rt sr ts - - PowerPoint PPT Presentation

r t s r ts r s t r t s rr r r
SMART_READER_LITE
LIVE PREVIEW

rt sr ts - - PowerPoint PPT Presentation

rt sr ts rs t rt s rrr r rt


slide-1
SLIDE 1

❊♥❝r②♣t❡❞ ❉❛✈✐❡s✲▼❡②❡r ❛♥❞ ■ts ❉✉❛❧✿ ❚♦✇❛r❞s ❖♣t✐♠❛❧ ❙❡❝✉r✐t② ❯s✐♥❣ ▼✐rr♦r ❚❤❡♦r②

❇❛rt ▼❡♥♥✐♥❦✱ ❙❛♠✉❡❧ ◆❡✈❡s ❘❛❞❜♦✉❞ ❯♥✐✈❡rs✐t② ✭❚❤❡ ◆❡t❤❡r❧❛♥❞s✮✱ ❯♥✐✈❡rs✐t② ♦❢ ❈♦✐♠❜r❛ ✭P♦rt✉❣❛❧✮

❈❘❨P❚❖ ✷✵✶✼ ❆✉❣✉st ✷✹✱ ✷✵✶✼

✶ ✴ ✷✸

slide-2
SLIDE 2

■♥tr♦❞✉❝t✐♦♥

▲✉❜②✲❘❛❝❦♦✛ ✴ ❋❡✐st❡❧

P❘P P❘❋

◆♦✇

✷ ✴ ✷✸

slide-3
SLIDE 3

■♥tr♦❞✉❝t✐♦♥

▲✉❜②✲❘❛❝❦♦✛ ✴ ❋❡✐st❡❧

P❘P P❘❋

◆♦✇

✷ ✴ ✷✸

slide-4
SLIDE 4

■♥tr♦❞✉❝t✐♦♥

▲✉❜②✲❘❛❝❦♦✛ ✴ ❋❡✐st❡❧

P❘P P❘❋

◆♦✇

✷ ✴ ✷✸

slide-5
SLIDE 5

❳♦r ♦❢ P❡r♠✉t❛t✐♦♥s

❳♦r ♦❢ P❡r♠✉t❛t✐♦♥s

x p2 p1 y

❳♦r ♦❢ ❙✐♥❣❧❡ P❡r♠✉t❛t✐♦♥

  • ❋✐rst s✉❣❣❡st❡❞ ❜② ❇❡❧❧❛r❡ ❡t ❛❧✳ ❬❇❑❘✾✽❪
  • ❙❡❝✉r❡ ✉♣ t♦ 2n q✉❡r✐❡s ❬❇■✾✾✱▲✉❝✵✵✱P❛t✵✽❪
  • ❆♣♣❧✐❝❛t✐♦♥✿ ❈❊◆❈✱ ❙❈❚

❙✐♥❣❧❡ ♣❡r♠✉t❛t✐♦♥ ✉s✐♥❣ ❞♦♠❛✐♥ s❡♣❛r❛t✐♦♥

✸ ✴ ✷✸

slide-6
SLIDE 6

❳♦r ♦❢ P❡r♠✉t❛t✐♦♥s

❳♦r ♦❢ P❡r♠✉t❛t✐♦♥s

x p2 p1 y

❳♦r ♦❢ ❙✐♥❣❧❡ P❡r♠✉t❛t✐♦♥

x

1· 0·

p p y

  • ❋✐rst s✉❣❣❡st❡❞ ❜② ❇❡❧❧❛r❡ ❡t ❛❧✳ ❬❇❑❘✾✽❪
  • ❙❡❝✉r❡ ✉♣ t♦ 2n q✉❡r✐❡s ❬❇■✾✾✱▲✉❝✵✵✱P❛t✵✽❪
  • ❆♣♣❧✐❝❛t✐♦♥✿ ❈❊◆❈✱ ❙❈❚
  • ❙✐♥❣❧❡ ♣❡r♠✉t❛t✐♦♥ ✉s✐♥❣ ❞♦♠❛✐♥ s❡♣❛r❛t✐♦♥

✸ ✴ ✷✸

slide-7
SLIDE 7

❊♥❝r②♣t❡❞ ✭❲❡❣♠❛♥✲❈❛rt❡r✮ ❉❛✈✐❡s✲▼❡②❡r

❊❉▼

x p1 p2 y

❊❲❈❉▼

  • ❇② ❈♦❣❧✐❛t✐ ❛♥❞ ❙❡✉r✐♥ ❬❈❙✶✻❪
  • ❙❡❝✉r❡ ✉♣ t♦ 22n/3 q✉❡r✐❡s
  • ❈♦♥❥❡❝t✉r❡✿ ♦♣t✐♠❛❧ 2n s❡❝✉r✐t②

▼❡ss❛❣❡ ❛✉t❤❡♥t✐❝❛t✐♦♥ ✉s✐♥❣ ❊❲❈❉▼

✹ ✴ ✷✸

slide-8
SLIDE 8

❊♥❝r②♣t❡❞ ✭❲❡❣♠❛♥✲❈❛rt❡r✮ ❉❛✈✐❡s✲▼❡②❡r

❊❉▼

x p1 p2 y

❊❲❈❉▼

ν p1 p2 t

h(m)

  • ❇② ❈♦❣❧✐❛t✐ ❛♥❞ ❙❡✉r✐♥ ❬❈❙✶✻❪
  • ❙❡❝✉r❡ ✉♣ t♦ 22n/3 q✉❡r✐❡s
  • ❈♦♥❥❡❝t✉r❡✿ ♦♣t✐♠❛❧ 2n s❡❝✉r✐t②
  • ▼❡ss❛❣❡ ❛✉t❤❡♥t✐❝❛t✐♦♥ ✉s✐♥❣ ❊❲❈❉▼

✹ ✴ ✷✸

slide-9
SLIDE 9

❖✉r ❈♦♥tr✐❜✉t✐♦♥

❊❉▼ ❛♥❞ ❊❲❈❉▼ ✭❞❛s❤❡❞✮

x p1 p2 y

h(m) ❊❉▼❉ s❝❤❡♠❡

❬❈❙✶✻❪

♥♦✇ EDM 22n/3 2n/n EWCDM 22n/3 2n/n ✖✖

❇❛❝❦❜♦♥❡ ♦❢ ❛♥❛❧②s✐s✿ ♠✐rr♦r t❤❡♦r②

✺ ✴ ✷✸

❊❛r❧✐❡r ♣r♦♣♦s❛❧ r❡♠♦✈❡❞ ❛❢t❡r ♦❜s❡r✈❛t✐♦♥ ❜② ◆❛♥❞✐

slide-10
SLIDE 10

❖✉r ❈♦♥tr✐❜✉t✐♦♥

❊❉▼ ❛♥❞ ❊❲❈❉▼ ✭❞❛s❤❡❞✮

x p1 p2 y

h(m) ❊❉▼❉

x p1 p2 y

s❝❤❡♠❡

❬❈❙✶✻❪

♥♦✇ EDM 22n/3 2n/n EWCDM 22n/3 2n/n EDMD ✖✖ 2n

❇❛❝❦❜♦♥❡ ♦❢ ❛♥❛❧②s✐s✿ ♠✐rr♦r t❤❡♦r②

✺ ✴ ✷✸

❊❛r❧✐❡r ♣r♦♣♦s❛❧ r❡♠♦✈❡❞ ❛❢t❡r ♦❜s❡r✈❛t✐♦♥ ❜② ◆❛♥❞✐

slide-11
SLIDE 11

❖✉r ❈♦♥tr✐❜✉t✐♦♥

❊❉▼ ❛♥❞ ❊❲❈❉▼ ✭❞❛s❤❡❞✮

x p1 p2 y

h(m) ❊❉▼❉

x p1 p2 y

s❝❤❡♠❡

❬❈❙✶✻❪

♥♦✇ EDM 22n/3 2n/n EWCDM 22n/3 2n/n EDMD ✖✖ 2n

❇❛❝❦❜♦♥❡ ♦❢ ❛♥❛❧②s✐s✿ ♠✐rr♦r t❤❡♦r②

✺ ✴ ✷✸

− − − − → ❊❛r❧✐❡r ♣r♦♣♦s❛❧ EWCDMD r❡♠♦✈❡❞ ❛❢t❡r ♦❜s❡r✈❛t✐♦♥ ❜② ◆❛♥❞✐

slide-12
SLIDE 12

❖✉r ❈♦♥tr✐❜✉t✐♦♥

❊❉▼ ❛♥❞ ❊❲❈❉▼ ✭❞❛s❤❡❞✮

x p1 p2 y

h(m) ❊❉▼❉

x p1 p2 y

s❝❤❡♠❡

❬❈❙✶✻❪

♥♦✇ EDM 22n/3 2n/n EWCDM 22n/3 2n/n EDMD ✖✖ 2n

❇❛❝❦❜♦♥❡ ♦❢ ❛♥❛❧②s✐s✿ ♠✐rr♦r t❤❡♦r②

✺ ✴ ✷✸

− − − − → ❊❛r❧✐❡r ♣r♦♣♦s❛❧ EWCDMD r❡♠♦✈❡❞ ❛❢t❡r ♦❜s❡r✈❛t✐♦♥ ❜② ◆❛♥❞✐

slide-13
SLIDE 13

▼✐rr♦r ❚❤❡♦r②

❙②st❡♠ ♦❢ ❊q✉❛t✐♦♥s

  • ❈♦♥s✐❞❡r r ❞✐st✐♥❝t ✉♥❦♥♦✇♥s P = {P1, . . . , Pr}
  • ❈♦♥s✐❞❡r ❛ s②st❡♠ ♦❢ q ❡q✉❛t✐♦♥s ♦❢ t❤❡ ❢♦r♠✿

Pa1 ⊕ Pb1 = λ1 Pa2 ⊕ Pb2 = λ2 ✳ ✳ ✳ Paq ⊕ Pbq = λq ❢♦r s♦♠❡ s✉r❥❡❝t✐♦♥ ϕ : {a1, b1, . . . , aq, bq} → {1, . . . , r}

  • ♦❛❧

▲♦✇❡r ❜♦✉♥❞ ♦♥ t❤❡ ♥✉♠❜❡r ♦❢ s♦❧✉t✐♦♥s t♦ s✉❝❤ t❤❛t ❢♦r ❛❧❧ ❞✐st✐♥❝t

✻ ✴ ✷✸

slide-14
SLIDE 14

▼✐rr♦r ❚❤❡♦r②

❙②st❡♠ ♦❢ ❊q✉❛t✐♦♥s

  • ❈♦♥s✐❞❡r r ❞✐st✐♥❝t ✉♥❦♥♦✇♥s P = {P1, . . . , Pr}
  • ❈♦♥s✐❞❡r ❛ s②st❡♠ ♦❢ q ❡q✉❛t✐♦♥s ♦❢ t❤❡ ❢♦r♠✿

Pa1 ⊕ Pb1 = λ1 Pa2 ⊕ Pb2 = λ2 ✳ ✳ ✳ Paq ⊕ Pbq = λq ❢♦r s♦♠❡ s✉r❥❡❝t✐♦♥ ϕ : {a1, b1, . . . , aq, bq} → {1, . . . , r}

  • ♦❛❧
  • ▲♦✇❡r ❜♦✉♥❞ ♦♥ t❤❡ ♥✉♠❜❡r ♦❢ s♦❧✉t✐♦♥s t♦ P

s✉❝❤ t❤❛t Pa = Pb ❢♦r ❛❧❧ ❞✐st✐♥❝t a, b ∈ {1, . . . , r}

✻ ✴ ✷✸

slide-15
SLIDE 15

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞

❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦P ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-16
SLIDE 16

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦P ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-17
SLIDE 17

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦P ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-18
SLIDE 18

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦P ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-19
SLIDE 19

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ O(·) P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦P ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-20
SLIDE 20

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ O(·) P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦P ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-21
SLIDE 21

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ O(·) P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦P ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-22
SLIDE 22

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ O(·) P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦P ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-23
SLIDE 23

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ O(·) P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦P ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-24
SLIDE 24

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ O(·) P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦P ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-25
SLIDE 25

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ O(·) P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦P ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-26
SLIDE 26

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ O(·) P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦Pd ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-27
SLIDE 27

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ O(·) P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦Pd ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-28
SLIDE 28

▼✐rr♦r ❚❤❡♦r②

P❛t❛r✐♥✬s ❘❡s✉❧t

  • ❊①tr❡♠❡❧② ♣♦✇❡r❢✉❧ ❧♦✇❡r ❜♦✉♥❞
  • ❍❛s r❡♠❛✐♥❡❞ r❛t❤❡r ✉♥❦♥♦✇♥ s✐♥❝❡ ✐♥tr♦❞✉❝t✐♦♥ ✭✷✵✵✸✮

❆✉t❤♦rs P✉❜❧✐❝❛t✐♦♥ ❆♣♣❧✐❝❛t✐♦♥ ▼✐rr♦r ❇♦✉♥❞ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✸ ❋❡✐st❡❧ ❙✉❜♦♣t✐♠❛❧ P❛t❛r✐♥ ❈❘❨P❚❖ ✷✵✵✹ ❋❡✐st❡❧ P❛t❛r✐♥ ■❈■❙❈ ✷✵✵✺ ❋❡✐st❡❧ ❖♣t✐♠❛❧ ✐♥ O(·) P❛t❛r✐♥✱ ▼♦♥tr❡✉✐❧ ■❈■❙❈ ✷✵✵✺ ❇❡♥❡s P❛t❛r✐♥ ■❈■❚❙ ✷✵✵✽ ❳♦P P❛t❛r✐♥ ❆❋❘■❈❆❈❘❨P❚ ✷✵✵✽ ❇❡♥❡s P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✽✼ ❳♦P ❈♦♥❝r❡t❡ ❜♦✉♥❞ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✵✴✷✾✸ ❋❡✐st❡❧ P❛t❛r✐♥ ❡Pr✐♥t ✷✵✶✸✴✸✻✽ ❳♦P ❈♦❣❧✐❛t✐✱ ▲❛♠♣❡✱ P❛t❛r✐♥ ❋❙❊ ✷✵✶✹ ❳♦Pd ❱♦❧t❡✱ ◆❛❝❤❡❢✱ ▼❛rr✐èr❡ ❡Pr✐♥t ✷✵✶✻✴✶✸✻ ❋❡✐st❡❧ ■✇❛t❛✱ ▼❡♥♥✐♥❦✱ ❱✐③ár ❡Pr✐♥t ✷✵✶✻✴✶✵✽✼ ❈❊◆❈

✼ ✴ ✷✸

slide-29
SLIDE 29

▼✐rr♦r ❚❤❡♦r②

❙②st❡♠ ♦❢ ❊q✉❛t✐♦♥s

  • r ❞✐st✐♥❝t ✉♥❦♥♦✇♥s P = {P1, . . . , Pr}
  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s Pai ⊕ Pbi = λi
  • ❙✉r❥❡❝t✐♦♥ ϕ : {a1, b1, . . . , aq, bq} → {1, . . . , r}
  • r❛♣❤ ❇❛s❡❞ ❱✐❡✇

Pa1 =Pa2 Pb1 Pb3 Pa4 =Pa5 Pb5 Pb2 =Pa3 =Pb4

λ1 λ2 λ3 λ4 λ5

Pa6 Pb6

λ6

Pa7 Pb7

λ7

Pa8 Pa9 Pb8 =Pb9 =Pb10 =Pa11 Pa10 Pb11

λ8 λ9 λ10 λ11 ✽ ✴ ✷✸

slide-30
SLIDE 30

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✶

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pb ⊕ Pc = λ2 ■❢ ♦r ♦r ❈♦♥tr❛❞✐❝t✐♦♥✿ ♦r ♦r ❙❝❤❡♠❡ ✐s ❞❡❣❡♥❡r❛t❡ ■❢ ❛♥❞ ❝❤♦✐❝❡s ❢♦r ❋✐①❡s ✭✇❤✐❝❤ ✐s ❛s ❞❡s✐r❡❞✮ ❋✐①❡s ✭✇❤✐❝❤ ✐s ❛s ❞❡s✐r❡❞✮

✾ ✴ ✷✸

Pa Pb Pc

λ1 λ2

slide-31
SLIDE 31

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✶

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pb ⊕ Pc = λ2 ■❢ λ1 = 0 ♦r λ2 = 0 ♦r λ1 = λ2

  • ❈♦♥tr❛❞✐❝t✐♦♥✿ Pa = Pb ♦r Pb = Pc ♦r Pa = Pc
  • ❙❝❤❡♠❡ ✐s ❞❡❣❡♥❡r❛t❡

■❢ ❛♥❞ ❝❤♦✐❝❡s ❢♦r ❋✐①❡s ✭✇❤✐❝❤ ✐s ❛s ❞❡s✐r❡❞✮ ❋✐①❡s ✭✇❤✐❝❤ ✐s ❛s ❞❡s✐r❡❞✮

✾ ✴ ✷✸

Pa Pb Pc

λ1 λ2

slide-32
SLIDE 32

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✶

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pb ⊕ Pc = λ2 ■❢ λ1 = 0 ♦r λ2 = 0 ♦r λ1 = λ2

  • ❈♦♥tr❛❞✐❝t✐♦♥✿ Pa = Pb ♦r Pb = Pc ♦r Pa = Pc
  • ❙❝❤❡♠❡ ✐s ❞❡❣❡♥❡r❛t❡

■❢ λ1, λ2 = 0 ❛♥❞ λ1 = λ2

  • 2n ❝❤♦✐❝❡s ❢♦r Pa

❋✐①❡s ✭✇❤✐❝❤ ✐s ❛s ❞❡s✐r❡❞✮ ❋✐①❡s ✭✇❤✐❝❤ ✐s ❛s ❞❡s✐r❡❞✮

✾ ✴ ✷✸

Pa Pb Pc

λ1 λ2

slide-33
SLIDE 33

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✶

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pb ⊕ Pc = λ2 ■❢ λ1 = 0 ♦r λ2 = 0 ♦r λ1 = λ2

  • ❈♦♥tr❛❞✐❝t✐♦♥✿ Pa = Pb ♦r Pb = Pc ♦r Pa = Pc
  • ❙❝❤❡♠❡ ✐s ❞❡❣❡♥❡r❛t❡

■❢ λ1, λ2 = 0 ❛♥❞ λ1 = λ2

  • 2n ❝❤♦✐❝❡s ❢♦r Pa
  • ❋✐①❡s Pb = λ1 ⊕ Pa ✭✇❤✐❝❤ ✐s = Pa ❛s ❞❡s✐r❡❞✮

❋✐①❡s ✭✇❤✐❝❤ ✐s ❛s ❞❡s✐r❡❞✮

✾ ✴ ✷✸

Pa Pb Pc

λ1 λ2

slide-34
SLIDE 34

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✶

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pb ⊕ Pc = λ2 ■❢ λ1 = 0 ♦r λ2 = 0 ♦r λ1 = λ2

  • ❈♦♥tr❛❞✐❝t✐♦♥✿ Pa = Pb ♦r Pb = Pc ♦r Pa = Pc
  • ❙❝❤❡♠❡ ✐s ❞❡❣❡♥❡r❛t❡

■❢ λ1, λ2 = 0 ❛♥❞ λ1 = λ2

  • 2n ❝❤♦✐❝❡s ❢♦r Pa
  • ❋✐①❡s Pb = λ1 ⊕ Pa ✭✇❤✐❝❤ ✐s = Pa ❛s ❞❡s✐r❡❞✮
  • ❋✐①❡s Pc = λ2 ⊕ Pb ✭✇❤✐❝❤ ✐s = Pa, Pb ❛s ❞❡s✐r❡❞✮

✾ ✴ ✷✸

Pa Pb Pc

λ1 λ2

slide-35
SLIDE 35

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✷

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pc ⊕ Pd = λ2 ■❢ ♦r ❈♦♥tr❛❞✐❝t✐♦♥✿ ♦r ❙❝❤❡♠❡ ✐s ❞❡❣❡♥❡r❛t❡ ■❢ ❝❤♦✐❝❡s ❢♦r ✭✇❤✐❝❤ ✜①❡s ✮ ❋♦r ❛♥❞ ✇❡ r❡q✉✐r❡ ❆t ❧❡❛st ❝❤♦✐❝❡s ❢♦r ✭✇❤✐❝❤ ✜①❡s ✮

✶✵ ✴ ✷✸

Pa Pb Pc Pd

λ1 λ2

slide-36
SLIDE 36

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✷

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pc ⊕ Pd = λ2 ■❢ λ1 = 0 ♦r λ2 = 0

  • ❈♦♥tr❛❞✐❝t✐♦♥✿ Pa = Pb ♦r Pb = Pc
  • ❙❝❤❡♠❡ ✐s ❞❡❣❡♥❡r❛t❡

■❢ ❝❤♦✐❝❡s ❢♦r ✭✇❤✐❝❤ ✜①❡s ✮ ❋♦r ❛♥❞ ✇❡ r❡q✉✐r❡ ❆t ❧❡❛st ❝❤♦✐❝❡s ❢♦r ✭✇❤✐❝❤ ✜①❡s ✮

✶✵ ✴ ✷✸

Pa Pb Pc Pd

λ1 λ2

slide-37
SLIDE 37

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✷

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pc ⊕ Pd = λ2 ■❢ λ1 = 0 ♦r λ2 = 0

  • ❈♦♥tr❛❞✐❝t✐♦♥✿ Pa = Pb ♦r Pb = Pc
  • ❙❝❤❡♠❡ ✐s ❞❡❣❡♥❡r❛t❡

■❢ λ1, λ2 = 0

  • 2n ❝❤♦✐❝❡s ❢♦r Pa ✭✇❤✐❝❤ ✜①❡s Pb✮

❋♦r ❛♥❞ ✇❡ r❡q✉✐r❡ ❆t ❧❡❛st ❝❤♦✐❝❡s ❢♦r ✭✇❤✐❝❤ ✜①❡s ✮

✶✵ ✴ ✷✸

Pa Pb Pc Pd

λ1 λ2

slide-38
SLIDE 38

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✷

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pc ⊕ Pd = λ2 ■❢ λ1 = 0 ♦r λ2 = 0

  • ❈♦♥tr❛❞✐❝t✐♦♥✿ Pa = Pb ♦r Pb = Pc
  • ❙❝❤❡♠❡ ✐s ❞❡❣❡♥❡r❛t❡

■❢ λ1, λ2 = 0

  • 2n ❝❤♦✐❝❡s ❢♦r Pa ✭✇❤✐❝❤ ✜①❡s Pb✮
  • ❋♦r Pc ❛♥❞ Pd ✇❡ r❡q✉✐r❡
  • Pc = Pa, Pb
  • Pd = λ2 ⊕ Pc = Pa, Pb

❆t ❧❡❛st ❝❤♦✐❝❡s ❢♦r ✭✇❤✐❝❤ ✜①❡s ✮

✶✵ ✴ ✷✸

Pa Pb Pc Pd

λ1 λ2

slide-39
SLIDE 39

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✷

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pc ⊕ Pd = λ2 ■❢ λ1 = 0 ♦r λ2 = 0

  • ❈♦♥tr❛❞✐❝t✐♦♥✿ Pa = Pb ♦r Pb = Pc
  • ❙❝❤❡♠❡ ✐s ❞❡❣❡♥❡r❛t❡

■❢ λ1, λ2 = 0

  • 2n ❝❤♦✐❝❡s ❢♦r Pa ✭✇❤✐❝❤ ✜①❡s Pb✮
  • ❋♦r Pc ❛♥❞ Pd ✇❡ r❡q✉✐r❡
  • Pc = Pa, Pb
  • Pd = λ2 ⊕ Pc = Pa, Pb
  • ❆t ❧❡❛st 2n − 4 ❝❤♦✐❝❡s ❢♦r Pc ✭✇❤✐❝❤ ✜①❡s Pd✮

✶✵ ✴ ✷✸

Pa Pb Pc Pd

λ1 λ2

slide-40
SLIDE 40

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✸

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pb ⊕ Pc = λ2 Pc ⊕ Pa = λ3

  • ❆ss✉♠❡ λi = 0 ❛♥❞ λi = λj

■❢ ❈♦♥tr❛❞✐❝t✐♦♥✿ ❡q✉❛t✐♦♥s s✉♠ t♦ ❙❝❤❡♠❡ ❝♦♥t❛✐♥s ❛ ❝✐r❝❧❡ ■❢ ❖♥❡ r❡❞✉♥❞❛♥t ❡q✉❛t✐♦♥✱ ♥♦ ❝♦♥tr❛❞✐❝t✐♦♥

✶✶ ✴ ✷✸

Pa Pb Pc

λ1 λ2 λ3

slide-41
SLIDE 41

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✸

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pb ⊕ Pc = λ2 Pc ⊕ Pa = λ3

  • ❆ss✉♠❡ λi = 0 ❛♥❞ λi = λj

■❢ λ1 ⊕ λ2 ⊕ λ3 = 0

  • ❈♦♥tr❛❞✐❝t✐♦♥✿ ❡q✉❛t✐♦♥s s✉♠ t♦ 0 = λ1 ⊕ λ2 ⊕ λ3
  • ❙❝❤❡♠❡ ❝♦♥t❛✐♥s ❛ ❝✐r❝❧❡

■❢ ❖♥❡ r❡❞✉♥❞❛♥t ❡q✉❛t✐♦♥✱ ♥♦ ❝♦♥tr❛❞✐❝t✐♦♥

✶✶ ✴ ✷✸

Pa Pb Pc

λ1 λ2 λ3

slide-42
SLIDE 42

▼✐rr♦r ❚❤❡♦r②✿ ❚♦② ❊①❛♠♣❧❡ ✸

  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s✿

Pa ⊕ Pb = λ1 Pb ⊕ Pc = λ2 Pc ⊕ Pa = λ3

  • ❆ss✉♠❡ λi = 0 ❛♥❞ λi = λj

■❢ λ1 ⊕ λ2 ⊕ λ3 = 0

  • ❈♦♥tr❛❞✐❝t✐♦♥✿ ❡q✉❛t✐♦♥s s✉♠ t♦ 0 = λ1 ⊕ λ2 ⊕ λ3
  • ❙❝❤❡♠❡ ❝♦♥t❛✐♥s ❛ ❝✐r❝❧❡

■❢ λ1 ⊕ λ2 ⊕ λ3 = 0

  • ❖♥❡ r❡❞✉♥❞❛♥t ❡q✉❛t✐♦♥✱ ♥♦ ❝♦♥tr❛❞✐❝t✐♦♥

✶✶ ✴ ✷✸

Pa Pb Pc

λ1 λ2 λ3

slide-43
SLIDE 43

▼✐rr♦r ❚❤❡♦r②✿ ❚✇♦ Pr♦❜❧❡♠❛t✐❝ ❈❛s❡s

❈✐r❝❧❡ ❉❡❣❡♥❡r❛❝②

Pa1 = Pb5 Pb1 = Pa2 Pb2 = Pa3 Pb3 = Pa4 Pb4 = Pa5

λ1 λ2 λ3 λ4 λ5

Pa1 =Pa2 Pb1 Pa3 =Pa4 Pb4 = Pa5 Pb2 =Pb3

λ1 λ2 λ3 λ4

Pa8 Pb7 = Pb8

λ1 ⊕ λ2 ⊕ · · · ⊕ λ7

Pb5 = Pa6 Pb6 = Pb7

λ6 λ5 λ7 ✶✷ ✴ ✷✸

slide-44
SLIDE 44

▼✐rr♦r ❚❤❡♦r②✿ ▼❛✐♥ ❘❡s✉❧t

❙②st❡♠ ♦❢ ❊q✉❛t✐♦♥s

  • r ❞✐st✐♥❝t ✉♥❦♥♦✇♥s P = {P1, . . . , Pr}
  • ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s Pai ⊕ Pbi = λi
  • ❙✉r❥❡❝t✐♦♥ ϕ : {a1, b1, . . . , aq, bq} → {1, . . . , r}

▼❛✐♥ ❘❡s✉❧t ■❢ t❤❡ s②st❡♠ ♦❢ ❡q✉❛t✐♦♥s ✐s ❝✐r❝❧❡✲❢r❡❡ ❛♥❞ ♥♦♥✲❞❡❣❡♥❡r❛t❡✱ t❤❡ ♥✉♠❜❡r ♦❢ s♦❧✉t✐♦♥s t♦ P s✉❝❤ t❤❛t Pa = Pb ❢♦r ❛❧❧ ❞✐st✐♥❝t a, b ∈ {1, . . . , r} ✐s ❛t ❧❡❛st (2n)r 2nq ♣r♦✈✐❞❡❞ t❤❡ ♠❛①✐♠✉♠ tr❡❡ s✐③❡ ξ s❛t✐s✜❡s (ξ−1)2·r ≤ 2n/67

✶✸ ✴ ✷✸

slide-45
SLIDE 45

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

x

1· 0·

p p y

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(x1, y1), . . . , (xq, yq)}

❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ❛♥❞ ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s ■♥♣✉ts t♦ ❛r❡ ❛❧❧ ❞✐st✐♥❝t✿ ✉♥❦♥♦✇♥s

✶✹ ✴ ✷✸

slide-46
SLIDE 46

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

x

1· 0·

p p y

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(x1, y1), . . . , (xq, yq)}
  • ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ xi → p(0xi) =: Pai ❛♥❞

❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ xi → p(1xi) =: Pbi ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s ■♥♣✉ts t♦ ❛r❡ ❛❧❧ ❞✐st✐♥❝t✿ ✉♥❦♥♦✇♥s

✶✹ ✴ ✷✸

slide-47
SLIDE 47

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

x

1· 0·

p p y

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(x1, y1), . . . , (xq, yq)}
  • ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ xi → p(0xi) =: Pai ❛♥❞

❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ xi → p(1xi) =: Pbi

  • ❙②st❡♠ ♦❢ q ❡q✉❛t✐♦♥s Pai ⊕ Pbi = yi

■♥♣✉ts t♦ ❛r❡ ❛❧❧ ❞✐st✐♥❝t✿ ✉♥❦♥♦✇♥s

✶✹ ✴ ✷✸

slide-48
SLIDE 48

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

x

1· 0·

p p y

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(x1, y1), . . . , (xq, yq)}
  • ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ xi → p(0xi) =: Pai ❛♥❞

❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ xi → p(1xi) =: Pbi

  • ❙②st❡♠ ♦❢ q ❡q✉❛t✐♦♥s Pai ⊕ Pbi = yi
  • ■♥♣✉ts t♦ p ❛r❡ ❛❧❧ ❞✐st✐♥❝t✿ 2q ✉♥❦♥♦✇♥s

✶✹ ✴ ✷✸

slide-49
SLIDE 49

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

Pa1 Pb1 Pa2 Pb2 Paq Pbq · · ·

y1 y2 yq

❆♣♣❧②✐♥❣ ▼✐rr♦r ❚❤❡♦r② ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ♣r♦✈✐❞❡❞ t❤❛t ❢♦r ❛❧❧ ▼❛①✐♠✉♠ tr❡❡ s✐③❡ ■❢ ✿ ❛t ❧❡❛st s♦❧✉t✐♦♥s t♦ ✉♥❦♥♦✇♥s

✶✺ ✴ ✷✸

slide-50
SLIDE 50

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

Pa1 Pb1 Pa2 Pb2 Paq Pbq · · ·

y1 y2 yq

❆♣♣❧②✐♥❣ ▼✐rr♦r ❚❤❡♦r②

  • ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ p
  • ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ♣r♦✈✐❞❡❞ t❤❛t yi = 0 ❢♦r ❛❧❧ i
  • ▼❛①✐♠✉♠ tr❡❡ s✐③❡ 2

■❢ ✿ ❛t ❧❡❛st s♦❧✉t✐♦♥s t♦ ✉♥❦♥♦✇♥s

✶✺ ✴ ✷✸

slide-51
SLIDE 51

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

Pa1 Pb1 Pa2 Pb2 Paq Pbq · · ·

y1 y2 yq

❆♣♣❧②✐♥❣ ▼✐rr♦r ❚❤❡♦r②

  • ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ p
  • ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ♣r♦✈✐❞❡❞ t❤❛t yi = 0 ❢♦r ❛❧❧ i
  • ▼❛①✐♠✉♠ tr❡❡ s✐③❡ 2
  • ■❢ 2q ≤ 2n/67✿ ❛t ❧❡❛st (2n)2q

2nq

s♦❧✉t✐♦♥s t♦ ✉♥❦♥♦✇♥s

✶✺ ✴ ✷✸

slide-52
SLIDE 52

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

❍✲❈♦❡✣❝✐❡♥t ❚❡❝❤♥✐q✉❡ ❬P❛t✾✶✱P❛t✵✽✱❈❙✶✹❪ ▲❡t ε ≥ 0 ❜❡ s✉❝❤ t❤❛t ❢♦r ❛❧❧ ❣♦♦❞ tr❛♥s❝r✐♣ts τ✿ Pr [XoP ❣✐✈❡s τ] Pr [f ❣✐✈❡s τ] ≥ 1 − ε ❚❤❡♥✱ Advprf

XoP(q) ≤ ε + Pr [❜❛❞ tr❛♥s❝r✐♣t ❢♦r f]

❇❛❞ tr❛♥s❝r✐♣t✿ ✐❢ ❢♦r s♦♠❡

❜❛❞ tr❛♥s❝r✐♣t ❢♦r

❋♦r ❛♥② ❣♦♦❞ tr❛♥s❝r✐♣t✿

❣✐✈❡s ❣✐✈❡s

✶✻ ✴ ✷✸

slide-53
SLIDE 53

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

❍✲❈♦❡✣❝✐❡♥t ❚❡❝❤♥✐q✉❡ ❬P❛t✾✶✱P❛t✵✽✱❈❙✶✹❪ ▲❡t ε ≥ 0 ❜❡ s✉❝❤ t❤❛t ❢♦r ❛❧❧ ❣♦♦❞ tr❛♥s❝r✐♣ts τ✿ Pr [XoP ❣✐✈❡s τ] Pr [f ❣✐✈❡s τ] ≥ 1 − ε ❚❤❡♥✱ Advprf

XoP(q) ≤ ε + Pr [❜❛❞ tr❛♥s❝r✐♣t ❢♦r f]

  • ❇❛❞ tr❛♥s❝r✐♣t✿ ✐❢ yi = 0 ❢♦r s♦♠❡ i
  • Pr [❜❛❞ tr❛♥s❝r✐♣t ❢♦r f] = q/2n

❋♦r ❛♥② ❣♦♦❞ tr❛♥s❝r✐♣t✿

❣✐✈❡s ❣✐✈❡s

✶✻ ✴ ✷✸

slide-54
SLIDE 54

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

❍✲❈♦❡✣❝✐❡♥t ❚❡❝❤♥✐q✉❡ ❬P❛t✾✶✱P❛t✵✽✱❈❙✶✹❪ ▲❡t ε ≥ 0 ❜❡ s✉❝❤ t❤❛t ❢♦r ❛❧❧ ❣♦♦❞ tr❛♥s❝r✐♣ts τ✿ Pr [XoP ❣✐✈❡s τ] Pr [f ❣✐✈❡s τ] ≥ 1 − ε ❚❤❡♥✱ Advprf

XoP(q) ≤ ε + Pr [❜❛❞ tr❛♥s❝r✐♣t ❢♦r f]

  • ❇❛❞ tr❛♥s❝r✐♣t✿ ✐❢ yi = 0 ❢♦r s♦♠❡ i
  • Pr [❜❛❞ tr❛♥s❝r✐♣t ❢♦r f] = q/2n
  • ❋♦r ❛♥② ❣♦♦❞ tr❛♥s❝r✐♣t✿
  • Pr [XoP ❣✐✈❡s τ] ≥ (2n)2q

2nq

·

1 (2n)2q

❣✐✈❡s

✶✻ ✴ ✷✸

slide-55
SLIDE 55

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

❍✲❈♦❡✣❝✐❡♥t ❚❡❝❤♥✐q✉❡ ❬P❛t✾✶✱P❛t✵✽✱❈❙✶✹❪ ▲❡t ε ≥ 0 ❜❡ s✉❝❤ t❤❛t ❢♦r ❛❧❧ ❣♦♦❞ tr❛♥s❝r✐♣ts τ✿ Pr [XoP ❣✐✈❡s τ] Pr [f ❣✐✈❡s τ] ≥ 1 − ε ❚❤❡♥✱ Advprf

XoP(q) ≤ ε + Pr [❜❛❞ tr❛♥s❝r✐♣t ❢♦r f]

  • ❇❛❞ tr❛♥s❝r✐♣t✿ ✐❢ yi = 0 ❢♦r s♦♠❡ i
  • Pr [❜❛❞ tr❛♥s❝r✐♣t ❢♦r f] = q/2n
  • ❋♦r ❛♥② ❣♦♦❞ tr❛♥s❝r✐♣t✿
  • Pr [XoP ❣✐✈❡s τ] ≥ (2n)2q

2nq

·

1 (2n)2q

  • Pr [f ❣✐✈❡s τ] =

1 2nq

✶✻ ✴ ✷✸

slide-56
SLIDE 56

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

❍✲❈♦❡✣❝✐❡♥t ❚❡❝❤♥✐q✉❡ ❬P❛t✾✶✱P❛t✵✽✱❈❙✶✹❪ ▲❡t ε ≥ 0 ❜❡ s✉❝❤ t❤❛t ❢♦r ❛❧❧ ❣♦♦❞ tr❛♥s❝r✐♣ts τ✿ Pr [XoP ❣✐✈❡s τ] Pr [f ❣✐✈❡s τ] ≥ 1 − ε ❚❤❡♥✱ Advprf

XoP(q) ≤ ε + Pr [❜❛❞ tr❛♥s❝r✐♣t ❢♦r f]

  • ❇❛❞ tr❛♥s❝r✐♣t✿ ✐❢ yi = 0 ❢♦r s♦♠❡ i
  • Pr [❜❛❞ tr❛♥s❝r✐♣t ❢♦r f] = q/2n
  • ❋♦r ❛♥② ❣♦♦❞ tr❛♥s❝r✐♣t✿
  • Pr [XoP ❣✐✈❡s τ] ≥ (2n)2q

2nq

·

1 (2n)2q

  • Pr [f ❣✐✈❡s τ] =

1 2nq

✶✻ ✴ ✷✸

  • ε = 0
slide-57
SLIDE 57

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❳♦P

❍✲❈♦❡✣❝✐❡♥t ❚❡❝❤♥✐q✉❡ ❬P❛t✾✶✱P❛t✵✽✱❈❙✶✹❪ ▲❡t ε ≥ 0 ❜❡ s✉❝❤ t❤❛t ❢♦r ❛❧❧ ❣♦♦❞ tr❛♥s❝r✐♣ts τ✿ Pr [XoP ❣✐✈❡s τ] Pr [f ❣✐✈❡s τ] ≥ 1 − ε ❚❤❡♥✱ Advprf

XoP(q) ≤ ε + Pr [❜❛❞ tr❛♥s❝r✐♣t ❢♦r f]

  • ❇❛❞ tr❛♥s❝r✐♣t✿ ✐❢ yi = 0 ❢♦r s♦♠❡ i
  • Pr [❜❛❞ tr❛♥s❝r✐♣t ❢♦r f] = q/2n
  • ❋♦r ❛♥② ❣♦♦❞ tr❛♥s❝r✐♣t✿
  • Pr [XoP ❣✐✈❡s τ] ≥ (2n)2q

2nq

·

1 (2n)2q

  • Pr [f ❣✐✈❡s τ] =

1 2nq

Advprf

XoP(q) ≤ q/2n

✶✻ ✴ ✷✸

  • ε = 0
slide-58
SLIDE 58

❊❉▼

x p1 p2 x y

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(x1, y1), . . . , (xq, yq)}

❳♦r ♦❢ ♣❡r♠✉t❛t✐♦♥s ✐♥ t❤❡ ♠✐❞❞❧❡ ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ❛♥❞ ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s ✬s ❛❧❧ ✉♥✐q✉❡✱ ✬s ♠❛② ❝♦❧❧✐❞❡

✶✼ ✴ ✷✸

slide-59
SLIDE 59

❊❉▼

x p1 p2 x y

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(x1, y1), . . . , (xq, yq)}

❳♦r ♦❢ ♣❡r♠✉t❛t✐♦♥s ✐♥ t❤❡ ♠✐❞❞❧❡ ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ❛♥❞ ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s ✬s ❛❧❧ ✉♥✐q✉❡✱ ✬s ♠❛② ❝♦❧❧✐❞❡

✶✼ ✴ ✷✸

slide-60
SLIDE 60

❊❉▼

x p1 p2 x y

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(x1, y1), . . . , (xq, yq)}
  • ❳♦r ♦❢ ♣❡r♠✉t❛t✐♦♥s ✐♥ t❤❡ ♠✐❞❞❧❡

❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ❛♥❞ ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s ✬s ❛❧❧ ✉♥✐q✉❡✱ ✬s ♠❛② ❝♦❧❧✐❞❡

✶✼ ✴ ✷✸

slide-61
SLIDE 61

❊❉▼

x p1 p2 x y

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(x1, y1), . . . , (xq, yq)}
  • ❳♦r ♦❢ ♣❡r♠✉t❛t✐♦♥s ✐♥ t❤❡ ♠✐❞❞❧❡
  • ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ xi → p1(xi) =: Pai ❛♥❞

❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ yi → p−1

2 (yi) =: Pbi

❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s ✬s ❛❧❧ ✉♥✐q✉❡✱ ✬s ♠❛② ❝♦❧❧✐❞❡

✶✼ ✴ ✷✸

slide-62
SLIDE 62

❊❉▼

x p1 p2 x y

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(x1, y1), . . . , (xq, yq)}
  • ❳♦r ♦❢ ♣❡r♠✉t❛t✐♦♥s ✐♥ t❤❡ ♠✐❞❞❧❡
  • ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ xi → p1(xi) =: Pai ❛♥❞

❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ yi → p−1

2 (yi) =: Pbi

  • ❙②st❡♠ ♦❢ q ❡q✉❛t✐♦♥s Pai ⊕ Pbi = xi

✬s ❛❧❧ ✉♥✐q✉❡✱ ✬s ♠❛② ❝♦❧❧✐❞❡

✶✼ ✴ ✷✸

slide-63
SLIDE 63

❊❉▼

x p1 p2 x y

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(x1, y1), . . . , (xq, yq)}
  • ❳♦r ♦❢ ♣❡r♠✉t❛t✐♦♥s ✐♥ t❤❡ ♠✐❞❞❧❡
  • ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ xi → p1(xi) =: Pai ❛♥❞

❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ yi → p−1

2 (yi) =: Pbi

  • ❙②st❡♠ ♦❢ q ❡q✉❛t✐♦♥s Pai ⊕ Pbi = xi
  • xi✬s ❛❧❧ ✉♥✐q✉❡✱ yi✬s ♠❛② ❝♦❧❧✐❞❡

✶✼ ✴ ✷✸

slide-64
SLIDE 64

❊❉▼

Pa1 Pa2 Paξ1 Pb1

x1 x2 xξ1

Paξ1+

1

Paξ1+

2

Paξ1+

ξ2

Pb2

xξ1+

1

xξ1+

2

xξ1+

ξ2

· · · Paq✕ξs+

1

Paq✕ξs+

2

Paq Pbs

xq✕ξs+

1

xq✕ξs+

2

xq

❆♣♣❧②✐♥❣ ❘❡❧❛①❡❞ ▼✐rr♦r ❚❤❡♦r② ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ❛s ❢♦r ❛❧❧ ▼❛① tr❡❡ s✐③❡ ✿ ♣r♦✈✐❞❡❞ ♥♦ ✲❢♦❧❞ ❝♦❧❧✐s✐♦♥ ■❢ ✿ ❛t ❧❡❛st s♦❧✉t✐♦♥s t♦ ✉♥❦♥♦✇♥s ❍✲❝♦❡✣❝✐❡♥t t❡❝❤♥✐q✉❡✿

✶✽ ✴ ✷✸

❝♦✈❡rs ✐♥❞❡♣❡♥❞❡♥t ♣❡r♠✉t❛t✐♦♥s

slide-65
SLIDE 65

❊❉▼

Pa1 Pa2 Paξ1 Pb1

x1 x2 xξ1

Paξ1+

1

Paξ1+

2

Paξ1+

ξ2

Pb2

xξ1+

1

xξ1+

2

xξ1+

ξ2

· · · Paq✕ξs+

1

Paq✕ξs+

2

Paq Pbs

xq✕ξs+

1

xq✕ξs+

2

xq

❆♣♣❧②✐♥❣ ❘❡❧❛①❡❞ ▼✐rr♦r ❚❤❡♦r② ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ❛s ❢♦r ❛❧❧ ▼❛① tr❡❡ s✐③❡ ✿ ♣r♦✈✐❞❡❞ ♥♦ ✲❢♦❧❞ ❝♦❧❧✐s✐♦♥ ■❢ ✿ ❛t ❧❡❛st s♦❧✉t✐♦♥s t♦ ✉♥❦♥♦✇♥s ❍✲❝♦❡✣❝✐❡♥t t❡❝❤♥✐q✉❡✿

✶✽ ✴ ✷✸

❝♦✈❡rs ✐♥❞❡♣❡♥❞❡♥t ♣❡r♠✉t❛t✐♦♥s

slide-66
SLIDE 66

❊❉▼

Pa1 Pa2 Paξ1 Pb1

x1 x2 xξ1

Paξ1+

1

Paξ1+

2

Paξ1+

ξ2

Pb2

xξ1+

1

xξ1+

2

xξ1+

ξ2

· · · Paq✕ξs+

1

Paq✕ξs+

2

Paq Pbs

xq✕ξs+

1

xq✕ξs+

2

xq

❆♣♣❧②✐♥❣ ❘❡❧❛①❡❞ ▼✐rr♦r ❚❤❡♦r②

  • ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ p1
  • ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ❛s xi = xj ❢♦r ❛❧❧ i = j
  • ▼❛① tr❡❡ s✐③❡ ξ + 1✿ ♣r♦✈✐❞❡❞ ♥♦ (ξ + 1)✲❢♦❧❞ ❝♦❧❧✐s✐♦♥

■❢ ✿ ❛t ❧❡❛st s♦❧✉t✐♦♥s t♦ ✉♥❦♥♦✇♥s ❍✲❝♦❡✣❝✐❡♥t t❡❝❤♥✐q✉❡✿

✶✽ ✴ ✷✸

❝♦✈❡rs ✐♥❞❡♣❡♥❞❡♥t ♣❡r♠✉t❛t✐♦♥s

slide-67
SLIDE 67

❊❉▼

Pa1 Pa2 Paξ1 Pb1

x1 x2 xξ1

Paξ1+

1

Paξ1+

2

Paξ1+

ξ2

Pb2

xξ1+

1

xξ1+

2

xξ1+

ξ2

· · · Paq✕ξs+

1

Paq✕ξs+

2

Paq Pbs

xq✕ξs+

1

xq✕ξs+

2

xq

❆♣♣❧②✐♥❣ ❘❡❧❛①❡❞ ▼✐rr♦r ❚❤❡♦r②

  • ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ p1
  • ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ❛s xi = xj ❢♦r ❛❧❧ i = j
  • ▼❛① tr❡❡ s✐③❡ ξ + 1✿ ♣r♦✈✐❞❡❞ ♥♦ (ξ + 1)✲❢♦❧❞ ❝♦❧❧✐s✐♦♥
  • ■❢ ξ2q ≤ 2n/67✿ ❛t ❧❡❛st (2n)s·(2n−1)q

2nq

s♦❧✉t✐♦♥s t♦ ✉♥❦♥♦✇♥s ❍✲❝♦❡✣❝✐❡♥t t❡❝❤♥✐q✉❡✿

✶✽ ✴ ✷✸

❝♦✈❡rs ✐♥❞❡♣❡♥❞❡♥t ♣❡r♠✉t❛t✐♦♥s

slide-68
SLIDE 68

❊❉▼

Pa1 Pa2 Paξ1 Pb1

x1 x2 xξ1

Paξ1+

1

Paξ1+

2

Paξ1+

ξ2

Pb2

xξ1+

1

xξ1+

2

xξ1+

ξ2

· · · Paq✕ξs+

1

Paq✕ξs+

2

Paq Pbs

xq✕ξs+

1

xq✕ξs+

2

xq

❆♣♣❧②✐♥❣ ❘❡❧❛①❡❞ ▼✐rr♦r ❚❤❡♦r②

  • ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ p1
  • ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ❛s xi = xj ❢♦r ❛❧❧ i = j
  • ▼❛① tr❡❡ s✐③❡ ξ + 1✿ ♣r♦✈✐❞❡❞ ♥♦ (ξ + 1)✲❢♦❧❞ ❝♦❧❧✐s✐♦♥
  • ■❢ ξ2q ≤ 2n/67✿ ❛t ❧❡❛st (2n)s·(2n−1)q

2nq

s♦❧✉t✐♦♥s t♦ ✉♥❦♥♦✇♥s

  • ❍✲❝♦❡✣❝✐❡♥t t❡❝❤♥✐q✉❡✿ Advprf

EDM(q) ≤ q/2n +

q

ξ+1

  • /2nξ

✶✽ ✴ ✷✸

❝♦✈❡rs ✐♥❞❡♣❡♥❞❡♥t ♣❡r♠✉t❛t✐♦♥s

slide-69
SLIDE 69

❊❲❈❉▼

ν p1 p2 ν t

h(m)

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(ν1, m1, t1), . . . , (νq, mq, tq)}

❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ❛♥❞ ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s ❊①tr❛ ✐ss✉❡✿ ♠❛② ❝♦❧❧✐❞❡

✶✾ ✴ ✷✸

slide-70
SLIDE 70

❊❲❈❉▼

ν p1 p2 ν t

h(m)

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(ν1, m1, t1), . . . , (νq, mq, tq)}

❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ❛♥❞ ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ❙②st❡♠ ♦❢ ❡q✉❛t✐♦♥s ❊①tr❛ ✐ss✉❡✿ ♠❛② ❝♦❧❧✐❞❡

✶✾ ✴ ✷✸

slide-71
SLIDE 71

❊❲❈❉▼

ν p1 p2 ν t

h(m)

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(ν1, m1, t1), . . . , (νq, mq, tq)}
  • ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ νi → p1(νi) =: Pai ❛♥❞

❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ti → p−1

2 (ti) =: Pbi

  • ❙②st❡♠ ♦❢ q ❡q✉❛t✐♦♥s Pai ⊕ Pbi = νi ⊕ h(mi)

❊①tr❛ ✐ss✉❡✿ ♠❛② ❝♦❧❧✐❞❡

✶✾ ✴ ✷✸

slide-72
SLIDE 72

❊❲❈❉▼

ν p1 p2 ν t

h(m)

  • ❡♥❡r❛❧ ❙❡tt✐♥❣
  • ❆❞✈❡rs❛r② ❣❡ts tr❛♥s❝r✐♣t τ = {(ν1, m1, t1), . . . , (νq, mq, tq)}
  • ❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ νi → p1(νi) =: Pai ❛♥❞

❊❛❝❤ t✉♣❧❡ ❝♦rr❡s♣♦♥❞s t♦ ti → p−1

2 (ti) =: Pbi

  • ❙②st❡♠ ♦❢ q ❡q✉❛t✐♦♥s Pai ⊕ Pbi = νi ⊕ h(mi)
  • ❊①tr❛ ✐ss✉❡✿ νi ⊕ h(mi) ♠❛② ❝♦❧❧✐❞❡

✶✾ ✴ ✷✸

slide-73
SLIDE 73

❊❲❈❉▼

Pa1 Pa2 Paξ1 Pb1

ν1 ⊕ h(m1) ν2 ⊕ h ( m2 ) νξ1 ⊕ h(mξ1)

Paξ1+

1

Paξ1+

2

Paξ1+

ξ2

Pb2

νξ1+

1 ⊕ h(mξ1+ 1)

νξ1+

2 ⊕ h(mξ1+ 2)

ν

ξ

1

+ ξ

2

⊕ h ( m

ξ

1

+ ξ

2

)

· · · Paq✕ξs+

1

Paq✕ξs+

2

Paq Pbs

ν

q✕ξ

s

+ 1

⊕ h ( m

q✕ξ

s

+ 1

) νq✕ξs+

2 ⊕ h(m q ✕ ξs + 2)

ν

q

⊕ h ( m

q

)

❆♣♣❧②✐♥❣ ❘❡❧❛①❡❞ ▼✐rr♦r ❚❤❡♦r② ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ♣r♦✈✐❞❡❞ ✐♥ ❛❧❧ tr❡❡s ▼❛① tr❡❡ s✐③❡ ✿ ♣r♦✈✐❞❡❞ ♥♦ ✲❢♦❧❞ ❝♦❧❧✐s✐♦♥ ■❢ ✿

✷✵ ✴ ✷✸

slide-74
SLIDE 74

❊❲❈❉▼

Pa1 Pa2 Paξ1 Pb1

ν1 ⊕ h(m1) ν2 ⊕ h ( m2 ) νξ1 ⊕ h(mξ1)

Paξ1+

1

Paξ1+

2

Paξ1+

ξ2

Pb2

νξ1+

1 ⊕ h(mξ1+ 1)

νξ1+

2 ⊕ h(mξ1+ 2)

ν

ξ

1

+ ξ

2

⊕ h ( m

ξ

1

+ ξ

2

)

· · · Paq✕ξs+

1

Paq✕ξs+

2

Paq Pbs

ν

q✕ξ

s

+ 1

⊕ h ( m

q✕ξ

s

+ 1

) νq✕ξs+

2 ⊕ h(m q ✕ ξs + 2)

ν

q

⊕ h ( m

q

)

❆♣♣❧②✐♥❣ ❘❡❧❛①❡❞ ▼✐rr♦r ❚❤❡♦r②

  • ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ p1
  • ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ♣r♦✈✐❞❡❞ νi ⊕ h(mi) = νj ⊕ h(mj) ✐♥ ❛❧❧ tr❡❡s
  • ▼❛① tr❡❡ s✐③❡ ξ + 1✿ ♣r♦✈✐❞❡❞ ♥♦ (ξ + 1)✲❢♦❧❞ ❝♦❧❧✐s✐♦♥

■❢ ✿

✷✵ ✴ ✷✸

slide-75
SLIDE 75

❊❲❈❉▼

Pa1 Pa2 Paξ1 Pb1

ν1 ⊕ h(m1) ν2 ⊕ h ( m2 ) νξ1 ⊕ h(mξ1)

Paξ1+

1

Paξ1+

2

Paξ1+

ξ2

Pb2

νξ1+

1 ⊕ h(mξ1+ 1)

νξ1+

2 ⊕ h(mξ1+ 2)

ν

ξ

1

+ ξ

2

⊕ h ( m

ξ

1

+ ξ

2

)

· · · Paq✕ξs+

1

Paq✕ξs+

2

Paq Pbs

ν

q✕ξ

s

+ 1

⊕ h ( m

q✕ξ

s

+ 1

) νq✕ξs+

2 ⊕ h(m q ✕ ξs + 2)

ν

q

⊕ h ( m

q

)

❆♣♣❧②✐♥❣ ❘❡❧❛①❡❞ ▼✐rr♦r ❚❤❡♦r②

  • ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ p1
  • ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ♣r♦✈✐❞❡❞ νi ⊕ h(mi) = νj ⊕ h(mj) ✐♥ ❛❧❧ tr❡❡s
  • ▼❛① tr❡❡ s✐③❡ ξ + 1✿ ♣r♦✈✐❞❡❞ ♥♦ (ξ + 1)✲❢♦❧❞ ❝♦❧❧✐s✐♦♥
  • ■❢ ξ2q ≤ 2n/67✿ Advprf

EWCDM(q) ≤ q/2n +

q

2

  • ǫ/2n +

q

ξ+1

  • /2nξ

✷✵ ✴ ✷✸

slide-76
SLIDE 76

❊❉▼❉

x p1 p2 y ✐❞❡♥t✐❝❛❧ ❡q✉✐✈❛❧❡♥t ✐s ❛t ❧❡❛st ❛s s❡❝✉r❡ ❛s ■❢ ✿

✷✶ ✴ ✷✸

slide-77
SLIDE 77

❊❉▼❉

x p1 p2 y x p1 p2 p1 y ✐❞❡♥t✐❝❛❧ ❡q✉✐✈❛❧❡♥t ✐s ❛t ❧❡❛st ❛s s❡❝✉r❡ ❛s ■❢ ✿

✷✶ ✴ ✷✸

slide-78
SLIDE 78

❊❉▼❉

x p1 p2 y x p1 p2 p1 y x p3 p1 y ✐❞❡♥t✐❝❛❧ ❡q✉✐✈❛❧❡♥t ✐s ❛t ❧❡❛st ❛s s❡❝✉r❡ ❛s ■❢ ✿

✷✶ ✴ ✷✸

slide-79
SLIDE 79

❊❉▼❉

x p1 p2 y x p1 p2 p1 y x p3 p1 y ✐❞❡♥t✐❝❛❧ ❡q✉✐✈❛❧❡♥t

  • EDMD ✐s ❛t ❧❡❛st ❛s s❡❝✉r❡ ❛s XoP
  • ■❢ q ≤ 2n/67✿ Advprf

EDMD(D) ≤ q/2n

✷✶ ✴ ✷✸

slide-80
SLIDE 80

❙✐♥❣❧❡✲❑❡② ❱❛r✐❛♥ts❄

❊✭❲❈✮❉▼

x p1 p2 y

h(m)

  • ✏❳♦P ✐♥ t❤❡ ♠✐❞❞❧❡✑

r❡❧✐❡s ♦♥ ✐♥✈❡rt✐♥❣ p2

  • ❚r✐❝❦ ❢❛✐❧s ✐❢ p1 = p2

❊❉▼❉ ✐♥❞❡♣❡♥❞❡♥t✿ ❝❛s❝❛❞✐♥❣ ❤❛s ❧✐♠✐t❡❞ ✐♥✢✉❡♥❝❡ ❙❧✐❞✐♥❣ ✐ss✉❡s ✐❢

❈♦♥❥❡❝t✉r❡✿ ♦♣t✐♠❛❧ s❡❝✉r✐t②

✷✷ ✴ ✷✸

slide-81
SLIDE 81

❙✐♥❣❧❡✲❑❡② ❱❛r✐❛♥ts❄

❊✭❲❈✮❉▼

x p1 p2 y

h(m)

  • ✏❳♦P ✐♥ t❤❡ ♠✐❞❞❧❡✑

r❡❧✐❡s ♦♥ ✐♥✈❡rt✐♥❣ p2

  • ❚r✐❝❦ ❢❛✐❧s ✐❢ p1 = p2

❊❉▼❉

x p1 p2 y

  • p1, p2 ✐♥❞❡♣❡♥❞❡♥t✿

❝❛s❝❛❞✐♥❣ ❤❛s ❧✐♠✐t❡❞ ✐♥✢✉❡♥❝❡

  • ❙❧✐❞✐♥❣ ✐ss✉❡s ✐❢ p1 = p2

❈♦♥❥❡❝t✉r❡✿ ♦♣t✐♠❛❧ s❡❝✉r✐t②

✷✷ ✴ ✷✸

slide-82
SLIDE 82

❙✐♥❣❧❡✲❑❡② ❱❛r✐❛♥ts❄

❊✭❲❈✮❉▼

x p1 p2 y

h(m)

  • ✏❳♦P ✐♥ t❤❡ ♠✐❞❞❧❡✑

r❡❧✐❡s ♦♥ ✐♥✈❡rt✐♥❣ p2

  • ❚r✐❝❦ ❢❛✐❧s ✐❢ p1 = p2

❊❉▼❉

x p1 p2 y

  • p1, p2 ✐♥❞❡♣❡♥❞❡♥t✿

❝❛s❝❛❞✐♥❣ ❤❛s ❧✐♠✐t❡❞ ✐♥✢✉❡♥❝❡

  • ❙❧✐❞✐♥❣ ✐ss✉❡s ✐❢ p1 = p2

❈♦♥❥❡❝t✉r❡✿ ♦♣t✐♠❛❧ 2n s❡❝✉r✐t②

✷✷ ✴ ✷✸

slide-83
SLIDE 83

❈♦♥❝❧✉s✐♦♥

▼✐rr♦r ❚❤❡♦r②

  • P♦✇❡r❢✉❧ ❜✉t ✉♥❞❡r❡st✐♠❛t❡❞ t❡❝❤♥✐q✉❡
  • ■♠♣❧✐❡s ✭❛❧♠♦st✮ ♦♣t✐♠❛❧ s❡❝✉r✐t② ♦❢ ❊✭❲❈✮❉▼
  • ■♠♣❧✐❡s ♦♣t✐♠❛❧ s❡❝✉r✐t② ♦❢ ❊❉▼❉

❖♣❡♥ ◗✉❡st✐♦♥s ❙✐♥❣❧❡✲❦❡② ✈❛r✐❛♥ts❄ ❉✉❛❧ ♦❢ ❊❲❈❉▼❄ ❋✉rt❤❡r ❛♣♣❧✐❝❛t✐♦♥s

❚❤❛♥❦ ②♦✉ ❢♦r ②♦✉r ❛tt❡♥t✐♦♥✦

✷✸ ✴ ✷✸

slide-84
SLIDE 84

❈♦♥❝❧✉s✐♦♥

▼✐rr♦r ❚❤❡♦r②

  • P♦✇❡r❢✉❧ ❜✉t ✉♥❞❡r❡st✐♠❛t❡❞ t❡❝❤♥✐q✉❡
  • ■♠♣❧✐❡s ✭❛❧♠♦st✮ ♦♣t✐♠❛❧ s❡❝✉r✐t② ♦❢ ❊✭❲❈✮❉▼
  • ■♠♣❧✐❡s ♦♣t✐♠❛❧ s❡❝✉r✐t② ♦❢ ❊❉▼❉

❖♣❡♥ ◗✉❡st✐♦♥s

  • ❙✐♥❣❧❡✲❦❡② ✈❛r✐❛♥ts❄
  • ❉✉❛❧ ♦❢ ❊❲❈❉▼❄
  • ❋✉rt❤❡r ❛♣♣❧✐❝❛t✐♦♥s

❚❤❛♥❦ ②♦✉ ❢♦r ②♦✉r ❛tt❡♥t✐♦♥✦

✷✸ ✴ ✷✸

slide-85
SLIDE 85

❙✉♣♣♦rt✐♥❣ ❙❧✐❞❡s ❙❯PP❖❘❚■◆● ❙▲■❉❊❙

✷✹ ✴ ✷✸

slide-86
SLIDE 86

Ps❡✉❞♦r❛♥❞♦♠ P❡r♠✉t❛t✐♦♥

IC

Ek p

blockcipher random permutation

  • ❚✇♦ ♦r❛❝❧❡s✿ Ek ✭❢♦r s❡❝r❡t r❛♥❞♦♠ ❦❡② k✮ ❛♥❞ p

❉✐st✐♥❣✉✐s❤❡r ❤❛s q✉❡r② ❛❝❝❡ss t♦ ❡✐t❤❡r ♦r tr✐❡s t♦ ❞❡t❡r♠✐♥❡ ✇❤✐❝❤ ♦r❛❝❧❡ ✐t ❝♦♠♠✉♥✐❝❛t❡s ✇✐t❤

✷✺ ✴ ✷✸

slide-87
SLIDE 87

Ps❡✉❞♦r❛♥❞♦♠ P❡r♠✉t❛t✐♦♥

IC

Ek p

distinguisher D

blockcipher random permutation

  • ❚✇♦ ♦r❛❝❧❡s✿ Ek ✭❢♦r s❡❝r❡t r❛♥❞♦♠ ❦❡② k✮ ❛♥❞ p
  • ❉✐st✐♥❣✉✐s❤❡r D ❤❛s q✉❡r② ❛❝❝❡ss t♦ ❡✐t❤❡r Ek ♦r p

tr✐❡s t♦ ❞❡t❡r♠✐♥❡ ✇❤✐❝❤ ♦r❛❝❧❡ ✐t ❝♦♠♠✉♥✐❝❛t❡s ✇✐t❤

✷✺ ✴ ✷✸

slide-88
SLIDE 88

Ps❡✉❞♦r❛♥❞♦♠ P❡r♠✉t❛t✐♦♥

IC

Ek p

distinguisher D

blockcipher random permutation

  • ❚✇♦ ♦r❛❝❧❡s✿ Ek ✭❢♦r s❡❝r❡t r❛♥❞♦♠ ❦❡② k✮ ❛♥❞ p
  • ❉✐st✐♥❣✉✐s❤❡r D ❤❛s q✉❡r② ❛❝❝❡ss t♦ ❡✐t❤❡r Ek ♦r p
  • D tr✐❡s t♦ ❞❡t❡r♠✐♥❡ ✇❤✐❝❤ ♦r❛❝❧❡ ✐t ❝♦♠♠✉♥✐❝❛t❡s ✇✐t❤

✷✺ ✴ ✷✸

slide-89
SLIDE 89

Ps❡✉❞♦r❛♥❞♦♠ P❡r♠✉t❛t✐♦♥

IC

Ek p

distinguisher D

blockcipher random permutation

  • ❚✇♦ ♦r❛❝❧❡s✿ Ek ✭❢♦r s❡❝r❡t r❛♥❞♦♠ ❦❡② k✮ ❛♥❞ p
  • ❉✐st✐♥❣✉✐s❤❡r D ❤❛s q✉❡r② ❛❝❝❡ss t♦ ❡✐t❤❡r Ek ♦r p
  • D tr✐❡s t♦ ❞❡t❡r♠✐♥❡ ✇❤✐❝❤ ♦r❛❝❧❡ ✐t ❝♦♠♠✉♥✐❝❛t❡s ✇✐t❤

Advprp

E (D) =

  • Pr
  • DEk = 1
  • − Pr [Dp = 1]
  • ✷✺ ✴ ✷✸
slide-90
SLIDE 90

Ps❡✉❞♦r❛♥❞♦♠ ❋✉♥❝t✐♦♥

IC

Fk f

distinguisher D

  • ne-way function

random function

  • ❚✇♦ ♦r❛❝❧❡s✿ Fk ✭❢♦r s❡❝r❡t r❛♥❞♦♠ ❦❡② k✮ ❛♥❞ f
  • ❉✐st✐♥❣✉✐s❤❡r D ❤❛s q✉❡r② ❛❝❝❡ss t♦ ❡✐t❤❡r Fk ♦r f
  • D tr✐❡s t♦ ❞❡t❡r♠✐♥❡ ✇❤✐❝❤ ♦r❛❝❧❡ ✐t ❝♦♠♠✉♥✐❝❛t❡s ✇✐t❤

Advprf

F (D) =

  • Pr
  • DFk = 1
  • − Pr
  • Df = 1
  • ✷✻ ✴ ✷✸
slide-91
SLIDE 91

❈♦✉♥t❡r ▼♦❞❡ ❇❛s❡❞ ♦♥ Ps❡✉❞♦r❛♥❞♦♠ P❡r♠✉t❛t✐♦♥

n + 1 n + 2 n + ℓ Ek Ek · · · · · · Ek m1 c1 m2 c2 mℓ cℓ

❙❡❝✉r✐t② ❜♦✉♥❞✿ ❈❚❘ ✐s s❡❝✉r❡ ❛s ❧♦♥❣ ❛s✿

✐s ❛ s❡❝✉r❡ P❘P ◆✉♠❜❡r ♦❢ ❡♥❝r②♣t❡❞ ❜❧♦❝❦s

✷✼ ✴ ✷✸

slide-92
SLIDE 92

❈♦✉♥t❡r ▼♦❞❡ ❇❛s❡❞ ♦♥ Ps❡✉❞♦r❛♥❞♦♠ P❡r♠✉t❛t✐♦♥

n + 1 n + 2 n + ℓ Ek Ek · · · · · · Ek m1 c1 m2 c2 mℓ cℓ

  • ❙❡❝✉r✐t② ❜♦✉♥❞✿

Advcpa

CTR[E](σ) ≤ Advprp E (σ) +

σ 2

  • /2n

❈❚❘ ✐s s❡❝✉r❡ ❛s ❧♦♥❣ ❛s✿

✐s ❛ s❡❝✉r❡ P❘P ◆✉♠❜❡r ♦❢ ❡♥❝r②♣t❡❞ ❜❧♦❝❦s

✷✼ ✴ ✷✸

slide-93
SLIDE 93

❈♦✉♥t❡r ▼♦❞❡ ❇❛s❡❞ ♦♥ Ps❡✉❞♦r❛♥❞♦♠ P❡r♠✉t❛t✐♦♥

n + 1 n + 2 n + ℓ Ek Ek · · · · · · Ek m1 c1 m2 c2 mℓ cℓ

  • ❙❡❝✉r✐t② ❜♦✉♥❞✿

Advcpa

CTR[E](σ) ≤ Advprp E (σ) +

σ 2

  • /2n
  • ❈❚❘[E] ✐s s❡❝✉r❡ ❛s ❧♦♥❣ ❛s✿
  • Ek ✐s ❛ s❡❝✉r❡ P❘P
  • ◆✉♠❜❡r ♦❢ ❡♥❝r②♣t❡❞ ❜❧♦❝❦s σ ≪ 2n/2

✷✼ ✴ ✷✸

slide-94
SLIDE 94

❈♦✉♥t❡r ▼♦❞❡ ❇❛s❡❞ ♦♥ Ps❡✉❞♦r❛♥❞♦♠ P❡r♠✉t❛t✐♦♥

n + 1 n + 2 n + ℓ Ek Ek · · · · · · Ek m1 c1 m2 c2 mℓ cℓ

  • mi ⊕ ci ✐s ❞✐st✐♥❝t ❢♦r ❛❧❧ σ ❜❧♦❝❦s
  • ❯♥❧✐❦❡❧② t♦ ❤❛♣♣❡♥ ❢♦r r❛♥❞♦♠ str✐♥❣

❉✐st✐♥❣✉✐s❤✐♥❣ ❛tt❛❝❦ ✐♥ ❜❧♦❝❦s✿

✷✽ ✴ ✷✸

slide-95
SLIDE 95

❈♦✉♥t❡r ▼♦❞❡ ❇❛s❡❞ ♦♥ Ps❡✉❞♦r❛♥❞♦♠ P❡r♠✉t❛t✐♦♥

n + 1 n + 2 n + ℓ Ek Ek · · · · · · Ek m1 c1 m2 c2 mℓ cℓ

  • mi ⊕ ci ✐s ❞✐st✐♥❝t ❢♦r ❛❧❧ σ ❜❧♦❝❦s
  • ❯♥❧✐❦❡❧② t♦ ❤❛♣♣❡♥ ❢♦r r❛♥❞♦♠ str✐♥❣
  • ❉✐st✐♥❣✉✐s❤✐♥❣ ❛tt❛❝❦ ✐♥ σ ≈ 2n/2 ❜❧♦❝❦s✿

σ 2

  • /2n Advcpa

CTR[E](σ)

✷✽ ✴ ✷✸

slide-96
SLIDE 96

❈♦✉♥t❡r ▼♦❞❡ ❇❛s❡❞ ♦♥ Ps❡✉❞♦r❛♥❞♦♠ ❋✉♥❝t✐♦♥

n + 1 n + 2 n + ℓ Fk Fk · · · · · · Fk m1 c1 m2 c2 mℓ cℓ

❙❡❝✉r✐t② ❜♦✉♥❞✿ ❈❚❘ ✐s s❡❝✉r❡ ❛s ❧♦♥❣ ❛s ✐s ❛ s❡❝✉r❡ P❘❋ ❇✐rt❤❞❛② ❜♦✉♥❞ s❡❝✉r✐t② ❧♦ss ❞✐s❛♣♣❡❛r❡❞

✷✾ ✴ ✷✸

slide-97
SLIDE 97

❈♦✉♥t❡r ▼♦❞❡ ❇❛s❡❞ ♦♥ Ps❡✉❞♦r❛♥❞♦♠ ❋✉♥❝t✐♦♥

n + 1 n + 2 n + ℓ Fk Fk · · · · · · Fk m1 c1 m2 c2 mℓ cℓ

  • ❙❡❝✉r✐t② ❜♦✉♥❞✿

Advcpa

CTR[F](σ) ≤ Advprf F (σ)

❈❚❘ ✐s s❡❝✉r❡ ❛s ❧♦♥❣ ❛s ✐s ❛ s❡❝✉r❡ P❘❋ ❇✐rt❤❞❛② ❜♦✉♥❞ s❡❝✉r✐t② ❧♦ss ❞✐s❛♣♣❡❛r❡❞

✷✾ ✴ ✷✸

slide-98
SLIDE 98

❈♦✉♥t❡r ▼♦❞❡ ❇❛s❡❞ ♦♥ Ps❡✉❞♦r❛♥❞♦♠ ❋✉♥❝t✐♦♥

n + 1 n + 2 n + ℓ Fk Fk · · · · · · Fk m1 c1 m2 c2 mℓ cℓ

  • ❙❡❝✉r✐t② ❜♦✉♥❞✿

Advcpa

CTR[F](σ) ≤ Advprf F (σ)

  • ❈❚❘[F] ✐s s❡❝✉r❡ ❛s ❧♦♥❣ ❛s Fk ✐s ❛ s❡❝✉r❡ P❘❋
  • ❇✐rt❤❞❛② ❜♦✉♥❞ s❡❝✉r✐t② ❧♦ss ❞✐s❛♣♣❡❛r❡❞

✷✾ ✴ ✷✸

slide-99
SLIDE 99

❈♦✉♥t❡r ▼♦❞❡ ❇❛s❡❞ ♦♥ ❳♦P

· · · · · · Ek Ek Ek Ek Ek Ek

0n+1 1n+1 0n+2 1n+2 0n+ℓ 1n+ℓ

m1 c1 m2 c2 mℓ cℓ

  • ❙❡❝✉r✐t② ❜♦✉♥❞✿

Advcpa

CTR[XoP](σ) ≤ Advprf XoP(σ)

❇❡②♦♥❞ ❜✐rt❤❞❛②✲❜♦✉♥❞ ❜✉t ✷① ❛s ❡①♣❡♥s✐✈❡ ❛s ❈❚❘

✸✵ ✴ ✷✸

slide-100
SLIDE 100

❈♦✉♥t❡r ▼♦❞❡ ❇❛s❡❞ ♦♥ ❳♦P

· · · · · · Ek Ek Ek Ek Ek Ek

0n+1 1n+1 0n+2 1n+2 0n+ℓ 1n+ℓ

m1 c1 m2 c2 mℓ cℓ

  • ❙❡❝✉r✐t② ❜♦✉♥❞✿

Advcpa

CTR[XoP](σ) ≤ Advprf XoP(σ)

≤ Advprp

E (2σ) + σ/2n

❇❡②♦♥❞ ❜✐rt❤❞❛②✲❜♦✉♥❞ ❜✉t ✷① ❛s ❡①♣❡♥s✐✈❡ ❛s ❈❚❘

✸✵ ✴ ✷✸

slide-101
SLIDE 101

❈♦✉♥t❡r ▼♦❞❡ ❇❛s❡❞ ♦♥ ❳♦P

· · · · · · Ek Ek Ek Ek Ek Ek

0n+1 1n+1 0n+2 1n+2 0n+ℓ 1n+ℓ

m1 c1 m2 c2 mℓ cℓ

  • ❙❡❝✉r✐t② ❜♦✉♥❞✿

Advcpa

CTR[XoP](σ) ≤ Advprf XoP(σ)

≤ Advprp

E (2σ) + σ/2n

  • ❇❡②♦♥❞ ❜✐rt❤❞❛②✲❜♦✉♥❞ ❜✉t ✷① ❛s ❡①♣❡♥s✐✈❡ ❛s ❈❚❘[E]

✸✵ ✴ ✷✸

slide-102
SLIDE 102

❈❊◆❈ ❜② ■✇❛t❛ ❬■✇❛✵✻❪

· · · · · · · · · Ek Ek Ek Ek Ek Ek Ek Ek

0n+1 1n+1 0n+1 1n+2 0n+1 1n+w 0n+2 1n+w+1

m1 c1 m2 c2 mw cw mw+1 cw+1

  • ❖♥❡ s✉❜❦❡② ✉s❡❞ ❢♦r w ≥ 1 ❡♥❝r②♣t✐♦♥s

❆❧♠♦st ❛s ❡①♣❡♥s✐✈❡ ❛s ❈❚❘ ✷✵✵✻✿ s❡❝✉r✐t②✱ ❝♦♥❥❡❝t✉r❡❞ ❬■✇❛✵✻❪ ✷✵✶✻✿ s❡❝✉r✐t② ❬■▼❱✶✻❪

✸✶ ✴ ✷✸

slide-103
SLIDE 103

❈❊◆❈ ❜② ■✇❛t❛ ❬■✇❛✵✻❪

· · · · · · · · · Ek Ek Ek Ek Ek Ek Ek Ek

0n+1 1n+1 0n+1 1n+2 0n+1 1n+w 0n+2 1n+w+1

m1 c1 m2 c2 mw cw mw+1 cw+1

  • ❖♥❡ s✉❜❦❡② ✉s❡❞ ❢♦r w ≥ 1 ❡♥❝r②♣t✐♦♥s
  • ❆❧♠♦st ❛s ❡①♣❡♥s✐✈❡ ❛s ❈❚❘[E]

✷✵✵✻✿ s❡❝✉r✐t②✱ ❝♦♥❥❡❝t✉r❡❞ ❬■✇❛✵✻❪ ✷✵✶✻✿ s❡❝✉r✐t② ❬■▼❱✶✻❪

✸✶ ✴ ✷✸

slide-104
SLIDE 104

❈❊◆❈ ❜② ■✇❛t❛ ❬■✇❛✵✻❪

· · · · · · · · · Ek Ek Ek Ek Ek Ek Ek Ek

0n+1 1n+1 0n+1 1n+2 0n+1 1n+w 0n+2 1n+w+1

m1 c1 m2 c2 mw cw mw+1 cw+1

  • ❖♥❡ s✉❜❦❡② ✉s❡❞ ❢♦r w ≥ 1 ❡♥❝r②♣t✐♦♥s
  • ❆❧♠♦st ❛s ❡①♣❡♥s✐✈❡ ❛s ❈❚❘[E]
  • ✷✵✵✻✿ 22n/3 s❡❝✉r✐t②✱ 2n/w ❝♦♥❥❡❝t✉r❡❞ ❬■✇❛✵✻❪

✷✵✶✻✿ s❡❝✉r✐t② ❬■▼❱✶✻❪

✸✶ ✴ ✷✸

slide-105
SLIDE 105

❈❊◆❈ ❜② ■✇❛t❛ ❬■✇❛✵✻❪

· · · · · · · · · Ek Ek Ek Ek Ek Ek Ek Ek

0n+1 1n+1 0n+1 1n+2 0n+1 1n+w 0n+2 1n+w+1

m1 c1 m2 c2 mw cw mw+1 cw+1

  • ❖♥❡ s✉❜❦❡② ✉s❡❞ ❢♦r w ≥ 1 ❡♥❝r②♣t✐♦♥s
  • ❆❧♠♦st ❛s ❡①♣❡♥s✐✈❡ ❛s ❈❚❘[E]
  • ✷✵✵✻✿ 22n/3 s❡❝✉r✐t②✱ 2n/w ❝♦♥❥❡❝t✉r❡❞ ❬■✇❛✵✻❪
  • ✷✵✶✻✿ 2n/w s❡❝✉r✐t② ❬■▼❱✶✻❪

✸✶ ✴ ✷✸

slide-106
SLIDE 106

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❈❊◆❈

Pa1 Pb1 Pb2 Pb3 Pbw

y1 y2 y3 y

w

Pa2 Pbw+1 Pbw+2 Pbw+3 Pb2w

yw+1 yw+2 yw+3 y

2 w

· · · Paq/w Pbq✕w+1 Pbq✕w+2 Pbq✕w+3 Pbq

yq✕w+1 yq✕w+2 yq✕w+3 y

q

❆♣♣❧②✐♥❣ ▼✐rr♦r ❚❤❡♦r② ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ♣r♦✈✐❞❡❞ t❤❛t ❢♦r ❛❧❧ ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ❛♥❞ ✇✐t❤✐♥ ❛❧❧ ✲❜❧♦❝❦s ▼❛①✐♠✉♠ tr❡❡ s✐③❡ ■❢ ✿ ❛t ❧❡❛st s♦❧✉t✐♦♥s t♦ ✉♥❦♥♦✇♥s ❍✲❝♦❡✣❝✐❡♥t t❡❝❤♥✐q✉❡✿

✸✷ ✴ ✷✸

slide-107
SLIDE 107

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❈❊◆❈

Pa1 Pb1 Pb2 Pb3 Pbw

y1 y2 y3 y

w

Pa2 Pbw+1 Pbw+2 Pbw+3 Pb2w

yw+1 yw+2 yw+3 y

2 w

· · · Paq/w Pbq✕w+1 Pbq✕w+2 Pbq✕w+3 Pbq

yq✕w+1 yq✕w+2 yq✕w+3 y

q

❆♣♣❧②✐♥❣ ▼✐rr♦r ❚❤❡♦r②

  • ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ p
  • ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ♣r♦✈✐❞❡❞ t❤❛t yi = 0 ❢♦r ❛❧❧ i

◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ❛♥❞ yi = yj ✇✐t❤✐♥ ❛❧❧ w✲❜❧♦❝❦s

  • ▼❛①✐♠✉♠ tr❡❡ s✐③❡ w + 1

■❢ ✿ ❛t ❧❡❛st s♦❧✉t✐♦♥s t♦ ✉♥❦♥♦✇♥s ❍✲❝♦❡✣❝✐❡♥t t❡❝❤♥✐q✉❡✿

✸✷ ✴ ✷✸

slide-108
SLIDE 108

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❈❊◆❈

Pa1 Pb1 Pb2 Pb3 Pbw

y1 y2 y3 y

w

Pa2 Pbw+1 Pbw+2 Pbw+3 Pb2w

yw+1 yw+2 yw+3 y

2 w

· · · Paq/w Pbq✕w+1 Pbq✕w+2 Pbq✕w+3 Pbq

yq✕w+1 yq✕w+2 yq✕w+3 y

q

❆♣♣❧②✐♥❣ ▼✐rr♦r ❚❤❡♦r②

  • ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ p
  • ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ♣r♦✈✐❞❡❞ t❤❛t yi = 0 ❢♦r ❛❧❧ i

◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ❛♥❞ yi = yj ✇✐t❤✐♥ ❛❧❧ w✲❜❧♦❝❦s

  • ▼❛①✐♠✉♠ tr❡❡ s✐③❡ w + 1
  • ■❢ 2w2q ≤ 2n/67✿ ❛t ❧❡❛st (2n)r

2nq

s♦❧✉t✐♦♥s t♦ ✉♥❦♥♦✇♥s ❍✲❝♦❡✣❝✐❡♥t t❡❝❤♥✐q✉❡✿

✸✷ ✴ ✷✸

slide-109
SLIDE 109

▼✐rr♦r ❚❤❡♦r② ❆♣♣❧✐❡❞ t♦ ❈❊◆❈

Pa1 Pb1 Pb2 Pb3 Pbw

y1 y2 y3 y

w

Pa2 Pbw+1 Pbw+2 Pbw+3 Pb2w

yw+1 yw+2 yw+3 y

2 w

· · · Paq/w Pbq✕w+1 Pbq✕w+2 Pbq✕w+3 Pbq

yq✕w+1 yq✕w+2 yq✕w+3 y

q

❆♣♣❧②✐♥❣ ▼✐rr♦r ❚❤❡♦r②

  • ❈✐r❝❧❡✲❢r❡❡✿ ♥♦ ❝♦❧❧✐s✐♦♥s ✐♥ ✐♥♣✉ts t♦ p
  • ◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ♣r♦✈✐❞❡❞ t❤❛t yi = 0 ❢♦r ❛❧❧ i

◆♦♥✲❞❡❣❡♥❡r❛t❡✿ ❛♥❞ yi = yj ✇✐t❤✐♥ ❛❧❧ w✲❜❧♦❝❦s

  • ▼❛①✐♠✉♠ tr❡❡ s✐③❡ w + 1
  • ■❢ 2w2q ≤ 2n/67✿ ❛t ❧❡❛st (2n)r

2nq

s♦❧✉t✐♦♥s t♦ ✉♥❦♥♦✇♥s

  • ❍✲❝♦❡✣❝✐❡♥t t❡❝❤♥✐q✉❡✿ Advcpa

CENC(q) ≤ q/2n + wq/2n+1

✸✷ ✴ ✷✸

slide-110
SLIDE 110

◆❛✐✈❡ P❘P✲P❘❋ ❈♦♥✈❡rs✐♦♥

IC

Fk = Ek f

distinguisher D

blockcipher random function

P❘P✲P❘❋ ❙✇✐t❝❤

  • ❙✐♠♣❧② ✈✐❡✇ Ek ❛s ❛ P❘❋

❞♦❡s ♥♦t ❡①♣♦s❡ ❝♦❧❧✐s✐♦♥s ❜✉t ❞♦❡s ❝❛♥ ❜❡ ❞✐st✐♥❣✉✐s❤❡❞ ❢r♦♠ ✐♥ q✉❡r✐❡s

✸✸ ✴ ✷✸

slide-111
SLIDE 111

◆❛✐✈❡ P❘P✲P❘❋ ❈♦♥✈❡rs✐♦♥

IC

Fk = Ek f

distinguisher D

blockcipher random function

P❘P✲P❘❋ ❙✇✐t❝❤

  • ❙✐♠♣❧② ✈✐❡✇ Ek ❛s ❛ P❘❋
  • Ek ❞♦❡s ♥♦t ❡①♣♦s❡ ❝♦❧❧✐s✐♦♥s ❜✉t f ❞♦❡s
  • Ek ❝❛♥ ❜❡ ❞✐st✐♥❣✉✐s❤❡❞ ❢r♦♠ f ✐♥ ≈ 2n/2 q✉❡r✐❡s

q 2

  • /2n Advprf

E (q) ≤ Advprp E (q) +

q 2

  • /2n

✸✸ ✴ ✷✸

slide-112
SLIDE 112

❇❡②♦♥❞ ❇✐rt❤❞❛② ❇♦✉♥❞ P❘P✲P❘❋ ❈♦♥✈❡rs✐♦♥✿ ❚r✉♥❝❛t✐♦♥

❚r✉♥❝❛t✐♦♥

x p2 p1

tr✉♥❝ tr✉♥❝

y

  • ❋✐rst s✉❣❣❡st❡❞ ❜② ❍❛❧❧ ❡t ❛❧✳ ❬❍❲❑❙✾✽❪
  • ❙❡❝✉r❡ ✉♣ t♦ 23n/4 q✉❡r✐❡s ❬❙t❛✼✽✱❇■✾✾✱●●✶✻❪
  • ❆♣♣❧✐❝❛t✐♦♥✿ ●❈▼✲❙■❱

✸✹ ✴ ✷✸