Protocols for Univariate Sumcheck
Main:14 Pages
Bibliography:2 Pages
1 Tables
Abstract
Three candidate approaches for univariate sumcheck over roots of unity are presented. The first takes the form of a multilinear evaluation protocol, which can be combined with the standard multivariate sumcheck protocol. The other two are reductions from univariate domain identity and univariate sumcheck to multivariate evaluation, respectively, and each can be combined with Gemini (Bootle et al., Eurocrypt 2022). Optionally, natural round reductions from to or are supported, while retaining linear prover time.
View on arXivComments on this paper
