3- and 5-Isogenies of Supersingular Edwards Curves

06/29/2020
by   Anatoly Bessalov, et al.
0

An analysis is made of the properties and conditions for the existence of 3- and 5-isogenies of complete and quadratic supersingular Edwards curves. For the encapsulation of keys based on the SIDH algorithm, it is proposed to use isogeny of minimal odd degrees 3 and 5, which allows bypassing the problem of singular points of the 2nd and 4th orders, characteristic of 2-isogenies. A review of the main properties of the classes of complete, quadratic, and twisted Edwards curves over a simple field is given. Equations for the isogeny of odd degrees are reduced to a form adapted to curves in the form of Weierstrass. To do this, use the modified law of addition of curve points in the generalized Edwards form, which preserves the horizontal symmetry of the curve return points. Examples of the calculation of 3- and 5-isogenies of complete Edwards supersingular curves over small simple fields are given, and the properties of the isogeny composition for their calculation with large-order kernels are discussed. Equations are obtained for upper complexity estimates for computing isogeny of odd degrees 3 and 5 in the classes of complete and quadratic Edwards curves in projective coordinates; algorithms are constructed for calculating 3- and 5-isogenies of Edwards curves with complexity 6M + 4S and 12M + 5S, respectively. The conditions for the existence of supersingular complete and quadratic Edwards curves of order 4x3mx5n and 8x3mx5n are found. Some parameters of the cryptosystem are determined when implementing the SIDH algorithm at the level of quantum security of 128 bits.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/09/2020

Algorithm to enumerate superspecial Howe curves of genus 4

A Howe curve is a curve of genus 4 obtained as the fiber product over 𝐏^...
research
05/30/2020

Basins of attraction and critical curves for Newton-type methods in a phase equilibrium problem

Many engineering problems are described by systems of nonlinear equation...
research
03/23/2023

On complete m-arcs

Let m be a positive integer and q be a prime power. For large finite bas...
research
06/07/2018

On the near prime-order MNT curves

In their seminar paper, Miyaji, Nakabayashi and Takano introduced the fi...
research
09/30/2022

Formalized Class Group Computations and Integral Points on Mordell Elliptic Curves

Diophantine equations are a popular and active area of research in numbe...
research
01/13/2015

G^k,l-constrained multi-degree reduction of Bézier curves

We present a new approach to the problem of G^k,l-constrained (k,l ≤ 3) ...
research
11/29/2022

Trustless unknown-order groups

Groups of unknown order are of major interest due to their applications ...

Please sign up or login with your details

Forgot password? Click here to reset