First page Back Continue Last page Overview Graphics
What if there is no honest majority?
(e.g., two-party protocols)
Known protocols (e.g., [Y86,GMW87]) do not work. (“black-box simulation with rewinding” cannot be used).
Many interesting functionalities (commitment, ZK, coin tossing, etc.) cannot be realized in plain model.
In the “common random string model” can do:
- UC Commitment, UC Zero-Knowledge [CF01, DDOPS01,CLOS02, DN02, DG03]
- Emulate any trusted service [CLOS02]