Papers1 provider · 3 records
January 1, 2009· Lecture notes in computer science
article
Open access

On the Composition of Public-Coin Zero-Knowledge Protocols

Authors:Rafael PassWei-Lung Dustin TsengDouglas Wikström

Abstract

We show that only languages in BPP have public-coin black-box zero-knowledge protocols that are secure under an unbounded (polynomial) number of parallel repetitions. This result holds both in the plain model (without any setup) and in the bare public key model (where the prover and the verifier have registered public keys). We complement this result by constructing a public-coin black-box zero-knowledge proof based on one-way functions that remains secure under any a priori bounded number of concurrent executions. A key step (of independent interest) in the analysis of our lower bound shows that any public-coin protocol, when repeated sufficiently in parallel, satisfies a notion of “resettable soundness” if the verifier picks its random coins using a pseudorandom function.

Community

0 comments
Use Connect Wallet in the navigation

No discussion yet

Be the first to share a question or observation.