pub struct Nizk<P>{
pub session_id: Vec<u8>,
pub interactive_proof: P,
}Expand description
A Fiat-Shamir transformation of a SigmaProtocol into a non-interactive proof.
Nizk wraps an interactive Sigma protocol P
to produce non-interactive proofs by deriving verifier challenges from a
cryptographic sponge state.
§Type Parameters
P: the Sigma protocol implementation.
Fields§
§session_id: Vec<u8>§interactive_proof: PUnderlying interactive proof.
Implementations§
Source§impl<P> Nizk<P>where
P: SigmaProtocol,
P::Challenge: PartialEq,
P::Commitment: NargSerialize + NargDeserialize + Encoding,
P::Response: NargSerialize + NargDeserialize + Encoding,
impl<P> Nizk<P>where
P: SigmaProtocol,
P::Challenge: PartialEq,
P::Commitment: NargSerialize + NargDeserialize + Encoding,
P::Response: NargSerialize + NargDeserialize + Encoding,
Sourcepub fn prove_batchable(
&self,
witness: &P::Witness,
rng: &mut impl ScalarRng,
) -> Result<Vec<u8>, Error>
pub fn prove_batchable( &self, witness: &P::Witness, rng: &mut impl ScalarRng, ) -> Result<Vec<u8>, Error>
Generates a batchable, serialized non-interactive proof.
§Parameters
witness: The secret witness.rng: A cryptographically secure random number generator.
§Returns
A serialized proof suitable for batch verification.
§Panics
Panics if serialization fails (should not happen under correct implementation).
Examples found in repository?
More examples
examples/simple_composition.rs (line 60)
47fn prove(P1: G, x2: Scalar, H: G) -> ProofResult<Vec<u8>> {
48 // Compute public values
49 let P2 = G::generator() * x2;
50 let Q = H * x2;
51
52 let instance = create_relation(P1, P2, Q, H);
53 // Create OR witness with branch 1 being the real one (index 1)
54 let witness = ComposedWitness::Or(vec![
55 ComposedWitness::Simple(vec![Scalar::from(0u64)]),
56 ComposedWitness::Simple(vec![x2]),
57 ]);
58 let nizk = instance.into_nizk(b"or_proof_example");
59
60 nizk.prove_batchable(&witness, &mut OsRng)
61}Sourcepub fn verify_batchable(&self, narg_string: &[u8]) -> Result<(), Error>
pub fn verify_batchable(&self, narg_string: &[u8]) -> Result<(), Error>
Verifies a batchable non-interactive proof.
§Parameters
proof: A serialized batchable proof.
§Returns
Ok(())if the proof is valid.Err(Error)if deserialization or verification fails.
§Errors
- Returns
Error::VerificationFailureif:- The challenge doesn’t match the recomputed one from the commitment.
- The response fails verification under the Sigma protocol.
Examples found in repository?
More examples
Source§impl<P> Nizk<P>where
P: SigmaProtocol + SigmaProtocolSimulator,
P::Challenge: PartialEq + NargDeserialize + NargSerialize,
impl<P> Nizk<P>where
P: SigmaProtocol + SigmaProtocolSimulator,
P::Challenge: PartialEq + NargDeserialize + NargSerialize,
Sourcepub fn prove_compact(
&self,
witness: &P::Witness,
rng: &mut impl ScalarRng,
) -> Result<Vec<u8>, Error>
pub fn prove_compact( &self, witness: &P::Witness, rng: &mut impl ScalarRng, ) -> Result<Vec<u8>, Error>
Sourcepub fn verify_compact(&self, proof: &[u8]) -> Result<(), Error>
pub fn verify_compact(&self, proof: &[u8]) -> Result<(), Error>
Verifies a compact proof.
Recomputes the commitment from the challenge and response, then verifies it.
§Parameters
proof: A compact serialized proof.
§Returns
Ok(())if the proof is valid.Err(Error)if deserialization or verification fails.
§Errors
- Returns
Error::VerificationFailureif:- Deserialization fails.
- The recomputed commitment or response is invalid under the Sigma protocol.
Trait Implementations§
Auto Trait Implementations§
impl<P> Freeze for Nizk<P>where
P: Freeze,
impl<P> RefUnwindSafe for Nizk<P>where
P: RefUnwindSafe,
impl<P> Send for Nizk<P>where
P: Send,
impl<P> Sync for Nizk<P>where
P: Sync,
impl<P> Unpin for Nizk<P>where
P: Unpin,
impl<P> UnsafeUnpin for Nizk<P>where
P: UnsafeUnpin,
impl<P> UnwindSafe for Nizk<P>where
P: UnwindSafe,
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
Source§impl<T> FmtForward for T
impl<T> FmtForward for T
Source§fn fmt_binary(self) -> FmtBinary<Self>where
Self: Binary,
fn fmt_binary(self) -> FmtBinary<Self>where
Self: Binary,
Causes
self to use its Binary implementation when Debug-formatted.Source§fn fmt_display(self) -> FmtDisplay<Self>where
Self: Display,
fn fmt_display(self) -> FmtDisplay<Self>where
Self: Display,
Causes
self to use its Display implementation when
Debug-formatted.Source§fn fmt_lower_exp(self) -> FmtLowerExp<Self>where
Self: LowerExp,
fn fmt_lower_exp(self) -> FmtLowerExp<Self>where
Self: LowerExp,
Causes
self to use its LowerExp implementation when
Debug-formatted.Source§fn fmt_lower_hex(self) -> FmtLowerHex<Self>where
Self: LowerHex,
fn fmt_lower_hex(self) -> FmtLowerHex<Self>where
Self: LowerHex,
Causes
self to use its LowerHex implementation when
Debug-formatted.Source§fn fmt_octal(self) -> FmtOctal<Self>where
Self: Octal,
fn fmt_octal(self) -> FmtOctal<Self>where
Self: Octal,
Causes
self to use its Octal implementation when Debug-formatted.Source§fn fmt_pointer(self) -> FmtPointer<Self>where
Self: Pointer,
fn fmt_pointer(self) -> FmtPointer<Self>where
Self: Pointer,
Causes
self to use its Pointer implementation when
Debug-formatted.Source§fn fmt_upper_exp(self) -> FmtUpperExp<Self>where
Self: UpperExp,
fn fmt_upper_exp(self) -> FmtUpperExp<Self>where
Self: UpperExp,
Causes
self to use its UpperExp implementation when
Debug-formatted.Source§fn fmt_upper_hex(self) -> FmtUpperHex<Self>where
Self: UpperHex,
fn fmt_upper_hex(self) -> FmtUpperHex<Self>where
Self: UpperHex,
Causes
self to use its UpperHex implementation when
Debug-formatted.Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self>
fn into_either(self, into_left: bool) -> Either<Self, Self>
Converts
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self>
Converts
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§impl<T> Pipe for Twhere
T: ?Sized,
impl<T> Pipe for Twhere
T: ?Sized,
Source§fn pipe<R>(self, func: impl FnOnce(Self) -> R) -> Rwhere
Self: Sized,
fn pipe<R>(self, func: impl FnOnce(Self) -> R) -> Rwhere
Self: Sized,
Pipes by value. This is generally the method you want to use. Read more
Source§fn pipe_ref<'a, R>(&'a self, func: impl FnOnce(&'a Self) -> R) -> Rwhere
R: 'a,
fn pipe_ref<'a, R>(&'a self, func: impl FnOnce(&'a Self) -> R) -> Rwhere
R: 'a,
Borrows
self and passes that borrow into the pipe function. Read moreSource§fn pipe_ref_mut<'a, R>(&'a mut self, func: impl FnOnce(&'a mut Self) -> R) -> Rwhere
R: 'a,
fn pipe_ref_mut<'a, R>(&'a mut self, func: impl FnOnce(&'a mut Self) -> R) -> Rwhere
R: 'a,
Mutably borrows
self and passes that borrow into the pipe function. Read moreSource§fn pipe_borrow<'a, B, R>(&'a self, func: impl FnOnce(&'a B) -> R) -> R
fn pipe_borrow<'a, B, R>(&'a self, func: impl FnOnce(&'a B) -> R) -> R
Source§fn pipe_borrow_mut<'a, B, R>(
&'a mut self,
func: impl FnOnce(&'a mut B) -> R,
) -> R
fn pipe_borrow_mut<'a, B, R>( &'a mut self, func: impl FnOnce(&'a mut B) -> R, ) -> R
Source§fn pipe_as_ref<'a, U, R>(&'a self, func: impl FnOnce(&'a U) -> R) -> R
fn pipe_as_ref<'a, U, R>(&'a self, func: impl FnOnce(&'a U) -> R) -> R
Borrows
self, then passes self.as_ref() into the pipe function.Source§fn pipe_as_mut<'a, U, R>(&'a mut self, func: impl FnOnce(&'a mut U) -> R) -> R
fn pipe_as_mut<'a, U, R>(&'a mut self, func: impl FnOnce(&'a mut U) -> R) -> R
Mutably borrows
self, then passes self.as_mut() into the pipe
function.Source§fn pipe_deref<'a, T, R>(&'a self, func: impl FnOnce(&'a T) -> R) -> R
fn pipe_deref<'a, T, R>(&'a self, func: impl FnOnce(&'a T) -> R) -> R
Borrows
self, then passes self.deref() into the pipe function.Source§impl<T> Tap for T
impl<T> Tap for T
Source§fn tap_borrow<B>(self, func: impl FnOnce(&B)) -> Self
fn tap_borrow<B>(self, func: impl FnOnce(&B)) -> Self
Immutable access to the
Borrow<B> of a value. Read moreSource§fn tap_borrow_mut<B>(self, func: impl FnOnce(&mut B)) -> Self
fn tap_borrow_mut<B>(self, func: impl FnOnce(&mut B)) -> Self
Mutable access to the
BorrowMut<B> of a value. Read moreSource§fn tap_ref<R>(self, func: impl FnOnce(&R)) -> Self
fn tap_ref<R>(self, func: impl FnOnce(&R)) -> Self
Immutable access to the
AsRef<R> view of a value. Read moreSource§fn tap_ref_mut<R>(self, func: impl FnOnce(&mut R)) -> Self
fn tap_ref_mut<R>(self, func: impl FnOnce(&mut R)) -> Self
Mutable access to the
AsMut<R> view of a value. Read moreSource§fn tap_deref<T>(self, func: impl FnOnce(&T)) -> Self
fn tap_deref<T>(self, func: impl FnOnce(&T)) -> Self
Immutable access to the
Deref::Target of a value. Read moreSource§fn tap_deref_mut<T>(self, func: impl FnOnce(&mut T)) -> Self
fn tap_deref_mut<T>(self, func: impl FnOnce(&mut T)) -> Self
Mutable access to the
Deref::Target of a value. Read moreSource§fn tap_dbg(self, func: impl FnOnce(&Self)) -> Self
fn tap_dbg(self, func: impl FnOnce(&Self)) -> Self
Calls
.tap() only in debug builds, and is erased in release builds.Source§fn tap_mut_dbg(self, func: impl FnOnce(&mut Self)) -> Self
fn tap_mut_dbg(self, func: impl FnOnce(&mut Self)) -> Self
Calls
.tap_mut() only in debug builds, and is erased in release
builds.Source§fn tap_borrow_dbg<B>(self, func: impl FnOnce(&B)) -> Self
fn tap_borrow_dbg<B>(self, func: impl FnOnce(&B)) -> Self
Calls
.tap_borrow() only in debug builds, and is erased in release
builds.Source§fn tap_borrow_mut_dbg<B>(self, func: impl FnOnce(&mut B)) -> Self
fn tap_borrow_mut_dbg<B>(self, func: impl FnOnce(&mut B)) -> Self
Calls
.tap_borrow_mut() only in debug builds, and is erased in release
builds.Source§fn tap_ref_dbg<R>(self, func: impl FnOnce(&R)) -> Self
fn tap_ref_dbg<R>(self, func: impl FnOnce(&R)) -> Self
Calls
.tap_ref() only in debug builds, and is erased in release
builds.Source§fn tap_ref_mut_dbg<R>(self, func: impl FnOnce(&mut R)) -> Self
fn tap_ref_mut_dbg<R>(self, func: impl FnOnce(&mut R)) -> Self
Calls
.tap_ref_mut() only in debug builds, and is erased in release
builds.Source§fn tap_deref_dbg<T>(self, func: impl FnOnce(&T)) -> Self
fn tap_deref_dbg<T>(self, func: impl FnOnce(&T)) -> Self
Calls
.tap_deref() only in debug builds, and is erased in release
builds.