In Zero-Knowledge Proof dove prendiamo l'analogia di Peggy (Prover) e Victor (Verifier):
In this story, Peggy has uncovered the secret word used to open a magic door in a cave. The cave is shaped like a circle, with the entrance on one side and the magic door blocking the opposite side. Victor says he'll pay her for the secret, but not until he's sure that she really knows it. Peggy says she'll tell him the secret, but not until she receives the money. They devise a scheme by which Peggy can prove that she knows the word without telling it to Victor.
First, Victor waits outside the cave as Peggy goes in. They label the left and right paths from the entrance A and B. Peggy randomly takes either path A or B. Then, Victor enters the cave and shouts the name of the path he wants her to use to return, either A or B, chosen at random. Providing she really does know the magic word, this is easy: she opens the door, if necessary, and returns along the desired path. Note that Victor does not know which path she has gone down.
However, suppose she did not know the word. Then, she would only be able to return by the named path if Victor were to give the name of the same path that she had entered by. Since Victor would choose A or B at random, he would have a 50% chance of guessing correctly. If they were to repeat this trick many times, say 20 times in a row, her chance of successfully anticipating all of Victor's requests would become vanishingly small. Thus, if Peggy reliably appears at the exit Victor names, he can conclude that she is very likely to know the secret word.
Il seguente metodo di verifica è abbastanza convincente per me:
-
Victor attraversa entrambi i corridoi A e B e si assicura che non c'è modo di andare dall'altra parte (poiché Victor non sa nulla di segreto, è convinto che sia vero).
-
Potrebbe andare all'ingresso del corridoio A, chiedere a Peggy di attraversare l'ingresso B e arrivare dalla fine di A. (Peggy fa, e viene fuori dalla fine di A)
-
Victor procederà anche nella direzione opposta a quella in cui si trova all'ingresso di B e chiederà a Peggy di venire alla fine di B dopo aver attraversato A.
-
Se Peggy poteva fare sia il 2 che il 3, Victor è convinto che Peggy conosca il segreto.
Sento che questo metodo è sbagliato e mi chiedo perché. Quindi, perché dovrebbe essere preferito il metodo classico? Quali sono i punti deboli di questo metodo?