cryptography, Jon Spillett has worked in this field for over 15 years. His introduction to cryptography at RSA Security brought experience with BSAFE cryptographic toolkits which he developed, maintained and customised. Over his time at Oracle Jon has lead the migration from legacy cryptography in large enterprise products to more modern cryptographically agile implementations. This included many commits to OpenSSL as it was re-engineered into the provider-based 3.x series, as well as contributions to the Java-based toolkit which would eventually become Jipher.

PlateLXX · folio 66 of 89
Guild
DayWed 14 Oct · 16:50 · Hall II — Jipher FIPS cryptography provider - Wrapping OpenSSL and the FIPS module using Java’s FFM API
Track02 — Security, Compliance & Law
FormatTalk · 40 min
← Back to all twelve plates