Re: How to refresh secret shares?

From: Henrick Hellström (henrick.hellstrm_at_telia.com)
Date: 05/04/03


Date: Sun, 04 May 2003 21:12:39 GMT

David Wagner wrote:
> Sounds like you want proactive security / proactive cryptography.
> See the references I posted just a few weeks ago.
>
> (It sounds like one might be able to achieve your desired criterion by
> computing a random sharing of 0, i.e., r0 + ... + rn = 0, then asking
> everyone to replace their old zi by the new value zi + ri.)

How? I know you can do that with the sub shares sij that can be
reconstructed into the zi values, but how do you do that with the zi
values themselves?

A Shamir sharing of 0 will be based on a polynomial with a zero order
coefficient equal to zero. It will not necessarily be such that the sum
of all shares equals zero.

A trivial counter example: Use f(k) = 0 + k (mod 7) to share the secret
zero among three share holders. The shares will be f(1), f(2) and f(3),
and they will sum up to 6 (mod 7).



Relevant Pages

  • Re: Workgroup issue, can see shares, but can`t browse to computer
    ... > can access its shares without a problem. ... On the left hand pane, ... double-click it and set it to zero. ... (The value of RestrictAnonymousSam can be left at 1. ...
    (microsoft.public.windowsxp.network_web)
  • Re: Workgroup issue, can see shares, but can`t browse to computer
    ... >>can access its shares without a problem. ... > sounds like a problem with the RestrictAnonymous setting. ... > On the left hand pane, ... double-click it and set it to zero. ...
    (microsoft.public.windowsxp.network_web)
  • Re: oils price
    ... ausound wrote: ... Looks like GCOG is about to add another 'zero' to it. ... if and when it ever complies with the court order to double it's outstanding shares, it would seem obvious that the first interger after the string of zeros would be halved. ...
    (misc.invest.stocks)
  • Re: oils price
    ... Looks like GCOG is about to add another 'zero' to it. ... outstanding shares, it would seem obvious that the first interger after the ... then I would suspect a 15,000 to one reverse split ...
    (misc.invest.stocks)

Quantcast