Re: Do Gap-CDH groups exist?
- From: "Amit" <amitabh123@xxxxxxxxx>
- Date: 11 Jan 2007 10:36:48 -0800
jiangwu.m...@xxxxxxxxx wrote:
Can you give some evidence/intuition behind this conclusion?No direct evidence. But all the papers I read on the relation between
DLP and CDH are trying to find equivalence, instead of gap.
If the security of protocols is based on CDH then it is reasonable to
*try* to reduce DL to CDH. On the other hand, for certain groups, it is
known that DL =/=> CDH so there is no point in trying to prove the
equivalence in those groups because there is none.
.
- References:
- Re: Do Gap-CDH groups exist?
- From: jiangwu.mail@xxxxxxxxx
- Re: Do Gap-CDH groups exist?
- From: Amit
- Re: Do Gap-CDH groups exist?
- From: jiangwu.mail@xxxxxxxxx
- Re: Do Gap-CDH groups exist?
- Prev by Date: Re: Do Gap-CDH groups exist?
- Next by Date: Re: Do Gap-CDH groups exist?
- Previous by thread: Re: Do Gap-CDH groups exist?
- Next by thread: Re: Do Gap-CDH groups exist?
- Index(es):
Relevant Pages
|