Security of quantum bit-string generation

被引:12
作者
Barrett, J [1 ]
Massar, S [1 ]
机构
[1] Free Univ Brussels, Ctr Quantum Informat & Commun, B-1050 Brussels, Belgium
来源
PHYSICAL REVIEW A | 2004年 / 70卷 / 05期
关键词
D O I
10.1103/PhysRevA.70.052310
中图分类号
O43 [光学];
学科分类号
070207 ; 0803 ;
摘要
We consider the cryptographic task of bit-string generation. This is a generalization of coin tossing in which two mistrustful parties wish to generate a string of random bits such that an honest party can be sure that the other cannot have biased the string too much. We consider a quantum protocol for this task, originally introduced in Phys. Rev. A 69, 022322 (2004), that is feasible with present day technology. We introduce security conditions based on the average bias of the bits and the Shannon entropy of the string. For each, we prove rigorous security bounds for this protocol in both noiseless and noisy conditions under the most general attacks allowed by quantum mechanics. Roughly speaking, in the absence of noise, a cheater can only bias significantly a vanishing fraction of the bits, whereas in the presence of noise, a cheater can bias a constant fraction, with this fraction depending quantitatively on the level of noise. We also discuss classical protocols for the same task, deriving upper bounds on how well a classical protocol can perform. This enables the determination of how much noise the quantum protocol can tolerate while still outperforming classical protocols. We raise several conjectures concerning both quantum and classical possibilities for large n cryptography. An experiment corresponding to the scheme analyzed in this paper has been performed and is reported elsewhere.
引用
收藏
页码:052310 / 1
页数:11
相关论文
共 21 条
[11]   Coin tossing is strictly weaker than bit commitment [J].
Kent, A .
PHYSICAL REVIEW LETTERS, 1999, 83 (25) :5382-5384
[12]  
KITAEV AY, 2002, UNPUB QIP 2003
[13]  
LAMOUREUX LP, QUANTPH0408121
[14]   Why quantum bit commitment and ideal quantum coin tossing are impossible [J].
Lo, HK ;
Chau, HF .
PHYSICA D-NONLINEAR PHENOMENA, 1998, 120 (1-2) :177-187
[15]   Is quantum bit commitment really possible? [J].
Lo, HK ;
Chau, HF .
PHYSICAL REVIEW LETTERS, 1997, 78 (17) :3410-3413
[16]   Unconditionally secure quantum bit commitment is impossible [J].
Mayers, D .
PHYSICAL REVIEW LETTERS, 1997, 78 (17) :3414-3417
[17]  
MOLINATERRIZA G, QUANTPH0404027
[18]  
NIELSEN MA, 2000, QUANTUM COMPUTATION, pCH9
[19]   Simple proof of security of the BB84 quantum key distribution protocol [J].
Shor, PW ;
Preskill, J .
PHYSICAL REVIEW LETTERS, 2000, 85 (02) :441-444
[20]   Quantum protocol for cheat-sensitive weak coin flipping [J].
Spekkens, RW ;
Rudolph, T .
PHYSICAL REVIEW LETTERS, 2002, 89 (22)