February 19, 2002
Practical Aspects of Modern Cryptography
77
An Non-Interactive ZK Proof
Y
Y
1
Y
3
Y
2
Y
4
Y
5
Y
100
0
0
1
1
1
0
where the bit string is computed as
xxx
= SHA-1(
Y
1
,
Y
2
,…,
Y
100
)