Skip to main content

Advertisement

Springer Nature Link
Log in
Menu
Find a journal Publish with us Track your research
Search
Saved research
Cart
  1. Home
  2. Advances in Cryptology — EUROCRYPT’ 87
  3. Conference paper

An Improved Protocol for Demonstrating Possession of Discrete Logarithms and Some Generalizations

  • Conference paper
  • First Online: 01 January 2000
  • pp 127–141
  • Cite this conference paper
Save conference paper
View saved research
Advances in Cryptology — EUROCRYPT’ 87 (EUROCRYPT 1987)
An Improved Protocol for Demonstrating Possession of Discrete Logarithms and Some Generalizations
  • David Chaum3,
  • Jan-Hendrik Evertse3 &
  • Jeroen van de Graaf3 

Part of the book series: Lecture Notes in Computer Science ((LNCS,volume 304))

Included in the following conference series:

  • Workshop on the Theory and Application of of Cryptographic Techniques
  • 4053 Accesses

  • 164 Citations

  • 9 Altmetric

Abstract

A new protocol is presented that allows A to convince B that she knows a solution to the Discrete Log Problem—i.e. that she knows an x such that α x ≡ β (mod N) holds—without revealing anything about x to B. Protocols are given both for N prime and for N composite.

We also give protocols for extensions of the Discrete Log problem allowing A to show possession of:

  • multiple discrete logarithms to the same base at the same time, i.e. knowing x 1, . . . , x K such that \( \alpha ^{x_1 } \equiv \beta _1 ,...,\alpha ^{x_K } \equiv \beta _K \);

  • several discrete logarithms to different bases at the same time, i.e. knowing x 1, . . . , x K such that the product \( \alpha _1^{x_1 } \alpha _2^{x_2 } \cdot \cdot \cdot \alpha _K^{x_K } \equiv \beta \);

  • a discrete logarithm that is the simultaneous solution of several different instances, i.e. knowing x such that α x1 ≡β1,...α xK ≡βK.

We can prove that the sequential versions of these protocols do not reveal any “knowledge” about the discrete logarithm(s) in a well-defined sense, provided that A knows (a multiple of) the order of α.

Download to read the full chapter text

Chapter PDF

Similar content being viewed by others

The distribution of numbers with many factorizations

Article 18 May 2021

The growth speed for the product of consecutive digits in Lüroth expansions

Article 13 January 2022

Resummation of small-x double logarithms in QCD: inclusive deep-inelastic scattering

Article Open access 11 August 2022

Explore related subjects

Discover the latest articles, books and news in related subjects, suggested using machine learning.
  • Computational Number Theory
  • Discrete Mathematics in Computer Science
  • Discrete Mathematics
  • Formal Logic
  • Linear Logic
  • Theory of Computation
  • Quantum Digital Signature Protocols and Applications

References

  1. R. Berger, S. Kannan, and R. Peralta, “A Framework for the Study of Cryptographic Protocols,” Proc. CRYPTO 85, pp. 87–103 H.C. Williams, ed., Lecture Notes in Computer Science 218, Springer Verlag, Berlin etc., (1986).

    Google Scholar 

  2. M. Blum, “Coin Flipping by Telephone,” Proc. IEEE COMPCON, pp. 133–137, (1982).

    Google Scholar 

  3. G. Brassard, and C. Crépeau, “Zero-Knowledge Simulation of Boolean Circuits,” Proc. CRYPTO 86, pp. 223–233, A.M. Odlyzko, ed., Lecture Notes in Computer Science 263, Springer Verlag, Berlin etc., (1987).

    Chapter  Google Scholar 

  4. D. Chaum, “Demonstrating that a Public Predicate can be Satisfied Without Revealing Any Information About How,” Proc. CRYPTO 86, pp. 195–199.

    Google Scholar 

  5. D. Chaum, “Blinding for unanticipated signatures,” To appear in proc. EUROCRYPT 87.

    Google Scholar 

  6. D. Chaum, J.-H. Evertse, J. van de Graaf, and R. Peralta, “Demonstrating possession of a discrete logarithm without revealing it,” Proc. CRYPTO 86, pp. 200–212.

    Google Scholar 

  7. A. Fiat, and A. Shamir, “How to prove yourself: Practical solutions to identification and signature problems,” Proc. CRYPTO 86, pp. 186–194.

    Google Scholar 

  8. S. Goldwasser, S. Micali, and C. Rackoff, “The Knowledge Complexity of Interactive Roof Systems,” Proc. 17th Annual ACM Symp. on Theory of Computing pp. 291–304, (1985).

    Google Scholar 

  9. O. Goldreich, S. Micali, and A. Wigderson, “How to Prove all NP-statements in Zero-Knowledge, and a Methodology of Cryptographic Protocol Design,” Proc. CRYPTO 86, pp. 171–185.

    Google Scholar 

  10. V. Miller, “Elliptic curves and cryptography,” Proc. CRYPTO 85, pp. 417–428.

    Google Scholar 

Download references

Author information

Authors and Affiliations

  1. Centre for Mathematics and Computer Science, Kruislaan 413, 1098 SJ, Amsterdam, The Netherlands

    David Chaum, Jan-Hendrik Evertse & Jeroen van de Graaf

Authors
  1. David Chaum
    View author publications

    Search author on:PubMed Google Scholar

  2. Jan-Hendrik Evertse
    View author publications

    Search author on:PubMed Google Scholar

  3. Jeroen van de Graaf
    View author publications

    Search author on:PubMed Google Scholar

Editor information

Editors and Affiliations

  1. Centre for Mathematics and Computer Science (CWI), Kruislaan 413, 1098 SJ, Amsterdam, The Netherlands

    David Chaum

  2. National Physical Laboratory, Teddington, Middlesex, TW11 OLW, UK

    Wyn L. Price

Rights and permissions

Reprints and permissions

Copyright information

© 1988 Springer-Verlag Berlin Heidelberg

About this paper

Cite this paper

Chaum, D., Evertse, JH., van de Graaf, J. (1988). An Improved Protocol for Demonstrating Possession of Discrete Logarithms and Some Generalizations. In: Chaum, D., Price, W.L. (eds) Advances in Cryptology — EUROCRYPT’ 87. EUROCRYPT 1987. Lecture Notes in Computer Science, vol 304. Springer, Berlin, Heidelberg. https://doi.org/10.1007/3-540-39118-5_13

Download citation

  • .RIS
  • .ENW
  • .BIB
  • DOI: https://doi.org/10.1007/3-540-39118-5_13

  • Published: 01 December 2000

  • Publisher Name: Springer, Berlin, Heidelberg

  • Print ISBN: 978-3-540-19102-5

  • Online ISBN: 978-3-540-39118-0

  • eBook Packages: Springer Book Archive

Share this paper

Anyone you share the following link with will be able to read this content:

Sorry, a shareable link is not currently available for this article.

Provided by the Springer Nature SharedIt content-sharing initiative

Keywords

  • Elliptic Curve
  • Discrete Logarithm
  • Cryptographic Protocol
  • Random Tape
  • Probabilistic Polynomial Time Algorithm

These keywords were added by machine and not by the authors. This process is experimental and the keywords may be updated as the learning algorithm improves.

Publish with us

Policies and ethics

Search

Navigation

  • Find a journal
  • Publish with us
  • Track your research

Footer Navigation

Discover content

  • Journals A-Z
  • Books A-Z
  • Subjects A-Z

Publish with us

  • Journal finder
  • Publish your research
  • Language editing
  • Open access publishing

Products and services

  • Our products
  • Librarians
  • Societies
  • Partners and advertisers

Our brands

  • Springer
  • Nature Portfolio
  • BMC
  • Palgrave Macmillan
  • Apress
  • Discover

Corporate Navigation

  • Your US state privacy rights
  • Accessibility statement
  • Terms and conditions
  • Privacy policy
  • Help and support
  • Legal notice
  • Cancel contracts here

104.23.243.58

Not affiliated

Springer Nature

© 2026 Springer Nature