Computing the endomorphism ring of an ordinary elliptic curve over a finite field
arXiv:0902.4670 · doi:10.1016/j.jnt.2009.11.003
Abstract
We present two algorithms to compute the endomorphism ring of an ordinary elliptic curve E defined over a finite field F_q. Under suitable heuristic assumptions, both have subexponential complexity. We bound the complexity of the first algorithm in terms of log q, while our bound for the second algorithm depends primarily on log |D_E|, where D_E is the discriminant of the order isomorphic to End(E). As a byproduct, our method yields a short certificate that may be used to verify that the endomorphism ring is as claimed.
16 pages (minor edits)
References in corpus (4)
Cited by in corpus (17)
- Isogeny volcanoes
- Computing images of Galois representations attached to elliptic curves
- Class invariants by the CRT method
- Accelerating the CM method
- -adic images of Galois for elliptic curves over
- A Subexponential Algorithm for Evaluating Large Degree Isogenies
- A quasi-linear time algorithm for computing modular polynomials in dimension 2
- On the evaluation of modular polynomials
- Computing separable isogenies in quasi-optimal time
- Computing endomorphism rings of elliptic curves under the GRH
- A low-memory algorithm for finding short product representations in finite groups
- Computing endomorphism rings of supersingular elliptic curves and connections to pathfinding in isogeny graphs
- The Jacobi Factoring Circuit: Quantum Factoring with Near-Linear Gates and Sublinear Space and Depth
- Computing supersingular endomorphism rings using inseparable endomorphisms
- Computing the endomorphism ring of an elliptic curve over a number field
- Spanning the isogeny class of a power of an ordinary elliptic curve over a finite field. Application to the number of rational points of curves of genus
- Hard isogeny problems over RSA moduli and groups with infeasible inversion