When computing short vectors in ideal lattices, we show how to reduce the number of multiplications and comparisons by using a symbolic Fourier transform. We computed a short vector in a negacyclic ideal lattice of dimension 128 in less than nine days on 1024 cores, more than twice as fast as the recent record computation for the same lattice on the same computer hardware.
Category / Keywords: Lattice cryptanalysis, parallel Gauss sieve, ideal lattices, ring LWE Date: received 24 Oct 2014, last revised 18 Mar 2015 Contact author: joppe bos at nxp com Available format(s): PDF | BibTeX Citation Version: 20150318:162350 (All versions of this report) Short URL: ia.cr/2014/880 Discussion forum: Show discussion | Start new discussion