0

I read that Schnorr protocol cannot be proved zero knowledge on that link:

Perfect zero knowledge for the Schnorr protocol? Could any one suggest alternative Zero knowledge proof protocol so a prover can prove to a verifier that he knows the private key corresponding to a particular public key?

Heba Mohsen
  • 203
  • 2
  • 6
  • Does the verifier sending a message encrypted with the prover's public key using Elgamal encryption and the prover being able to decrypt the message count? – lovesh Feb 01 '19 at 09:13
  • Technically no, that would not be zero-knowledge. Heba Mohsen, are you asking for a modification of Schnorr protocol that makes it really zero-knowledge? – Geoffroy Couteau Mar 15 '19 at 21:34

0 Answers0