A Remark on Implementing the Weil Pairing
نویسندگان
چکیده
We propose an improved implementation of modified Weil pairings. By reduction of operations in the extension field to those in the base field, we can save some operations in the extension field when computing a modified Weil pairing. In particular, computing e`(P, φ(P )) is the same as computing the Tate pairing without the final powering. So we can save about 50% of time for computing e`(P, φ(P )) compared with the standard Miller’s algorithm. keywords : pairing-based cryptosystem, Weil pairing, modified Weil pairing, separable endomorphism, distortion map
منابع مشابه
Implementing the Tate Pairing
The Weil and Tate pairings have found several new applications in cryptography. To eÆciently implement these cryptosystems it is necessary to optimise the computation time for the Tate pairing. This paper provides methods to achieve fast computation of the Tate pairing. We also give division-free formulae for point tripling on a family of elliptic curves in characteristic three. Examples of the...
متن کاملOn the relationship between squared pairings and plain pairings
In this paper, we investigate the relationship between the squared Weil/Tate pairing and the plain Weil/Tate pairing. Along these lines, we first show that the squared pairing for arbitrary chosen point can be transformed into a plain pairing for the trace zero point which has a special form to compute them more efficiently. This transformation requires only a cost of some Frobenius actions. Ad...
متن کاملA WEIL PAIRING ON THE p-TORSION OF ORDINARY ELLIPTIC CURVES OVER K[ǫ]
For an elliptic curve E over any field K, the Weil pairing en is a bilinear map on n-torsion. For K of characteristic p > 0, the map en is degenerate if and only if n is divisible by p. In this paper, we consider E over the dual numbers K[ǫ] and define a non-degenerate “Weil pairing on ptorsion” which shares many of the same properties of the Weil pairing. We also show that the discrete logarit...
متن کاملA Weil pairing on the p-torsion of ordinary elliptic curves over K[ ]
For an elliptic curve E over any field K, the Weil pairing en is a bilinear map on n-torsion. For K of characteristic p > 0, the map en is degenerate if and only if n is divisible by p. In this paper, we consider E over the dual numbers K[ ] and define a non-degenerate “Weil pairing on p-torsion” which shares many of the same properties of the Weil pairing. We also show that the discrete logari...
متن کاملComputing the Bilinear Pairings on Elliptic Curves with Automorphisms
In this paper, a super-optimal pairing based on the Weil pairing is proposed with great efficiency. It is the first approach to reduce the Miller iteration loop when computing the variants of the Weil pairing. The super-optimal pairing based on the Weil pairing is computed rather fast, while it is slightly slower than the previous fastest pairing on the corresponding elliptic curves.
متن کامل