Concrete OT Clause Samples

Concrete OT. In this section, we recall a concrete UC-secure oblivious transfer protocol due to Chou and ▇▇▇▇▇▇▇ [CO15]. While they consider the general case of 1-out- of-n transfer, we only consider n = 2. Say m 1-out-of-2 OTs are performed. The protocol requires the sender to compute m + 2 exponentiations, and the receiver to compute 2m exponentiations, for a total of 3m + 2 exponentiations. Figure 24 shows a summary of the protocol. Note that this construction does require a random oracle.