use PARI's fflog() for binary finite fields
Currently, FiniteField_ntl_gf2eElement
calls genericgroup discrete_log()
to compute logarithms.
The patch instead calls PARI's fflog()
, which uses an indexcalculus algorithm and is dramatically faster in some cases.
Sage 9.4:
sage: F.<a> = GF(2^67) sage: %timeit F.random_element().log(a) 2.78 s ± 270 ms per loop (mean ± std. dev. of 7 runs, 1 loop each)
This patch:
sage: F.<a> = GF(2^67) sage: %timeit F.random_element().log(a) 359 ms ± 71.8 ms per loop (mean ± std. dev. of 7 runs, 1 loop each)
Examples with highly nonsmooth 2^k1
, such as k=61
, showcase even larger differences. Examples with very smooth 2^k1
are occasionally a little bit faster using the naïve code, but after playing around with this for a while I concluded that figuring out which algorithm to use ahead of time is no less costly than just letting PARI deal with it.
The patch does make sure to pass the (at this point, already cached) factorization of 2^k1
to PARI so we don't factor again.
The code looks good to me. However, I find it odd the comment
Big instances used to take very long before :trac:`32842`::
in the examples block quite odd.
Travis, what do you think?
Are you referring to the English or the example itself? The English is a bit strange to me, and I would phrase it as
Big instances used to take a very long time before :trac:`32842`::
The example, as I usually only see trac tickets mentioned under tests referring to a bug that has been fixed. This is only a minor thing, and if you think it's alright, we can give it a positive review.
I think the example is fine, although it could be made better by having something that takes a really long time (>10s, even better >30s) prior but finishes within 1 second now.
Replying to tscrim:
I think the example is fine, although it could be made better by having something that takes a really long time (>10s, even better >30s) prior but finishes within 1 second now.
It does: The 2^61
example is a worstcase input for the generic algorithm (because the unit group order 2^611
is prime). On my laptop, it eats all my RAM and dies after a couple of minutes. With the patch, it finishes successfully within a few hundred milliseconds.
