2014 Second International Symposium on Computing and Networking (CANDAR) (2014)

Shizuoka, Japan

Dec. 10, 2014 to Dec. 12, 2014

ISBN: 978-1-4799-4152-0

pp: 519-524

This paper considers the discrete logarithm problem (DLP) appeared in the context of pairing -- based cryptography with Barreto -- Naehrig (BN) curve. Since the embedding degree of BN curve is 12, the DLP is defined in the extension field Fp12, where p is the characteristic. This paper first points out that efficient and compact subgroup trace representation (ECSTR:XTR) is available for representing the DLP. Then, XTR-based rho method for solving the DLP is proposed. After that, its efficiency with and without tag tracing technique is evaluated by a small experiment.

tagtracing, elliptic curve, pairing, BarretoNaehrig curve, discrete logarithm, XTR

