Modular Square Roots
Modular Square Roots
m−1
♥ Old value of b satisfies b2 6≡ 1 (mod p), but . . .
m−1
♠ . . . new value of b satisfies b2 ≡ 1 (mod p), so:
m−1
♥ Reason: for old b, m minimal ⇒ b2 ≡ −1 (mod p)
r−1
♥ Also, g 2 ≡ −1 (mod p)
r−m
♥ But b · g 2 is the new value of b (see ♠)