SearcharxivSearch

arXiv · 2003.11286

Parallel Computation of Optimal Ate Cryptographic Pairings at the $128$, $192$ and $256$-bit security levels using elliptic net algorithm

Abstract

Efficient computations of pairings with Miller Algorithm have recently received a great attention due to the many applications in cryptography. In this work, we give formulae for the optimal Ate pairing in terms of elliptic nets associated to twisted Barreto-Naehrig (BN) curve, Barreto-Lynn-Scott(BLS) curves and Kachisa-Schaefer-Scott(KSS) curves considered at the $128$, $192$ and $256$-bit security levels, and Scott-Guillevic curve with embedding degree $54$. We show how to parallelize the computation of these pairings when the elliptic net algorithm instead is used and we obtain except in the case of Kachisa-Schaefer-Scott(KSS) curves considered at the $256$-bit security level, more efficient theoretical results with $8$ processors compared to the case where the Miller algorithm is used. This work still confirms that $BLS48$ curves are the best for pairing-based cryptography at $256$-bit security level \cite{NARDIEFO19}.

Explore related subjects

Keep this discovery

BibTeXRIS

Narcisse Bang Mbang, Emmanuel Fouotsa, Celestin Lele. 2020-03-25. Parallel Computation of Optimal Ate Cryptographic Pairings at the $128$, $192$ and $256$-bit security levels using elliptic net algorithm. https://arxiv.org/abs/2003.11286

Cite the original work for its findings. Save a collection to share your selection of sources.

KEEP EXPLORING

Related papers

Perverse Euler Characteristics of Hermitian Locally Symmetric Spaces

We prove that finite-volume locally Hermitian symmetric spaces of noncompact type have nonnegative perverse Euler characteristics. To show this, we obtain a nefness result for the logarithmic cotangent bundle of a smooth toroidal compactification. Combining this with a positivity criterion for Euler characteristics of perverse sheaves, we deduce the nonnegativity result. We further prove that the inequality is strict for perverse sheaves with full support. As applications, we get nonnegativity results for perverse Euler characteristics on various moduli spaces.

math.AG

Coupled Pklt Tuples and Varieties of Pklt Type

We introduce asymptotic multiplier ideal sheaves and log canonical thresholds associated with tuples of pseudoeffective divisors on a projective klt pair. We prove that the threshold of a coupled potentially klt tuple is computed by a quasi-monomial valuation. For varieties of potentially klt type, we prove that every big divisor admits a birational Zariski decomposition with semiample positive part. We also prove finite generation of multisection rings of big divisors and give a criterion for a variety of potentially klt type to be a Mori dream space.

math.AG

Graded Betti numbers of general curves of large degree

Let $C$ be a smooth projective complex curve of genus $g$ and gonality $k$, and $L$ be a very ample line bundle on $C$. When $L$ has sufficiently large degree, the vanishing and nonvanishing of the Koszul cohomology groups $K_{p,q}(C,L)$ have been determined previously, but the exact values of the graded Betti numbers $\kappa_{p,q}(C, L)$ remain largely unknown. In this paper, we give explicit closed formulas for all graded Betti numbers $\kappa_{p,q}(C, L)$ when the Brill--Noether locus $W_k^1(C)$ has the expected dimension and $H^1(C, L \otimes \omega_C^{-1})=0$. Consequently, we determine the complete Betti table for a general curve when $\deg L \geq 4g-3$ or when $\deg L \geq 3g-3$ and $L$ is general. We also explicitly compute the Boij--S\"{o}derberg coefficient of the section ring $R(C, L)$ governing asymptotic purity, and show eventual monotonicity of the remaining coefficients: they decrease for hyperelliptic curves and increase under a natural generic reducedness assumption on the relevant Brill--Noether loci.

math.AG