Abstract. We introduce and define the notion of iden.ybased zero knowledge, concentrating on the noninteractive setting. In this setting, our notion allows any prover to widely disseminate a proof of a state ment while protecting the prover from plagiarism in the following sense: although proofs are transferable i.e., .Abstract. We introduce and define the notion of iden.ybased zeroknowledge, concentrating on the noninteractive setting. In this setting, our notion allows any prover to widely disseminate a proof of a statement while protecting the prover from plagiarism in the following sense: although proofs are transferable i.e., publicly .Abstract: A protocol for zeroknowledge proofs of iden.y based on ElGamal on conic is proposed in this paper. The solution to a hard puzzle is divided into two parts, and the P prover provides one of them according to the V verifier 's random bit. The eavesdropper cannot obtain any useful knowledge about the P prover .A protocol for zeroknowledge proofs of iden.y based on ElGamal on conic is proposed in this paper. The solution to a hard puzzle is divided into two parts, and the P prover provides one of them according to the V verifier 's random bit. The characteristic of ZKp and security of the simple version is proved..
In cryptography, a zeroknowledge proof or zeroknowledge protocol is a method by which one party the prover can prove to another party the verifier that a given .A protocol for zeroknowledge proofs of iden.y based on ElGamal on conic is proposed in this paper. The solution to a hard puzzle is divided into two parts, and the P prover provides one of them according to the V verifier 's random bit. The characteristic of ZKp and security of the simple version is proved.
Iden.yBased ZeroKnowledge Jonathan Katz1? Rafail Ostrovsky2?? Michael O. Rabin3 1 Dept. of Computer Science, University of Maryland jkatz@cs.umd.edu.

