Ordinary abelian varieties having
    small embedding degree
               Paula Cristina Valenca
                                   ¸
                   joined work with
         Steven Galbraith and James McKee
               P.Valenca@rhul.ac.uk


         Royal Holloway University of London




                                         Ordinary abelian varieties having small embedding degree – p. 1/1
Plan

 •   On the problem of using abelian varieties with
     small embedding degree
      • Introducing the MNT curves

 •   Extending MNT curves with co-factors
 •   The genus 2 case




                                   Ordinary abelian varieties having small embedding degree – p. 2/1
Embedding degree
Fq finite field, J/Fq Jacobian of a curve.
The embedding degree is the smallest positive integer k

                           r | qk − 1

where r is the largest prime divisor of #J.
In particular, r | Φk (q) (k-cyclotomic polynomial).




                                           Ordinary abelian varieties having small embedding degree – p. 3/1
Embedding degree
Fq finite field, J/Fq Jacobian of a curve.
The embedding degree is the smallest positive integer k

                           r | qk − 1

where r is the largest prime divisor of #J.
In particular, r | Φk (q) (k-cyclotomic polynomial).

Motivation: use of Weil and Tate pairings in cryptographic
protocols - provide a mapping from G ⊂ J to F∗k .
                                                q




                                           Ordinary abelian varieties having small embedding degree – p. 3/1
Cyclotomic Polynomials

    n    ϕ(n)   Φn (q)
    1     1     q−1
    2     1     q+1
    3     2     q2 + q + 1
    4     2     q2 + 1
    5     4     q4 + q3 + q2 + q + 1
    6     2     q2 − q + 1
    7     6     q6 + q5 + q4 + q3 + q2 + q + 1
    8     4     q4 + 1
    9     6     q6 + q3 + 1
    10    4     q4 − q3 + q2 − q + 1
    11   10     q 10 + q 9 + q 8 + q 7 + q 6 + q 5 + q 4 + q 3 + q 2 + q + 1
    12    4     q4 − q2 + 1

                                                       Ordinary abelian varieties having small embedding degree – p. 4/1
Suitable elliptic curves
 • supersingular

 • MNT curves (Miyaji, Nakabayashi, Takano)




                                   Ordinary abelian varieties having small embedding degree – p. 5/1
Suitable elliptic curves
 • supersingular : for example,
   • q = 32m , n = 32m ± 3m + 1 (k = 3)
   • q = 32m+1 , n = 32m+1 ± 3m+1 + 1 (k = 6)

 • MNT curves (Miyaji, Nakabayashi, Takano)




                                      Ordinary abelian varieties having small embedding degree – p. 5/1
Suitable elliptic curves
 • supersingular

 • MNT curves (Miyaji, Nakabayashi, Takano) : for
   k ∈ {3, 4, 6} (ϕ(k) = 2), find q(l), t(l) ∈ Z[l] s.t.

                 n(l) := q(l) − t(l) + 1 | Φk (q(l))

          k       q          t              n

          3   12l2 − 1    −1 ± 6l     12l2 ± 6l + 1
          4   l2 + l + 1 −l, l + 1 l2 + 2l + 2, l2 + 1
          6    4l2 + 1    1 ± 2l       4l2 ± 2l + 1

                                            Ordinary abelian varieties having small embedding degree – p. 5/1
Extending these methods
 • Extending MNT curves with co-factors

 • The genus 2 case




                                    Ordinary abelian varieties having small embedding degree – p. 6/1
Extending these methods
 • Extending MNT curves with co-factors
   • instead of n | Φk (q), have r | Φk (q) where n = hr
     (r is the largest such factor)
 • The genus 2 case




                                       Ordinary abelian varieties having small embedding degree – p. 6/1
co-factors: k = 6
Write
           λr = Φ6 (q) = q 2 − q + 1




                                  Ordinary abelian varieties having small embedding degree – p. 7/1
co-factors: k = 6
Write
            λr = Φ6 (q) = q 2 − q + 1
          n                         t2
        ⇒   (q + t + 1) − λ/h = 3 −
          q                         q




                                   Ordinary abelian varieties having small embedding degree – p. 7/1
co-factors: k = 6
Write
                  λr = Φ6 (q) = q 2 − q + 1
               n                         t2
             ⇒   (q + t + 1) − λ/h = 3 −
               q                         q
Writing λ/h = λ/h + , > 0 (gcd(λ, h) = 1) and using
Hasse’s bound

         −4/3 + < q + t + 1 − λ/h < 3 + < 4

for q > 64, and so v := q + t + 1 − λ/h ∈ {−1, 0, 1, 2, 3}


                                         Ordinary abelian varieties having small embedding degree – p. 7/1
co-factors (cont.)
Substituting v in
                    n(v − ) = 3q − t2
leads to solving a quadratic in t whose discriminant must
be a square.
Writing = u/h, find x s.t.

                       x2 = M + N q

where M, N ∈ Z, depending solely on u and h.




                                        Ordinary abelian varieties having small embedding degree – p. 8/1
co-factors (cont.)
Substituting v in
                    n(v − ) = 3q − t2
leads to solving a quadratic in t whose discriminant must
be a square.
Writing = u/h, find x s.t.

                       x2 = M + N q

where M, N ∈ Z, depending solely on u and h.
M must be a quadratic residue mod N .


                                        Ordinary abelian varieties having small embedding degree – p. 8/1
Valid pairs (q, t) for k = 6

                  h           q              t

                  1        4l2 + 1        ±2l + 1
                  2      8l2 + 6l + 3      2l + 2
                        24l2 + 6l + 1       −6l
                  3     12l2 + 4l + 3     −2l + 1
                        84l2 + 16l + 1    −14l − 1
                       84l2 + 128l + 49   14l + 11
                 ...         ...            ...



 • Curves can be constructed by using Complex
   Multiplication, solving a Pell-type equation.

                                                  Ordinary abelian varieties having small embedding degree – p. 9/1
Extending these methods
 • Extending MNT curves with co-factors

 • The genus 2 case
   • Embedding degree k ∈ {5, 8, 10, 12} (ϕ(k) = 4)
   • Heuristics suggest similar results (in frequency)
   • . . . but the earlier method no longer applies




                                       Ordinary abelian varieties having small embedding degree – p. 10/1
Extending these methods
  • Extending MNT curves with co-factors

  • The genus 2 case
     • Embedding degree k ∈ {5, 8, 10, 12} (ϕ(k) = 4)
     • Heuristics suggest similar results (in frequency)
     • . . . but the earlier method no longer applies


Alternative approach: consider q = q(l) as a quadratic
polynomial in Z[l] and note that we are looking to factorise

                    Φk (q(l)) = n1 (l)n2 (l)


                                           Ordinary abelian varieties having small embedding degree – p. 10/1
Factoring Φk (q(l))
 1. Let q(l) be a quadratic polynomial over Q[l]. Then, one
    of two cases may occur:
   (a) Φk (q(l)) is irreducible over the rationals, with degree
       2ϕ(k)
   (b) Φk (q(l)) = n1 (l)n2 (l), where n1 (l), n2 (l) are
       irreducible over the rationals, degree ϕ(k)
 2. A criterion for case (b) is q(z) = ζk having a solution in
    Q(ζk ), where ζk is a primitive complex k-th root of unity.

(Note: applies to both elliptic and hyperelliptic curves. . . )

                                             Ordinary abelian varieties having small embedding degree – p. 11/1
Two approaches
Two equivalent approaches present themselves
1. expand Φk (q(l)) = n1 (l)n2 (l) and try to solve the
   Diophantine system of equations
2. solve q(z) = ζk over Q(ζk )




                                         Ordinary abelian varieties having small embedding degree – p. 12/1
Retrieving the MNT curves
Here k ∈ {3, 4, 6} and [Q(ζk ) : Q] = 2.
Example (k = 6): Completing the square and clearing
denominators, we get

                       w2 + b = cζ6

where b, c ∈ Z and w ∈ Z(ζ6 ). Writing w = A + Bζ6 , leads
to solving          
                    B(2A + B) = c
                    B 2 − A 2     =b

and, by fixing b, retrieving the previous examples.
                                        Ordinary abelian varieties having small embedding degree – p. 13/1
Hyperelliptic curves (genus 2)
Here k ∈ {5, 8, 10, 12} and [Q(ζk ) : Q] = 4.
As before, w2 + b = cζk , but
                                 2     3
                 w = A + Bζk + Cζk + Dζk

which now leads to four quadratics in integers A, B, C and
D, two of which homogeneous that must vanish.




                                           Ordinary abelian varieties having small embedding degree – p. 14/1
An example: k = 8
k = 8:
         
         2AD + 2BC        =0
         2AC + B 2 − D2   =0
         ⇒ D3 − B 2 D + 2BC 2 = 0




                             Ordinary abelian varieties having small embedding degree – p. 15/1
An example: k = 8
k = 8:
                
                2AD + 2BC           =0
                2AC + B 2 − D2      =0
                ⇒ D3 − B 2 D + 2BC 2 = 0

 • latter corresponds to an elliptic curve with rank 0

 • none of its four points leads to a solution to the system




                                        Ordinary abelian varieties having small embedding degree – p. 15/1
An example: k = 8
k = 8:
                   
                   2AD + 2BC        =0
                   2AC + B 2 − D2   =0
                   ⇒ D3 − B 2 D + 2BC 2 = 0

 • latter corresponds to an elliptic curve with rank 0

 • none of its four points leads to a solution to the system

 • there exists no rational quadratic polynomial q(l) s.t.
    Φ8 (q(l)) splits.

                                        Ordinary abelian varieties having small embedding degree – p. 15/1
Some solutions

                     k     h            q

                     5      1           l2
                           404 1010l2 + 525l + 69
                     10     4     10l2 + 5l + 2
                           11     11l2 + 10l + 3
                           11     55l2 + 40l + 8

                     12     1        22m+1

q = 2l2 , 6l2 ( k = 12 )
q = 5l2 ( k = 5 )
                                               Ordinary abelian varieties having small embedding degree – p. 16/1
Questions



            P.Valenca@rhul.ac.uk




                             Ordinary abelian varieties having small embedding degree – p. 17/1

More Related Content

PDF
Talk given at the Twelfth Workshop on Non-Perurbative Quantum Chromodynamics ...
RTF
Inmo 2013 test_paper_solution_new
PDF
Imc2020 day1&amp;2 problems&amp;solutions
PDF
The Probability that a Matrix of Integers Is Diagonalizable
PDF
Crystallographic groups
DOCX
2.4 edited1
PDF
PhD thesis presentation of Nguyen Bich Van
PDF
Lecture 12 f17
Talk given at the Twelfth Workshop on Non-Perurbative Quantum Chromodynamics ...
Inmo 2013 test_paper_solution_new
Imc2020 day1&amp;2 problems&amp;solutions
The Probability that a Matrix of Integers Is Diagonalizable
Crystallographic groups
2.4 edited1
PhD thesis presentation of Nguyen Bich Van
Lecture 12 f17

What's hot (18)

PDF
IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...
PDF
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...
PDF
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...
PDF
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRAS
PDF
Maths CBSE 2011-12
PDF
Thesis 6
PDF
Lossy Kernelization
PDF
Sparsity by worst-case quadratic penalties
PDF
Hf2412861289
PDF
Some Results on Common Fixed Point Theorems in Hilbert Space
PPTX
Analysis of algorithms
PDF
Stability criterion of periodic oscillations in a (15)
PDF
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIAL
PDF
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...
PDF
Group theory notes
PPTX
Group homomorphism
PDF
Construction of BIBD’s Using Quadratic Residues
IJERD (www.ijerd.com) International Journal of Engineering Research and Devel...
Generation Of Solutions Of The Einstein Equations By Means Of The Kaluza Klei...
D. Vulcanov - On Cosmologies with non-Minimally Coupled Scalar Field and the ...
SPECTRAL SYNTHESIS PROBLEM FOR FOURIER ALGEBRAS
Maths CBSE 2011-12
Thesis 6
Lossy Kernelization
Sparsity by worst-case quadratic penalties
Hf2412861289
Some Results on Common Fixed Point Theorems in Hilbert Space
Analysis of algorithms
Stability criterion of periodic oscillations in a (15)
EXPECTED NUMBER OF LEVEL CROSSINGS OF A RANDOM TRIGONOMETRIC POLYNOMIAL
M. Visinescu - Higher Order First Integrals, Killing Tensors, Killing-Maxwell...
Group theory notes
Group homomorphism
Construction of BIBD’s Using Quadratic Residues
Ad

Viewers also liked (6)

PDF
Psicologia de dados e terapia de programas
PDF
Maths Holy Grail will not bring disaster to the Internet
PDF
From the MOV attack to pairing-friendly curves
PPT
How Web Design will reinvent manufacturing
PPTX
What is it that makes wieden + kennedy so different, so appealing?
PDF
The Presentation Come-Back Kid
Psicologia de dados e terapia de programas
Maths Holy Grail will not bring disaster to the Internet
From the MOV attack to pairing-friendly curves
How Web Design will reinvent manufacturing
What is it that makes wieden + kennedy so different, so appealing?
The Presentation Come-Back Kid
Ad

Similar to Ordinary abelian varieties having small embedding degree (20)

PDF
International Journal of Engineering and Science Invention (IJESI)
PDF
LPS talk notes
PDF
International Journal of Engineering and Science Invention (IJESI)
PDF
Assign1 21314-sol
PPT
Pairing scott
PDF
about pi and its properties from number theory
PDF
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...
PDF
Goldberg-Coxeter construction for 3- or 4-valent plane maps
PDF
PDF
Maths04
KEY
Kinks & Defects
PDF
Em04 il
PPT
wilson's and fermat little theorem .ppt
PPT
NMR Spectroscopy
PDF
SMB_2012_HR_VAN_ST-last version
PDF
Correlation: Powerpoint 1- Algebra (1).pdf
PDF
Kittel c. introduction to solid state physics 8 th edition - solution manual
PPT
week4a-kafrggggggggggggggggggggglman.ppt
PDF
PDF
SOCG: Linear-Size Approximations to the Vietoris-Rips Filtration
International Journal of Engineering and Science Invention (IJESI)
LPS talk notes
International Journal of Engineering and Science Invention (IJESI)
Assign1 21314-sol
Pairing scott
about pi and its properties from number theory
A Crystalline Criterion for Good Reduction on Semi-stable $K3$-Surfaces over ...
Goldberg-Coxeter construction for 3- or 4-valent plane maps
Maths04
Kinks & Defects
Em04 il
wilson's and fermat little theorem .ppt
NMR Spectroscopy
SMB_2012_HR_VAN_ST-last version
Correlation: Powerpoint 1- Algebra (1).pdf
Kittel c. introduction to solid state physics 8 th edition - solution manual
week4a-kafrggggggggggggggggggggglman.ppt
SOCG: Linear-Size Approximations to the Vietoris-Rips Filtration

Recently uploaded (20)

PDF
Chinmaya Tiranga quiz Grand Finale.pdf
PDF
Environmental Education MCQ BD2EE - Share Source.pdf
PDF
Weekly quiz Compilation Jan -July 25.pdf
PDF
advance database management system book.pdf
PDF
My India Quiz Book_20210205121199924.pdf
PDF
Paper A Mock Exam 9_ Attempt review.pdf.
PDF
Practical Manual AGRO-233 Principles and Practices of Natural Farming
PDF
BP 704 T. NOVEL DRUG DELIVERY SYSTEMS (UNIT 2).pdf
PPTX
Computer Architecture Input Output Memory.pptx
PDF
IGGE1 Understanding the Self1234567891011
PDF
ChatGPT for Dummies - Pam Baker Ccesa007.pdf
PPTX
Unit 4 Computer Architecture Multicore Processor.pptx
PPTX
B.Sc. DS Unit 2 Software Engineering.pptx
PDF
Complications of Minimal Access-Surgery.pdf
PDF
OBE - B.A.(HON'S) IN INTERIOR ARCHITECTURE -Ar.MOHIUDDIN.pdf
PDF
David L Page_DCI Research Study Journey_how Methodology can inform one's prac...
PDF
LDMMIA Reiki Yoga Finals Review Spring Summer
DOCX
Cambridge-Practice-Tests-for-IELTS-12.docx
PDF
BP 704 T. NOVEL DRUG DELIVERY SYSTEMS (UNIT 1)
PDF
Empowerment Technology for Senior High School Guide
Chinmaya Tiranga quiz Grand Finale.pdf
Environmental Education MCQ BD2EE - Share Source.pdf
Weekly quiz Compilation Jan -July 25.pdf
advance database management system book.pdf
My India Quiz Book_20210205121199924.pdf
Paper A Mock Exam 9_ Attempt review.pdf.
Practical Manual AGRO-233 Principles and Practices of Natural Farming
BP 704 T. NOVEL DRUG DELIVERY SYSTEMS (UNIT 2).pdf
Computer Architecture Input Output Memory.pptx
IGGE1 Understanding the Self1234567891011
ChatGPT for Dummies - Pam Baker Ccesa007.pdf
Unit 4 Computer Architecture Multicore Processor.pptx
B.Sc. DS Unit 2 Software Engineering.pptx
Complications of Minimal Access-Surgery.pdf
OBE - B.A.(HON'S) IN INTERIOR ARCHITECTURE -Ar.MOHIUDDIN.pdf
David L Page_DCI Research Study Journey_how Methodology can inform one's prac...
LDMMIA Reiki Yoga Finals Review Spring Summer
Cambridge-Practice-Tests-for-IELTS-12.docx
BP 704 T. NOVEL DRUG DELIVERY SYSTEMS (UNIT 1)
Empowerment Technology for Senior High School Guide

Ordinary abelian varieties having small embedding degree

  • 1. Ordinary abelian varieties having small embedding degree Paula Cristina Valenca ¸ joined work with Steven Galbraith and James McKee P.Valenca@rhul.ac.uk Royal Holloway University of London Ordinary abelian varieties having small embedding degree – p. 1/1
  • 2. Plan • On the problem of using abelian varieties with small embedding degree • Introducing the MNT curves • Extending MNT curves with co-factors • The genus 2 case Ordinary abelian varieties having small embedding degree – p. 2/1
  • 3. Embedding degree Fq finite field, J/Fq Jacobian of a curve. The embedding degree is the smallest positive integer k r | qk − 1 where r is the largest prime divisor of #J. In particular, r | Φk (q) (k-cyclotomic polynomial). Ordinary abelian varieties having small embedding degree – p. 3/1
  • 4. Embedding degree Fq finite field, J/Fq Jacobian of a curve. The embedding degree is the smallest positive integer k r | qk − 1 where r is the largest prime divisor of #J. In particular, r | Φk (q) (k-cyclotomic polynomial). Motivation: use of Weil and Tate pairings in cryptographic protocols - provide a mapping from G ⊂ J to F∗k . q Ordinary abelian varieties having small embedding degree – p. 3/1
  • 5. Cyclotomic Polynomials n ϕ(n) Φn (q) 1 1 q−1 2 1 q+1 3 2 q2 + q + 1 4 2 q2 + 1 5 4 q4 + q3 + q2 + q + 1 6 2 q2 − q + 1 7 6 q6 + q5 + q4 + q3 + q2 + q + 1 8 4 q4 + 1 9 6 q6 + q3 + 1 10 4 q4 − q3 + q2 − q + 1 11 10 q 10 + q 9 + q 8 + q 7 + q 6 + q 5 + q 4 + q 3 + q 2 + q + 1 12 4 q4 − q2 + 1 Ordinary abelian varieties having small embedding degree – p. 4/1
  • 6. Suitable elliptic curves • supersingular • MNT curves (Miyaji, Nakabayashi, Takano) Ordinary abelian varieties having small embedding degree – p. 5/1
  • 7. Suitable elliptic curves • supersingular : for example, • q = 32m , n = 32m ± 3m + 1 (k = 3) • q = 32m+1 , n = 32m+1 ± 3m+1 + 1 (k = 6) • MNT curves (Miyaji, Nakabayashi, Takano) Ordinary abelian varieties having small embedding degree – p. 5/1
  • 8. Suitable elliptic curves • supersingular • MNT curves (Miyaji, Nakabayashi, Takano) : for k ∈ {3, 4, 6} (ϕ(k) = 2), find q(l), t(l) ∈ Z[l] s.t. n(l) := q(l) − t(l) + 1 | Φk (q(l)) k q t n 3 12l2 − 1 −1 ± 6l 12l2 ± 6l + 1 4 l2 + l + 1 −l, l + 1 l2 + 2l + 2, l2 + 1 6 4l2 + 1 1 ± 2l 4l2 ± 2l + 1 Ordinary abelian varieties having small embedding degree – p. 5/1
  • 9. Extending these methods • Extending MNT curves with co-factors • The genus 2 case Ordinary abelian varieties having small embedding degree – p. 6/1
  • 10. Extending these methods • Extending MNT curves with co-factors • instead of n | Φk (q), have r | Φk (q) where n = hr (r is the largest such factor) • The genus 2 case Ordinary abelian varieties having small embedding degree – p. 6/1
  • 11. co-factors: k = 6 Write λr = Φ6 (q) = q 2 − q + 1 Ordinary abelian varieties having small embedding degree – p. 7/1
  • 12. co-factors: k = 6 Write λr = Φ6 (q) = q 2 − q + 1 n t2 ⇒ (q + t + 1) − λ/h = 3 − q q Ordinary abelian varieties having small embedding degree – p. 7/1
  • 13. co-factors: k = 6 Write λr = Φ6 (q) = q 2 − q + 1 n t2 ⇒ (q + t + 1) − λ/h = 3 − q q Writing λ/h = λ/h + , > 0 (gcd(λ, h) = 1) and using Hasse’s bound −4/3 + < q + t + 1 − λ/h < 3 + < 4 for q > 64, and so v := q + t + 1 − λ/h ∈ {−1, 0, 1, 2, 3} Ordinary abelian varieties having small embedding degree – p. 7/1
  • 14. co-factors (cont.) Substituting v in n(v − ) = 3q − t2 leads to solving a quadratic in t whose discriminant must be a square. Writing = u/h, find x s.t. x2 = M + N q where M, N ∈ Z, depending solely on u and h. Ordinary abelian varieties having small embedding degree – p. 8/1
  • 15. co-factors (cont.) Substituting v in n(v − ) = 3q − t2 leads to solving a quadratic in t whose discriminant must be a square. Writing = u/h, find x s.t. x2 = M + N q where M, N ∈ Z, depending solely on u and h. M must be a quadratic residue mod N . Ordinary abelian varieties having small embedding degree – p. 8/1
  • 16. Valid pairs (q, t) for k = 6 h q t 1 4l2 + 1 ±2l + 1 2 8l2 + 6l + 3 2l + 2 24l2 + 6l + 1 −6l 3 12l2 + 4l + 3 −2l + 1 84l2 + 16l + 1 −14l − 1 84l2 + 128l + 49 14l + 11 ... ... ... • Curves can be constructed by using Complex Multiplication, solving a Pell-type equation. Ordinary abelian varieties having small embedding degree – p. 9/1
  • 17. Extending these methods • Extending MNT curves with co-factors • The genus 2 case • Embedding degree k ∈ {5, 8, 10, 12} (ϕ(k) = 4) • Heuristics suggest similar results (in frequency) • . . . but the earlier method no longer applies Ordinary abelian varieties having small embedding degree – p. 10/1
  • 18. Extending these methods • Extending MNT curves with co-factors • The genus 2 case • Embedding degree k ∈ {5, 8, 10, 12} (ϕ(k) = 4) • Heuristics suggest similar results (in frequency) • . . . but the earlier method no longer applies Alternative approach: consider q = q(l) as a quadratic polynomial in Z[l] and note that we are looking to factorise Φk (q(l)) = n1 (l)n2 (l) Ordinary abelian varieties having small embedding degree – p. 10/1
  • 19. Factoring Φk (q(l)) 1. Let q(l) be a quadratic polynomial over Q[l]. Then, one of two cases may occur: (a) Φk (q(l)) is irreducible over the rationals, with degree 2ϕ(k) (b) Φk (q(l)) = n1 (l)n2 (l), where n1 (l), n2 (l) are irreducible over the rationals, degree ϕ(k) 2. A criterion for case (b) is q(z) = ζk having a solution in Q(ζk ), where ζk is a primitive complex k-th root of unity. (Note: applies to both elliptic and hyperelliptic curves. . . ) Ordinary abelian varieties having small embedding degree – p. 11/1
  • 20. Two approaches Two equivalent approaches present themselves 1. expand Φk (q(l)) = n1 (l)n2 (l) and try to solve the Diophantine system of equations 2. solve q(z) = ζk over Q(ζk ) Ordinary abelian varieties having small embedding degree – p. 12/1
  • 21. Retrieving the MNT curves Here k ∈ {3, 4, 6} and [Q(ζk ) : Q] = 2. Example (k = 6): Completing the square and clearing denominators, we get w2 + b = cζ6 where b, c ∈ Z and w ∈ Z(ζ6 ). Writing w = A + Bζ6 , leads to solving  B(2A + B) = c B 2 − A 2 =b and, by fixing b, retrieving the previous examples. Ordinary abelian varieties having small embedding degree – p. 13/1
  • 22. Hyperelliptic curves (genus 2) Here k ∈ {5, 8, 10, 12} and [Q(ζk ) : Q] = 4. As before, w2 + b = cζk , but 2 3 w = A + Bζk + Cζk + Dζk which now leads to four quadratics in integers A, B, C and D, two of which homogeneous that must vanish. Ordinary abelian varieties having small embedding degree – p. 14/1
  • 23. An example: k = 8 k = 8:  2AD + 2BC =0 2AC + B 2 − D2 =0 ⇒ D3 − B 2 D + 2BC 2 = 0 Ordinary abelian varieties having small embedding degree – p. 15/1
  • 24. An example: k = 8 k = 8:  2AD + 2BC =0 2AC + B 2 − D2 =0 ⇒ D3 − B 2 D + 2BC 2 = 0 • latter corresponds to an elliptic curve with rank 0 • none of its four points leads to a solution to the system Ordinary abelian varieties having small embedding degree – p. 15/1
  • 25. An example: k = 8 k = 8:  2AD + 2BC =0 2AC + B 2 − D2 =0 ⇒ D3 − B 2 D + 2BC 2 = 0 • latter corresponds to an elliptic curve with rank 0 • none of its four points leads to a solution to the system • there exists no rational quadratic polynomial q(l) s.t. Φ8 (q(l)) splits. Ordinary abelian varieties having small embedding degree – p. 15/1
  • 26. Some solutions k h q 5 1 l2 404 1010l2 + 525l + 69 10 4 10l2 + 5l + 2 11 11l2 + 10l + 3 11 55l2 + 40l + 8 12 1 22m+1 q = 2l2 , 6l2 ( k = 12 ) q = 5l2 ( k = 5 ) Ordinary abelian varieties having small embedding degree – p. 16/1
  • 27. Questions P.Valenca@rhul.ac.uk Ordinary abelian varieties having small embedding degree – p. 17/1