Search engine for discovering works of Art, research articles, and books related to Art and Culture
ShareThis
Javascript must be enabled to continue!

Memory-saving computation of the pairing final exponentiation on BN curves

View through CrossRef
AbstractTate pairing computation is made of two steps. The first one, the Miller loop, is an exponentiation in the group of points of an elliptic curve. The second one, the final exponentiation, is an exponentiation in the multiplicative group of a large finite field extension. In this paper, we describe and improve efficient methods for computing the hardest part of this second step for the most popular curves in pairing-based cryptography, namely Barreto–Naehrig curves. We present the methods given in the literature and their complexities. However, the necessary memory resources are not always given whereas it is an important constraint in restricted environments for practical implementations. Therefore, we determine the memory resources required by these known methods and we present new variants which require less memory resources (up to 37 %). Moreover, some of these new variants are providing algorithms which are also more efficient than the original ones.
Title: Memory-saving computation of the pairing final exponentiation on BN curves
Description:
AbstractTate pairing computation is made of two steps.
The first one, the Miller loop, is an exponentiation in the group of points of an elliptic curve.
The second one, the final exponentiation, is an exponentiation in the multiplicative group of a large finite field extension.
In this paper, we describe and improve efficient methods for computing the hardest part of this second step for the most popular curves in pairing-based cryptography, namely Barreto–Naehrig curves.
We present the methods given in the literature and their complexities.
However, the necessary memory resources are not always given whereas it is an important constraint in restricted environments for practical implementations.
Therefore, we determine the memory resources required by these known methods and we present new variants which require less memory resources (up to 37 %).
Moreover, some of these new variants are providing algorithms which are also more efficient than the original ones.

Related Results

Effects of Contextual Cues on False Memory: A Comparative Experimental Approach
Effects of Contextual Cues on False Memory: A Comparative Experimental Approach
Research on false memory formation using the Deese-Roediger-McDermott (DRM) paradigm has been extensively conducted in Western contexts. Yet, a significant gap remains in experimen...
Proton and Neutron Pairing Properties within a Mixed Volume-Surface Pairing Type Using the Hartree–Fock–Bogolyubov Theory
Proton and Neutron Pairing Properties within a Mixed Volume-Surface Pairing Type Using the Hartree–Fock–Bogolyubov Theory
This work aims at systematic investigations of the proton and neutron pairing properties and Fermi energies in the region from the proton drip-line to the neutron drip-line. In ord...
Inverse Jacobian and related topics for certain superelliptic curves
Inverse Jacobian and related topics for certain superelliptic curves
Given an elliptic curve E over the complex numbers (CC) given by y^2 = x^3 + ax + b, there exists a lattice L in CC such that the group E(CC) of complex points on E is isomorphic ...
Unconventional Superconductivity in Samarium Nitride
Unconventional Superconductivity in Samarium Nitride
<p>We have studied the nature of unconventional superconductivity in the rare-earth nitride (REN) samarium nitride (SmN) for the purposes of providing a deeper understanding ...
Effect of the pairing types and pairing strength on the ground state properties of even and odd Mg isotopes
Effect of the pairing types and pairing strength on the ground state properties of even and odd Mg isotopes
This study is an investigation of the effect of the pairing strength using different types of pairing (surface, volume and mixed surface–volume pairing) on the ground state propert...
Identity-Based Encryption from the Tate pairing on genus two curves
Identity-Based Encryption from the Tate pairing on genus two curves
Abstract Identity Based Encryption is an approach to link the public key to an identity. It is an extremely useful asymmetric cryptography type in which public and private ...
zkExp: Zero-Knowledge Succinct Exponentiation Proofs
zkExp: Zero-Knowledge Succinct Exponentiation Proofs
We present zkExp (Zero-Knowledge Succinct Exponentiation Proofs), the first zero-knowledge proof system achieving asymptotically efficient bounds for batched exponentiation: ...
Nature of strong hole pairing in doped Mott antiferromagnets
Nature of strong hole pairing in doped Mott antiferromagnets
AbstractCooper pairing instability in a Fermi liquid is well understood by the BCS theory, but pairing mechanism for doped Mott insulators still remains elusive. Previously it has ...

Back to Top