Oblivious Transfer via McEliece's PKC and Permuted Kernels

K. Kobara, K. Morozov, and R. Overbeck


We present two efficient protocols for two flavors of oblivious transfer (OT): the Rabin and 1-out-of-2 OT using the McEliece cryptosystem and Shamir's zero-knowledge identification scheme based on permuted kernels. This is a step towards diversifying computational assumptions on which OT -- the primitive of central importance -- can be based. Although we obtain a weak version of Rabin OT (where the malicious receiver may decrease his erasure probability), it can nevertheless be reduced to secure 1-out-of-2 OT. Elaborating on the first protocol, we provide a practical construction for 1-out-of-2 OT.

Cryptographic protocols
Published elsewhere.
Oblivious transfercoding-based cryptographyMcEliece cryptosystempermuted kernel problem.
overbeck @ cdc informatik tu-darmstadt de
kirill morozov @ aist go jp
2008-06-30: last of 2 revisions
2007-09-27: received
