Abstract

A circuit C compresses a function f : {0, 1}n → {0, 1}m if given an input x ∈ {0, 1}n the circuit C can shrink x to a shorter e-bit string x' such that later, a computationally-unbounded solver D will be able to compute f(x) based on x'. In this paper we study the existence of functions which are incompressible by circuits of some fixed polynomial size s = nc. Motivated by cryptographic applications, we focus on average-case (e, e) incompressibility, which guarantees that on a random input x ∈ {0, 1}n, for every size s circuit C : {0, 1}n → {0, 1}e and any unbounded solver D, the success probability Prx[D(C(x)) = f(x)] is upper-bounded by 2-m + e. While this notion of incompressibility appeared in several works (e.g., Dubrov and Ishai [12]), so far no explicit constructions of efficiently computable incompressible functions were known. In this work we present the following results:1. Assuming that E is hard for exponential size nondeterministic circuits, we construct a polynomial time computable boolean function f : {0, 1}n → {0, 1} which is incompressible by size nc circuits with communication e = (1 - o(1)) · n and error e = n-c. Our technique generalizes to the case of PRGs against nonboolean circuits, improving and simplifying the previous construction of Shaltiel and Artemenko [5].2. We show that it is possible to achieve negligible error parameter e = n-ω(1) for nonboolean functions. Specifically, assuming that E is hard for exponential size Σ3-circuits, we construct a nonboolean function f : {0, 1}n → {0, 1}m which is incompressible by size nc circuits with e = Ω(n) and extremely small e = n-c · 2-m. Our construction combines the techniques of Trevisan and Vadhan [47] with a new notion of relative error deterministic extractor which may be of independent interest.3. We show that the task of constructing an incompressible boolean function f : {0, 1}n → {0, 1} with negligible error parameter e cannot be achieved by proof techniques. Namely, nondeterministic reductions (or even Σi reductions) cannot get e = n-ω(1) for boolean incompressible functions. Our results also apply to constructions of standard Nisan-Wigderson type PRGs and (standard) boolean functions that are hard on average, explaining, in retrospective, the limitations of existing constructions. Our impossibility result builds on an approach of Shaltiel and Viola [40].

Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call