数学代考|计算复杂性理论代写computational complexity theory代考|Interactive Proof Systems

The notion of interactive proof systems is most easily explained from a game-theoretic view of the complexity classes. In the general setting, each problem A is interpreted as a two-person game in which the first player, the prover, tries to convince the second player, the verifier, that a given instance x is in A. On a given instance x, each player takes turn sending a string $y_{i}$ to the other player, where the $i$ th string $y_{i}$ may depend on the input $x$ and the previous strings $y_{1}, \ldots, y_{i-1}$. After a number $m$ of moves, the prover wins the game if the verifier is able to verify that the strings $x$, $y_{1}, \ldots, y_{m}$ satisfy a predetermined condition; otherwise, the verifier wins. Depending on the computational power of the two players, and on the type of protocols allowed between the two players, this game-theoretic view of the computational problems can be used to characterize some familiar complexity classes.

As a simple example, consider the famous N P-complete problem SAT. To prove that a Boolean formula F is satisfiable, the prover simply sends a truth assignment t on the variables that occurred in $F$ to the verifier, then the verifier verifies, in polynomial time, whether $t$ satisfies $F$ or not and accepts $F$ if $t$ indeed satisfies $F$. Thus, we say that SAT has a proof system with the following properties:
(1) The verifier has the power of a polynomial-time DTM, and the prover has the unlimited computational power.
(2) The game lasts for one round only, with the prover making the first move.
(3) A formula F is in SAT if and only if the prover is able to win the game on F.

In order to analyze the computational power of interactive proof systems, we first study a weaker type of probabilistic proof system called the Arthur-Merlin proof system. An Arthur-Merlin proof system is similar to an interactive proof system where Arthur is a verifier with the power of a polynomial-time PTM and Merlin is a prover, except that Merlin is even more powerful than an ordinary prover so that he is able to read the whole history of the computation of Arthur on the given input, including the random numbers generated by Arthur. If we examine the interactive proof systems of Examples $10.1$ and $10.2$, we can see that the secrecy of the random bits used by the verifier is critical to the correctness of the system. Indeed, if in Example $10.1$ the prover knows game by sending back the bit $b$, regardless of whether $G_{1} \cong G_{2}$ or not. Thus, the extra power of Merlin appears to be a strong restriction to the Thus, the extra power of Merlin appears to be a strong restriction to the restriction is not really so strong and that the two notions of proof systems are essentially equivalent. Yet, the simplicity of the Arthur-Merlin proof systems allows us to perform detailed analysis of its computational power.

As Merlin is so powerful that Arthur is not able to hide his random numbers from Merlin, we may as well require that in an Arthur-Merlin proof system, Arthur always sends the random numbers he used to Merlin. Furthermore, Merlin can always simulate Arthur’s computation to compute the next query to be asked by Arthur from the history of the computation and the new random numbers received from Arthur. Thus, Arthur really does not have to send Merlin anything except the new random numbers generated by the random number generator. In other words, Arthur really plays a passive role whose only task is to verify, at the end, whether the computation satisfies a predetermined condition and whether to accept the input. Formally, we define an Arthur machine to be an interactive TM such that
(1) each new query of Arthur is simply a new sequence of random bits; and
(2) every random number generated by Arthur must be sent to Merlin as a query, even if Arthur does not expect an answer from Merlin so that the last random number generated by Arthur counts as one round of communication between the two players.

In this section, we consider the complexity classes $A M_{k}$ of sets having Arthur-Merlin proof systems of a bounded number of rounds. It is clear that these classes form a hierarchy:
A M_{0} \subseteq A M_{1} \subseteq \cdots \subseteq A M_{k} \subseteq A M_{k+1} \subseteq \cdots .
We are going to see that this hierarchy collapses to the second level. In addition, they are contained in the second level $\Pi_{2}^{P}$ of the polynomial-time hierarchy.

To begin with, we first give an alternating quantifier characterization for the $A M$ hierarchy like that for the polynomial-time hierarchy in Theorem 3.8. Intuitively, a move by Merlin demonstrates a new piece of proof to Arthur, and so it corresponds to an existential quantifier $\exists$, while a move by Arthur is simply a sequence of random bits, and to a probabilistic quantifier $\exists^{+}$. (Recall that $\left(\exists_{r}^{+} y,|y|=m\right)$ means “for at least $r \cdot 2^{m}$ strings $y$ of length $m$,” and $\exists^{+}$is the abbreviation for $\exists_{3 / 4}^{+}$.)

Recall that two predicates $R_{1}$ and $R_{0}$ are complementary if $R_{1}$ implies $\neg R_{0}$.

交互式证明系统的概念最容易从复杂性类别的博弈论角度解释。在一般设置中,每个问题 A 都被解释为一个两人游戏,其中第一个玩家,证明者,试图说服第二个玩家,验证者,给定实例 x 在 A 中。在给定实例 x 上,每个玩家轮流发送一个字符串是一世给另一个玩家,其中一世第一个字符串是一世可能取决于输入X和之前的字符串是1,…,是一世−1. 一个数字后米的移动,如果验证者能够验证字符串,则证明者赢得游戏X, 是1,…,是米满足预定条件;否则,验证者获胜。根据两个玩家的计算能力,以及两个玩家之间允许的协议类型,这种计算问题的博弈论观点可以用来描述一些熟悉的复杂性类别。

作为一个简单的例子,考虑著名的 N P 完全问题 SAT。为了证明一个布尔公式 F 是可满足的,证明者只需对发生在F给验证者,然后验证者在多项式时间内验证是否吨满足F或不接受F如果吨确实满足F. 因此,我们说 SAT 有一个具有以下属性的证明系统:
1验证者拥有多项式时间 DTM 的能力,而证明者拥有无限的计算能力。
3当且仅当证明者能够在 F 上赢得比赛时,公式 F 在 SAT 中。


为了分析交互式证明系统的计算能力,我们首先研究一种较弱类型的概率证明系统,称为 Arthur-Merlin 证明系统。Arthur-Merlin 证明系统类似于交互式证明系统,其中 Arthur 是具有多项式时间 PTM 能力的验证者,而 Merlin 是证明者,只是 Merlin 比普通的证明者更强大,因此他能够阅读 Arthur 在给定输入上计算的整个历史,包括 Arthur 生成的随机数。如果我们检查示例的交互式证明系统10.1和10.2,我们可以看到验证者使用的随机位的保密性对系统的正确性至关重要。确实,如果在示例中10.1证明者通过发回比特来了解游戏b, 不管是否G1≅G2或不。因此,Merlin 的额外权力似乎是对 然而,Arthur-Merlin 证明系统的简单性使我们能够对其计算能力进行详细分析。

由于 Merlin 如此强大,以至于 Arthur 无法向 Merlin 隐藏他的随机数,我们不妨要求在 Arthur-Merlin 证明系统中,Arthur 总是将他使用的随机数发送给 Merlin。此外,Merlin 始终可以模拟 Arthur 的计算,以根据计算历史和从 Arthur 收到的新随机数计算 Arthur 提出的下一个查询。因此,除了随机数生成器生成的新随机数,Arthur 真的不需要向 Merlin 发送任何东西。换句话说,亚瑟实际上扮演了一个被动的角色,他唯一的任务就是最终验证计算是否满足预定条件以及是否接受输入。形式上,我们将 Arthur 机器定义为交互式 TM,使得
1Arthur 的每个新查询都只是一个新的随机位序列;和
2Arthur 生成的每一个随机数都必须作为查询发送给 Merlin,即使 Arthur 并不期待 Merlin 的回答,因此 Arthur 生成的最后一个随机数算作两个玩家之间的一轮通信。


在本节中,我们考虑复杂性类一种米ķ具有有限轮数的 Arthur-Merlin 证明系统的集合。很明显,这些类形成了一个层次结构:

首先,我们首先给出一个交替量词表征一种米与定理 3.8 中的多项式时间层次结构类似。直觉上,梅林的举动向亚瑟展示了一个新的证据,因此它对应于一个存在量词∃,而 Arthur 的移动只是一个随机位序列,并且是概率量词∃+. 回想一下 $\left(\exists_{r}^{+} y,|y|=m\right回想一下 $\left(\exists_{r}^{+} y,|y|=m\right米和一种ns“F这r一种吨l和一种s吨r \cdot 2^{m}s吨r一世nGs是这Fl和nG吨H米,”一种nd\存在^{+}一世s吨H和一种bbr和在一世一种吨一世这nF这r\exists_{3 / 4}^{+}$.)


数学代考|计算复杂性理论代写computatiknal complexity theory代考

