Limits on the Hardness of Lattice Problems in ℓ p Norms
- 152 Downloads
- 15 Citations
Abstract.
-
Approximating the closest vector problem, the shortest vector problem, and other related problems to within \(O(\sqrt{n})\) factors (or \(O(\sqrt{n \log n})\) factors, for p = ∞) is in coNP.
-
Approximating the closest vector and bounded distance decoding problems with preprocessing to within \(O(\sqrt{n})\) factors can be accomplished in deterministic polynomial time.
-
Approximating several problems (such as the shortest independent vectors problem) to within Õ(n) factors in the worst case reduces to solving the average-case problems defined in prior works (Ajtai 2004; Micciancio & Regev 2007; Regev 2005).
Our results improve prior approximation factors for ℓ p norms by up to \(\sqrt{n}\) factors. Taken all together, they complement recent reductions from the ℓ 2 norm to ℓ p norms (Regev & Rosen 2006), and provide some evidence that lattice problems in ℓ p norms (for p > 2) may not be substantially harder than they are in the ℓ 2 norm.
One of our main technical contributions is a very general analysis of Gaussian distributions over lattices, which may be of independent interest. Our proofs employ analytical techniques of Banaszczyk that, to our knowledge, have yet to be exploited in computer science.
Keywords.
Lattices ℓp norms discrete Gaussians worst-case to average-case reductions cryptographySubject classification.
68Q17 68Q25 11H06 94B75Preview
Unable to display preview. Download preview PDF.