Modeling of 3- and 5-Isogenies of Supersingular Edwards Curves

Bessalov, Anatoly and Sokolov, V. Y. and Skladannyi, Pavlo (2020) Modeling of 3- and 5-Isogenies of Supersingular Edwards Curves MoMLeT&DS, 2631 (I). pp. 30-39. ISSN 1613-0073

[thumbnail of A_Bessalov_V_Sokolov_P_Skladannyi_MoMLeT_2631.pdf]

Download (748kB) | Preview


An analysis is made of the properties and conditions for the existence of 3- and 5-isogenies of complete and quadratic supersingular Edwards curves. For the encapsulation of keys based on the SIDH algorithm, it is proposed to use isogeny of minimal odd 3 and 5 degrees, which allows bypassing the problem of singular points of the 2nd and 4th orders, characteristic of 2-isogenies. A review of the main properties of the classes of complete, quadratic and twisted Edwards curves over a simple field is given. Formulas for the isogeny of odd degrees are reduced to a form adapted to curves in Weierstrass form. To do this, the modified law of addition of curve points in the generalized Edwards form is used, which preserves the horizontal symmetry of the curve’s return points. Examples of the calculation of 3- and 5-isogenies of complete Edwards supersingular curves over small simple fields are given, and the properties of the isogeny composition for computing isogenies with large-order kernels are discussed. Formulas of upper bounds for the complexity of computing isogeny of odd degrees 3 and 5 in the classes of complete and quadratic Edwards curves in projective coordinates are obtained. Algorithms for calculating 3- and 5-isogenies of Edwards curves with complexity and 12M+5S, respectively, are constructed. The conditions for the existence of supersingular complete and quadratic Edwards curves of the order 4·3m·5n and 8·3m·5n are found. Some parameters of the cryptosystem were determined during the implementation of the SIDH algorithm at the quantum security level of 128 bits.

Item Type: Article
Additional Information: DOI: 10/d239 EID: 2-s2.0-85088879005
Uncontrolled Keywords: Generalized Edwards Curve; Complete Edwards Curve; Twisted Edwards Curve; Quadratic Edwards Curve; Curve Order; Point Order; Isomorphism; Isogeny; Degree of Isogeny; Kernel of Isogeny; Quadratic Residue; Quadratic Non-residue
Subjects: Статті у наукометричних базах > Scopus
Статті у наукометричних базах > Web of Science
Divisions: Факультет інформаційних технологій та математики > Кафедра інформаційної та кібернетичної безпеки імені професора Володимира Бурячка
Depositing User: Volodymyr Sokolov
Date Deposited: 13 Aug 2020 09:51
Last Modified: 09 Aug 2021 12:31

Actions (login required)

View Item View Item