darkflame avatar

What are Groth Sahai proofs?

darkflame

Published: 27 Jul 2020 › Updated: 27 Jul 2020What are Groth Sahai proofs?

What are Groth Sahai proofs?

Groth–Sahai proofs revisited

E. Ghadafi, N.P. Smart, and B. Warinschi

Abstract.

Since their introduction in 2008, the non interactive zeroknowledge (NIZK) and non interactive witness indistinguishable (NIWI) proofs designed by Groth and Sahai have been used in numerous applications. In this paper we offer two contributions to the study of these proof systems. First we identify and correct some errors, present in the oringal online manuscript, that occur in two of the three instantiations of the Groth-Sahai NIWI proofs for which the equation checked by the verifier is not valid for honest executions of the protocol. (In particular, implementations of these proofs would not work correctly.) We explain why, perhaps surprisingly, the NIZK proofs that are built from these NIWI proofs do not suffer from a similar problem. Secondly, we study the efficiency of existing instantiations and note that only one of the three instantiations has the potential of being practical. We therefore propose a natural extension of an existing assumption from symmetric pairings to asymmetric ones which in turn enables Groth-Sahai proofs based on new classes of efficient pairings.

https://eprint.iacr.org/2009/599.pdf

Leave What are Groth Sahai proofs? to:

Written by

Read more #encryption posts


Best Posts From darkflame

We have not curated any of darkflame's posts yet. But you can encourage our curation team to review posts by visiting them regularly and by referring other readers. Because we give priority to frequently read content.

More Posts From darkflame