30 likes | 311 Views
Fiat-Shamir (modified). Zero-Knowledge Identification Protocol Players : Prover P & Verifier V Public (both V & P know): N , I Secret (only P knows): s , such that s 2 mod N = I Production Center Secret: p & q , such that N = pq
E N D
Fiat-Shamir (modified) • Zero-Knowledge Identification Protocol • Players: Prover P & Verifier V • Public (both V & P know): N, I • Secret (only P knows): s, suchthats2 mod N = I • Production Center Secret: p & q, suchthatN = pq • Allows Production Center to support many Provers with the same N • Generate s for any I
Fiat-Shamir (cont.) N,I P (user) V (e.g., system) s rRZ*N; x r2modN x Repeat k times q= 0 1 check: z2x(modN) z2xI(modN) [z2xIq(modN)] z=r z=rsmodN zrsqmodN