Faster key compression for isogeny-based cryptosystems

Gustavo H. M. Zanon, Marcos A. Simplicio Jr, Geovandro C. C. F. Pereira, Javad Doliskani, and Paulo S. L. M. Barreto


Supersingular isogeny-based cryptography is one of the more recent families of post-quantum proposals. An interesting feature is the comparatively low bandwidth occupation in key agreement protocols, which stems from the possibility of key compression. However, compression and decompression introduce a significant overhead to the overall processing cost despite recent progress. In this paper we address the main processing bottlenecks involved in key compression and decompression, and suggest substantial improvements for each of them. Some of our techniques may have an independent interest for other, more conventional areas of elliptic curve cryptography as well.

Published elsewhere. MAJOR revision.International Conference on Post-Quantum Cryptography - PQCrypto 2018
Post-quantum cryptographySupersingular elliptic curvesPublic-key compressionPohlig-Hellman algorithmDiffie-Hellman key exchange
geovandro pereira @ uwaterloo ca
2018-11-05: last of 5 revisions
2017-11-27: received
