Zhou, LidongMarsh, Michael A.Schneider, Fred B.Redz, Anna2007-04-042007-04-042004-01-06http://techreports.library.cornell.edu:8081/Dienst/UI/1.0/Display/cul.cis/TR2004-1920https://hdl.handle.net/1813/5632A protocol is given that allows a set of n servers to cooperate and produce an ElGamal ciphertext encrypted under one key from an ElGamal ciphertext encrypted under another, but without plaintext ever becoming available. The protocol is resilient to floor(n-1)/3 of the servers being compromised and requires no assumptions about execution speeds or message delivery delays. Two new building blocks employed---a distributed blinding protocol and verifiable dual encryption proofs---could have uses beyond re-encryption protocols.477450 bytesapplication/postscripten-UScomputer sciencetechnical reportDistributed Blinding for ElGamal Re-encryptiontechnical report