THEOPENBOOKSERIES 2
ANTSXIII Proceedings of the Thirteenth Algorithmic Number Theory Symposium
Arithmetic statistics of Galois groups David Kohel
msp
THE OPEN BOOK SERIES 2 (2019) Thirteenth Algorithmic Number Theory Symposium msp dx.doi.org/10.2140/obs.2019.2.353
Arithmetic statistics of Galois groups
David Kohel
We develop a computational framework for the statistical characterization of Galois characters with finite image, with application to characterizing Galois groups and establishing equivalence of characters of finite images of Gal(ޑ/ޑ).
1. Introduction
The absolute Galois group G = Gal(ޑ/ޑ) is a fundamental object of study in number theory. The objec- tive of this work is to develop an explicit computational framework for the study of its finite quotients. We may replace G with the absolute Galois group of any global field, but restrict to that of ޑ for simplicity of exposition. As point of departure, we consider an irreducible polynomial f (x) ∈ ޚ[x] of degree n as input. We set K = ޑ[x]/( f (x)), denote by L its normal closure and write G(K ) for the Galois group Gal(L/ޑ) equipped with a permutation representation in Sn determined by the action on the roots of f (x). Let PS(ޚ) be the set of primes coprime to the finite set S of primes ramified in ޚ[x]/( f (x)). The statistical perspective we develop expresses the map from PS(ޚ) to factorization data as an equidis- tributed map to a finite set X (K ) equipped with a probability function induced from the Haar measure on G(K ). A Frobenius lift at p, defined up to conjugacy, acts on the roots of f (x). The permutation action on the roots of f (x) induces a representation in O(n), fixing the formal sum of the roots. The orthogonal complement gives the standard representation in O(n − 1), spanned by differences of basis elements. Let P(x) be the characteristic polynomial of Frobenius in the permutation representation and
n−1 n−2 n−1 S(x) = P(x)/(x − 1) = x − s1x + · · · + (−1) sn−1 be the characteristic polynomial in the standard representation. This polynomial is independent of choices n−1 of lift of Frobenius and choice of basis. As such, the coordinates (s1,..., sn−1) ∈ ޚ are invariants of the Frobenius conjugacy class Frobp in the set C`(G(K )) of conjugacy classes of G(K ). Denote the finite set of such class points by X (K ). We note that the class points are entirely determined by the
MSC2010: 11R21, 11R32, 11R44. Keywords: arithmetic statistics, Galois groups.
353 354 DAVID KOHEL factorization data of f (x) mod p, and X (K ) ⊂ ޚn−1 is equipped with the structure of a finite probability space, induced from the cover C`(G(K )) → X (K ). The irreducible characters are known to form an orthogonal basis for the class functions on C`(G(K )), and the rational characters are integer-valued class functions on the class space X (K ). In what follows we develop this approach by describing systems of rational characters on G(K ) al- gebraically as a basis of polynomials in ޚ[s1,..., sn−1] modulo the defining ideal for X (K ), together with their associated inner product. As a consequence we develop algorithms for the characterization of Galois groups, and more generally, tools for determining equivalence of finite Galois representations.
2. Representations of orthogonal groups
Let G be a compact Lie group. In practice, G will be an orthogonal group
G = O(n − 1) ⊂ O(n) or G = SO(n − 1) ⊂ O(n − 1), or a finite permutation group, equipped with the standard representation in O(n − 1),
G ⊆ Sn ⊂ O(n − 1) or G ⊆ An ⊂ SO(n − 1).
The standard representation of Sn provides the motivation for an algebraic presentation of the charac- ter ring of a permutation group. For the character theory of permutation groups, we appeal to known algorithms for its computation. n n The symmetric group Sn acts on a set of n elements, and the linear extension to a basis of ޚ ⊂ ޒ gives the permutation representation of Sn, extending its action on the basis {e1,..., en}. Since e1 + · · · + en is fixed by Sn, a line is fixed, and we consider the action on the hyperplane spanned by the orthogonal complement. In the basis {e1 − e2,..., en−1 − en}, we obtain the standard representation of Sn in O(n − 1). The choice of basis is noncanonical, but the character theory is independent of any such choice. The orthogonal group O(n) and its subgroup O(n − 1) have two connected components, with principal component SO(n − 1) ⊂ SO(n), such that An = Sn ∩ SO(n − 1).
Representation ring. For a compact Lie group G, we denote the set of conjugacy classes of G by C`(G). We define the representation ring of G, M R(G) = ޚχ, χ as the free abelian group on irreducible characters χ : G → ރ of finite degree. We identify addition with direct sum, and thereby the abelian submonoid L ގχ ⊆ R(G) with characters, and define multiplication on R(G) by the linear extension of tensor product on L ގχ. We refer to elements of R(G) as virtual characters. As class functions, R(G) can be identified with a subring of complex-valued functions on C`(G). Indeed, when G is finite, the number h of conjugacy classes (and of irreducible characters) is finite, and ARITHMETICSTATISTICSOFGALOISGROUPS 355 the character table is defined as the evaluation vectors
(χi (C1), . . . , χi (Ch))
h in the ring ރ = ރ × · · · × ރ, for χi running over the irreducible characters, forming a generator set for the representation ring. For a subfield F ⊂ ރ, we denote by RF (G) the subring of F-valued virtual characters. While R(G) = Rޑ(G) for G = Sn or G = O(n − 1), for a general finite group that we may consider, the field of definition of an irreducible character may be a proper extension of ޑ.
Considering the group O(n) in GLn(ޒ), an element g satisfies a characteristic polynomial of the form
n n−1 n x − s1x + · · · + (−1) sn.
n The coefficient s1 is the trace in its representation on ޒ , and sn is its determinant character. We note that sk is an invariant of the class of g, and we can identify g 7→ sk as characters. Specifically, sk is the character on the k-th exterior power Vk ޒn. We recall the structure of the character ring for O(n) (see[19]).
Lemma 1. The virtual character ring R(O(n)) is generated by sk, 1 ≤ k ≤ n, and ޚ[s ,..., s ] R( (n)) =∼ 1 n · O 2 (sksn − sn−k, sn − 1) The restriction Res : R(O(n)) → R(SO(n)) surjects on ޚ[s ,..., s ] R(SO(n)) =∼ 1 n , (sk − sn−k, sn − 1) with kernel ideal (sn − 1).
Remark. If n = 2m or n = 2m + 1, then R(SO(n)) = ޚ[s1,..., sm], and R(O(n)) is an extension by the quadratic character ξ = sn such that ξ|SO(n) = 1.
Algebraic parametrization. If H is a subgroup of G, there is an induced map C`(H) → C`(G) on conju- gacy classes and concomitant restriction homomorphism Res : R(G) → R(H) on representation rings.
Applied to the standard representation of Sn in O(n − 1), the restriction homomorphism equips the representation ring of R(Sn) with a surjective restriction map from R(O(n − 1)), giving an algebraic presentation of R(Sn) by polynomials in ޚ[s1,..., sn−1] modulo the defining ideal (sksn−1 − sn−k−1, 2 − ⊂ sn−1 1). Given a permutation group G Sn, the subsequent restriction captures a significant subring of Rޑ(G) ⊂ R(G). As a tool to characterize permutation groups in Sn, for subgroups G and H, with H ⊆ G ⊆ Sn, we develop the branching rules — explicit forms for the decomposition n Xi Res(χi ) = ai j ψj j=1 of irreducible characters {χ1, . . . , χr } on G in terms of the irreducible characters {ψ1, . . . , ψs} on H. In light of the algebraic parametrization by ޚ[s1,..., sn−1], we deduce the kernel ideals IG ⊆ IH for each 356 DAVID KOHEL permutation group in the lattice (poset) of subgroups. A basis of generators provides test functions for membership in a given subgroup. We develop the algorithmic details later. Using the Brauer–Klimyk formula (see[3, Proposition 22.9]), it is possible to develop recursive for- mulas for the character theory of orthogonal groups, as done in[17; 18] for USp(2m), and using the algebraic presentation, to deduce recursive branching rules for Res : R(O(n − 1)) → R(G). Instead, we content ourselves with the algebraic parametrization from R(O(n − 1)) and exploit the well-established computational character theory of permutation groups to develop branching rules in the lattice of permu- tation subgroups of Sn.
3. Representations of permutation groups
Let G be a permutation group — a finite group equipped with an embedding in Sn. The cycle type of g ∈ G is the multiset of cardinalities of its orbits under the action of Sn on {1,..., n}. A multiset can be e1 ··· es denoted by a tuple (d1,..., dt ) or a formal product m1 ms , where t s X X d1 ≤ d2 ≤ · · · ≤ dt or m1 < ··· < ms such that di = ei mi = n. i=1 i=1
The cycle type is invariant under conjugation in Sn; thus the cycle type is well-defined for the conjugacy class C = C(g) ∈ C`(G), where C(g) = {xgx−1 : x ∈ G}. Pt Lemma 2. The map C`(Sn) → (d1,..., dt ) : i=1 di = n from conjugacy classes of Sn to cycle types is a bijection.
Proof. Clearly, giving a cyclic ordering to any partition of {1,..., n} into orbits determines an element of Sn; hence the map is surjective. Moreover, by definition the symmetric group is n-transitive, conju- gating any cyclically ordered orbit partition to any other of the same cycle type. Consequently the map is injective.
Remark. For a permutation group G ⊂ Sn the induced map C`(G) → C`(Sn) in general is neither injective nor surjective. The failure of injectivity means that the cycle type fails to distinguish the conjugacy classes.
We will later see this in the failure of R(Sn) to surject on R(G). In fact, the irreducible characters are known to form a basis of the class functions on G (see[16, Theorem 6]); hence the failure to separate conjugacy classes means that the restriction homomorphism from R(Sn) does not surject on R(G).
On the one hand, the cycle type of a conjugacy class characterizes the class. On the other hand, the characteristic polynomial (hence its coefficients) is a class invariant of an orthogonal group element, and the permutation and standard representations thus provide other class invariants. We make this association explicit. Let (d1,..., dt ) be the cycle type of an element g ∈ Sn. It is easy to see that the characteristic polynomial of the permutation representation of g is
P(x) = (xd1 − 1) ··· (xdt − 1) = (xm1 − 1)e1 ··· (xms − 1)es . ARITHMETICSTATISTICSOFGALOISGROUPS 357
The eigenvalue on the trivial space is 1, so the characteristic polynomial in the standard representation is
P(x) n−1 n−2 n−1 S(x) = = x − s x + · · · + (−1) sn− , (x − 1) 1 1 and (s1,..., sn−1) is the tuple of class invariants associated to the conjugacy class C(g) under the standard representation in O(n − 1). This gives the following lemma.
n−1 Lemma 3. The map C`(Sn) → ޚ from conjugacy classes to the (n−1)-tuples (s1,..., sn−1) of coeffi- cients of the characteristic polynomial under the standard embedding is injective.
Proof. By Lemma 2 the map from conjugacy classes to cycle types is a bijection. However, by unique factorization in ޑ[x], a polynomial of the form (xd1 − 1) ··· (xdt − 1) is uniquely determined by the cycle type (d1,..., dt ); hence the map to its coefficients (s1,..., sn−1) is injective.
Representation rings and character tables. Let G be a permutation group and let C`(G) = {C1,..., Ch} and {χ1, . . . , χh} be its irreducible characters. For a conjugacy class C, define the ideal
mC = { f ∈ R(G) : f (C) = 0} such that the value f (C) of a virtual character f at C is a well-defined class in the residue class ring
R(G)/mC. The character table of G is typically represented as a matrix whose i-th row is the evaluation vector (χi (C1), . . . , χi (Ch)). With this notation, we interpret as the embedding of the character χi in the product ring, under the injection
→ × · · · × R(G) R(G)/mC1 R(G)/mCh . → × · · · × Lemma 4. The image of the homomorphism R(G) R(G)/mC1 R(G)/mCh has finite index in its codomain.
Proof. Clearly R(G) is torsion-free, since the image of a virtual character is a subring of ރ. Thus R(G) embeds in R(G) ⊗ ޑ, which is an étale algebra, isomorphic to the product of its quotients Xi (see[2] for details). It follows that the index is finite. More generally in the direction of the lemma,[2] finds that the center of the group ring ޑ[G] over ޑ and the tensor product of the representation ring R(G) ⊗ ޑ are related by Brauer equivalence. We give two examples below. In view of the restriction map from R(Sn) to R(G), and since all characters on Sn are rational, the image of R(Sn) = Rޑ(Sn) lies in the subring Rޑ(G) ⊂ R(G). In the examples below, we illustrate the role of nontrivial Galois action and of quadratic characters in the failure of surjectivity of R(Sn) on R(G) and on Rޑ(G). In the next section we exploit the embedding by interpolating the character table values by the polynomial presentation ޚ[s1,..., sn−1] → Rޑ(G).
Orthogonality relations. The role of arithmetic statistics of G comes from the orthogonality relations for the irreducible characters. Let {χ1, . . . , χh} be the irreducible characters for G, and A(G) be the 358 DAVID KOHEL character matrix χ1(C1) ··· χ1(Ch) A G = . . ( ) . . . χh(C1) ··· χh(Ch)
The orthogonality relations for characters (see[16, Section 2.3]), expressed in terms of group elements, reformulated in terms of conjugacy classes, takes the form
h 1 X X |Ck| δ = hχ , χ i := χ (g)χ (g) = χ (C )χ (C ). i j i j G |G| i j |G| i k j k g∈G k=1
Set D(G) to be the diagonal matrix with diagonal entries (p1,..., ph), where pk = |Ck|/|G| is the weight of the conjugacy class Ck. The orthogonality relations are then expressed by the equality
† Ih = A(G)D(G)A(G) , where † denotes the conjugate transpose. The matrix D(G) can be viewed as the inner product matrix of the Haar measure induced by G on C`(G).
Rational character table. Let χ be a character on G, let m be the exponent of G, and let C = C(g) be a conjugacy class. As the trace of a representation of g, the value χ(C) lies in ޚ[ζm], since each of its ∼ ∗ eigenvalues are in µm = hζmi. We thus obtain two actions of the Galois group Gal(ޑ(ζm)/ޑ) = (ޚ/mޚ) . ∗ σ (k) k Denote by σ : (ޚ/mޚ) → Gal(ޑ(ζm)/ޑ) the isomorphism such that ζm = ζm. The first of the actions is on conjugacy classes, by C(g) 7→ C(gk), and the second on characters by χ σ (k)(C(g)) = χ(C(g))σ (k). Considering the action on eigenvalues we see immediately that
χ σ (k)(C(g)) = χ(C(gk)).
Restriction from R(Sn). Only characters in the image of R(Sn) can be parametrized by polynomials in ޚ[s1,..., sn−1] from the standard representation. We note by example, that the preimage of C in C`(Sn) under the induced map C`(G) → C`(Sn) can split into an even number of conjugacy class separated by a quadratic character not coming from Sn. We observe this phenomenon for G = D4 and G = Q8 in the examples section below.
4. Algorithms for Galois representations
In what follows we describe algorithms for testing equivalence of finite Galois characters. As the principal application, we consider input f (x) of degree n, determining a number field K = ޑ[x]/( f (x)), and describe how to evaluate a sample set of primes S at characters on the permutation group G(K ). The approach is completely general, allowing one to compare the set of characters on the absolute group G mapping through permutation groups G(K1) and G(K2) determined by number fields K1 and K2. ARITHMETICSTATISTICSOFGALOISGROUPS 359
Factorization types of irreducible polynomials. Consider an irreducible polynomial f (x) in ޚ[x] of degree n, set K = ޑ[x]/( f (x)) and let L be its normal closure with maximal order OL . For a rational prime p and prime P over p in OL , the Frobenius lift FrobP is the unique element of the decomposition subgroup DP ⊂ G = G(K ) such that
p FrobP(a) ≡ a mod P for all a in OL . Denote by Frobp the conjugacy class of FrobP in C`(G). For p not dividing disc( f (x)) we define the factorization type of f (x) mod p to be the multiset of degrees of the factorization of f (x) in ކp[x], which we may denote by (d1,..., dt ), where d1 ≤ · · · ≤ dt and d1 + · · · + dt = n. We can now identify the data of the factorization type with the cycle type of the Galois group G = G(K ) equipped with its embedding in Sn.
Lemma 5. The factorization type of f (x) mod p is the cycle type of Frobp ⊂ G(K ).
Proof. The factorization pOK = p1 ··· pt is determined from f (x) ≡ f1(x) ··· ft (x) mod p, with pk = (p, fk(x)) a prime of degree dk = deg( fk). The Galois group acts transitively on primes of OL over p, and there exist conjugates P1,..., Pt over p1,..., pt , from which we see that dk divides deg(P), and each dk is the cardinality of an orbit of roots modulo p under the action of FrobP.
Character inner products as expectation. The factorization type of a polynomial gives a means of tak- ing random samples of character values (s1,..., sn−1) at a set S of primes mapping to the group G. Other data, for particular characters, may come from weight-1 modular eigenforms, character sums, or Kronecker symbols. Let S be such a sample set of primes, and ψ, χ two characters which can be evaluated on S. We write ψ(p) and χ(p) for the values of the characters at a sample point. We obtain an approximation for the orthogonal product hψ, χi as the expectation of ψχ: 1 X hψ, χi = E(ψχ) ∼ E (ψχ) = ψ(p)χ(p). S |S| p∈S If the multiplicity of each irreducible character in the support of ψ and χ is 1, then m = hψ, χi is an integer counting the number of irreducible characters in the support of both ψ and χ. When ψ and χ are irreducible, to determine equality ψ = χ, one needs only sufficient precision to distinguish the one bit hψ, χi = 0 or hψ, χi = 1. The interest in working with irreducible characters, or nearly irreducible characters as captured by the image of restriction from R(Sn), is that the variance of the character products ψχ is minimized, and the number of primes needed to recognize is convergence small, as observed by Shieh[17; 18] in the case of symplectic groups USp(2m) (see also[9]). One should note that in view of classifying the Galois group, nonvanishing of an element of the kernel ideal of the restriction R(Sn) → R(G) can be used to provably exclude G as a Galois group. This was already observed by Pohst[14], who proposed the use of factorization types as a lower bound for the Galois group, and that for n ≥ 8 the factorization types, and their probabilities, fail to separate groups. 360 DAVID KOHEL
This statement, however, concerns the data of the induced Haar measure on C`(G), and not that of the character table of G. Precisely we have two data structures on C`(G) at our disposal, that of a probability space and of class functions (given by a character table)
• C`(G) with Haar measure p : C`(G) → ޒ, and h • ރ = Hom(C`(G), ރ) with orthonormal basis {χ1, . . . , χh}.
Due to the failure of surjectivity of the restriction homomorphism from R(Sn), the subset of characters determined from the cycle types are unlikely to separate groups for sufficiently large n. Nevertheless, the joint data of Haar measure and character table, plus the system of restriction maps coming from common embeddings in Sn gives more information than either the Haar measure or character table alone.
Restriction kernel ideal. To a conjugacy class C for Sn we associate an ideal mC in ޚ[s1,..., sn−1] of the form
mC = (s1 − s1(C), . . . , sn−1 − sn−1(C)), where (s1(C), . . . , sn−1(C)) are the values of si at C. Then the kernel ideal for the restriction of R(Sn) to R(G) is the intersection ideal \ I (G) = mC, C∈π(C`(G)) where π : C`(G) → C`(Sn).
Example. Consider the restriction from R(O(3)) to R(S4). Since ޚ[s , s , s ] R(O(3)) = 1 2 3 − 2 − (s1s3 s2, s3 1) and the values of (s1, s2, s3) are in
{(3, 3, 1), (−1, −1, 1), (0, 0, 1), (−1, 1, −1), (1, −1, −1)}, we obtain a defining ideal of S4 given by the additional generators
s1(s1 + 1)(s1 − s3 − 2), s1(s1 + 1)(s1 − 1)(s1 − 3), (s1 + 1)(s1 − 1)(s3 − 1).
The map C`(D4) → C`(S4) fails to surject on (0, 0, 1); hence there are only four maximal ideals in the intersection and the kernel ideal for R(S4) → R(D4) is generated by
2 2 s1 − s1 − s2 − s3 − 2, s2 − s1s3, s3 − 1.
The first polynomial is not in the kernel ideal for R(S4) and its vanishing provides a test for D4. Geo- metrically, it means that the tensor square of the representation with trace s1 decomposes into a direct sum of representations with trace s1 + s2 + s3 + 2. ARITHMETICSTATISTICSOFGALOISGROUPS 361
Restriction homomorphism. Let H ⊂ G be permutation groups, and set ` = | C`(H)| and h = | C`(G)| equal to the cardinalities of their conjugacy class sets. Suppose that {ψ1, . . . , ψ`} and {χ1, . . . , χh} are the irreducible characters, which are given by embeddings in ރ` and ރh, respectively. We thus have isomorphisms ` h M ` M h R(H) = ޚψi → 3(H) ⊂ ރ and R(G) = ޚχj → 3(G) ⊂ ރ , i=1 j=1 where 3(H) and 3(G) are the lattices in ރ` and ރh spanned by the rows of the character table. The restriction homomorphism R(G) 7→ R(H) is induced by the map π : C`(H) → C`(G), by
` χ 7→ (χ(π(C1)), . . . , χ(π(C`))) ∈ 3(H) ⊂ ރ .
The linear transformation 3(G) → 3(H) gives the restriction homomorphism as an integral (h × `)- matrix with respect to the respective bases of irreducible characters. The rows of this matrix can be interpreted as branching rules, giving the decomposition of an irreducible character on G as a sum of irreducible characters on H. h Inside each 3(G) we have a sublattice (generally of lower rank) 3ޑ(G) = 3(G) ∩ ޑ of rational- valued characters. We recall that for a conjugacy class C of group elements of order m, the value of χ(C) is a sum of eigenvalues in ޑ(ζm). We thus obtain an action by the Galois group of a cyclotomic field on the irreducible characters. As a consequence, the lattice 3ޑ(G) is generated by the sums over Galois orbits of irreducible characters. Since these orbits are disjoint, this basis of rational characters remains or- thogonal, but not orthonormal, since hχ, χi measures the cardinality of the orbit (assuming χ is a sum of G irreducible characters of multiplicity 1). On the other hand, the restriction images ResH (3(G)) ⊂ 3(H) G and ResH (3ޑ(G)) ⊂ 3ޑ(H) do not possess natural reduced orthogonal bases. In order to determine a generating set which is small with respect to the orthogonality relations on characters, we need to apply a constrained lattice reduction inside the submonoid of characters: ` ` M M ގψj ⊂ ޚψj = R(H). j=1 j=1 Rather than a generic LLL algorithm, we need to carry out a structured lattice reduction in the character monoid order to be able to invoke the heuristic arguments for convergence of small characters.
Algebraic parametrization. In order to interpret factorization types of polynomials (or splitting types of primes) as conjugacy classes on which we can apply the class functions s1,..., sn−1, we need to find an explicit algebraic parametrization [ ] ޚ s1,..., sn−1 Sn → R(Sn) → ResG (3(Sn)) ⊆ 3(G). I (Sn)
The presentation ޚ[s1,..., sn−1]/I (Sn) → R(Sn) comes from the standard representation of Sn, and its composition into 3(Sn) can be effectively computed. In order to lift characters in 3(Sn) back to 362 DAVID KOHEL representative polynomials in (s1,..., sn−1), we must invert
ޚ[s1,..., sn−1] → 3(Sn). I (Sn)
As noted above, the isomorphism R(Sn) → 3(Sn) is obtained by the Chinese remainder theorem. More precisely, over ޑ, we obtain a product decomposition of the étale algebra R(Sn) ⊗ ޑ,
R(Sn) R(Sn) ∼ h R(Sn) ⊗ ޑ → ⊗ ޑ × · · · × ⊗ ޑ = ޑ , mC1 mCh ∼ h under which R(Sn) = 3(Sn) ⊆ ޚ . Since the generators s1,..., sn−1 can be evaluated at conjugacy classes, we can evaluate a basis of monomials modulo I (Sn) and invert a matrix to determine the preimage Sn of a basis of irreducible characters. The same applies to a basis of characters in ResG (3(Sn)) modulo the restriction kernel I (G). Database of restriction-induction. Databases of transitive permutation groups of degree up to 30 are available in GAP[10] and Magma[1; 7], computed by Greg Butler, John McKay, Gordon Royle and Alexander Hulpke (see[5; 4; 15; 8; 12]). The above is intended to motivate an interest in a metastructure of the restriction relations (and adjoint induction relations) between character rings R(G), and for the algebraic parametrizations arising from the restriction homomorphism from orthogonal groups.
5. Explicit computations
We illustrate the approach through arithmetic statistics of character theory by applying the methods to groups of low degree. First we analyze the dihedral and quaternionic groups D4 and Q8 of order 8, the smallest groups sharing the same character table. Then we consider an example of a pair of permutation groups of degree 8 and order 16 whose cycle types and induced Haar measure on S8-conjugacy classes are equal. We show how an auxiliary (sub)field suffices to distinguish the characters using joint Frobenius cycle data. In a final example, we treat different permutation representations of A5 to show how this approach can be used to establish the equivalence of the absolute Galois representations determined by different fields.
Dihedral and quaternionic groups of order 8. The groups D4 and Q8, known to share the same character table, can nevertheless be separated by the restriction data coming from a permutation representation. We first recall that the common character table takes the form 1 1 1 1 1 1 1 −1 1 −1 = − − A(G) 1 1 1 1 1 , 1 1 −1 −1 1 2 −2 0 0 0 1 1 1 1 1 [ ] [ ] with weights 8 , 8 , 4 , 4 , 4 on the conjugacy classes. The semisimple group algebras ޑ D4 and ޑ Q8 have Wedderburn decompositions ∼ ∼ ޑ[D4] = ޑ × ޑ × ޑ × ޑ × M2(ޑ) and ޑ[Q8] = ޑ × ޑ × ޑ × ޑ × ވ, ARITHMETICSTATISTICSOFGALOISGROUPS 363 where ވ is the quaternion algebra over ޑ ramified at 2 and ∞. These decompositions correspond to the four linear characters and sole degree-2 irreducible representation.
Only the former group, D4, embeds in S4, which shows that the permutation embedding contains distinguishing information not in the character table. We make explicit the above approach through char- acter theory for the degree-4 permutation representation. Let {1, χ1, χ2, χ3, χ4} be a basis of characters, with χ1, χ2, and χ3 = χ1χ2 quadratic linear characters, and χ4 of degree 2. The standard representation of S4 in O(3) provides irreducible characters
2 {1, s1, s2, s3, s1 − s1 − s2 − 1}, where s3 is the quadratic determinant character, s1 and s2 = s1s3 are degree-3 representations, and the last one is of degree 2. Computing the inner product matrices for these characters on S4 and D4, we obtain 1 0 0 0 0 1 0 0 0 1 0 1 0 0 0 0 2 1 0 0 0 0 1 0 0 and 0 1 2 0 0 . 0 0 0 1 0 0 0 0 1 1 0 0 0 0 1 1 0 0 1 2 For example, this was the output to the nearest integer for the expectation method on a sample size of 4 4 2 16 unramified primes, for the polynomials x + x + 1 and x − 2x + 2 with respective Galois groups S4 and D4. = 2 − − − One identifies the polynomial expression χ s1 s1 s2 1 for the irreducible degree-2 character χ + 2 − − − − on S4, which decomposes into a direct sum 1 s3 on D4, from which we deduce that s1 s1 s2 s3 2 is in the kernel ideal I (D4). Similarly, we read from the inner products hs1, s1i = hs2, s2i = 2 and hs1, s2i = 1 on D4 that each of s1 and s2 decompose into two irreducible characters, which share a common irreducible summand. The restriction homomorphism from R(S4) thus captures
1, s1 = χ1 + χ4, s2 = χ2 + χ4, s3 = χ3. The restriction fails to span all characters, because the conjugacy classes are not separated by characters 4 2 1 2 2 1 on S4. Indeed the cycle types of the five conjugacy classes in C`(D4) are 1 , 1 2 , 2 , 2 , and 4 , and 2 hence the two classes of cycle type 2 map to the same class in C`(S4). The missing character χ1 is easily recovered. It arises from the quadratic subfield (here with defining polynomial x2 −2x +2), which can be expressed as a Legendre symbol. In terms of the basis of characters
{1, s1, s2, s3, χ1}, we now obtain an inner product matrix, 1 0 0 0 0 0 1 0 0 0 0 0 2 1 1 , 0 0 1 2 0 0 0 1 0 1 which can be reduced to an orthonormal basis for R(D4). 364 DAVID KOHEL
Since both D4 and Q8 admit permutation representations of degree 8, we carry out a similar analysis of the permutation representations of degree 8 for D4 and Q8, given by *(1, 8)(2, 7)(3, 4)(5, 6),+ (1, 2, 4, 7)(3, 6, 8, 5), D =∼ (1, 2)(3, 5)(4, 6)(7, 8), and Q =∼ · 4 8 (1, 3, 4, 8)(2, 5, 7, 6) (1, 6)(2, 4)(3, 8)(5, 7)
8 4 2 1 5 1 The cycle types 1 , 2 , 4 arise with probabilities 8 , 8 , 4 in D4, whereas in Q8, these same types have 1 1 3 ⊂ probabilities 8 , 8 , 4 . Both groups embed in A8 SO(7); hence the character rings are parametrized ∼ by R(SO(7)) = ޚ[s1, s2, s3] (s7 = 1 and s4 = s3, s5 = s2, s6 = s1). Since the cycle types are the same, the kernel ideals agree, but the Haar measures differentiate the groups. However, a naive tabulation of the probabilities gives a poor empirical invariant. In fact, computing these probabilities is tantamount to evaluating the expectations of the idempotents e1, e2, e3 under the isomorphism ޑ[s , s , s ] R(G) ⊗ ޑ R(G) ⊗ ޑ R(G) ⊗ ޑ R(G) ⊗ ޑ = 1 2 3 → × × =∼ ޑ × ޑ × ޑ. ⊗ ⊗ ⊗ ⊗ I (G) ޑ mC1 ޑ mC2 ޑ mC3 ޑ To express this computation in the character ring framework, we scale by the group order to have integer values. As a general strategy for a group G ⊂ Sn this amounts to asking whether the scaled idempotents converge to
(h|G|e1, 1i,..., h|G|es, 1i) = (|C1|,..., |Cs|), where Ci are the Sn-conjugacy classes for G. { } { 0 0 0 0} Let 1, χ1, χ2, χ3, ψ be a basis of irreducible characters for D4, and 1, χ1, χ2, χ3, ψ be a basis of irreducible characters for Q8. The parametrization gives a ޑ-basis {1, s1, s2} and an idempotent basis {e1, e2, e3} which are characteristic functions for the evaluations on conjugacy classes. A reduced basis for the image of R(S8) in R(D4) is {1, σ1, σ2}, described as follows in these respective bases:
D4 {1,s1,s2}{e1,e2,e3}{1,χ1,χ2,χ3,ψ}
1 1 e1+e2+e3 1 − + 1 − 1 − + + σ1 s1 2 s2 2 2e1 e2 e3 χ1 ψ − 1 + 1 − + + σ2 2s1 2 s2 2 4e1 2e3 χ1 χ2 χ3
Similarly, a reduced basis for the image of R(S8) in R(Q8) is {1, τ1, τ2}, expressed in the respective bases as follows: { }{ }{ 0 0 0 0} Q8 1,s1,s2 e1,e2,e3 1,χ1,χ2,χ3,ψ
1 1 e1+e2+e3 1 − + 1 − 3 − 0 τ1 s1 2 s2 2 2e1 2e2 ψ − + + − 0 + 0 + 0 τ2 3s1 s2 3 3e1 3e2 e3 χ1 χ2 χ3
Relative to the parametrizations from R(SO(7)), the bases (σ1, σ2) and (τ1, τ2) are related by (σ1, σ2) = (τ1 + 1, τ1 + τ2 − 1), and inversely (τ1, τ2) = (σ1 − 1, σ1 + σ2 + 2). We thus express (8e1, 8e2, 8e3) in ARITHMETICSTATISTICSOFGALOISGROUPS 365 the respective bases {1,s1,s2}{1,σ1,σ2}{1,τ1,τ2}
8e1 s1+1 1+σ1+σ2 1+2τ1+τ2 8e2 5s1−2s2+7 5−3σ1+σ2 1−2τ1+τ2 8e3 −6s1+2s2 2+2σ1−2σ2 6−2τ2 giving inclusions of submodules h8e1, 8e2, 8e3i ⊂ h1, σ2, σ3i = h1, τ2, τ3i ⊂ he1, e2, e3i. Computing the expectations of the test functions {1, σ1, σ2} for D4 on polynomials with Galois groups G = D4 or Q8, the Gram matrix M(G) = (E(σi σj )) (σ0 = 1) takes the form 1 0 0 1 1 −1 M(G) = 0 2 1 , where G = D4 and otherwise 1 2 0 . 0 1 3 −1 0 5
With respect to test functions {1, τ1, τ2} for Q8, the Gram matrices are 1 0 0 1 −1 2 M(G) = 0 1 0 , where G = Q8 and otherwise −1 3 −3 . 0 0 3 2 −3 7 It should be clear that the full Gram matrix gives a more complete picture of the orthogonality relations of characters than the triple of inner products (h8e1, 1i), (h8e2, 1i), (h8e3, 1i), which is just one linear combination of the rows in the above Gram matrices. In the next section, we show that the choice of reduced basis for the target group gives a better set of test functions, converging more rapidly to the asymptotic Gram matrix. With respect to the polynomials 8 4 8 6 4 2 x + 6x + 1 of Galois group D4 and x − 12x + 36x − 36x + 9 of Galois group Q8, we obtain reasonably good convergence (to within a half integer) with the first 80 primes.
Nondistinguished representations of degree 8. The first example of nonisomorphic permutation repre- sentations not distinguished by their cycle types and Haar measure are the degree-8 groups of order 16 denoted by 8T10 and 8T11 (see the LMFDB[6] Galois groups database). Specifically we define the representative groups
G0 =h(1,2,3,8)(4,5,6,7),(1,5)(3,7)i, G1 =h(1,3,5,7)(2,4,6,8),(1,4,5,8)(2,3,6,7),(1,5)(3,7)i whose character tables are given by 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 −1 −1 −1 −1 1 1 1 1 1 1 −1 −1 1 −1 −1 1 1 1 1 1 −1 −1 1 1 −1 −1 1 1 −1 −1 −1 −1 −1 1 1 1 1 1 1 1 1 1 −1 −1 −1 −1 1 1 −1 −1 1 1 −1 −1 −1 1 − − − i −i −i i − − − − = 1 1 1 1 1 1 = 1 1 1 1 1 1 1 1 1 1 A(G0) , A(G1) , 1 −1 −1 1 −1 1 −i i −i i 1 1 1 1 −1 1 −1 −1 1 −1 1 −1 −1 1 −1 1 i −i i −i 1 1 −1 −1 −1 1 1 1 −1 −1 1 −1 −1 1 1 −1 −i i i −i 1 1 −1 −1 1 −1 1 −1 1 −1 2 −2 2 −2 0 0 0 0 0 0 2 −2 −2i 2i 0 0 0 0 0 0 2 2 −2 −2 0 0 0 0 0 0 2 −2 2i −2i 0 0 0 0 0 0 366 DAVID KOHEL