This library contains a collection of Paillier cryptosystem zero knowledge proofs written in Rust. Each proof can be used as a stand alone proof but usually it will be used as part of another protocol. For each proof we state in comments what are the security assumptions required. Pay special attention to proofs that require more assumptions than just DCRA which is the assumption used in Paillier cryptosystem.
- Proof that a ciphertext encrypts zero
- Proof of knowledge of plaintext (correctness of ciphertext)
- Proof of correct paillier keypair generation
- Non-interactive proof of correct paillier keypair generation
- Range proof that a paillier ciphertext lies in interval [0,q]
- Non-interactive range proof that a paillier ciphertext lies in interval [0,q]
- Proof of correct opening of a ciphertext
- Proof that a ciphertext encrypts a message from a given message space
- Witness Indistinguishable Proof of knowledge of discrete log with composite modulus
- NI Proof of plaintext multiplication: ciphertexts
e_a = Enc(a), e_b = Enc(b), e_c = Enc(c)
such thatab = c mod n
- NI proof of linear relation between several plaintexts of several known ciphertexts
Container deploy:
docker run --rm -it --name zk-paillier docker.io/ubuntu:latest /bin/bash
apt-get update && apt-get install -y curl build-essential vim
curl --proto '=https' --tlsv1.2 -sSf https://sh.rustup.rs | sh -s -- -y
Configuring cargo
service:
vim ~/.bashrc
export PATH="/root/.cargo/bin:${PATH}" // add this line
source ~/.bashrc
Project deploy:
apt-get install libgmp-dev
git clone https://github.com/alexcostars/zk-paillier.git
cd zk-paillier/
cargo build
cargo test
Rust-paillier was orignally a library that implemented the basic Paillier cryptosystem with main contributors from Snips. Catalyzed by KZen needs for paillier zero knowledge proofs the original library was forked and another layer of proofs was added. As more and more zk-proofs were being added we realized that the base paillier cryptosystem layer is at a point of stability and only minor changes are required once in a while where on the other hand the second layer of zk-proofs are evolving at a much faster pace and the code should be considered more experimental. At this point we agreed to divide the library to the base layer (rust-paillier) and zk-paillier which is the current library.
Finally. we would like to thank Morten Dahl,lead maintainer of rust-paillier and KZen advisor. another thank you goes to Pascal Paillier.
the Rust utilities wiki contains information on workflow and environment set-up.
Feel free to reach out or join the KZen Research Telegram for discussions on code and research.
zk-paillier is released under the terms of the GPL-3.0 license. See LICENSE for more information.
Feel free to reach out or join the KZen Research Telegram for discussions on code and research.