pith. the verified trust layer for science. sign in

arxiv: quant-ph/9810067 · v3 · submitted 1998-10-22 · 🪐 quant-ph · cs.CR

Coin Tossing is Strictly Weaker Than Bit Commitment

classification 🪐 quant-ph cs.CR
keywords securecoincommitmenttossingassumptionsclassicalexchangesinformation
0
0 comments X p. Extension
read the original abstract

We define cryptographic assumptions applicable to two mistrustful parties who each control two or more separate secure sites between which special relativity guarantees a time lapse in communication. We show that, under these assumptions, unconditionally secure coin tossing can be carried out by exchanges of classical information. We show also, following Mayers, Lo and Chau, that unconditionally secure bit commitment cannot be carried out by finitely many exchanges of classical or quantum information. Finally we show that, under standard cryptographic assumptions, coin tossing is strictly weaker than bit commitment. That is, no secure classical or quantum bit commitment protocol can be built from a finite number of invocations of a secure coin tossing black box together with finitely many additional information exchanges.

This paper has not been read by Pith yet.

discussion (0)

Sign in with ORCID, Apple, or X to comment. Anyone can read and Pith papers without signing in.