|
| 1 | +use super::{ProvableExpr, ProvableExprPlan}; |
| 2 | +use crate::{ |
| 3 | + base::{ |
| 4 | + commitment::Commitment, |
| 5 | + database::{Column, ColumnRef, ColumnType, CommitmentAccessor, DataAccessor}, |
| 6 | + proof::ProofError, |
| 7 | + }, |
| 8 | + sql::{ |
| 9 | + ast::{multiply_columns, try_multiply_column_types}, |
| 10 | + proof::{CountBuilder, ProofBuilder, SumcheckSubpolynomialType, VerificationBuilder}, |
| 11 | + }, |
| 12 | +}; |
| 13 | +use bumpalo::Bump; |
| 14 | +use num_traits::One; |
| 15 | +use serde::{Deserialize, Serialize}; |
| 16 | +use std::collections::HashSet; |
| 17 | + |
| 18 | +/// Provable numerical * expression |
| 19 | +#[derive(Debug, Clone, PartialEq, Serialize, Deserialize)] |
| 20 | +pub struct MultiplyExpr<C: Commitment> { |
| 21 | + lhs: Box<ProvableExprPlan<C>>, |
| 22 | + rhs: Box<ProvableExprPlan<C>>, |
| 23 | +} |
| 24 | + |
| 25 | +impl<C: Commitment> MultiplyExpr<C> { |
| 26 | + /// Create numerical `*` expression |
| 27 | + pub fn new(lhs: Box<ProvableExprPlan<C>>, rhs: Box<ProvableExprPlan<C>>) -> Self { |
| 28 | + Self { lhs, rhs } |
| 29 | + } |
| 30 | +} |
| 31 | + |
| 32 | +impl<C: Commitment> ProvableExpr<C> for MultiplyExpr<C> { |
| 33 | + fn count(&self, builder: &mut CountBuilder) -> Result<(), ProofError> { |
| 34 | + self.lhs.count(builder)?; |
| 35 | + self.rhs.count(builder)?; |
| 36 | + builder.count_subpolynomials(1); |
| 37 | + builder.count_intermediate_mles(1); |
| 38 | + builder.count_degree(3); |
| 39 | + Ok(()) |
| 40 | + } |
| 41 | + |
| 42 | + fn data_type(&self) -> ColumnType { |
| 43 | + try_multiply_column_types(self.lhs.data_type(), self.rhs.data_type()) |
| 44 | + .expect("Failed to multiply column types") |
| 45 | + } |
| 46 | + |
| 47 | + fn result_evaluate<'a>( |
| 48 | + &self, |
| 49 | + table_length: usize, |
| 50 | + alloc: &'a Bump, |
| 51 | + accessor: &'a dyn DataAccessor<C::Scalar>, |
| 52 | + ) -> Column<'a, C::Scalar> { |
| 53 | + let lhs_column: Column<'a, C::Scalar> = |
| 54 | + self.lhs.result_evaluate(table_length, alloc, accessor); |
| 55 | + let rhs_column: Column<'a, C::Scalar> = |
| 56 | + self.rhs.result_evaluate(table_length, alloc, accessor); |
| 57 | + let scalars = multiply_columns(&lhs_column, &rhs_column, alloc); |
| 58 | + Column::Scalar(scalars) |
| 59 | + } |
| 60 | + |
| 61 | + #[tracing::instrument( |
| 62 | + name = "proofs.sql.ast.and_expr.prover_evaluate", |
| 63 | + level = "info", |
| 64 | + skip_all |
| 65 | + )] |
| 66 | + fn prover_evaluate<'a>( |
| 67 | + &self, |
| 68 | + builder: &mut ProofBuilder<'a, C::Scalar>, |
| 69 | + alloc: &'a Bump, |
| 70 | + accessor: &'a dyn DataAccessor<C::Scalar>, |
| 71 | + ) -> Column<'a, C::Scalar> { |
| 72 | + let lhs_column: Column<'a, C::Scalar> = self.lhs.prover_evaluate(builder, alloc, accessor); |
| 73 | + let rhs_column: Column<'a, C::Scalar> = self.rhs.prover_evaluate(builder, alloc, accessor); |
| 74 | + |
| 75 | + // lhs_times_rhs |
| 76 | + let lhs_times_rhs: &'a [C::Scalar] = multiply_columns(&lhs_column, &rhs_column, alloc); |
| 77 | + builder.produce_intermediate_mle(lhs_times_rhs); |
| 78 | + |
| 79 | + // subpolynomial: lhs_times_rhs - lhs * rhs |
| 80 | + builder.produce_sumcheck_subpolynomial( |
| 81 | + SumcheckSubpolynomialType::Identity, |
| 82 | + vec![ |
| 83 | + (C::Scalar::one(), vec![Box::new(lhs_times_rhs)]), |
| 84 | + ( |
| 85 | + -C::Scalar::one(), |
| 86 | + vec![Box::new(lhs_column), Box::new(rhs_column)], |
| 87 | + ), |
| 88 | + ], |
| 89 | + ); |
| 90 | + Column::Scalar(lhs_times_rhs) |
| 91 | + } |
| 92 | + |
| 93 | + fn verifier_evaluate( |
| 94 | + &self, |
| 95 | + builder: &mut VerificationBuilder<C>, |
| 96 | + accessor: &dyn CommitmentAccessor<C>, |
| 97 | + ) -> Result<C::Scalar, ProofError> { |
| 98 | + let lhs = self.lhs.verifier_evaluate(builder, accessor)?; |
| 99 | + let rhs = self.rhs.verifier_evaluate(builder, accessor)?; |
| 100 | + |
| 101 | + // lhs_times_rhs |
| 102 | + let lhs_times_rhs = builder.consume_intermediate_mle(); |
| 103 | + |
| 104 | + // subpolynomial: lhs_times_rhs - lhs * rhs |
| 105 | + let eval = builder.mle_evaluations.random_evaluation * (lhs_times_rhs - lhs * rhs); |
| 106 | + builder.produce_sumcheck_subpolynomial_evaluation(&eval); |
| 107 | + |
| 108 | + // selection |
| 109 | + Ok(lhs_times_rhs) |
| 110 | + } |
| 111 | + |
| 112 | + fn get_column_references(&self, columns: &mut HashSet<ColumnRef>) { |
| 113 | + self.lhs.get_column_references(columns); |
| 114 | + self.rhs.get_column_references(columns); |
| 115 | + } |
| 116 | +} |
0 commit comments