The constructions of iO that you mention rely on evaluating low-degree PRFs "in the exponent". For eg, degree-2 PRFs can be evaluated via bilinear maps, However deg-2 PRFs can't exist, and so we have to use degree-3 PRFs, and evaluating these requires trilinear maps.


The constructions of iO that you mention rely on evaluating low-degree PRFs “in the exponent”. For eg, degree-2 PRFs can be evaluated via bilinear maps, However deg-2 PRFs can’t exist, and so we have to use degree-3 PRFs, and evaluating these requires trilinear maps.



Source link

Be the first to comment on "The constructions of iO that you mention rely on evaluating low-degree PRFs "in the exponent". For eg, degree-2 PRFs can be evaluated via bilinear maps, However deg-2 PRFs can't exist, and so we have to use degree-3 PRFs, and evaluating these requires trilinear maps."

Leave a comment

Your email address will not be published.


*