Abstract
AbstractReliable probabilistic primality tests are fundamental in public-key cryptography. In adversarial scenarios, a composite with a high probability of passing a specific primality test could be chosen. In such cases, we need worst-case error estimates of the test. However, in many scenarios, the numbers are randomly chosen and thus have a significantly smaller error probability. We are hence interested in average-case error estimates. In this paper we establish such bounds for the strong Lucas primality test, as there exist only worst-case, but no average-case error bounds. This allows us to use this test with more confidence. Let us examine an algorithm that draws odd k-bit integers uniformly and independently, runs t independent iterations of the strong Lucas test with randomly chosen parameters, and outputs the first number that passes all t consecutive rounds. We attain numerical upper bounds on the probability that a composite is returned. Moreover, we examine a slight modification of this algorithm that only considers integers that are not divisible by small primes, yielding improved bounds. In addition, we classify the numbers that contribute most to our estimate.
Funder
Bundesministerium für Bildung und Forschung
Freie Universität Berlin
Publisher
Springer Science and Business Media LLC
Subject
Applied Mathematics,Computer Science Applications
Reference21 articles.
1. Akbary A., Friggstad Z., Juricevic R.: Explicit upper bounds for $$f(n) = \prod _{p \le p_{\omega (n)}} \frac{p}{p-1}$$. Contrib. Discrete Math. 2(2) (2007).
2. Albrecht M.R., Massimo J., Paterson K.G., Somorovsky J.: Prime and prejudice: primality testing under adversarial conditions. In: Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security, pp. 281–298 (2018).
3. Arnault F.: The Rabin-Monier theorem for Lucas pseudoprimes. Math. Comput. 66(218), 869–881 (1997).
4. Baillie R., Wagstaff S.S.: Lucas pseudoprimes. Math. Comput. 35(152), 1391–1417 (1980).
5. Brandt J., Damgård I.: On generation of probable primes by incremental search. In: Advances in Cryptology-CRYPTO’92: 12th Annual International Cryptology Conference Santa Barbara, California, USA August 16–20, 1992 Proceedings 12, pp. 358–370 (1993). Springer.