吉林大学学报(信息科学版) ›› 2025, Vol. 43 ›› Issue (1): 156-165.

• • 上一篇    下一篇

Weil 对和 Tate 对在群结构查找新方法上的实施

胡建军   

  1. 兰州文理学院 数字媒体学院, 兰州 730000
  • 收稿日期:2023-11-22 出版日期:2025-02-24 发布日期:2025-02-24
  • 作者简介:胡建军(1971— ), 男, 甘肃天水人, 兰州文理学院教授, 主要从事信息安全、 协议工程研究, ( Tel) 86-13919069386(E-Mail)Hujj518@ 126. com。
  • 基金资助:
    兰州文理学院服务地方经济社会发展计划基金资助项目(2021FWDF15)

Implementation of Weil Pairing and Tate Pairing for New Method of Finding Group Structures

HU Jianjun   

  1. School of Digital Media, Lanzhou University of Arts and Science, Lanzhou 730000, China
  • Received:2023-11-22 Online:2025-02-24 Published:2025-02-24

摘要:

针对 Tate 对的计算效率优于 Weil 对问题仍然存疑, 有待进一步验证, 以及 Miller 提出的二元群结构参数选择算法属于概率型算法, 算法效率不高的问题, 建立了 Tate 对和 Weil 对执行效率的分析模型, 提出一种利用椭圆曲线的阶是扭曲值的平方关系查找扭曲值参数的新方法。 研究表明, 在扭曲值较小时, Tate 对的计算效率优于 Weil 对, 与已有研究结果一致, 但当扭曲值很大时, Weil 对的计算效率优于 Tate 对, 同时扭曲值参数查找新方法的时间复杂度小于 Miller 方法的时间复杂度 O(M), 相对 Miller 的概率方法, 新方法为确定型方法。

分析和实例验证了分析模型的正确性, 而且新方法极大地提高了参数选择的效率和准确性。

关键词: Weil 对, Tate 对, Miller 算法, 素数有限域, 离散对数

Abstract:

Weil pairing and Tate pairing are widely used in encryption, signature, password exchange and cryptosystem security analysis. It has been suggested that the computational efficiency of Tate pairing is better than that of Weil pairing, but this problem is still doubtful and needs to be further verified. The parameter selection algorithm of binary group structure proposed by Miller belongs to probabilistic algorithm, and the algorithm efficiency is not high. To solve the above problems, the analysis models of Tate pairing and Weil pairing on execution efficiency are established, and a new method is proposed to find the parameters of the distortion value by using the quadratic relation of the order of the elliptic curve. The research shows that when the distortion value is small, the computational efficiency of Tate pairing is better than that of Weil pairing, which is consistent with previous studies. However, when the distortion value is large, the computational efficiency of Weil pairing is better than that of Tate pairing, and the time complexity of the new method to find the distortion value parameter is less than that of Miller method O(M). Compared with Miller’s probabilistic

method, the new method is deterministic. The correctness of the analysis model is verified by analysis and example, and the new method greatly improves the efficiency and accuracy of parameter selection.

Key words: Weil pairing, Tate pairing, Miller algorithm, finite field of prime numbers, discrete logarithm

中图分类号: 

  • TP309. 7