[Cryptography] Where are zero knowledge proofs actually used in the real world?

Radia Perlman radiaperlman at gmail.com
Mon Feb 22 01:23:00 EST 2016


It seems like in pretty much all cases, it would be cheaper and faster to
just do a public key signature to prove you know your private key. The only
case where I've heard that zero knowledge proofs are actually used is in
Intel's EPID scheme.

Perhaps Fiat-Shamir might be useful for a super-low-power smart card
directly connected to a CPU, since it would be less work for the smart card
than a signature.

Thanks,

Radia
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20160221/41f62238/attachment.html>


More information about the cryptography mailing list