Samiksha Jaiswal (Editor)

Decision Linear assumption

Updated on
Edit
Like
Comment
Share on FacebookTweet on TwitterShare on LinkedInShare on Reddit

The Decision Linear (DLIN) assumption is a computational hardness assumption used in elliptic curve cryptography. In particular, the DLIN assumption is useful in settings where the decisional Diffie–Hellman assumption does not hold (as is often the case in pairing-based cryptography). The Decision Linear assumption was introduced by Boneh, Boyen, and Shacham.

Informally the DLIN assumption states that given ( f , g , f x , g y ) , with f , g random group elements and x , y random exponents, it is hard to distinguish ( h , h x + y ) (for random h ) from ( h , h ) (for independently random h , h ).

References

Decision Linear assumption Wikipedia