estimator.lwe_dual.MATZOV.Nf

Contents

estimator.lwe_dual.MATZOV.Nf#

classmethod MATZOV.Nf(params, m, beta_bkz, beta_sieve, k_enum, k_fft, p)[source]#

Required number of samples to distinguish with advantage.

Parameters:
  • params – LWE parameters

  • m

  • beta_bkz – Block size used for BKZ reduction

  • beta_sieve – Block size used for sampling

  • k_enum – Guessing dimension

  • k_fft – FFT dimension

  • p – FFT modulus