Re: Order question

From: Peter Fairbrother (zenadsl6186_at_zen.co.uk)
Date: 04/30/04


Date: Thu, 29 Apr 2004 23:14:45 +0100

Michael Scott wrote:
 
>> Next question. Can you simply show that the subgroup of order q is the
> same
>> group as the group of QR's? I've done this before, but I lost it.
>>
>
> Because an element x is a QR iff x^[(p-1)]/2 =1, that is iff x^q=1. And such
> values of x are, evidently, of order q
>

Wow, that was quick. Probably not what I had in mind, but it'll do. Thanks.

And yet another question, if no-one minds (I'm doing some final revision to
a paper, and polishing up the obiter dictae. Brain's not in full-function
mode, so I'm concentrating on the new bits, and I do appreciate the help
with the known stuff):

A typical DH with optimisation will have p = mq+1, and use a generator of
the subgroup of order q. Are there any security implications to using a q of
the usual say 160 bits size, but with small Hamming weight?

Thanks

-- 
Peter Fairbrother


Relevant Pages

  • Re: generators be bound
    ... >> definition a generator of that subgroup. ... According to the folk here that's not a generator. ... Generator of a proper subgroup. ... "the multiplicative group of maximal order" is ...
    (sci.crypt)
  • Re: normalizer of Q8 in SL(2,q)
    ... Edwin Clark wrote: ... This commutes with the first generator, ... automorphism group by the inner automorphisms is isomorphic to S_3. ... Hence N/Q_8 is isomorphic to a subgroup of S_3. ...
    (sci.math)
  • Re: Parameters for Diffie-Hellman-Merkle
    ... Richard Heathfield wrote: ... >Paul Crowley wrote: ... then it's a generator of the order Q subgroup. ...
    (sci.crypt)
  • Re: generators be bound
    ... > Tom St Denis wrote: ... if you have a subgroup of a cyclic ... According to the folk here that's not a generator. ... be a sub-group of it as well. ...
    (sci.crypt)
  • Re: Easy question in algebra
    ... >I suppose this is an easy question in algebra: ... Is the reason for that, that g^q =1 and 1 is not a generator of G? ... In this subgroup, since q is prime and since the order of an element ...
    (sci.math)