Noninteractive generation of shared pseudorandom sequences
 Manuel Cerecedo,
 Tsutomu Matsumoto,
 Hideki Imai
 show all 3
Abstract
We address the following problem: given a random seed secretly shared among a group of individuals, noninteractively generate pieces corresponding to a much longer shared pseudorandom sequence. Shared randomness is an essential resource in distributed computing and noninteractive ways of generating it can be useful in applications such as Byzantine Agreement, common coin flipping or secure computation protocols.
Our first result is negative: well known cryptographically strong pseudorandom number generators cannot be evaluated without interaction and, in particular, it is shown that constructions that recursively apply a oneway function to a random seed and output at each iteration the simultaneously hard bits in the input of the oneway function are actually incompatible with a homomorphic evaluation.
On the other hand, we show that pseudorandom generators that can be both proven cryptographically strong and sharedly evaluated without interaction do exist. A concrete implementation, under the RSA assumption, is described.
 Title
 Noninteractive generation of shared pseudorandom sequences
 Editors
 Authors

 Manuel Cerecedo ^{(1)}
 Tsutomu Matsumoto ^{(1)}
 Hideki Imai ^{(2)}
 Author Affiliations

 1. Division of Electrical and Computer Engineering, Yokohama National University, 156 Tokiwadai, Hodogaya, 240, Yokohama, Japan
 2. Institute of Industrial Science, University of Tokyo, 7221 Roppongi, Minatoku, 106, Tokyo, Japan
