The baby-step-giant-step method to compute the number [itex]m[/itex] of rational points over an elliptic curve defined over [itex]\mathbb{F}_p[/itex](adsbygoogle = window.adsbygoogle || []).push({});

In the second part [itex]R=(p+1)P[/itex], but for every point on the curve [itex](p+1)P[/itex] is the identity element of the group: [itex]P_{\infty}[/itex].

So [itex]R+iQ[/itex] is always [itex]iQ[/itex], isn't it?

# Baby Step Giant Step

