Skip to main content

PaddedSumcheckDecorator

Struct PaddedSumcheckDecorator 

Source
pub struct PaddedSumcheckDecorator<F: Field, Inner> { /* private fields */ }
Expand description

Decorator that pads the number of variables of an inner SumcheckProver.

Given an inner prover for the hypercube sum of an n-variate multilinear $f(X_0, \ldots, X_{n-1}) = s$, this exposes a prover over n + n_extra_vars variables for the equivalent claim

$$ f(X_0, \ldots, X_{n-1}) \cdot \text{eq}(0^{n_\text{extra}}, X_n, \ldots, X_{n+n_\text{extra}-1}) = s $$

Since $\text{eq}(0, \cdot)$ sums to 1 over the hypercube, this padded claim holds iff the original does. This is useful for batching sumchecks with unequal numbers of variables: a shorter sumcheck can be padded up to match a longer one.

The sumcheck protocol binds variables in high-index to low-index order, so the n_extra_vars padding variables (the highest-indexed ones) are bound first. Concretely:

  • In a padding round i < n_extra_vars, the round polynomial is $R_i(X) = s \cdot \text{eq}(0, X) \cdot \prod_{k<i} \text{eq}(0, r_k)$, where $r_k$ is the $k$-th challenge. This is a genuine degree-1 polynomial built without touching the inner prover. It is emitted with degree + 1 coefficients, the ones above $X^1$ zero, so a batch that contains it has the full degree in every round, even when this prover is the only one of that degree.
  • In an inner round i \ge n_extra_vars, the round polynomial is $R^\text{inner}{i - n\text{extra}}(X) \cdot \prod_{k<n_\text{extra}} \text{eq}(0, r_k)$.

The accumulated equality factor $\prod_{k} \text{eq}(0, r_k)$ over the padding challenges is tracked in eq_prefix; it stops changing once the padding rounds are done.

Implementations§

Source§

impl<F: Field, Inner: SumcheckProver<F>> PaddedSumcheckDecorator<F, Inner>

Source

pub const fn new( inner: Inner, n_extra_vars: usize, claims: Vec<F>, degree: usize, ) -> Self

Wraps inner, padding its claim with n_extra_vars extra (highest-indexed) variables.

§Arguments
  • inner - The prover whose variable count is being raised.
  • n_extra_vars - How many padding variables to prepend.
  • claims - The inner prover’s claimed sums, one per claim.
  • degree - The round degree the verifier reads, at least 1. The padding rounds are emitted at this degree.

Trait Implementations§

Source§

impl<F: Clone + Field, Inner: Clone> Clone for PaddedSumcheckDecorator<F, Inner>

Source§

fn clone(&self) -> PaddedSumcheckDecorator<F, Inner>

Returns a duplicate of the value. Read more
1.0.0 (const: unstable) · Source§

fn clone_from(&mut self, source: &Self)

Performs copy-assignment from source. Read more
Source§

impl<F: Debug + Field, Inner: Debug> Debug for PaddedSumcheckDecorator<F, Inner>

Source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more
Source§

impl<F: Field, Inner: SumcheckProver<F>> SumcheckProver<F> for PaddedSumcheckDecorator<F, Inner>

Source§

fn n_vars(&self) -> usize

The number of variables in the remaining multivariate polynomial. Read more
Source§

fn execute(&mut self) -> Vec<RoundCoeffs<F>>

Computes the prover messages for this round as a univariate polynomial. Read more
Source§

fn fold(&mut self, challenge: F)

Folds the sumcheck multilinears with a new verifier challenge.
Source§

fn finish(self) -> Vec<F>

Finishes the sumcheck proving protocol and returns the evaluations of all multilinears at the challenge point.

Auto Trait Implementations§

§

impl<F, Inner> Freeze for PaddedSumcheckDecorator<F, Inner>
where Inner: Freeze, F: Freeze,

§

impl<F, Inner> RefUnwindSafe for PaddedSumcheckDecorator<F, Inner>
where Inner: RefUnwindSafe, F: RefUnwindSafe,

§

impl<F, Inner> Send for PaddedSumcheckDecorator<F, Inner>
where Inner: Send,

§

impl<F, Inner> Sync for PaddedSumcheckDecorator<F, Inner>
where Inner: Sync,

§

impl<F, Inner> Unpin for PaddedSumcheckDecorator<F, Inner>
where Inner: Unpin, F: Unpin,

§

impl<F, Inner> UnsafeUnpin for PaddedSumcheckDecorator<F, Inner>
where Inner: UnsafeUnpin, F: UnsafeUnpin,

§

impl<F, Inner> UnwindSafe for PaddedSumcheckDecorator<F, Inner>
where Inner: UnwindSafe, F: UnwindSafe,

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<T> CloneToUninit for T
where T: Clone,

Source§

unsafe fn clone_to_uninit(&self, dest: *mut u8)

🔬This is a nightly-only experimental API. (clone_to_uninit)
Performs copy-assignment from self to dest. Read more
Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

§

impl<T> Instrument for T

§

fn instrument(self, span: Span) -> Instrumented<Self>

Instruments this type with the provided [Span], returning an Instrumented wrapper. Read more
§

fn in_current_span(self) -> Instrumented<Self>

Instruments this type with the current Span, returning an Instrumented wrapper. Read more
Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T> IntoEither for T

Source§

fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ

Converts self into a Left variant of Either<Self, Self> if into_left is true. Converts self into a Right variant of Either<Self, Self> otherwise. Read more
Source§

fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
where F: FnOnce(&Self) -> bool,

Converts self into a Left variant of Either<Self, Self> if into_left(&self) returns true. Converts self into a Right variant of Either<Self, Self> otherwise. Read more
§

impl<T> Pointable for T

§

const ALIGN: usize

The alignment of pointer.
§

type Init = T

The type for initializers.
§

unsafe fn init(init: <T as Pointable>::Init) -> usize

Initializes a with the given initializer. Read more
§

unsafe fn deref<'a>(ptr: usize) -> &'a T

Dereferences the given pointer. Read more
§

unsafe fn deref_mut<'a>(ptr: usize) -> &'a mut T

Mutably dereferences the given pointer. Read more
§

unsafe fn drop(ptr: usize)

Drops the object pointed to by the given pointer. Read more
Source§

impl<T> Same for T

Source§

type Output = T

Should always be Self
Source§

impl<T> ToOwned for T
where T: Clone,

Source§

type Owned = T

The resulting type after obtaining ownership.
Source§

fn to_owned(&self) -> T

Creates owned data from borrowed data, usually by cloning. Read more
Source§

fn clone_into(&self, target: &mut T)

Uses borrowed data to replace owned data, usually by cloning. Read more
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = Infallible

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.
§

impl<T> WithSubscriber for T

§

fn with_subscriber<S>(self, subscriber: S) -> WithDispatch<Self>
where S: Into<Dispatch>,

Attaches the provided Subscriber to this type, returning a [WithDispatch] wrapper. Read more
§

fn with_current_subscriber(self) -> WithDispatch<Self>

Attaches the current default Subscriber to this type, returning a [WithDispatch] wrapper. Read more