Hi, Im investigating if there is a way to parallelize garbling/evaluation of "gcm powers" circuits.
Does the underlying math allow to first obtain H and H^2 and then build on top of those to get H*H^2=H^3, H^2*H^2=H^4 and then build on top of those to get all other powers etc...?
Or is there no other way but to serially multiply by H one power at a time? Thanks.
Hi, Im investigating if there is a way to parallelize garbling/evaluation of "gcm powers" circuits.
Does the underlying math allow to first obtain H and H^2 and then build on top of those to get H*H^2=H^3, H^2*H^2=H^4 and then build on top of those to get all other powers etc...?
Or is there no other way but to serially multiply by H one power at a time? Thanks.