Slide 47
Slide 47 text
• Keys are shuffled with a verifiable shuffle, and
the proof and output public keys and values
are sent to the network as a transaction.
pks, vs
pkr, vr
pk1, v1
pk2, v2
pks’, vs-v
pkr’, vr+v
pk1’, v1’
pk2’, v2’
pks’, vs-v
pkr’, vr+v
pk1’, v1’
pk2’, v2’
Making a lightweight proof
47