Generalization of Vélu’s Formulae for Isogenies between Elliptic Curves
نویسندگان
چکیده
Abstract Given an elliptic curve E and a finite subgroup G, Vélu’s formulae concern to a separable isogeny IG : E → E ′ with kernel G. In particular, for a point P ∈ E these formulae express the first elementary symmetric polynomial on the abscissas of the points in the set P +G as the difference between the abscissa of IG(P ) and the first elementary symmetric polynomial on the abscissas of the nontrivial points of the kernel G. On the other hand, they express Weierstraß coefficients of E as polynomials in the coefficients of E and two additional parameters: w0 = t and w1 = w. We generalize this by defining parameters wn for all n ≥ 0 and giving analogous formulae for all the elementary symmetric polynomials and the power sums on the abscissas of the points in P+G. Simultaneously, we obtain an efficient way of performing computations concerning the isogeny when G is a rational group.
منابع مشابه
Diffie-Hellman type key exchange protocols based on isogenies
In this paper, we propose some Diffie-Hellman type key exchange protocols using isogenies of elliptic curves. The first method which uses the endomorphism ring of an ordinary elliptic curve $ E $, is a straightforward generalization of elliptic curve Diffie-Hellman key exchange. The method uses commutativity of the endomorphism ring $ End(E) $. Then using dual isogenies, we propose...
متن کاملIsogenies on Edwards and Huff curves
Isogenies of elliptic curves over finite fields have been well-studied, in part because there are several cryptographic applications. Using Vélu’s formula, isogenies can be constructed explicitly given their kernel. Vélu’s formula applies to elliptic curves given by a Weierstrass equation. In this paper we show how to similarly construct isogenies on Edwards curves and Huff curves. Edwards and ...
متن کاملComputing Isogenies Between Montgomery Curves Using the Action of (0, 0)
A recent paper by Costello and Hisil at Asiacrypt’17 presents efficient formulas for computing isogenies with odd-degree cyclic kernels on Montgomery curves. We provide a constructive proof of a generalization of this theorem which shows the connection between the shape of the isogeny and the simple action of the point (0, 0). This generalization removes the restriction of a cyclic kernel and a...
متن کاملAnalogues of Vélu's formulas for isogenies on alternate models of elliptic curves
Isogenies are the morphisms between elliptic curves, and are accordingly a topic of interest in the subject. As such, they have been wellstudied, and have been used in several cryptographic applications. Vélu’s formulas show how to explicitly evaluate an isogeny, given a specification of the kernel as a list of points. However, Vélu’s formulas only work for elliptic curves specified by a Weiers...
متن کاملEstimating isogenies on elliptic curves
The object of this paper is to prove a new type of estimate for isogenies between elliptic curves. This has several diophantine applications (effective versions of Serre's Galois irreducibility theorem and Shafarevich's theorem, for example) which are presented in another paper [MW3]. Later articles will deal with the corresponding problems for abelian varieties of arbitrary dimension. Right at...
متن کامل