Information Security Applications

Volume 6513 of the series Lecture Notes in Computer Science pp 44-60

Distributed Paillier Cryptosystem without Trusted Dealer

  • Takashi NishideAffiliated withDepartment of Informatics, Kyushu University
  • , Kouichi SakuraiAffiliated withDepartment of Informatics, Kyushu University

* Final gross prices may vary according to local VAT.

Get Access


We propose a distributed key generation protocol for the threshold Paillier cryptosystem. Often in the multiparty computation based on the threshold Paillier cryptosystem, the existence of a trusted dealer is assumed to distribute secret key shares, but it can be a single point of attack, so it is not preferable. Building on the threshold Paillier cryptosystem with a trusted dealer, we show how to eliminate the trusted dealer by robust distributed key generation without using safe primes.


Distributed Key Generation Multiparty Computation Secret Sharing Threshold Paillier Cryptosystem