>The point is that ultimately we have
>no need for such an algorithm: we know the isogenies exist in general
We also know that the torsion part the points on elliptic curves is
isomorphic to direct product of some copies of Z_{n_i} where DLP is as
easy as few divisions. That simply just means that DLP is just as hard as
finding the isomorphism. Sometimes, finding the isogony itself is harder
problem than DLP.
vmon
_______________________________________________
Curves mailing list
[email protected]
https://moderncrypto.org/mailman/listinfo/curves