Oblivious Polynomial Evaluation
Oblivious Polynomial Evaluation
复制标题
DOI:
10.1137/s0097539704383633
复制
发表时间:
2006-05
期刊:
影响因子:
--
通讯作者:
M. Naor;Benny Pinkas
中科院分区:
文献类型:
--
作者:
M. Naor;Benny Pinkas
Oblivious polynomial evaluation is a protocol involving two parties, a sender whose input is a polynomial P, and a receiver whose input is a value $\alpha$. At the end of the protocol the receiver learns $P(\alpha)$ and the sender learns nothing. We describe efficient constructions for this protocol, which are based on new intractability assumptions that are closely related to noisy polynomial reconstruction. Oblivious polynomial evaluation can be used as a primitive in many applications. We describe several such applications, including protocols for private comparison of data, for mutually authenticated key exchange based on (possibly weak) passwords, and for anonymous coupons.