First page Back Continue Last page Overview Graphics
Example: Concurrent Zero-Knowledge
[F90,DNS98]
- Original notion of ZK [GMR85] does not guarantee security when the prover interacts with many verifiers concurrently.
- Best known solution: O(log n) rounds [RK99,PRS02]
- Lower bound of (log n) rounds (for black-box simulation) [CKPR01]
Notes: