More on Proofs of Knowledge
Name
MIT-LCS-TM-578.pdf
Size
3.21 MB
Format
Adobe PDF
Checksum (MD5)
fe59be4e74e129cc7001f450b65db3dc
Author(s) •
Halevi, Shai
Micali, Silvio
Date Issued
May 1998
Series/Report no.
MIT-LCS-TM-578
Abstract
The notion of proofs of knowledge is central to cryptographhic protocols, and many definitions for it have been proposed. In this work we explore a different facet of this notion, not addressed by prior definitions. Specifically, prior definitions concentrate on capturing the properties of the verifier, and do not pay much attention to the properties of the prover. Our new definition is strictly stronger than previous ones, and captures new and desirable properies. In particular, it guarantees prover feasibility, that is, it guarantees that the time spent by the prover in a proof of knowledge is comparable to that it spends in an "extraction" of this knowledge. Our definition also enables one to consider meaningfully the case of a single, specific prover.
Persistent DSpace Link