Hostname: page-component-77f85d65b8-5ngxj Total loading time: 0 Render date: 2026-03-28T18:28:58.142Z Has data issue: false hasContentIssue false

Collecting relations for the number field sieve in $\text{GF}(p^{6})$

Published online by Cambridge University Press:  26 August 2016

Pierrick Gaudry
Affiliation:
INRIA, CNRS, Université de Lorraine, Nancy, France email pierrick.gaudry@loria.fr
Laurent Grémy
Affiliation:
INRIA, CNRS, Université de Lorraine, Nancy, France email laurent.gremy@loria.fr
Marion Videau
Affiliation:
Quarkslab, Paris, France INRIA, CNRS, Université de Lorraine, Nancy, France email marion.videau@loria.fr

Abstract

Core share and HTML view are not available for this content. However, as you have access to this content, a full PDF is available via the 'Save PDF' action button.

In order to assess the security of cryptosystems based on the discrete logarithm problem in non-prime finite fields, as are the torus-based or pairing-based ones, we investigate thoroughly the case in $\mathbb{F}_{p^{6}}$ with the number field sieve. We provide new insights, improvements, and comparisons between different methods to select polynomials intended for a sieve in dimension 3 using a special- $\mathfrak{q}$ strategy. We also take into account the Galois action to increase the relation productivity of the sieving phase. To validate our results, we ran several experiments and real computations for various polynomial selection methods and field sizes with our publicly available implementation of the sieve in dimension 3, with special- $\mathfrak{q}$ and various enumeration strategies.