Connecting Legendre with Kummer and Edwards (Q1726008)

From MaRDI portal





scientific article; zbMATH DE number 7024180
Language Label Description Also known as
default for all languages
No label defined
    English
    Connecting Legendre with Kummer and Edwards
    scientific article; zbMATH DE number 7024180

      Statements

      Connecting Legendre with Kummer and Edwards (English)
      0 references
      0 references
      0 references
      15 February 2019
      0 references
      The paper under review deals with the scalar multiplication over Legendre form elliptic curves which is a basic operation in many public key cryptographic schemes. The bulk of the computation can be performed either on the associated Kummer line or on an appropriate twisted Edwards form elliptic curve. The first approach requires a method for recovering the $y$-coordinate of the result from the Kummer line computation. In this paper, a detailed explicit formula for doing this is provided. Furthermore three conversion methods from Legendre form curves to appropriate twisted Edwards form curves are given. The two methods are constructions of birational equivalences while the third a 2-isogeny. Furthermore, these methods are applied in order to obtain new concrete twisted Edwards curves from Legendre curves which correspond to known Kummer lines at the 128-bit security level. These Kummer lines provide very fast scalar multiplication on modern architectures supporting SIMD operations.
      0 references
      elliptic curves
      0 references
      Legendre form
      0 references
      Kummer line
      0 references
      Edwards form
      0 references
      0 references
      0 references
      0 references
      0 references

      Identifiers

      0 references
      0 references
      0 references
      0 references
      0 references
      0 references
      0 references
      0 references