SlideShare a Scribd company logo
1 of 27
Download to read offline
Ordinary abelian varieties having
    small embedding degree
               Paula Cristina Valenca
                                   ¸
                   joined work with
         Steven Galbraith and James McKee
               P.Valenca@rhul.ac.uk


         Royal Holloway University of London




                                         Ordinary abelian varieties having small embedding degree – p. 1/1
Plan

 •   On the problem of using abelian varieties with
     small embedding degree
      • Introducing the MNT curves

 •   Extending MNT curves with co-factors
 •   The genus 2 case




                                   Ordinary abelian varieties having small embedding degree – p. 2/1
Embedding degree
Fq finite field, J/Fq Jacobian of a curve.
The embedding degree is the smallest positive integer k

                           r | qk − 1

where r is the largest prime divisor of #J.
In particular, r | Φk (q) (k-cyclotomic polynomial).




                                           Ordinary abelian varieties having small embedding degree – p. 3/1
Embedding degree
Fq finite field, J/Fq Jacobian of a curve.
The embedding degree is the smallest positive integer k

                           r | qk − 1

where r is the largest prime divisor of #J.
In particular, r | Φk (q) (k-cyclotomic polynomial).

Motivation: use of Weil and Tate pairings in cryptographic
protocols - provide a mapping from G ⊂ J to F∗k .
                                                q




                                           Ordinary abelian varieties having small embedding degree – p. 3/1
Cyclotomic Polynomials

    n    ϕ(n)   Φn (q)
    1     1     q−1
    2     1     q+1
    3     2     q2 + q + 1
    4     2     q2 + 1
    5     4     q4 + q3 + q2 + q + 1
    6     2     q2 − q + 1
    7     6     q6 + q5 + q4 + q3 + q2 + q + 1
    8     4     q4 + 1
    9     6     q6 + q3 + 1
    10    4     q4 − q3 + q2 − q + 1
    11   10     q 10 + q 9 + q 8 + q 7 + q 6 + q 5 + q 4 + q 3 + q 2 + q + 1
    12    4     q4 − q2 + 1

                                                       Ordinary abelian varieties having small embedding degree – p. 4/1
Suitable elliptic curves
 • supersingular

 • MNT curves (Miyaji, Nakabayashi, Takano)




                                   Ordinary abelian varieties having small embedding degree – p. 5/1
Suitable elliptic curves
 • supersingular : for example,
   • q = 32m , n = 32m ± 3m + 1 (k = 3)
   • q = 32m+1 , n = 32m+1 ± 3m+1 + 1 (k = 6)

 • MNT curves (Miyaji, Nakabayashi, Takano)




                                      Ordinary abelian varieties having small embedding degree – p. 5/1
Suitable elliptic curves
 • supersingular

 • MNT curves (Miyaji, Nakabayashi, Takano) : for
   k ∈ {3, 4, 6} (ϕ(k) = 2), find q(l), t(l) ∈ Z[l] s.t.

                 n(l) := q(l) − t(l) + 1 | Φk (q(l))

          k       q          t              n

          3   12l2 − 1    −1 ± 6l     12l2 ± 6l + 1
          4   l2 + l + 1 −l, l + 1 l2 + 2l + 2, l2 + 1
          6    4l2 + 1    1 ± 2l       4l2 ± 2l + 1

                                            Ordinary abelian varieties having small embedding degree – p. 5/1
Extending these methods
 • Extending MNT curves with co-factors

 • The genus 2 case




                                    Ordinary abelian varieties having small embedding degree – p. 6/1
Extending these methods
 • Extending MNT curves with co-factors
   • instead of n | Φk (q), have r | Φk (q) where n = hr
     (r is the largest such factor)
 • The genus 2 case




                                       Ordinary abelian varieties having small embedding degree – p. 6/1
co-factors: k = 6
Write
           λr = Φ6 (q) = q 2 − q + 1




                                  Ordinary abelian varieties having small embedding degree – p. 7/1
co-factors: k = 6
Write
            λr = Φ6 (q) = q 2 − q + 1
          n                         t2
        ⇒   (q + t + 1) − λ/h = 3 −
          q                         q




                                   Ordinary abelian varieties having small embedding degree – p. 7/1
co-factors: k = 6
Write
                  λr = Φ6 (q) = q 2 − q + 1
               n                         t2
             ⇒   (q + t + 1) − λ/h = 3 −
               q                         q
Writing λ/h = λ/h + , > 0 (gcd(λ, h) = 1) and using
Hasse’s bound

         −4/3 + < q + t + 1 − λ/h < 3 + < 4

for q > 64, and so v := q + t + 1 − λ/h ∈ {−1, 0, 1, 2, 3}


                                         Ordinary abelian varieties having small embedding degree – p. 7/1
co-factors (cont.)
Substituting v in
                    n(v − ) = 3q − t2
leads to solving a quadratic in t whose discriminant must
be a square.
Writing = u/h, find x s.t.

                       x2 = M + N q

where M, N ∈ Z, depending solely on u and h.




                                        Ordinary abelian varieties having small embedding degree – p. 8/1
co-factors (cont.)
Substituting v in
                    n(v − ) = 3q − t2
leads to solving a quadratic in t whose discriminant must
be a square.
Writing = u/h, find x s.t.

                       x2 = M + N q

where M, N ∈ Z, depending solely on u and h.
M must be a quadratic residue mod N .


                                        Ordinary abelian varieties having small embedding degree – p. 8/1
Valid pairs (q, t) for k = 6

                  h           q              t

                  1        4l2 + 1        ±2l + 1
                  2      8l2 + 6l + 3      2l + 2
                        24l2 + 6l + 1       −6l
                  3     12l2 + 4l + 3     −2l + 1
                        84l2 + 16l + 1    −14l − 1
                       84l2 + 128l + 49   14l + 11
                 ...         ...            ...



 • Curves can be constructed by using Complex
   Multiplication, solving a Pell-type equation.

                                                  Ordinary abelian varieties having small embedding degree – p. 9/1
Extending these methods
 • Extending MNT curves with co-factors

 • The genus 2 case
   • Embedding degree k ∈ {5, 8, 10, 12} (ϕ(k) = 4)
   • Heuristics suggest similar results (in frequency)
   • . . . but the earlier method no longer applies




                                       Ordinary abelian varieties having small embedding degree – p. 10/1
Extending these methods
  • Extending MNT curves with co-factors

  • The genus 2 case
     • Embedding degree k ∈ {5, 8, 10, 12} (ϕ(k) = 4)
     • Heuristics suggest similar results (in frequency)
     • . . . but the earlier method no longer applies


Alternative approach: consider q = q(l) as a quadratic
polynomial in Z[l] and note that we are looking to factorise

                    Φk (q(l)) = n1 (l)n2 (l)


                                           Ordinary abelian varieties having small embedding degree – p. 10/1
Factoring Φk (q(l))
 1. Let q(l) be a quadratic polynomial over Q[l]. Then, one
    of two cases may occur:
   (a) Φk (q(l)) is irreducible over the rationals, with degree
       2ϕ(k)
   (b) Φk (q(l)) = n1 (l)n2 (l), where n1 (l), n2 (l) are
       irreducible over the rationals, degree ϕ(k)
 2. A criterion for case (b) is q(z) = ζk having a solution in
    Q(ζk ), where ζk is a primitive complex k-th root of unity.

(Note: applies to both elliptic and hyperelliptic curves. . . )

                                             Ordinary abelian varieties having small embedding degree – p. 11/1
Two approaches
Two equivalent approaches present themselves
1. expand Φk (q(l)) = n1 (l)n2 (l) and try to solve the
   Diophantine system of equations
2. solve q(z) = ζk over Q(ζk )




                                         Ordinary abelian varieties having small embedding degree – p. 12/1
Retrieving the MNT curves
Here k ∈ {3, 4, 6} and [Q(ζk ) : Q] = 2.
Example (k = 6): Completing the square and clearing
denominators, we get

                       w2 + b = cζ6

where b, c ∈ Z and w ∈ Z(ζ6 ). Writing w = A + Bζ6 , leads
to solving          
                    B(2A + B) = c
                    B 2 − A 2     =b

and, by fixing b, retrieving the previous examples.
                                        Ordinary abelian varieties having small embedding degree – p. 13/1
Hyperelliptic curves (genus 2)
Here k ∈ {5, 8, 10, 12} and [Q(ζk ) : Q] = 4.
As before, w2 + b = cζk , but
                                 2     3
                 w = A + Bζk + Cζk + Dζk

which now leads to four quadratics in integers A, B, C and
D, two of which homogeneous that must vanish.




                                           Ordinary abelian varieties having small embedding degree – p. 14/1
An example: k = 8
k = 8:
         
         2AD + 2BC        =0
         2AC + B 2 − D2   =0
         ⇒ D3 − B 2 D + 2BC 2 = 0




                             Ordinary abelian varieties having small embedding degree – p. 15/1
An example: k = 8
k = 8:
                
                2AD + 2BC           =0
                2AC + B 2 − D2      =0
                ⇒ D3 − B 2 D + 2BC 2 = 0

 • latter corresponds to an elliptic curve with rank 0

 • none of its four points leads to a solution to the system




                                        Ordinary abelian varieties having small embedding degree – p. 15/1
An example: k = 8
k = 8:
                   
                   2AD + 2BC        =0
                   2AC + B 2 − D2   =0
                   ⇒ D3 − B 2 D + 2BC 2 = 0

 • latter corresponds to an elliptic curve with rank 0

 • none of its four points leads to a solution to the system

 • there exists no rational quadratic polynomial q(l) s.t.
    Φ8 (q(l)) splits.

                                        Ordinary abelian varieties having small embedding degree – p. 15/1
Some solutions

                     k     h            q

                     5      1           l2
                           404 1010l2 + 525l + 69
                     10     4     10l2 + 5l + 2
                           11     11l2 + 10l + 3
                           11     55l2 + 40l + 8

                     12     1        22m+1

q = 2l2 , 6l2 ( k = 12 )
q = 5l2 ( k = 5 )
                                               Ordinary abelian varieties having small embedding degree – p. 16/1
Questions



            P.Valenca@rhul.ac.uk




                             Ordinary abelian varieties having small embedding degree – p. 17/1

More Related Content

What's hot

IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...
IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...
IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...IJERD Editor
 
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...guest9fa195
 
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...SEENET-MTP
 
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRAS
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRASSPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRAS
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRASKunda Chowdaiah
 
Maths CBSE 2011-12
Maths CBSE 2011-12Maths CBSE 2011-12
Maths CBSE 2011-12studymate
 
Lossy Kernelization
Lossy KernelizationLossy Kernelization
Lossy Kernelizationmsramanujan
 
Some Results on Common Fixed Point Theorems in Hilbert Space
Some Results on Common Fixed Point Theorems in Hilbert SpaceSome Results on Common Fixed Point Theorems in Hilbert Space
Some Results on Common Fixed Point Theorems in Hilbert SpaceBRNSS Publication Hub
 
Stability criterion of periodic oscillations in a (15)
Stability criterion of periodic oscillations in a (15)Stability criterion of periodic oscillations in a (15)
Stability criterion of periodic oscillations in a (15)Alexander Decker
 
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIAL
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIALEXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIAL
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIALJournal For Research
 
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...SEENET-MTP
 
Group theory notes
Group theory notesGroup theory notes
Group theory notesmkumaresan
 
Group homomorphism
Group homomorphismGroup homomorphism
Group homomorphismNaliniSPatil
 
Construction of BIBD’s Using Quadratic Residues
Construction of BIBD’s Using Quadratic ResiduesConstruction of BIBD’s Using Quadratic Residues
Construction of BIBD’s Using Quadratic Residuesiosrjce
 

What's hot (18)

IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...
IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...
IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...
 
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...
 
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...
 
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRAS
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRASSPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRAS
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRAS
 
Maths CBSE 2011-12
Maths CBSE 2011-12Maths CBSE 2011-12
Maths CBSE 2011-12
 
Thesis 6
Thesis 6Thesis 6
Thesis 6
 
Lossy Kernelization
Lossy KernelizationLossy Kernelization
Lossy Kernelization
 
Sparsity by worst-case quadratic penalties
Sparsity by worst-case quadratic penaltiesSparsity by worst-case quadratic penalties
Sparsity by worst-case quadratic penalties
 
Hf2412861289
Hf2412861289Hf2412861289
Hf2412861289
 
Some Results on Common Fixed Point Theorems in Hilbert Space
Some Results on Common Fixed Point Theorems in Hilbert SpaceSome Results on Common Fixed Point Theorems in Hilbert Space
Some Results on Common Fixed Point Theorems in Hilbert Space
 
Analysis of algorithms
Analysis of algorithmsAnalysis of algorithms
Analysis of algorithms
 
Stability criterion of periodic oscillations in a (15)
Stability criterion of periodic oscillations in a (15)Stability criterion of periodic oscillations in a (15)
Stability criterion of periodic oscillations in a (15)
 
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIAL
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIALEXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIAL
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIAL
 
Ecl17
Ecl17Ecl17
Ecl17
 
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...
 
Group theory notes
Group theory notesGroup theory notes
Group theory notes
 
Group homomorphism
Group homomorphismGroup homomorphism
Group homomorphism
 
Construction of BIBD’s Using Quadratic Residues
Construction of BIBD’s Using Quadratic ResiduesConstruction of BIBD’s Using Quadratic Residues
Construction of BIBD’s Using Quadratic Residues
 

Viewers also liked

Psicologia de dados e terapia de programas
Psicologia de dados e terapia de programasPsicologia de dados e terapia de programas
Psicologia de dados e terapia de programasPaula Valenca
 
Maths Holy Grail will not bring disaster to the Internet
Maths Holy Grail will not bring disaster to the InternetMaths Holy Grail will not bring disaster to the Internet
Maths Holy Grail will not bring disaster to the InternetPaula Valenca
 
From the MOV attack to pairing-friendly curves
From the MOV attack to pairing-friendly curvesFrom the MOV attack to pairing-friendly curves
From the MOV attack to pairing-friendly curvesPaula Valenca
 
How Web Design will reinvent manufacturing
How Web Design will reinvent manufacturingHow Web Design will reinvent manufacturing
How Web Design will reinvent manufacturingMike Kuniavsky
 
What is it that makes wieden + kennedy so different, so appealing?
What is it that makes wieden + kennedy so different, so appealing?What is it that makes wieden + kennedy so different, so appealing?
What is it that makes wieden + kennedy so different, so appealing?neilchristie
 
The Presentation Come-Back Kid
The Presentation Come-Back KidThe Presentation Come-Back Kid
The Presentation Come-Back KidEthos3
 

Viewers also liked (6)

Psicologia de dados e terapia de programas
Psicologia de dados e terapia de programasPsicologia de dados e terapia de programas
Psicologia de dados e terapia de programas
 
Maths Holy Grail will not bring disaster to the Internet
Maths Holy Grail will not bring disaster to the InternetMaths Holy Grail will not bring disaster to the Internet
Maths Holy Grail will not bring disaster to the Internet
 
From the MOV attack to pairing-friendly curves
From the MOV attack to pairing-friendly curvesFrom the MOV attack to pairing-friendly curves
From the MOV attack to pairing-friendly curves
 
How Web Design will reinvent manufacturing
How Web Design will reinvent manufacturingHow Web Design will reinvent manufacturing
How Web Design will reinvent manufacturing
 
What is it that makes wieden + kennedy so different, so appealing?
What is it that makes wieden + kennedy so different, so appealing?What is it that makes wieden + kennedy so different, so appealing?
What is it that makes wieden + kennedy so different, so appealing?
 
The Presentation Come-Back Kid
The Presentation Come-Back KidThe Presentation Come-Back Kid
The Presentation Come-Back Kid
 

Similar to Ordinary abelian varieties having small embedding degree

International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI)International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI)inventionjournals
 
International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI) International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI) inventionjournals
 
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...J. Rogelio Yoyontzin Perez Buendia
 
Goldberg-Coxeter construction for 3- or 4-valent plane maps
Goldberg-Coxeter construction for 3- or 4-valent plane mapsGoldberg-Coxeter construction for 3- or 4-valent plane maps
Goldberg-Coxeter construction for 3- or 4-valent plane mapsMathieu Dutour Sikiric
 
NMR Spectroscopy
NMR SpectroscopyNMR Spectroscopy
NMR Spectroscopyclayqn88
 
SMB_2012_HR_VAN_ST-last version
SMB_2012_HR_VAN_ST-last versionSMB_2012_HR_VAN_ST-last version
SMB_2012_HR_VAN_ST-last versionLilyana Vankova
 
Kittel c. introduction to solid state physics 8 th edition - solution manual
Kittel c.  introduction to solid state physics 8 th edition - solution manualKittel c.  introduction to solid state physics 8 th edition - solution manual
Kittel c. introduction to solid state physics 8 th edition - solution manualamnahnura
 
SOCG: Linear-Size Approximations to the Vietoris-Rips Filtration
SOCG: Linear-Size Approximations to the Vietoris-Rips FiltrationSOCG: Linear-Size Approximations to the Vietoris-Rips Filtration
SOCG: Linear-Size Approximations to the Vietoris-Rips FiltrationDon Sheehy
 
Module 15 Algebraic Formulae
Module 15   Algebraic FormulaeModule 15   Algebraic Formulae
Module 15 Algebraic Formulaenorazilah
 
Talk given at the Workshop in Catania University
Talk given at the Workshop in Catania University Talk given at the Workshop in Catania University
Talk given at the Workshop in Catania University Marco Frasca
 
Scattering theory analogues of several classical estimates in Fourier analysis
Scattering theory analogues of several classical estimates in Fourier analysisScattering theory analogues of several classical estimates in Fourier analysis
Scattering theory analogues of several classical estimates in Fourier analysisVjekoslavKovac1
 
Return times of random walk on generalized random graphs
Return times of random walk on generalized random graphsReturn times of random walk on generalized random graphs
Return times of random walk on generalized random graphsNaoki Masuda
 

Similar to Ordinary abelian varieties having small embedding degree (20)

International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI)International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI)
 
LPS talk notes
LPS talk notesLPS talk notes
LPS talk notes
 
International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI) International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI)
 
Assign1 21314-sol
Assign1 21314-solAssign1 21314-sol
Assign1 21314-sol
 
Pairing scott
Pairing scottPairing scott
Pairing scott
 
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...
 
Goldberg-Coxeter construction for 3- or 4-valent plane maps
Goldberg-Coxeter construction for 3- or 4-valent plane mapsGoldberg-Coxeter construction for 3- or 4-valent plane maps
Goldberg-Coxeter construction for 3- or 4-valent plane maps
 
Final
Final Final
Final
 
Maths04
Maths04Maths04
Maths04
 
Kinks & Defects
Kinks & DefectsKinks & Defects
Kinks & Defects
 
Em04 il
Em04 ilEm04 il
Em04 il
 
NMR Spectroscopy
NMR SpectroscopyNMR Spectroscopy
NMR Spectroscopy
 
SMB_2012_HR_VAN_ST-last version
SMB_2012_HR_VAN_ST-last versionSMB_2012_HR_VAN_ST-last version
SMB_2012_HR_VAN_ST-last version
 
Kittel c. introduction to solid state physics 8 th edition - solution manual
Kittel c.  introduction to solid state physics 8 th edition - solution manualKittel c.  introduction to solid state physics 8 th edition - solution manual
Kittel c. introduction to solid state physics 8 th edition - solution manual
 
draft5
draft5draft5
draft5
 
SOCG: Linear-Size Approximations to the Vietoris-Rips Filtration
SOCG: Linear-Size Approximations to the Vietoris-Rips FiltrationSOCG: Linear-Size Approximations to the Vietoris-Rips Filtration
SOCG: Linear-Size Approximations to the Vietoris-Rips Filtration
 
Module 15 Algebraic Formulae
Module 15   Algebraic FormulaeModule 15   Algebraic Formulae
Module 15 Algebraic Formulae
 
Talk given at the Workshop in Catania University
Talk given at the Workshop in Catania University Talk given at the Workshop in Catania University
Talk given at the Workshop in Catania University
 
Scattering theory analogues of several classical estimates in Fourier analysis
Scattering theory analogues of several classical estimates in Fourier analysisScattering theory analogues of several classical estimates in Fourier analysis
Scattering theory analogues of several classical estimates in Fourier analysis
 
Return times of random walk on generalized random graphs
Return times of random walk on generalized random graphsReturn times of random walk on generalized random graphs
Return times of random walk on generalized random graphs
 

Recently uploaded

Music 9 - 4th quarter - Vocal Music of the Romantic Period.pptx
Music 9 - 4th quarter - Vocal Music of the Romantic Period.pptxMusic 9 - 4th quarter - Vocal Music of the Romantic Period.pptx
Music 9 - 4th quarter - Vocal Music of the Romantic Period.pptxleah joy valeriano
 
THEORIES OF ORGANIZATION-PUBLIC ADMINISTRATION
THEORIES OF ORGANIZATION-PUBLIC ADMINISTRATIONTHEORIES OF ORGANIZATION-PUBLIC ADMINISTRATION
THEORIES OF ORGANIZATION-PUBLIC ADMINISTRATIONHumphrey A Beña
 
Karra SKD Conference Presentation Revised.pptx
Karra SKD Conference Presentation Revised.pptxKarra SKD Conference Presentation Revised.pptx
Karra SKD Conference Presentation Revised.pptxAshokKarra1
 
ICS2208 Lecture6 Notes for SL spaces.pdf
ICS2208 Lecture6 Notes for SL spaces.pdfICS2208 Lecture6 Notes for SL spaces.pdf
ICS2208 Lecture6 Notes for SL spaces.pdfVanessa Camilleri
 
INTRODUCTION TO CATHOLIC CHRISTOLOGY.pptx
INTRODUCTION TO CATHOLIC CHRISTOLOGY.pptxINTRODUCTION TO CATHOLIC CHRISTOLOGY.pptx
INTRODUCTION TO CATHOLIC CHRISTOLOGY.pptxHumphrey A Beña
 
How to do quick user assign in kanban in Odoo 17 ERP
How to do quick user assign in kanban in Odoo 17 ERPHow to do quick user assign in kanban in Odoo 17 ERP
How to do quick user assign in kanban in Odoo 17 ERPCeline George
 
Student Profile Sample - We help schools to connect the data they have, with ...
Student Profile Sample - We help schools to connect the data they have, with ...Student Profile Sample - We help schools to connect the data they have, with ...
Student Profile Sample - We help schools to connect the data they have, with ...Seán Kennedy
 
4.16.24 21st Century Movements for Black Lives.pptx
4.16.24 21st Century Movements for Black Lives.pptx4.16.24 21st Century Movements for Black Lives.pptx
4.16.24 21st Century Movements for Black Lives.pptxmary850239
 
AUDIENCE THEORY -CULTIVATION THEORY - GERBNER.pptx
AUDIENCE THEORY -CULTIVATION THEORY -  GERBNER.pptxAUDIENCE THEORY -CULTIVATION THEORY -  GERBNER.pptx
AUDIENCE THEORY -CULTIVATION THEORY - GERBNER.pptxiammrhaywood
 
Influencing policy (training slides from Fast Track Impact)
Influencing policy (training slides from Fast Track Impact)Influencing policy (training slides from Fast Track Impact)
Influencing policy (training slides from Fast Track Impact)Mark Reed
 
4.16.24 Poverty and Precarity--Desmond.pptx
4.16.24 Poverty and Precarity--Desmond.pptx4.16.24 Poverty and Precarity--Desmond.pptx
4.16.24 Poverty and Precarity--Desmond.pptxmary850239
 
ROLES IN A STAGE PRODUCTION in arts.pptx
ROLES IN A STAGE PRODUCTION in arts.pptxROLES IN A STAGE PRODUCTION in arts.pptx
ROLES IN A STAGE PRODUCTION in arts.pptxVanesaIglesias10
 
What is Model Inheritance in Odoo 17 ERP
What is Model Inheritance in Odoo 17 ERPWhat is Model Inheritance in Odoo 17 ERP
What is Model Inheritance in Odoo 17 ERPCeline George
 
Activity 2-unit 2-update 2024. English translation
Activity 2-unit 2-update 2024. English translationActivity 2-unit 2-update 2024. English translation
Activity 2-unit 2-update 2024. English translationRosabel UA
 
4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptx4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptxmary850239
 
Concurrency Control in Database Management system
Concurrency Control in Database Management systemConcurrency Control in Database Management system
Concurrency Control in Database Management systemChristalin Nelson
 
Transaction Management in Database Management System
Transaction Management in Database Management SystemTransaction Management in Database Management System
Transaction Management in Database Management SystemChristalin Nelson
 
ANG SEKTOR NG agrikultura.pptx QUARTER 4
ANG SEKTOR NG agrikultura.pptx QUARTER 4ANG SEKTOR NG agrikultura.pptx QUARTER 4
ANG SEKTOR NG agrikultura.pptx QUARTER 4MiaBumagat1
 
Global Lehigh Strategic Initiatives (without descriptions)
Global Lehigh Strategic Initiatives (without descriptions)Global Lehigh Strategic Initiatives (without descriptions)
Global Lehigh Strategic Initiatives (without descriptions)cama23
 

Recently uploaded (20)

Music 9 - 4th quarter - Vocal Music of the Romantic Period.pptx
Music 9 - 4th quarter - Vocal Music of the Romantic Period.pptxMusic 9 - 4th quarter - Vocal Music of the Romantic Period.pptx
Music 9 - 4th quarter - Vocal Music of the Romantic Period.pptx
 
THEORIES OF ORGANIZATION-PUBLIC ADMINISTRATION
THEORIES OF ORGANIZATION-PUBLIC ADMINISTRATIONTHEORIES OF ORGANIZATION-PUBLIC ADMINISTRATION
THEORIES OF ORGANIZATION-PUBLIC ADMINISTRATION
 
Karra SKD Conference Presentation Revised.pptx
Karra SKD Conference Presentation Revised.pptxKarra SKD Conference Presentation Revised.pptx
Karra SKD Conference Presentation Revised.pptx
 
ICS2208 Lecture6 Notes for SL spaces.pdf
ICS2208 Lecture6 Notes for SL spaces.pdfICS2208 Lecture6 Notes for SL spaces.pdf
ICS2208 Lecture6 Notes for SL spaces.pdf
 
INTRODUCTION TO CATHOLIC CHRISTOLOGY.pptx
INTRODUCTION TO CATHOLIC CHRISTOLOGY.pptxINTRODUCTION TO CATHOLIC CHRISTOLOGY.pptx
INTRODUCTION TO CATHOLIC CHRISTOLOGY.pptx
 
How to do quick user assign in kanban in Odoo 17 ERP
How to do quick user assign in kanban in Odoo 17 ERPHow to do quick user assign in kanban in Odoo 17 ERP
How to do quick user assign in kanban in Odoo 17 ERP
 
Student Profile Sample - We help schools to connect the data they have, with ...
Student Profile Sample - We help schools to connect the data they have, with ...Student Profile Sample - We help schools to connect the data they have, with ...
Student Profile Sample - We help schools to connect the data they have, with ...
 
4.16.24 21st Century Movements for Black Lives.pptx
4.16.24 21st Century Movements for Black Lives.pptx4.16.24 21st Century Movements for Black Lives.pptx
4.16.24 21st Century Movements for Black Lives.pptx
 
AUDIENCE THEORY -CULTIVATION THEORY - GERBNER.pptx
AUDIENCE THEORY -CULTIVATION THEORY -  GERBNER.pptxAUDIENCE THEORY -CULTIVATION THEORY -  GERBNER.pptx
AUDIENCE THEORY -CULTIVATION THEORY - GERBNER.pptx
 
Influencing policy (training slides from Fast Track Impact)
Influencing policy (training slides from Fast Track Impact)Influencing policy (training slides from Fast Track Impact)
Influencing policy (training slides from Fast Track Impact)
 
4.16.24 Poverty and Precarity--Desmond.pptx
4.16.24 Poverty and Precarity--Desmond.pptx4.16.24 Poverty and Precarity--Desmond.pptx
4.16.24 Poverty and Precarity--Desmond.pptx
 
ROLES IN A STAGE PRODUCTION in arts.pptx
ROLES IN A STAGE PRODUCTION in arts.pptxROLES IN A STAGE PRODUCTION in arts.pptx
ROLES IN A STAGE PRODUCTION in arts.pptx
 
YOUVE GOT EMAIL_FINALS_EL_DORADO_2024.pptx
YOUVE GOT EMAIL_FINALS_EL_DORADO_2024.pptxYOUVE GOT EMAIL_FINALS_EL_DORADO_2024.pptx
YOUVE GOT EMAIL_FINALS_EL_DORADO_2024.pptx
 
What is Model Inheritance in Odoo 17 ERP
What is Model Inheritance in Odoo 17 ERPWhat is Model Inheritance in Odoo 17 ERP
What is Model Inheritance in Odoo 17 ERP
 
Activity 2-unit 2-update 2024. English translation
Activity 2-unit 2-update 2024. English translationActivity 2-unit 2-update 2024. English translation
Activity 2-unit 2-update 2024. English translation
 
4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptx4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptx
 
Concurrency Control in Database Management system
Concurrency Control in Database Management systemConcurrency Control in Database Management system
Concurrency Control in Database Management system
 
Transaction Management in Database Management System
Transaction Management in Database Management SystemTransaction Management in Database Management System
Transaction Management in Database Management System
 
ANG SEKTOR NG agrikultura.pptx QUARTER 4
ANG SEKTOR NG agrikultura.pptx QUARTER 4ANG SEKTOR NG agrikultura.pptx QUARTER 4
ANG SEKTOR NG agrikultura.pptx QUARTER 4
 
Global Lehigh Strategic Initiatives (without descriptions)
Global Lehigh Strategic Initiatives (without descriptions)Global Lehigh Strategic Initiatives (without descriptions)
Global Lehigh Strategic Initiatives (without descriptions)
 

Ordinary abelian varieties having small embedding degree

  • 1. Ordinary abelian varieties having small embedding degree Paula Cristina Valenca ¸ joined work with Steven Galbraith and James McKee P.Valenca@rhul.ac.uk Royal Holloway University of London Ordinary abelian varieties having small embedding degree – p. 1/1
  • 2. Plan • On the problem of using abelian varieties with small embedding degree • Introducing the MNT curves • Extending MNT curves with co-factors • The genus 2 case Ordinary abelian varieties having small embedding degree – p. 2/1
  • 3. Embedding degree Fq finite field, J/Fq Jacobian of a curve. The embedding degree is the smallest positive integer k r | qk − 1 where r is the largest prime divisor of #J. In particular, r | Φk (q) (k-cyclotomic polynomial). Ordinary abelian varieties having small embedding degree – p. 3/1
  • 4. Embedding degree Fq finite field, J/Fq Jacobian of a curve. The embedding degree is the smallest positive integer k r | qk − 1 where r is the largest prime divisor of #J. In particular, r | Φk (q) (k-cyclotomic polynomial). Motivation: use of Weil and Tate pairings in cryptographic protocols - provide a mapping from G ⊂ J to F∗k . q Ordinary abelian varieties having small embedding degree – p. 3/1
  • 5. Cyclotomic Polynomials n ϕ(n) Φn (q) 1 1 q−1 2 1 q+1 3 2 q2 + q + 1 4 2 q2 + 1 5 4 q4 + q3 + q2 + q + 1 6 2 q2 − q + 1 7 6 q6 + q5 + q4 + q3 + q2 + q + 1 8 4 q4 + 1 9 6 q6 + q3 + 1 10 4 q4 − q3 + q2 − q + 1 11 10 q 10 + q 9 + q 8 + q 7 + q 6 + q 5 + q 4 + q 3 + q 2 + q + 1 12 4 q4 − q2 + 1 Ordinary abelian varieties having small embedding degree – p. 4/1
  • 6. Suitable elliptic curves • supersingular • MNT curves (Miyaji, Nakabayashi, Takano) Ordinary abelian varieties having small embedding degree – p. 5/1
  • 7. Suitable elliptic curves • supersingular : for example, • q = 32m , n = 32m ± 3m + 1 (k = 3) • q = 32m+1 , n = 32m+1 ± 3m+1 + 1 (k = 6) • MNT curves (Miyaji, Nakabayashi, Takano) Ordinary abelian varieties having small embedding degree – p. 5/1
  • 8. Suitable elliptic curves • supersingular • MNT curves (Miyaji, Nakabayashi, Takano) : for k ∈ {3, 4, 6} (ϕ(k) = 2), find q(l), t(l) ∈ Z[l] s.t. n(l) := q(l) − t(l) + 1 | Φk (q(l)) k q t n 3 12l2 − 1 −1 ± 6l 12l2 ± 6l + 1 4 l2 + l + 1 −l, l + 1 l2 + 2l + 2, l2 + 1 6 4l2 + 1 1 ± 2l 4l2 ± 2l + 1 Ordinary abelian varieties having small embedding degree – p. 5/1
  • 9. Extending these methods • Extending MNT curves with co-factors • The genus 2 case Ordinary abelian varieties having small embedding degree – p. 6/1
  • 10. Extending these methods • Extending MNT curves with co-factors • instead of n | Φk (q), have r | Φk (q) where n = hr (r is the largest such factor) • The genus 2 case Ordinary abelian varieties having small embedding degree – p. 6/1
  • 11. co-factors: k = 6 Write λr = Φ6 (q) = q 2 − q + 1 Ordinary abelian varieties having small embedding degree – p. 7/1
  • 12. co-factors: k = 6 Write λr = Φ6 (q) = q 2 − q + 1 n t2 ⇒ (q + t + 1) − λ/h = 3 − q q Ordinary abelian varieties having small embedding degree – p. 7/1
  • 13. co-factors: k = 6 Write λr = Φ6 (q) = q 2 − q + 1 n t2 ⇒ (q + t + 1) − λ/h = 3 − q q Writing λ/h = λ/h + , > 0 (gcd(λ, h) = 1) and using Hasse’s bound −4/3 + < q + t + 1 − λ/h < 3 + < 4 for q > 64, and so v := q + t + 1 − λ/h ∈ {−1, 0, 1, 2, 3} Ordinary abelian varieties having small embedding degree – p. 7/1
  • 14. co-factors (cont.) Substituting v in n(v − ) = 3q − t2 leads to solving a quadratic in t whose discriminant must be a square. Writing = u/h, find x s.t. x2 = M + N q where M, N ∈ Z, depending solely on u and h. Ordinary abelian varieties having small embedding degree – p. 8/1
  • 15. co-factors (cont.) Substituting v in n(v − ) = 3q − t2 leads to solving a quadratic in t whose discriminant must be a square. Writing = u/h, find x s.t. x2 = M + N q where M, N ∈ Z, depending solely on u and h. M must be a quadratic residue mod N . Ordinary abelian varieties having small embedding degree – p. 8/1
  • 16. Valid pairs (q, t) for k = 6 h q t 1 4l2 + 1 ±2l + 1 2 8l2 + 6l + 3 2l + 2 24l2 + 6l + 1 −6l 3 12l2 + 4l + 3 −2l + 1 84l2 + 16l + 1 −14l − 1 84l2 + 128l + 49 14l + 11 ... ... ... • Curves can be constructed by using Complex Multiplication, solving a Pell-type equation. Ordinary abelian varieties having small embedding degree – p. 9/1
  • 17. Extending these methods • Extending MNT curves with co-factors • The genus 2 case • Embedding degree k ∈ {5, 8, 10, 12} (ϕ(k) = 4) • Heuristics suggest similar results (in frequency) • . . . but the earlier method no longer applies Ordinary abelian varieties having small embedding degree – p. 10/1
  • 18. Extending these methods • Extending MNT curves with co-factors • The genus 2 case • Embedding degree k ∈ {5, 8, 10, 12} (ϕ(k) = 4) • Heuristics suggest similar results (in frequency) • . . . but the earlier method no longer applies Alternative approach: consider q = q(l) as a quadratic polynomial in Z[l] and note that we are looking to factorise Φk (q(l)) = n1 (l)n2 (l) Ordinary abelian varieties having small embedding degree – p. 10/1
  • 19. Factoring Φk (q(l)) 1. Let q(l) be a quadratic polynomial over Q[l]. Then, one of two cases may occur: (a) Φk (q(l)) is irreducible over the rationals, with degree 2ϕ(k) (b) Φk (q(l)) = n1 (l)n2 (l), where n1 (l), n2 (l) are irreducible over the rationals, degree ϕ(k) 2. A criterion for case (b) is q(z) = ζk having a solution in Q(ζk ), where ζk is a primitive complex k-th root of unity. (Note: applies to both elliptic and hyperelliptic curves. . . ) Ordinary abelian varieties having small embedding degree – p. 11/1
  • 20. Two approaches Two equivalent approaches present themselves 1. expand Φk (q(l)) = n1 (l)n2 (l) and try to solve the Diophantine system of equations 2. solve q(z) = ζk over Q(ζk ) Ordinary abelian varieties having small embedding degree – p. 12/1
  • 21. Retrieving the MNT curves Here k ∈ {3, 4, 6} and [Q(ζk ) : Q] = 2. Example (k = 6): Completing the square and clearing denominators, we get w2 + b = cζ6 where b, c ∈ Z and w ∈ Z(ζ6 ). Writing w = A + Bζ6 , leads to solving  B(2A + B) = c B 2 − A 2 =b and, by fixing b, retrieving the previous examples. Ordinary abelian varieties having small embedding degree – p. 13/1
  • 22. Hyperelliptic curves (genus 2) Here k ∈ {5, 8, 10, 12} and [Q(ζk ) : Q] = 4. As before, w2 + b = cζk , but 2 3 w = A + Bζk + Cζk + Dζk which now leads to four quadratics in integers A, B, C and D, two of which homogeneous that must vanish. Ordinary abelian varieties having small embedding degree – p. 14/1
  • 23. An example: k = 8 k = 8:  2AD + 2BC =0 2AC + B 2 − D2 =0 ⇒ D3 − B 2 D + 2BC 2 = 0 Ordinary abelian varieties having small embedding degree – p. 15/1
  • 24. An example: k = 8 k = 8:  2AD + 2BC =0 2AC + B 2 − D2 =0 ⇒ D3 − B 2 D + 2BC 2 = 0 • latter corresponds to an elliptic curve with rank 0 • none of its four points leads to a solution to the system Ordinary abelian varieties having small embedding degree – p. 15/1
  • 25. An example: k = 8 k = 8:  2AD + 2BC =0 2AC + B 2 − D2 =0 ⇒ D3 − B 2 D + 2BC 2 = 0 • latter corresponds to an elliptic curve with rank 0 • none of its four points leads to a solution to the system • there exists no rational quadratic polynomial q(l) s.t. Φ8 (q(l)) splits. Ordinary abelian varieties having small embedding degree – p. 15/1
  • 26. Some solutions k h q 5 1 l2 404 1010l2 + 525l + 69 10 4 10l2 + 5l + 2 11 11l2 + 10l + 3 11 55l2 + 40l + 8 12 1 22m+1 q = 2l2 , 6l2 ( k = 12 ) q = 5l2 ( k = 5 ) Ordinary abelian varieties having small embedding degree – p. 16/1
  • 27. Questions P.Valenca@rhul.ac.uk Ordinary abelian varieties having small embedding degree – p. 17/1