Skip to content

Inquiry about PLONK Proving and Verifying keys. #1135

Answered by ThomasPiellard
Ghost8345 asked this question in Q&A
Discussion options

You must be logged in to vote

Hello, yes it's intended, in fact using the SRS in Lagrange form allows for some optimisations in the plonk prover. We need to do it for each circuit yes, but with the same original SRS so no need to re run a ceremony, the base SRS is still universal. We could avoid doing that by using the original SRS all the way but the prover will be slightly less efficient, we contemplated using an option for that but we decided to keep the version where the SRS in Lagrange form is needed

Replies: 1 comment 2 replies

Comment options

You must be logged in to vote
2 replies
@ivokub
Comment options

@gbotrel
Comment options

Answer selected by Ghost8345
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
4 participants