dc.contributor.author | Silde, Tjerand | |
dc.date.accessioned | 2023-11-06T09:54:33Z | |
dc.date.available | 2023-11-06T09:54:33Z | |
dc.date.created | 2022-08-09T09:57:32Z | |
dc.date.issued | 2022 | |
dc.identifier.issn | 0302-9743 | |
dc.identifier.uri | https://hdl.handle.net/11250/3100728 | |
dc.description.abstract | In this work we present a direct construction for verifiable decryption for the BGV encryption scheme by combining existing zero-knowledge proofs for linear relations and bounded values. This is one of the first constructions of verifiable decryption protocols for lattice-based cryptography, and we give a protocol that is simpler and at least as efficient as the state of the art when amortizing over many ciphertexts.
To prove its practicality we provide concrete parameters, resulting in proof size of less than
KB for ciphertexts with message space 2048 bits. Furthermore, we provide an open source implementation showing that the amortized cost of the verifiable decryption protocol is only 76 ms per message when batching over ciphertexts. | en_US |
dc.language.iso | eng | en_US |
dc.publisher | Springer | en_US |
dc.relation.uri | https://eprint.iacr.org/2021/1693.pdf | |
dc.rights | Navngivelse 4.0 Internasjonal | * |
dc.rights.uri | http://creativecommons.org/licenses/by/4.0/deed.no | * |
dc.title | Verifiable Decryption for BGV | en_US |
dc.title.alternative | Verifiable Decryption for BGV | en_US |
dc.type | Peer reviewed | en_US |
dc.type | Journal article | en_US |
dc.description.version | acceptedVersion | en_US |
dc.source.journal | Lecture Notes in Computer Science (LNCS) | en_US |
dc.identifier.doi | https://doi.org/10.1007/978-3-031-32415-4_26 | |
dc.identifier.cristin | 2041879 | |
cristin.ispublished | false | |
cristin.fulltext | postprint | |
cristin.qualitycode | 1 | |