Round-Optimal, Fully Secure Distributed Key Generation
Jonathan Katz
Abstract
Protocols for distributed (threshold) key generation (DKG) in the discrete-logarithm setting have received a tremendous amount of attention in the past few years. Several synchronous DKG protocols have been proposed, but most such protocols are not fully secure: they either allow corrupted parties to bias the key, or are not robust and allow malicious parties to prevent successful generation of a key.
We explore the round complexity of fully secure DKG in the honest-majority setting where it is feasible. We show the impossibility of one-round, unbiased DKG protocols (even satisfying weaker notions of security), regardless of any prior setup. On the positive side, we show various round-optimal protocols for fully secure DKG offering tradeoffs in terms of their efficiency, necessary setup, and required assumptions.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Cited by top-tier papers5
- PEReDi: Privacy-Enhanced, Regulated and Distributed Central Bank Digital CurrenciesAggelos Kiayias, Markulf Kohlweiss, Amirreza SarenchehCCS 2022 · 33 citations
- Practical Mempool Privacy via One-time Setup Batched Threshold EncryptionArka Rai Choudhuri, Sanjam Garg, Guru-Vamsi Policharla, Mingyuan WangUSENIX Security 2025
- SoK: Dlog-Based Distributed Key GenerationRenas Bacho, Alireza KavousiS&P 2025
- Anchor-DKG: Distributed Key Generation with Repeating PartiesHanwen Feng, Qiang Tang, Sri AravindaKrishnan ThyagarajanCCS 2026
- How to Back Up High-Value Secret KeysSanjam Garg, Noemi Glaeser, Abhishek Jain, Michael Lodder et al.CCS 2026
Related papers
- Practical Asynchronous High-threshold Distributed Key Generation and Distributed Polynomial SamplingSourav Das, Zhuolun Xiang, Lefteris Kokoris-Kogias, Ling RenUSENIX Security 2023
- Practical Asynchronous Distributed Key GenerationSourav Das, Thomas Yurek, Zhuolun Xiang, Andrew Miller et al.S&P 2022 · 136 citations
- Network-Agnostic Security Comes (Almost) for Free in DKG and MPCRenas Bacho, Daniel Collins, Chen-Da Liu-Zhang, Julian LossCRYPTO 2023 · 19 citations
- Sublinear-Round Broadcast without Trusted SetupAndreea B. Alexandru, Julian Loss, Charalampos Papamanthou, Giorgos Tsimos et al.SODA 2025 · 1 citation
- Adaptively Secure, Universally Composable Distributed Generation of Discrete-Logarithm Based Keys from Standard AssumptionsHanna Ek, Kelsey Melissaris, Lawrence RoyCRYPTO 2026
