<<

arXiv:2006.16729v2 [math.NT] 30 Oct 2020 hogotteppr u orcn mrvmns([HH19]), improvements recent to Due paper. the throughout (1.1) rv hoe .,w iletbihatm-pc rdo o Ferma ([Leh74]). for Lehman and tradeoff ([Law95]) Lawrence time-space by a generalizations its establish and will we 1.1, Theorem prove aua number natural a enpoe n[i1]adi ie by given is and [Hit18] in proved been has samr hoeia seto h nee atrzto problem, the of aspect a theoretical [Rie94] more monographs a the to is and [Len00] survey the achievin to methods reader the factorization heuristic and probabilistic of variety hr the where n hi ioosaayi.W ildsrb utm opeiisb us by complexities runtime [Pap94]. machine describe Turing will multitape We the analysis. rigorous their and oee,nn fteeipoeet a enal ordc the reduce r to few able a been has been improvements have these there of 1977, none However, in approach Strassen’s of publication ehooisPormeadfne yBK MW n h fede the and BMDW, BMK, by FFG. by funded managed and Programme Technologies hoe 1.1. Theorem eemnsi n ioosfcoiainagrtmrnigi time in running algorithm factorization rigorous and deterministic a h 1 the 2010 o h aeo ipiiy ewl o consider now will we simplicity, of sake the For B eerh(B-1 saCMTCnr ihnteframework the within Centre COMET a is (SBA-K1) Research SBA M ecnie h rbe fcmuigtepiefcoiaino nat of factorization prime the computing of problem the consider We n[t7] tasnue atplnma utpiainadmultipoint and polynomial fast used Strassen [Str77], In int / -xoettrsodfrdtriitcitgrfcoiainb p by factorization integer deterministic for threshold 4-exponent ( ahmtc ujc Classification. Subject k numbers Abstract. kN pl ttgte ihLha’ eutt banadetermini a obtain to time-spac result a fac Lehman’s construct deterministic complexity we with runtime first paper, together the this it In in apply resulted division. trial which than 1974, in Lehman the EMNSDTRIITCITGRFCOIAINMETHOD FACTORIZATION INTEGER DETERMINISTIC LEHMAN’S eoe h oto utpyn two multiplying of cost the denotes ) O e O fteoiia ubr ytmtcapoc ocos suit choose to approach systematic A number. original the of ntto sue ooi oaihi atr.Tecnrbto fth of contribution The factors. logarithmic omit to used is -notation ( N 1 N N / hr xssa loih odtriitclycmuethe compute deterministically to algorithm an exists There 4+ stedffrneo qae.I 85 arnegnrlzdt generalized Lawrence 1895, In . of difference the as emtswl-nw atrzto loih sbsdo fin on based is algorithm factorization well-known Fermat’s in o (1) O on n1977. in bound )  M M O int ( int N k ( 2 k  / ) 9+ N IESAETAEF FOR TRADEOFF TIME-SPACE A ≤ o 2 (1) / 9 M .Ti stefis xoeta mrvmn ic h establ the since improvement exponential first the is This ). log int 11Y05. k 5 ( ′ / k 3 ′ ) AKSHITTMEIR MARKUS N 1. O e if  ⌈ Introduction log k k N ⌉ ≤ btitgr.Floig[G0,p18] easm that assume we p.1782], [BGS07, Following . -bit 1 N / N k 4  1 ′ exp( = and i operations. bit pq − where , M C rdo o arnesgnrlzto and generalization Lawrence’s for tradeoff e int log a tt fVen.TeCMTPormeis Programme COMET The Vienna. of state ral tcitgrfcoiainagrtmwith algorithm factorization integer stic M oiainagrtmcnieal faster considerably algorithm torization ( d[a1] h ou ftepeetpaper present the of focus The [Wag13]. nd fCMT–Cmeec etr o Excellent for Centers Competence – COMET of kk N/ int hc concerns which xoet1 exponent p bevle for values able ′ ) ( uepnnilcmlxt.W refer We complexity. subexponential g O fieet fterniecomplexity. runtime the of efinements k o log log and ≤ i daadapidi omultiples to it applied and idea his a ebuddby bounded be may ) emtsmto saspecial-purpose a is method Fermat’s ( ’ elkonfcoiainmethod factorization well-known t’s igarpeetto fnatural of representation a ding N k oigtefloigtheorem. following the roving 2 rlnumbers ural 1 q vlaintcnqe oestablish to techniques evaluation M / n h i-opeiymdlof model bit-complexity the ing 4+ r itntpie.I re to order In primes. distinct are N int o ) / (1) (  .Tebs fteebounds these of best The 4. k rm atrzto fany of factorization prime ′ o oiieconstant positive a for k i prtos ic the Since operations. bit ) sppri ofial break finally to is paper is ) deterministic a nrdcdby introduced was N hr salarge a is There . smn of ishment O ( k algorithms log k ). C , 2 M. HITTMEIR algorithm first described in 1643. The idea of the procedure is based on the fact that (p+q)2 (q p)2 =4N. − − If the prime difference ∆ := q p is small, the number S := p + q is close to 2√N. In fact, one proves that − ∆2 0