Connecting Legendre with Kummer and Edwards (Q1726008)

From MaRDI portal
scientific article
Language Label Description Also known as
English
Connecting Legendre with Kummer and Edwards
scientific article

    Statements

    Connecting Legendre with Kummer and Edwards (English)
    0 references
    0 references
    0 references
    0 references
    15 February 2019
    0 references
    The paper under review deals with the scalar multiplication over Legendre form elliptic curves which is a basic operation in many public key cryptographic schemes. The bulk of the computation can be performed either on the associated Kummer line or on an appropriate twisted Edwards form elliptic curve. The first approach requires a method for recovering the $y$-coordinate of the result from the Kummer line computation. In this paper, a detailed explicit formula for doing this is provided. Furthermore three conversion methods from Legendre form curves to appropriate twisted Edwards form curves are given. The two methods are constructions of birational equivalences while the third a 2-isogeny. Furthermore, these methods are applied in order to obtain new concrete twisted Edwards curves from Legendre curves which correspond to known Kummer lines at the 128-bit security level. These Kummer lines provide very fast scalar multiplication on modern architectures supporting SIMD operations.
    0 references
    0 references
    0 references
    0 references
    0 references
    0 references
    elliptic curves
    0 references
    Legendre form
    0 references
    Kummer line
    0 references
    Edwards form
    0 references
    0 references
    0 references
    0 references
    0 references
    0 references