Multi-Polynomial Commitment Scheme
The KZG commitment scheme is as follows:
Commitment:
Verification:
Verification is done with the following equality:
Note that KZG enjoys the homomorphic property, which means that if ΞΌ1 and ΞΌ2 represent commitments to polynomials π1 and π2 respectively, then the sum of ΞΌ1 and ΞΌ2 is a commitment to their sum of polynomials π1 + π2. This homomorphic property enables an optimization when verifying multiple commitments ΞΌ1, . . . , ΞΌπ that are claimed to evaluate to values π£1, . . . , π£π at a shared point π§ β β€π.
Last updated