On the complexity of the discrete logarithm and Diffie-Hellman problems

被引:14
|
作者
Blake, IF [1 ]
Garefalakis, T
机构
[1] Univ Toronto, Dept Elect & Comp Engn, Toronto, ON M5S 3G4, Canada
[2] Univ Toronto, Dept Math, Toronto, ON M5S 3G4, Canada
关键词
cryptography; discrete logarithms;
D O I
10.1016/j.jco.2004.01.002
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The discrete logarithm problem plays a central role in cryptographic protocols and computational number theory. To establish the exact complexity, not only of the discrete logarithm problem but also of its relatives, the Diffie-Hellman (DH) problem and the decision DH problem, is of some importance. These problems can be set in a variety of groups, and in some of these they can assume different characteristics. This work considers the bit complexity of the DH and the decision DH problems. It was previously shown by Boneh and Venkatesan that it is as hard to compute O(rootn) of the most significant bits of the DH function, as it is to compute the whole function, implying that if the DH function is difficult then so is computing this number of bits of it. The main result of this paper is to show that if the decision DH problem is hard then computing the two most significant bits of the DH function is hard. To place the result in perspective a brief overview of relevant recent advances on related problems is given. (C) 2003 Elsevier Inc. All rights reserved.
引用
收藏
页码:148 / 170
页数:23
相关论文
共 50 条