Presentation 1997/7/19
Practical SZK Protocols to Prove Modular Polynomial Relations
Eiichiro FUJISAKI, Tatsuaki OKAMOTO,
Abstract(in English) This paper proposes a bit commitment scheme, BC(・), and efficient statistical zero knowledge (in short, SZK) protocols in which, for any given multi-variable polynomial f(X_1, .., X_t) and any given modulus n, prover P gives (I_1, .., I_t) to verifier ν and can convince ν that P knows (x_1, .., x_t) satisfying f(x_1, .., x_t)≡0 (mod n) and I_i=BC(x_i), (i=1, .., t). The proposed protocols are O(lnl) times more efficient than the corresponding previous ones [Dam93, Dam95, Oka95]. The (knowledge) soundness of our protocols hold under a computational assumption, the intractability of a modified RSA problem (see Def.2.3), while the (statistical) zero-knowledgeness of the protocols need no computational assumption. The protocols can be employed to construct various practical cryptographic protocols, such as fair exchange, untraceable electronic cash and verifiable secret sharing protocols.
Keyword(in English) bit commitment / witness indistinguishable / statistical zero-knowledge / gradual release protocol / and fair exchange and contract signing / cryptographic protocols
Paper # ISEC97-28
Conference Date 1997/7/19(1days)
Date 1997/7/19
Paper # ISEC97-28
