Theorem:
The transformed protocol is an rWI proof system for NP
(assuming statistically hiding commitments exit).
Proof idea:
- If V* resets P and replays an ìold sessionî then P will have
the same random input as before. Thus the current session is
identical to the old one, and V* gains nothing.
- If V* diverges from the old session, the random input
of P is indistinguishable from fresh random input.
Note: A crucial point is that Vís second message is uniquely
determined by its first (up to aborting the interaction).
| Diapositive prÈcÈdente | Diapositive suivante | Revenir ý la premiËre diapositive | Afficher la version graphique |