English

The Group Law for Edwards Curves

Algebraic Geometry 2016-10-18 v1

Abstract

This article gives an elementary computational proof of the group law for Edwards elliptic curves following Bernstein, Lange, et al., Edwards, and Friedl. The associative law is expressed as a polynomial identity over the integers that is directly checked by polynomial division. No preliminaries such as intersection numbers, B\'ezout's theorem, projective geometry, divisors, or Riemann Roch are required. The proofs have been designed to facilitate the formal verification of elliptic curve cryptography.

Keywords

Cite

@article{arxiv.1610.05278,
  title  = {The Group Law for Edwards Curves},
  author = {Thomas Hales},
  journal= {arXiv preprint arXiv:1610.05278},
  year   = {2016}
}
R2 v1 2026-06-22T16:23:19.766Z