SlideShare a Scribd company logo
1 of 27
Download to read offline
Ordinary abelian varieties having
    small embedding degree
               Paula Cristina Valenca
                                   ¸
                   joined work with
         Steven Galbraith and James McKee
               P.Valenca@rhul.ac.uk


         Royal Holloway University of London




                                         Ordinary abelian varieties having small embedding degree – p. 1/1
Plan

 •   On the problem of using abelian varieties with
     small embedding degree
      • Introducing the MNT curves

 •   Extending MNT curves with co-factors
 •   The genus 2 case




                                   Ordinary abelian varieties having small embedding degree – p. 2/1
Embedding degree
Fq finite field, J/Fq Jacobian of a curve.
The embedding degree is the smallest positive integer k

                           r | qk − 1

where r is the largest prime divisor of #J.
In particular, r | Φk (q) (k-cyclotomic polynomial).




                                           Ordinary abelian varieties having small embedding degree – p. 3/1
Embedding degree
Fq finite field, J/Fq Jacobian of a curve.
The embedding degree is the smallest positive integer k

                           r | qk − 1

where r is the largest prime divisor of #J.
In particular, r | Φk (q) (k-cyclotomic polynomial).

Motivation: use of Weil and Tate pairings in cryptographic
protocols - provide a mapping from G ⊂ J to F∗k .
                                                q




                                           Ordinary abelian varieties having small embedding degree – p. 3/1
Cyclotomic Polynomials

    n    ϕ(n)   Φn (q)
    1     1     q−1
    2     1     q+1
    3     2     q2 + q + 1
    4     2     q2 + 1
    5     4     q4 + q3 + q2 + q + 1
    6     2     q2 − q + 1
    7     6     q6 + q5 + q4 + q3 + q2 + q + 1
    8     4     q4 + 1
    9     6     q6 + q3 + 1
    10    4     q4 − q3 + q2 − q + 1
    11   10     q 10 + q 9 + q 8 + q 7 + q 6 + q 5 + q 4 + q 3 + q 2 + q + 1
    12    4     q4 − q2 + 1

                                                       Ordinary abelian varieties having small embedding degree – p. 4/1
Suitable elliptic curves
 • supersingular

 • MNT curves (Miyaji, Nakabayashi, Takano)




                                   Ordinary abelian varieties having small embedding degree – p. 5/1
Suitable elliptic curves
 • supersingular : for example,
   • q = 32m , n = 32m ± 3m + 1 (k = 3)
   • q = 32m+1 , n = 32m+1 ± 3m+1 + 1 (k = 6)

 • MNT curves (Miyaji, Nakabayashi, Takano)




                                      Ordinary abelian varieties having small embedding degree – p. 5/1
Suitable elliptic curves
 • supersingular

 • MNT curves (Miyaji, Nakabayashi, Takano) : for
   k ∈ {3, 4, 6} (ϕ(k) = 2), find q(l), t(l) ∈ Z[l] s.t.

                 n(l) := q(l) − t(l) + 1 | Φk (q(l))

          k       q          t              n

          3   12l2 − 1    −1 ± 6l     12l2 ± 6l + 1
          4   l2 + l + 1 −l, l + 1 l2 + 2l + 2, l2 + 1
          6    4l2 + 1    1 ± 2l       4l2 ± 2l + 1

                                            Ordinary abelian varieties having small embedding degree – p. 5/1
Extending these methods
 • Extending MNT curves with co-factors

 • The genus 2 case




                                    Ordinary abelian varieties having small embedding degree – p. 6/1
Extending these methods
 • Extending MNT curves with co-factors
   • instead of n | Φk (q), have r | Φk (q) where n = hr
     (r is the largest such factor)
 • The genus 2 case




                                       Ordinary abelian varieties having small embedding degree – p. 6/1
co-factors: k = 6
Write
           λr = Φ6 (q) = q 2 − q + 1




                                  Ordinary abelian varieties having small embedding degree – p. 7/1
co-factors: k = 6
Write
            λr = Φ6 (q) = q 2 − q + 1
          n                         t2
        ⇒   (q + t + 1) − λ/h = 3 −
          q                         q




                                   Ordinary abelian varieties having small embedding degree – p. 7/1
co-factors: k = 6
Write
                  λr = Φ6 (q) = q 2 − q + 1
               n                         t2
             ⇒   (q + t + 1) − λ/h = 3 −
               q                         q
Writing λ/h = λ/h + , > 0 (gcd(λ, h) = 1) and using
Hasse’s bound

         −4/3 + < q + t + 1 − λ/h < 3 + < 4

for q > 64, and so v := q + t + 1 − λ/h ∈ {−1, 0, 1, 2, 3}


                                         Ordinary abelian varieties having small embedding degree – p. 7/1
co-factors (cont.)
Substituting v in
                    n(v − ) = 3q − t2
leads to solving a quadratic in t whose discriminant must
be a square.
Writing = u/h, find x s.t.

                       x2 = M + N q

where M, N ∈ Z, depending solely on u and h.




                                        Ordinary abelian varieties having small embedding degree – p. 8/1
co-factors (cont.)
Substituting v in
                    n(v − ) = 3q − t2
leads to solving a quadratic in t whose discriminant must
be a square.
Writing = u/h, find x s.t.

                       x2 = M + N q

where M, N ∈ Z, depending solely on u and h.
M must be a quadratic residue mod N .


                                        Ordinary abelian varieties having small embedding degree – p. 8/1
Valid pairs (q, t) for k = 6

                  h           q              t

                  1        4l2 + 1        ±2l + 1
                  2      8l2 + 6l + 3      2l + 2
                        24l2 + 6l + 1       −6l
                  3     12l2 + 4l + 3     −2l + 1
                        84l2 + 16l + 1    −14l − 1
                       84l2 + 128l + 49   14l + 11
                 ...         ...            ...



 • Curves can be constructed by using Complex
   Multiplication, solving a Pell-type equation.

                                                  Ordinary abelian varieties having small embedding degree – p. 9/1
Extending these methods
 • Extending MNT curves with co-factors

 • The genus 2 case
   • Embedding degree k ∈ {5, 8, 10, 12} (ϕ(k) = 4)
   • Heuristics suggest similar results (in frequency)
   • . . . but the earlier method no longer applies




                                       Ordinary abelian varieties having small embedding degree – p. 10/1
Extending these methods
  • Extending MNT curves with co-factors

  • The genus 2 case
     • Embedding degree k ∈ {5, 8, 10, 12} (ϕ(k) = 4)
     • Heuristics suggest similar results (in frequency)
     • . . . but the earlier method no longer applies


Alternative approach: consider q = q(l) as a quadratic
polynomial in Z[l] and note that we are looking to factorise

                    Φk (q(l)) = n1 (l)n2 (l)


                                           Ordinary abelian varieties having small embedding degree – p. 10/1
Factoring Φk (q(l))
 1. Let q(l) be a quadratic polynomial over Q[l]. Then, one
    of two cases may occur:
   (a) Φk (q(l)) is irreducible over the rationals, with degree
       2ϕ(k)
   (b) Φk (q(l)) = n1 (l)n2 (l), where n1 (l), n2 (l) are
       irreducible over the rationals, degree ϕ(k)
 2. A criterion for case (b) is q(z) = ζk having a solution in
    Q(ζk ), where ζk is a primitive complex k-th root of unity.

(Note: applies to both elliptic and hyperelliptic curves. . . )

                                             Ordinary abelian varieties having small embedding degree – p. 11/1
Two approaches
Two equivalent approaches present themselves
1. expand Φk (q(l)) = n1 (l)n2 (l) and try to solve the
   Diophantine system of equations
2. solve q(z) = ζk over Q(ζk )




                                         Ordinary abelian varieties having small embedding degree – p. 12/1
Retrieving the MNT curves
Here k ∈ {3, 4, 6} and [Q(ζk ) : Q] = 2.
Example (k = 6): Completing the square and clearing
denominators, we get

                       w2 + b = cζ6

where b, c ∈ Z and w ∈ Z(ζ6 ). Writing w = A + Bζ6 , leads
to solving          
                    B(2A + B) = c
                    B 2 − A 2     =b

and, by fixing b, retrieving the previous examples.
                                        Ordinary abelian varieties having small embedding degree – p. 13/1
Hyperelliptic curves (genus 2)
Here k ∈ {5, 8, 10, 12} and [Q(ζk ) : Q] = 4.
As before, w2 + b = cζk , but
                                 2     3
                 w = A + Bζk + Cζk + Dζk

which now leads to four quadratics in integers A, B, C and
D, two of which homogeneous that must vanish.




                                           Ordinary abelian varieties having small embedding degree – p. 14/1
An example: k = 8
k = 8:
         
         2AD + 2BC        =0
         2AC + B 2 − D2   =0
         ⇒ D3 − B 2 D + 2BC 2 = 0




                             Ordinary abelian varieties having small embedding degree – p. 15/1
An example: k = 8
k = 8:
                
                2AD + 2BC           =0
                2AC + B 2 − D2      =0
                ⇒ D3 − B 2 D + 2BC 2 = 0

 • latter corresponds to an elliptic curve with rank 0

 • none of its four points leads to a solution to the system




                                        Ordinary abelian varieties having small embedding degree – p. 15/1
An example: k = 8
k = 8:
                   
                   2AD + 2BC        =0
                   2AC + B 2 − D2   =0
                   ⇒ D3 − B 2 D + 2BC 2 = 0

 • latter corresponds to an elliptic curve with rank 0

 • none of its four points leads to a solution to the system

 • there exists no rational quadratic polynomial q(l) s.t.
    Φ8 (q(l)) splits.

                                        Ordinary abelian varieties having small embedding degree – p. 15/1
Some solutions

                     k     h            q

                     5      1           l2
                           404 1010l2 + 525l + 69
                     10     4     10l2 + 5l + 2
                           11     11l2 + 10l + 3
                           11     55l2 + 40l + 8

                     12     1        22m+1

q = 2l2 , 6l2 ( k = 12 )
q = 5l2 ( k = 5 )
                                               Ordinary abelian varieties having small embedding degree – p. 16/1
Questions



            P.Valenca@rhul.ac.uk




                             Ordinary abelian varieties having small embedding degree – p. 17/1

More Related Content

What's hot

IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...
IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...
IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...IJERD Editor
 
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...guest9fa195
 
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...SEENET-MTP
 
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRAS
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRASSPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRAS
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRASKunda Chowdaiah
 
Maths CBSE 2011-12
Maths CBSE 2011-12Maths CBSE 2011-12
Maths CBSE 2011-12studymate
 
Lossy Kernelization
Lossy KernelizationLossy Kernelization
Lossy Kernelizationmsramanujan
 
Some Results on Common Fixed Point Theorems in Hilbert Space
Some Results on Common Fixed Point Theorems in Hilbert SpaceSome Results on Common Fixed Point Theorems in Hilbert Space
Some Results on Common Fixed Point Theorems in Hilbert SpaceBRNSS Publication Hub
 
Stability criterion of periodic oscillations in a (15)
Stability criterion of periodic oscillations in a (15)Stability criterion of periodic oscillations in a (15)
Stability criterion of periodic oscillations in a (15)Alexander Decker
 
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIAL
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIALEXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIAL
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIALJournal For Research
 
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...SEENET-MTP
 
Group theory notes
Group theory notesGroup theory notes
Group theory notesmkumaresan
 
Group homomorphism
Group homomorphismGroup homomorphism
Group homomorphismNaliniSPatil
 
Construction of BIBD’s Using Quadratic Residues
Construction of BIBD’s Using Quadratic ResiduesConstruction of BIBD’s Using Quadratic Residues
Construction of BIBD’s Using Quadratic Residuesiosrjce
 

What's hot (18)

IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...
IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...
IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...
 
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...
 
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...
 
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRAS
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRASSPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRAS
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRAS
 
Maths CBSE 2011-12
Maths CBSE 2011-12Maths CBSE 2011-12
Maths CBSE 2011-12
 
Thesis 6
Thesis 6Thesis 6
Thesis 6
 
Lossy Kernelization
Lossy KernelizationLossy Kernelization
Lossy Kernelization
 
Sparsity by worst-case quadratic penalties
Sparsity by worst-case quadratic penaltiesSparsity by worst-case quadratic penalties
Sparsity by worst-case quadratic penalties
 
Hf2412861289
Hf2412861289Hf2412861289
Hf2412861289
 
Some Results on Common Fixed Point Theorems in Hilbert Space
Some Results on Common Fixed Point Theorems in Hilbert SpaceSome Results on Common Fixed Point Theorems in Hilbert Space
Some Results on Common Fixed Point Theorems in Hilbert Space
 
Analysis of algorithms
Analysis of algorithmsAnalysis of algorithms
Analysis of algorithms
 
Stability criterion of periodic oscillations in a (15)
Stability criterion of periodic oscillations in a (15)Stability criterion of periodic oscillations in a (15)
Stability criterion of periodic oscillations in a (15)
 
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIAL
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIALEXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIAL
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIAL
 
Ecl17
Ecl17Ecl17
Ecl17
 
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...
 
Group theory notes
Group theory notesGroup theory notes
Group theory notes
 
Group homomorphism
Group homomorphismGroup homomorphism
Group homomorphism
 
Construction of BIBD’s Using Quadratic Residues
Construction of BIBD’s Using Quadratic ResiduesConstruction of BIBD’s Using Quadratic Residues
Construction of BIBD’s Using Quadratic Residues
 

Viewers also liked

Psicologia de dados e terapia de programas
Psicologia de dados e terapia de programasPsicologia de dados e terapia de programas
Psicologia de dados e terapia de programasPaula Valenca
 
Maths Holy Grail will not bring disaster to the Internet
Maths Holy Grail will not bring disaster to the InternetMaths Holy Grail will not bring disaster to the Internet
Maths Holy Grail will not bring disaster to the InternetPaula Valenca
 
From the MOV attack to pairing-friendly curves
From the MOV attack to pairing-friendly curvesFrom the MOV attack to pairing-friendly curves
From the MOV attack to pairing-friendly curvesPaula Valenca
 
How Web Design will reinvent manufacturing
How Web Design will reinvent manufacturingHow Web Design will reinvent manufacturing
How Web Design will reinvent manufacturingMike Kuniavsky
 
What is it that makes wieden + kennedy so different, so appealing?
What is it that makes wieden + kennedy so different, so appealing?What is it that makes wieden + kennedy so different, so appealing?
What is it that makes wieden + kennedy so different, so appealing?neilchristie
 
The Presentation Come-Back Kid
The Presentation Come-Back KidThe Presentation Come-Back Kid
The Presentation Come-Back KidEthos3
 

Viewers also liked (6)

Psicologia de dados e terapia de programas
Psicologia de dados e terapia de programasPsicologia de dados e terapia de programas
Psicologia de dados e terapia de programas
 
Maths Holy Grail will not bring disaster to the Internet
Maths Holy Grail will not bring disaster to the InternetMaths Holy Grail will not bring disaster to the Internet
Maths Holy Grail will not bring disaster to the Internet
 
From the MOV attack to pairing-friendly curves
From the MOV attack to pairing-friendly curvesFrom the MOV attack to pairing-friendly curves
From the MOV attack to pairing-friendly curves
 
How Web Design will reinvent manufacturing
How Web Design will reinvent manufacturingHow Web Design will reinvent manufacturing
How Web Design will reinvent manufacturing
 
What is it that makes wieden + kennedy so different, so appealing?
What is it that makes wieden + kennedy so different, so appealing?What is it that makes wieden + kennedy so different, so appealing?
What is it that makes wieden + kennedy so different, so appealing?
 
The Presentation Come-Back Kid
The Presentation Come-Back KidThe Presentation Come-Back Kid
The Presentation Come-Back Kid
 

Similar to Ordinary abelian varieties having small embedding degree

International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI)International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI)inventionjournals
 
International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI) International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI) inventionjournals
 
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...J. Rogelio Yoyontzin Perez Buendia
 
Goldberg-Coxeter construction for 3- or 4-valent plane maps
Goldberg-Coxeter construction for 3- or 4-valent plane mapsGoldberg-Coxeter construction for 3- or 4-valent plane maps
Goldberg-Coxeter construction for 3- or 4-valent plane mapsMathieu Dutour Sikiric
 
NMR Spectroscopy
NMR SpectroscopyNMR Spectroscopy
NMR Spectroscopyclayqn88
 
SMB_2012_HR_VAN_ST-last version
SMB_2012_HR_VAN_ST-last versionSMB_2012_HR_VAN_ST-last version
SMB_2012_HR_VAN_ST-last versionLilyana Vankova
 
Kittel c. introduction to solid state physics 8 th edition - solution manual
Kittel c.  introduction to solid state physics 8 th edition - solution manualKittel c.  introduction to solid state physics 8 th edition - solution manual
Kittel c. introduction to solid state physics 8 th edition - solution manualamnahnura
 
SOCG: Linear-Size Approximations to the Vietoris-Rips Filtration
SOCG: Linear-Size Approximations to the Vietoris-Rips FiltrationSOCG: Linear-Size Approximations to the Vietoris-Rips Filtration
SOCG: Linear-Size Approximations to the Vietoris-Rips FiltrationDon Sheehy
 
Module 15 Algebraic Formulae
Module 15   Algebraic FormulaeModule 15   Algebraic Formulae
Module 15 Algebraic Formulaenorazilah
 
Talk given at the Workshop in Catania University
Talk given at the Workshop in Catania University Talk given at the Workshop in Catania University
Talk given at the Workshop in Catania University Marco Frasca
 
Scattering theory analogues of several classical estimates in Fourier analysis
Scattering theory analogues of several classical estimates in Fourier analysisScattering theory analogues of several classical estimates in Fourier analysis
Scattering theory analogues of several classical estimates in Fourier analysisVjekoslavKovac1
 
Return times of random walk on generalized random graphs
Return times of random walk on generalized random graphsReturn times of random walk on generalized random graphs
Return times of random walk on generalized random graphsNaoki Masuda
 

Similar to Ordinary abelian varieties having small embedding degree (20)

International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI)International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI)
 
LPS talk notes
LPS talk notesLPS talk notes
LPS talk notes
 
International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI) International Journal of Engineering and Science Invention (IJESI)
International Journal of Engineering and Science Invention (IJESI)
 
Assign1 21314-sol
Assign1 21314-solAssign1 21314-sol
Assign1 21314-sol
 
Pairing scott
Pairing scottPairing scott
Pairing scott
 
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...
 
Goldberg-Coxeter construction for 3- or 4-valent plane maps
Goldberg-Coxeter construction for 3- or 4-valent plane mapsGoldberg-Coxeter construction for 3- or 4-valent plane maps
Goldberg-Coxeter construction for 3- or 4-valent plane maps
 
Final
Final Final
Final
 
Maths04
Maths04Maths04
Maths04
 
Kinks & Defects
Kinks & DefectsKinks & Defects
Kinks & Defects
 
Em04 il
Em04 ilEm04 il
Em04 il
 
NMR Spectroscopy
NMR SpectroscopyNMR Spectroscopy
NMR Spectroscopy
 
SMB_2012_HR_VAN_ST-last version
SMB_2012_HR_VAN_ST-last versionSMB_2012_HR_VAN_ST-last version
SMB_2012_HR_VAN_ST-last version
 
Kittel c. introduction to solid state physics 8 th edition - solution manual
Kittel c.  introduction to solid state physics 8 th edition - solution manualKittel c.  introduction to solid state physics 8 th edition - solution manual
Kittel c. introduction to solid state physics 8 th edition - solution manual
 
draft5
draft5draft5
draft5
 
SOCG: Linear-Size Approximations to the Vietoris-Rips Filtration
SOCG: Linear-Size Approximations to the Vietoris-Rips FiltrationSOCG: Linear-Size Approximations to the Vietoris-Rips Filtration
SOCG: Linear-Size Approximations to the Vietoris-Rips Filtration
 
Module 15 Algebraic Formulae
Module 15   Algebraic FormulaeModule 15   Algebraic Formulae
Module 15 Algebraic Formulae
 
Talk given at the Workshop in Catania University
Talk given at the Workshop in Catania University Talk given at the Workshop in Catania University
Talk given at the Workshop in Catania University
 
Scattering theory analogues of several classical estimates in Fourier analysis
Scattering theory analogues of several classical estimates in Fourier analysisScattering theory analogues of several classical estimates in Fourier analysis
Scattering theory analogues of several classical estimates in Fourier analysis
 
Return times of random walk on generalized random graphs
Return times of random walk on generalized random graphsReturn times of random walk on generalized random graphs
Return times of random walk on generalized random graphs
 

Recently uploaded

Meghan Sutherland In Media Res Media Component
Meghan Sutherland In Media Res Media ComponentMeghan Sutherland In Media Res Media Component
Meghan Sutherland In Media Res Media ComponentInMediaRes1
 
Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Celine George
 
Capitol Tech U Doctoral Presentation - April 2024.pptx
Capitol Tech U Doctoral Presentation - April 2024.pptxCapitol Tech U Doctoral Presentation - April 2024.pptx
Capitol Tech U Doctoral Presentation - April 2024.pptxCapitolTechU
 
Solving Puzzles Benefits Everyone (English).pptx
Solving Puzzles Benefits Everyone (English).pptxSolving Puzzles Benefits Everyone (English).pptx
Solving Puzzles Benefits Everyone (English).pptxOH TEIK BIN
 
CELL CYCLE Division Science 8 quarter IV.pptx
CELL CYCLE Division Science 8 quarter IV.pptxCELL CYCLE Division Science 8 quarter IV.pptx
CELL CYCLE Division Science 8 quarter IV.pptxJiesonDelaCerna
 
Roles & Responsibilities in Pharmacovigilance
Roles & Responsibilities in PharmacovigilanceRoles & Responsibilities in Pharmacovigilance
Roles & Responsibilities in PharmacovigilanceSamikshaHamane
 
MICROBIOLOGY biochemical test detailed.pptx
MICROBIOLOGY biochemical test detailed.pptxMICROBIOLOGY biochemical test detailed.pptx
MICROBIOLOGY biochemical test detailed.pptxabhijeetpadhi001
 
Crayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon ACrayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon AUnboundStockton
 
Framing an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdf
Framing an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdfFraming an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdf
Framing an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdfUjwalaBharambe
 
Introduction to ArtificiaI Intelligence in Higher Education
Introduction to ArtificiaI Intelligence in Higher EducationIntroduction to ArtificiaI Intelligence in Higher Education
Introduction to ArtificiaI Intelligence in Higher Educationpboyjonauth
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxSayali Powar
 
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions  for the students and aspirants of Chemistry12th.pptxOrganic Name Reactions  for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions for the students and aspirants of Chemistry12th.pptxVS Mahajan Coaching Centre
 
Proudly South Africa powerpoint Thorisha.pptx
Proudly South Africa powerpoint Thorisha.pptxProudly South Africa powerpoint Thorisha.pptx
Proudly South Africa powerpoint Thorisha.pptxthorishapillay1
 
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdfLike-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdfMr Bounab Samir
 
DATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginnersDATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginnersSabitha Banu
 
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️9953056974 Low Rate Call Girls In Saket, Delhi NCR
 
Blooming Together_ Growing a Community Garden Worksheet.docx
Blooming Together_ Growing a Community Garden Worksheet.docxBlooming Together_ Growing a Community Garden Worksheet.docx
Blooming Together_ Growing a Community Garden Worksheet.docxUnboundStockton
 

Recently uploaded (20)

Meghan Sutherland In Media Res Media Component
Meghan Sutherland In Media Res Media ComponentMeghan Sutherland In Media Res Media Component
Meghan Sutherland In Media Res Media Component
 
Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17
 
Capitol Tech U Doctoral Presentation - April 2024.pptx
Capitol Tech U Doctoral Presentation - April 2024.pptxCapitol Tech U Doctoral Presentation - April 2024.pptx
Capitol Tech U Doctoral Presentation - April 2024.pptx
 
Solving Puzzles Benefits Everyone (English).pptx
Solving Puzzles Benefits Everyone (English).pptxSolving Puzzles Benefits Everyone (English).pptx
Solving Puzzles Benefits Everyone (English).pptx
 
CELL CYCLE Division Science 8 quarter IV.pptx
CELL CYCLE Division Science 8 quarter IV.pptxCELL CYCLE Division Science 8 quarter IV.pptx
CELL CYCLE Division Science 8 quarter IV.pptx
 
Roles & Responsibilities in Pharmacovigilance
Roles & Responsibilities in PharmacovigilanceRoles & Responsibilities in Pharmacovigilance
Roles & Responsibilities in Pharmacovigilance
 
MICROBIOLOGY biochemical test detailed.pptx
MICROBIOLOGY biochemical test detailed.pptxMICROBIOLOGY biochemical test detailed.pptx
MICROBIOLOGY biochemical test detailed.pptx
 
Model Call Girl in Bikash Puri Delhi reach out to us at 🔝9953056974🔝
Model Call Girl in Bikash Puri  Delhi reach out to us at 🔝9953056974🔝Model Call Girl in Bikash Puri  Delhi reach out to us at 🔝9953056974🔝
Model Call Girl in Bikash Puri Delhi reach out to us at 🔝9953056974🔝
 
Crayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon ACrayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon A
 
Framing an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdf
Framing an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdfFraming an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdf
Framing an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdf
 
Introduction to ArtificiaI Intelligence in Higher Education
Introduction to ArtificiaI Intelligence in Higher EducationIntroduction to ArtificiaI Intelligence in Higher Education
Introduction to ArtificiaI Intelligence in Higher Education
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
 
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions  for the students and aspirants of Chemistry12th.pptxOrganic Name Reactions  for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
 
Proudly South Africa powerpoint Thorisha.pptx
Proudly South Africa powerpoint Thorisha.pptxProudly South Africa powerpoint Thorisha.pptx
Proudly South Africa powerpoint Thorisha.pptx
 
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdfLike-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
 
OS-operating systems- ch04 (Threads) ...
OS-operating systems- ch04 (Threads) ...OS-operating systems- ch04 (Threads) ...
OS-operating systems- ch04 (Threads) ...
 
DATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginnersDATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginners
 
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
 
TataKelola dan KamSiber Kecerdasan Buatan v022.pdf
TataKelola dan KamSiber Kecerdasan Buatan v022.pdfTataKelola dan KamSiber Kecerdasan Buatan v022.pdf
TataKelola dan KamSiber Kecerdasan Buatan v022.pdf
 
Blooming Together_ Growing a Community Garden Worksheet.docx
Blooming Together_ Growing a Community Garden Worksheet.docxBlooming Together_ Growing a Community Garden Worksheet.docx
Blooming Together_ Growing a Community Garden Worksheet.docx
 

Ordinary abelian varieties having small embedding degree

  • 1. Ordinary abelian varieties having small embedding degree Paula Cristina Valenca ¸ joined work with Steven Galbraith and James McKee P.Valenca@rhul.ac.uk Royal Holloway University of London Ordinary abelian varieties having small embedding degree – p. 1/1
  • 2. Plan • On the problem of using abelian varieties with small embedding degree • Introducing the MNT curves • Extending MNT curves with co-factors • The genus 2 case Ordinary abelian varieties having small embedding degree – p. 2/1
  • 3. Embedding degree Fq finite field, J/Fq Jacobian of a curve. The embedding degree is the smallest positive integer k r | qk − 1 where r is the largest prime divisor of #J. In particular, r | Φk (q) (k-cyclotomic polynomial). Ordinary abelian varieties having small embedding degree – p. 3/1
  • 4. Embedding degree Fq finite field, J/Fq Jacobian of a curve. The embedding degree is the smallest positive integer k r | qk − 1 where r is the largest prime divisor of #J. In particular, r | Φk (q) (k-cyclotomic polynomial). Motivation: use of Weil and Tate pairings in cryptographic protocols - provide a mapping from G ⊂ J to F∗k . q Ordinary abelian varieties having small embedding degree – p. 3/1
  • 5. Cyclotomic Polynomials n ϕ(n) Φn (q) 1 1 q−1 2 1 q+1 3 2 q2 + q + 1 4 2 q2 + 1 5 4 q4 + q3 + q2 + q + 1 6 2 q2 − q + 1 7 6 q6 + q5 + q4 + q3 + q2 + q + 1 8 4 q4 + 1 9 6 q6 + q3 + 1 10 4 q4 − q3 + q2 − q + 1 11 10 q 10 + q 9 + q 8 + q 7 + q 6 + q 5 + q 4 + q 3 + q 2 + q + 1 12 4 q4 − q2 + 1 Ordinary abelian varieties having small embedding degree – p. 4/1
  • 6. Suitable elliptic curves • supersingular • MNT curves (Miyaji, Nakabayashi, Takano) Ordinary abelian varieties having small embedding degree – p. 5/1
  • 7. Suitable elliptic curves • supersingular : for example, • q = 32m , n = 32m ± 3m + 1 (k = 3) • q = 32m+1 , n = 32m+1 ± 3m+1 + 1 (k = 6) • MNT curves (Miyaji, Nakabayashi, Takano) Ordinary abelian varieties having small embedding degree – p. 5/1
  • 8. Suitable elliptic curves • supersingular • MNT curves (Miyaji, Nakabayashi, Takano) : for k ∈ {3, 4, 6} (ϕ(k) = 2), find q(l), t(l) ∈ Z[l] s.t. n(l) := q(l) − t(l) + 1 | Φk (q(l)) k q t n 3 12l2 − 1 −1 ± 6l 12l2 ± 6l + 1 4 l2 + l + 1 −l, l + 1 l2 + 2l + 2, l2 + 1 6 4l2 + 1 1 ± 2l 4l2 ± 2l + 1 Ordinary abelian varieties having small embedding degree – p. 5/1
  • 9. Extending these methods • Extending MNT curves with co-factors • The genus 2 case Ordinary abelian varieties having small embedding degree – p. 6/1
  • 10. Extending these methods • Extending MNT curves with co-factors • instead of n | Φk (q), have r | Φk (q) where n = hr (r is the largest such factor) • The genus 2 case Ordinary abelian varieties having small embedding degree – p. 6/1
  • 11. co-factors: k = 6 Write λr = Φ6 (q) = q 2 − q + 1 Ordinary abelian varieties having small embedding degree – p. 7/1
  • 12. co-factors: k = 6 Write λr = Φ6 (q) = q 2 − q + 1 n t2 ⇒ (q + t + 1) − λ/h = 3 − q q Ordinary abelian varieties having small embedding degree – p. 7/1
  • 13. co-factors: k = 6 Write λr = Φ6 (q) = q 2 − q + 1 n t2 ⇒ (q + t + 1) − λ/h = 3 − q q Writing λ/h = λ/h + , > 0 (gcd(λ, h) = 1) and using Hasse’s bound −4/3 + < q + t + 1 − λ/h < 3 + < 4 for q > 64, and so v := q + t + 1 − λ/h ∈ {−1, 0, 1, 2, 3} Ordinary abelian varieties having small embedding degree – p. 7/1
  • 14. co-factors (cont.) Substituting v in n(v − ) = 3q − t2 leads to solving a quadratic in t whose discriminant must be a square. Writing = u/h, find x s.t. x2 = M + N q where M, N ∈ Z, depending solely on u and h. Ordinary abelian varieties having small embedding degree – p. 8/1
  • 15. co-factors (cont.) Substituting v in n(v − ) = 3q − t2 leads to solving a quadratic in t whose discriminant must be a square. Writing = u/h, find x s.t. x2 = M + N q where M, N ∈ Z, depending solely on u and h. M must be a quadratic residue mod N . Ordinary abelian varieties having small embedding degree – p. 8/1
  • 16. Valid pairs (q, t) for k = 6 h q t 1 4l2 + 1 ±2l + 1 2 8l2 + 6l + 3 2l + 2 24l2 + 6l + 1 −6l 3 12l2 + 4l + 3 −2l + 1 84l2 + 16l + 1 −14l − 1 84l2 + 128l + 49 14l + 11 ... ... ... • Curves can be constructed by using Complex Multiplication, solving a Pell-type equation. Ordinary abelian varieties having small embedding degree – p. 9/1
  • 17. Extending these methods • Extending MNT curves with co-factors • The genus 2 case • Embedding degree k ∈ {5, 8, 10, 12} (ϕ(k) = 4) • Heuristics suggest similar results (in frequency) • . . . but the earlier method no longer applies Ordinary abelian varieties having small embedding degree – p. 10/1
  • 18. Extending these methods • Extending MNT curves with co-factors • The genus 2 case • Embedding degree k ∈ {5, 8, 10, 12} (ϕ(k) = 4) • Heuristics suggest similar results (in frequency) • . . . but the earlier method no longer applies Alternative approach: consider q = q(l) as a quadratic polynomial in Z[l] and note that we are looking to factorise Φk (q(l)) = n1 (l)n2 (l) Ordinary abelian varieties having small embedding degree – p. 10/1
  • 19. Factoring Φk (q(l)) 1. Let q(l) be a quadratic polynomial over Q[l]. Then, one of two cases may occur: (a) Φk (q(l)) is irreducible over the rationals, with degree 2ϕ(k) (b) Φk (q(l)) = n1 (l)n2 (l), where n1 (l), n2 (l) are irreducible over the rationals, degree ϕ(k) 2. A criterion for case (b) is q(z) = ζk having a solution in Q(ζk ), where ζk is a primitive complex k-th root of unity. (Note: applies to both elliptic and hyperelliptic curves. . . ) Ordinary abelian varieties having small embedding degree – p. 11/1
  • 20. Two approaches Two equivalent approaches present themselves 1. expand Φk (q(l)) = n1 (l)n2 (l) and try to solve the Diophantine system of equations 2. solve q(z) = ζk over Q(ζk ) Ordinary abelian varieties having small embedding degree – p. 12/1
  • 21. Retrieving the MNT curves Here k ∈ {3, 4, 6} and [Q(ζk ) : Q] = 2. Example (k = 6): Completing the square and clearing denominators, we get w2 + b = cζ6 where b, c ∈ Z and w ∈ Z(ζ6 ). Writing w = A + Bζ6 , leads to solving  B(2A + B) = c B 2 − A 2 =b and, by fixing b, retrieving the previous examples. Ordinary abelian varieties having small embedding degree – p. 13/1
  • 22. Hyperelliptic curves (genus 2) Here k ∈ {5, 8, 10, 12} and [Q(ζk ) : Q] = 4. As before, w2 + b = cζk , but 2 3 w = A + Bζk + Cζk + Dζk which now leads to four quadratics in integers A, B, C and D, two of which homogeneous that must vanish. Ordinary abelian varieties having small embedding degree – p. 14/1
  • 23. An example: k = 8 k = 8:  2AD + 2BC =0 2AC + B 2 − D2 =0 ⇒ D3 − B 2 D + 2BC 2 = 0 Ordinary abelian varieties having small embedding degree – p. 15/1
  • 24. An example: k = 8 k = 8:  2AD + 2BC =0 2AC + B 2 − D2 =0 ⇒ D3 − B 2 D + 2BC 2 = 0 • latter corresponds to an elliptic curve with rank 0 • none of its four points leads to a solution to the system Ordinary abelian varieties having small embedding degree – p. 15/1
  • 25. An example: k = 8 k = 8:  2AD + 2BC =0 2AC + B 2 − D2 =0 ⇒ D3 − B 2 D + 2BC 2 = 0 • latter corresponds to an elliptic curve with rank 0 • none of its four points leads to a solution to the system • there exists no rational quadratic polynomial q(l) s.t. Φ8 (q(l)) splits. Ordinary abelian varieties having small embedding degree – p. 15/1
  • 26. Some solutions k h q 5 1 l2 404 1010l2 + 525l + 69 10 4 10l2 + 5l + 2 11 11l2 + 10l + 3 11 55l2 + 40l + 8 12 1 22m+1 q = 2l2 , 6l2 ( k = 12 ) q = 5l2 ( k = 5 ) Ordinary abelian varieties having small embedding degree – p. 16/1
  • 27. Questions P.Valenca@rhul.ac.uk Ordinary abelian varieties having small embedding degree – p. 17/1