... r2.1: Alice uniformly chooses p from F and defines Q1(z) = pz + pn.2: Alice and Bob privately evaluate Q1, Bob obtains b1= Q1(m) = pm + pn.3: Bob randomly chooses q ∈ F and defines ... sends Cjto Pi+1 (mod n). Here πiis an permutation on {1, , k} and δπi(j)isuniformly chosen from [1, q − 1].• Phase 4. Decryption.For j = 1, , k– For i = 1, , n : Picomputes hij= ... group of Z∗p). Let g be a generatorof G, f ∈ g is ran d o m l y selected, and x be uniformly chosen in [1, q − 1]. InElGamal encryption schema, x is a private key and the public key is h =...