T1 - Hiding instances in zero-knowledge proof systems

AU - Beaver, Donald

AU - Feigenbaum, Joan

AU - Shoup, Victor

‘AT&T Bell Laboratories, Room 2C324, 600 Mountain Avenue, Murray Hill, NJ 07974 USA, [email protected]. Work done at Harvard University, supported in part by NSF grant CCR-870-4513. t AT&T Bell Laboratories, born 2C473, 600 Mountain Avenue, Murray Hill, NJ 07974 USA, [email protected]. iUniversity of Toronto, Computer Science Department, Toronto, Ontario M5S lA4, CANADA, [email protected]. Work done at AT&T Bell Laboratories as a Postdoctoral Fellow in Theoretical Computer Science.
PY - 1991

Y1 - 1991

N2 - Informally speaking, an instance-hiding pruoj system for the function f is a protocol in which a polynomial-time verifier is convinced of the value of f(z) but does not reveal the input z to the provers. We show here that a boolean function f has an instance-hiding proof system if and only if it is the characteristic function of a language in NEXP ∩ coNEXP. We formalize the notion of zero-knowledge for instance-hiding proof systems with several provers and show that alI such systems can be made perfect zero-knowledge.

T3 - Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)

SP - 326

EP - 338

BT - Advances in Cryptology – CRYPTO 1990, Proceedings

A2 - Menezes, Alfred J.

A2 - Vanstone, Scott A.

PB - Springer Verlag

T2 - 10th Conference on the Theory and Application of Cryptography, CRYPTO 1990

Y2 - 11 August 1990 through 15 August 1990

