[5709] in cryptography@c2.net mail archive
Re: Ecash without a mint
daemon@ATHENA.MIT.EDU (David Jablon)
Tue Sep 21 11:32:34 1999
Message-Id: <3.0.5.32.19990920232958.0082c300@world.std.com>
Date: Mon, 20 Sep 1999 23:29:58 -0400
To: bram <bram@gawth.com>
From: David Jablon <dpj@IntegritySciences.com>
Cc: Adam Back <adam@cypherspace.org>, cypherpunks@cyberpass.net,
cryptography@c2.net, dbs@philodox.com
In-Reply-To: <Pine.LNX.4.10.9909201139020.13588-100000@ultra.gawth.com>
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
A slight correction is noted, which isn't very relevant to the
ZK proofs in the proposed payment system.
At 11:41 AM 9/20/99 -0700, bram wrote:
> Interactive ZK proofs can be made non-interactive by generating an
> encoding of the information offered by the prover, and using the bits of
> the secure hash of that as the challenges by the provee.
Not all interactive ZK proofs can be converted into non-interactive
ZK proofs. For example, in ZK proofs of low-entropy knowledge,
non-interactive proofs are not possible.
---------------------------
David P. Jablon
dpj@world.std.com
www.IntegritySciences.com