164
v1v2v3v4v5 (latest)

Protocols for Univariate Sumcheck

Main:14 Pages
Bibliography:2 Pages
1 Tables
Abstract

Three candidate approaches for univariate sumcheck over roots of unity are presented. The first takes the form of a multilinear evaluation protocol, which can be combined with the standard multivariate sumcheck protocol. The other two are reductions from univariate domain identity and univariate sumcheck to multivariate evaluation, respectively, and each can be combined with Gemini (Bootle et al., Eurocrypt 2022). Optionally, natural round reductions from mm to log(m)\log(m) or O(m)O(\sqrt{m}) are supported, while retaining linear prover time.

View on arXiv
Comments on this paper