[Cryptography] Can someone explain small order subgroups?

Viktor Dukhovni cryptography at dukhovni.org
Tue Mar 7 13:31:59 EST 2017


> On Mar 7, 2017, at 10:37 AM, Phillip Hallam-Baker <phill at hallambaker.com> wrote:
> 
> I was trying to work out quite why my code was behaving oddly and then I discovered that I was calculating the order of the group wrongly.

Perhaps these will help:

https://en.wikipedia.org/wiki/Counting_points_on_elliptic_curves#Schoof.E2.80.93Elkies.E2.80.93Atkin_algorithm
https://en.wikipedia.org/wiki/Schoof%E2%80%93Elkies%E2%80%93Atkin_algorithm

-- 
	Viktor.



More information about the cryptography mailing list