BGV12,论文:(Leveled) Fully Homomorphic Encryption without Bootstrapping
密钥交换
⚠️
- 矩阵\(A_{N*n_2}\)
- 矩阵\(B_{N*n_2}\):“矩阵\(A\)+\(powersof2(s_1)\)”,具体为:
- 所以\(B.s_2=(2e_2+Powersof2(s_1))\):
- 应该是:\(\mathbf{c}_2=B^T\cdot \mathsf{BitDecomp}(\mathbf{c}_1)\):其中\(\mathsf{BitDecomp}(\mathbf{c_1)}\)大小为\(N*1\),\(B\)大小为\(N*n_2\)