Download:
|
by Oded Goldreich, Amit Sahai, Salil Vadhan
In CRYPTO ’99, LNCS series
http://theory.lcs.mit.edu/~salil/papers/niszk.ps.gz
Add To MetaCart
Abstract:
We extend the study of non-interactive statistical zero-knowledge proofs. Our main focus is to compare the class NISZK of problems possessing such non-interactive proofs to the class SZK of problems possessing interactive statistical zero-knowledge proofs. Along these lines, we first show that if statistical zero knowledge is non-trivial then so is non-interactive statistical zero knowledge, where by non-trivial we mean that the class includes problems which are not solvable in probabilistic polynomial-time. (The hypothesis holds under various assumptions, such as the intractability of the Discrete Logarithm Problem.) Furthermore, we show that if NISZK is closed under complement, then in fact SZK = NISZK, i.e. all statistical zeroknowledge proofs can be made non-interactive. The main tools in our analysis are two promise problems that are natural restrictions of promise problems known to be complete for SZK. We show that these restricted problems are in fact complete for NISZK and use this relationship to derive our results comparing the two classes. The two problems refer to the statistical difference, and difference in entropy, respectively, of a given distribution from the uniform one. We also consider a weak form of NISZK, in which only requires that for every inverse polynomial 1=p(n), there exists a simulator which achieves simulator deviation 1=p(n), and show that this weak form of NISZK actually equals NISZK.
Citations
|
844
|
Probabilistic encryption
– Goldwasser, Micali
- 1984
|
|
692
|
The Knowledge Complexity of Interactive Proof-Systems (Extended Abstract
– Goldwasser, Micali, et al.
- 1985
|
|
515
|
Proof verification and hardness of approximation problems
– Arora, Lund, et al.
- 1992
|
|
474
|
A pseudorandom generator from any one-way function
– stad, Impagliazzo, et al.
- 1999
|
|
205
|
A comparison of polynomial time reducibilities
– Ladner, Lynch, et al.
- 1975
|
|
159
|
Elements of Information Theory. Wiley Series in Telecommunications
– Cover, Thomas
- 1991
|
|
134
|
Noninteractive zero-knowledge
– Blum, Santis, et al.
- 1991
|
|
113
|
Multiple non-interactive zero knowledge proofs under general assumptions
– Feige, Lapidot, et al.
- 1999
|
|
72
|
The complexity of perfect zero-knowledge
– Fortnow
- 1989
|
|
52
|
Avi Wigderson: Proofs that yield nothing but their validity or all languages in NP have zero-knowledge proof systems. Journal of the association for computingmachinery
– Goldreich, Micali
- 1991
|
|
29
|
Interactive hashing can simplify zero-knowledge protocol design without computational assumptions
– Damg˚ard
- 1993
|
|
27
|
Perfect Zero-Knowledge in Constant Rounds
– Bellare, Micali, et al.
- 1990
|
|
25
|
Micali: Non-interactive zero-knowledge and its applications (extended abstract
– Blum, Feldman, et al.
- 1988
|
|
25
|
On relationships between statistical zero-knowledge proofs
– Okamoto
- 1996
|
|
24
|
Honest-verifier statistical zeroknowledge equals general statistical zero-knowledge
– Goldreich, Sahai, et al.
- 1998
|
|
18
|
One-Way Functions, Hard on Average Problems, and Statistical Zero-Knowledge Proofs
– Ostrovsky
- 1991
|
|
15
|
Moni Naor, and Amit Sahai. Concurrent zero-knowledge
– Dwork
- 1998
|
|
14
|
Amit Sahai, and Salil Vadhan. Honest Verifier Statistical Zero-Knowledge Equals General Statistical Zero-Knowledge
– Goldreich
- 1998
|
|
11
|
Dwork, Moni Naor: Non-malleable cryptography (extended abstract
– Dolev, Cynthia
- 1991
|
|
11
|
Image Density is Complete for Non-interactive-SZK
– Santis, Crescenzo, et al.
- 1998
|
|
10
|
Erez Petrank: An efficient non-interactive zero-knowledge proof system for NP with general assumptions
– Kilian
- 1998
|
|
9
|
Ostrovsky and Avi Wigderson. One-way functions are essential for non-trivial zero-knowledge
– Rafail
- 1993
|
|
7
|
Algebraic methods for interactive proofs
– Lund, Fortnow, et al.
- 1990
|
|
5
|
Keeping the SZK-verifier honest unconditionally
– Crescenzo, Okamoto, et al.
- 1997
|
|
4
|
Randomness-efficient non-interactive zero-knowledge (extended abstract
– Santis, Crescenzo, et al.
- 1997
|
|
4
|
Oded Goldreich, Tatsuaki Okamoto, and Avi Wigderson. Honest verifier vs. dishonest verifier in public coin zero-knowledge proofs
– Damgard
- 1995
|
|
2
|
Oded Goldreich, and Avi Wigderson. Hashing functions can simplify zero-knowledge protocol design (too
– Damgard
- 1994
|
|
1
|
Guiseppe Persiano. The knowledge complexity of quadratic residuosity languages
– Santis, Crescenzo
- 1994
|
|
1
|
DMP88] Alfredo De Santis, Silvio Micali, and Giuseppe Persiano. Non-interactive zeroknowledge with preprocessing
– Springer-Verlag
- 1988
|
|
1
|
SV97] Amit Sahai and Salil Vadhan. A complete promise problem for statistical zeroknowledge
– IPPSPACE
- 1990
|