Bitcoin Forum
December 11, 2016, 04:29:13 AM *
News: To be able to use the next phase of the beta forum software, please ensure that your email address is correct/functional.
 
   Home   Help Search Donate Login Register  
Pages: « 1 2 [3]  All
  Print  
Author Topic: conjecture about proof-of-work and cryptocurrencies  (Read 7450 times)
ffe
Sr. Member
****
Offline Offline

Activity: 297



View Profile
May 28, 2011, 04:27:32 AM
 #41

As you know many people don't like the idea of using CPU power in order to make so-called "useless" computations.

I suspect it is possible to rigorously prove that any cryptocurrencies, providing it fulfills a few conditions, has to be based on proof-of-work, and thus on CPU.

So far I can't prove it seriously, so it is just a conjecture.    I'd be glad if someone with a solid maths and IT background could bring a demonstration.

So it would look like:

Quote from: grondilu
If a cryptocurrency respects the folowing criteria:

* it doesn't discriminate any node of the network ;
* the initial monetary amount available in the network is zero (apart from the genesis block) ;

Then at any time, the probability of generation of a new monetary unit for any node is proportionnal to the CPU of this node.


Obviously this relies on a theoretical, more general definition of "cryptocurrency".  I won't give such a definition here but I guess you get the idea.


Every node that wishes to mine proposes a new block-candidate (chained into previous blocks but with no difficulty so that you're not burning CPU power). Say n nodes participate.

They run a protocol to choose a definitive block-candidate. This is not competitive since no one is declared the winner yet. Simple majority vote for a well formed block-candidate is sufficient. All n participants share a hash of the blessed block-candidate.

Then the step I don't know how to do  Sad : Run a cooperative cryptographic protocol that that simulates a fair dice toss, somehow involves the hash of the blessed block-candidate, and ends up randomly selecting 1 of n. This is the next BLOCK and the selected number indicated the owner of the reward for mining the BLOCK.

Rinse and repeat every 10 minutes.

------------------

Now I don't have such a protocol but here's an example of n nodes randomly selecting one of their numbers.

Each secretly chooses a number between 0 and n-1. Each hashes that with a public key he wishes to use to receive the reward. This is his commitment. When he reveals his chosen number later anyone can check that he didn't cheat and change the number.

After all are committed, all reveal their chosen number and check the others for honesty. The sum of the honest revealed numbers modulo the number of honest participants is a random number. Call it the selector.

Sort all the honest keys that were revealed. The selector tells us which key in the sorted list gets the reward.

n nodes cooperated and a new block is generated and one of the nodes randomly received the reward. Low CPU nodes have an equal chance. They just have to have enough power to keep up with the protocol.

-------------------

Useless of course, now that I review this. A newly started node would not know who to trust if the block chain had split recently.   Oh well.

 


1481430553
Hero Member
*
Offline Offline

Posts: 1481430553

View Profile Personal Message (Offline)

Ignore
1481430553
Reply with quote  #2

1481430553
Report to moderator
1481430553
Hero Member
*
Offline Offline

Posts: 1481430553

View Profile Personal Message (Offline)

Ignore
1481430553
Reply with quote  #2

1481430553
Report to moderator
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction. Advertise here.
1481430553
Hero Member
*
Offline Offline

Posts: 1481430553

View Profile Personal Message (Offline)

Ignore
1481430553
Reply with quote  #2

1481430553
Report to moderator
anisoptera
Member
**
Offline Offline

Activity: 98



View Profile
May 28, 2011, 05:25:24 AM
 #42

Also, there's nothing keeping me from running thousands of nodes. Or generating my own blockchain that purports to be longer than yours.

online poker, bitcoin style - https://betco.in/
feeling tipsy? 1Q7ktWPwu4Q8MivKdmYxnmsGaBeauMTGwU
grondilu
Legendary
*
Offline Offline

Activity: 1134


View Profile
May 28, 2011, 05:31:59 AM
 #43

Also, there's nothing keeping me from running thousands of nodes. Or generating my own blockchain that purports to be longer than yours.

Good luck with that.
ffe
Sr. Member
****
Offline Offline

Activity: 297



View Profile
May 28, 2011, 05:54:05 AM
 #44

Also, there's nothing keeping me from running thousands of nodes. Or generating my own blockchain that purports to be longer than yours.

I agree.  Too bad.

Pages: « 1 2 [3]  All
  Print  
 
Jump to:  

Sponsored by , a Bitcoin-accepting VPN.
Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!