An improved twisted Ate pairing over KSS curves with κ = 18

Shan Chen,Kunpeng Wang,Dongdai Lin
2013-01-01
Abstract:When implementing an efficient pairing calculation over KSS curves with embedding degree 18 and order r, the lower bound of the number of loop iterations of Miller's algorithm is 1/6[log2 r]. But the twisted Ate pairing requires 1/2 [log2 r] loop iterations, and thus is slower than the optimal Ate pairing which achieves the lower bound. This paper proposes an improved twisted Ate pairing and uses multi-pairing techniques to compute it. Therefore, the number of loop iterations in Miller's algorithm for the new pairing achieves the lower bound and it becomes faster than the original twisted Ate pairing by 30%. © Springer-Verlag Berlin Heidelberg 2013.
What problem does this paper attempt to address?