poly-commit icon indicating copy to clipboard operation
poly-commit copied to clipboard

Can this scheme be made distributed?

Open Fiono11 opened this issue 6 years ago • 4 comments

Instead of a trusted dealer generating the UniversalParams, can they be generated in a distributed way?

Fiono11 avatar Dec 06 '19 12:12 Fiono11

Yes, doing so is a straightforward sequential trusted setup. Each stage proves correctness using E::pairing(params.powers_of*_g[i],params.h) = E::pairing(params.powers_of*_g[i+1],E::G2Affine::prime_subgroup_generator()) etc, although Schnorr DLEQ proofs sound faster.

burdges avatar Dec 06 '19 15:12 burdges

I'm sorry, I didn't understand. Can you explain in a simpler way, please?

Fiono11 avatar Dec 06 '19 15:12 Fiono11

Yes, one can essentially just modify the Powers of Tau setup to make this work.

Pratyush avatar Dec 06 '19 16:12 Pratyush

Can you explain it, please?

Fiono11 avatar Dec 06 '19 16:12 Fiono11