• Top
    • Documentation
    • Books
    • Boolean-reasoning
    • Projects
      • Apt
      • Zfc
      • Acre
      • Milawa
      • Smtlink
      • Abnf
      • Vwsim
      • Isar
      • Wp-gen
      • Dimacs-reader
      • Pfcs
      • Legacy-defrstobj
      • Proof-checker-array
      • Soft
      • C
      • Farray
      • Rp-rewriter
      • Instant-runoff-voting
      • Imp-language
      • Sidekick
      • Leftist-trees
      • Java
      • Taspi
      • Bitcoin
      • Riscv
      • Des
      • Ethereum
      • X86isa
      • Sha-2
      • Yul
      • Zcash
        • Jubjub
          • Jubjub-abst
          • Jubjub-r-pointp
          • Jubjub-pointp
          • Jubjub-d
          • Jubjub-montgomery
            • Not-pfield-squarep-of-jubjub-montgomery-a-square-minus-4
            • Jubjub-montgomery-a
            • Jubjub-montgomery-curve
            • Jubjub-montgomery-b
          • Maybe-jubjub-pointp
          • Jubjub-point->u
          • Jubjub-q
          • Jubjub-point->v
          • Point-on-jubjub-p
          • Jubjub-rstar-pointp
          • Jubjub-add
          • Jubjub-r-properties
          • Jubjub-point-abscissa-is-not-1
          • Jubjub-mul
          • Jubjub-curve
          • Jubjub-a
          • Jubjub-neg
          • Jubjub-r
          • Jubjub-point-satisfies-curve-equation
          • Jubjub-h
          • Jubjub-mul-of-2
          • *jubjub-l*
        • Verify-zcash-r1cs
        • Lift-zcash-r1cs
        • Pedersen-hash
        • Zcash-gadgets
        • Bit/byte/integer-conversions
        • Constants
        • Blake2-hash
        • Randomness-beacon
      • Proof-checker-itp13
      • Regex
      • ACL2-programming-language
      • Json
      • Jfkr
      • Equational
      • Cryptography
      • Poseidon
      • Where-do-i-place-my-book
      • Axe
      • Bigmems
      • Builtins
      • Execloader
      • Aleo
      • Solidity
      • Paco
      • Concurrent-programs
      • Bls12-377-curves
    • Debugging
    • Std
    • Proof-automation
    • Macro-libraries
    • ACL2
    • Interfacing-tools
    • Hardware-verification
    • Software-verification
    • Math
    • Testing-utilities
  • Jubjub

Jubjub-montgomery

The Montgomery form of the Jubjub curve [ZPS:A.2].

The Jubjub curve \mathbb{J} [ZPS:5.4.9.3] is a twisted Edwards curve. However, because of the birational equivalence between Montgomery and twisted Edwards curves, there is also a Montgomery form of Jubjub \mathbb{M} [ZPS:A.2]. Here we define it, using our general mapping, and show some properties of it. This mapping uses a scaling factor, which ensures that the resulting Montgomery B is 1.

Subtopics

Not-pfield-squarep-of-jubjub-montgomery-a-square-minus-4
Theorem related to the exceptional points in the birational mapping.
Jubjub-montgomery-a
The Jubjub coefficient A_\mathbb{M} [ZPS:A.2].
Jubjub-montgomery-curve
The Jubjub curve in Montgomery form [ZPS:A.2].
Jubjub-montgomery-b
The Jubjub coefficient B_\mathbb{M} [ZPS:A.2].