New Permutation Trinomials From Niho Exponents over Finite Fields with Even Characteristic arxiv:606.03768v [cs.it] 2 Jun 206 Nian Li and Tor Helleseth Abstract In this paper, a class of permutation trinomials of Niho type over finite fields with even characteristic is further investigated. New permutation trinomials from Niho exponents are obtained from linear fractional polynomials over finite fields, and it is shown that the presented results are the generalizations of some earlier wors. Introduction Let p be a prime and F p m denote the finite field with p m elements. A polynomial f(x) F p m[x] is called a permutation polynomial of F p m if the associated polynomial function f : c f(c) from F p m to F p m is a permutation of F p m [5]. Permutation polynomials over finite fields, which were first studied by Hermite [6] and Dicson [2], have wide applications in the areas of mathematics and engineering such as coding theory, cryptography and combinatorial designs. The construction of permutation polynomials with either a simple form or certain desired property is an interesting research problem. For some recent constructions of permutation polynomials with a simple form, the reader is referred to [3, 8, 0, 3, 8, 9, 23] and for some constructions of permutation polynomials with certain desired property, the reader is referred to [, 4, 5, 2, 20, 2, 22] and the references therein for example. Permutation binomials and trinomials attract researchers attention in recent years due to their simple algebraic form, and some nice wors on them had been achieved in [3, 0, 8, 23]. However, currently only a small number of specific classes of permutation binomials and trinomials are described in the literature, which can be found in the survey paper[9] on the developments of the constructions of permutation polynomials and four recent papers [3,, 3, 22] on permutation binomials and trinomials over finite fields. In this paper, following the line of the wors did in [8, ], we further study the permutation trinomials from Niho exponents over finite fields with even characteristic. Precisely, let n = 2m be a The authors are with the Department of Informatics, University of Bergen, N-5020 Bergen, Norway. Email: Nian.Li@ii.uib.no; Tor.Helleseth@ii.uib.no.
positive integer and p = 2, we consider the trinomials over the finite field F 2 n of the form f(x) = x+x s(2m )+ +x t(2m )+, () where s,t are integers satisfying s,t 2 m. For simplicity, if the integers s,t are written as fractions or negative integers, then they should be interpreted as modulo 2 m +. For instance, (s,t) = ( 2, 3 4 ) = (2 m +,2 m 2 +). The objective of this paper is then to find new pairs (s,t) such that the trinomial f(x) defined by () is a permutation polynomial. Based on the analysis of certain equations over the finite field F 2 n, some new classes of permutation trinomials over F 2 n with the form () are constructed. The presented new classes of permutation trinomials of the form () are determined by maing use of the property of the linear fractional polynomials over the finite field F 2 n, which is a completely different approach, and it will be seen that many permutation trinomials of the form () can be obtained from them since their parameters on (s, t) are flexible. 2 Preliminaries Throughout this paper, let n = 2m and F 2 n denote the finite field with 2 n elements. A positive integer d is called a Niho exponent with respect to the finite field F 2 n if d 2 j (mod 2 m )for some nonnegative integer j. When j = 0, the integer d is then called a normalized Niho exponent. The Niho exponents were originally introduced by Niho [6] who investigated the cross-correlation between an m-sequence and its d-decimation. For simplicity, denote the conjugate of x F 2 n over F 2 m by x, i.e., x = x 2m. The unit circle of F 2 n is defined as follows: U = {x F 2 n : xx = x 2m + = }. Notice that the trinomial f(x) defined by () can be written as the form x r g(x s ) for some integers r,s and g(x) F 2 n[x]. For this ind of polynomials, its permutation property had been characterized by the following lemma which was proved by Par and Lee in 200 and reproved by Zieve in 2009. Lemma. ([7, 24]) Let p be a prime, n a positive integer and g(x) F p n[x]. If d,s,r > 0 such that p n = ds, then x r g(x s ) is a permutation over F p n if and only if ) gcd(r,s) =, and 2) h(x) = x r g(x) s permutes the d-th roots of unity in F p n. In the sequel, we will use the property of the linear fractional polynomial to prove our main results. For the linear fractional polynomial φ(x) = ax+b cx+d with a,b,c,d F 2n and ad bc 0, it can be readily 2
verified that φ(x) defines a permutation on F 2 n { }, where a 0 = ifa 0; a +b c +d = a c ifc 0; a +b = ifc = 0andad 0. c +d Then, by utilizing the fact that the composition of any two linear fractional polynomial is still a linear fractional polynomial, we can prove Lemma 2. Let a U with a 3 and φ(x) = ax+(a+) (a+)x+. If φ(x) = x2 holds for some positive integer. Then for any i 2 we have x 2i = { x, if e 2 i +e + = 0,, if e2 i +e + 0, e ix+ x+e i+ where e = a a+, e i = if e 2 i +e + = 0 and otherwise e i = φ(e 2 i ) for any i 2. Proof. Note that φ(x) = ax+(a+) (a+)x+ = ex+ x+e +, where e = a a+. Taing 2 -th power on both sides of x 2 = φ(x) gives x 22 = e2 + x2 x 2 +e 2 +. Then, substituting x 2 by φ(x) = ex+ x+e +, we can further obtain x 22 = (e 2 + +)x+e 2 +e + (e 2 +e +)x+e 2 + +e 2 +e = e 2x+ x+e 2 + + if e 2 + e + 0, where e 2 = e2 + = φ(e2 +e+) ). If e 2 +e + = 0, then x 22 = (e2 +e+)x e 2 +e+ = x (e 2 since e 2 +e + 0. Otherwise we have e 3 = ( a a+ )3 =, i.e., a 2 +a+ = 0 which implies that a 3 =, a contradiction with a 3. By using this, we then can show by induction on i that x 2i = { x, if e 2 i +e + = 0,, if e2 i +e + 0, e ix+ x+e i+ where e i = if e 2 i +e + = 0 and otherwise e i = φ(e 2 i ) for any i 2. Suppose that (2) holds for i. Then for the case of i+ we have x 2(i+) = x 2 = φ(x) if e i = and e i+ = φ(e 2 i ) = φ( ) = e which coincides with (2). If e i, then by x 2 = φ(x) = ex+ x+e + we have x 2(i+) = e2 i x 2 + x 2 +e 2 i + = (ee2 i +)x+(e 2 i +e +). (e 2 i +e +)x+e e 2 i +e 2 i +e 3 (2) and (2)
If e 2 i +e + = 0, then e e 2 i +e 2 i +e = e e 2 i + = e 2 +e + 0 as shown before. This means that x 2(i+) = x and e i+ =. If e 2 i +e + 0, then it can be readily verified that e i+ = e e 2 i + e 2 i +e + = φ(e2 i ), e e 2 i +e 2 e 2 i +e + i +e = e i+ +. Therefore, (2) holds for any i 2. This completes the proof. 3 New Permutation Trinomials From Niho Exponents In this section, we present two new classes of permutation polynomials over F 2 n of the form (), namely where n = 2m and s,t 2 m. f(x) = x+x s(2m )+ +x t(2m )+, By using the property of the linear fractional polynomials over F 2 n, we can obtain new classes of permutation trinomials of the form () as below. Theorem. Let n = 2m and gcd(2,2 m +) =, where m, are positive integers with < m. Then the trinomial f(x) defined by () is a permutation if (s,t) = ( 2 2, 2 ). Proof. According to Lemma, to complete the proof, it is sufficient to prove that h(x) = x( + x s + x t ) 2m with (s,t) = ( 2 2, 2 ) permutes the unit circle U of F 2n, which is equivalent to showing that h(x 2 ) = x 2 ( + x s(2 ) + x t(2 ) ) 2m = x 2 ( + x 2 + x ) 2m permutes U since gcd(2,2 m + ) =. Notice that x 2 + + x + 0 for any x U. Otherwise, from x 2 + +x+ = 0 and x 2m + + = 0 we have x 2 + +x+x 2m + = 0, i.e., x 2m = x 2 + which leads to x = (x 2 +) 2m = (x 2m +) 2 = (x 2 ) 2 = x 22. Taing 2 -th power on both sides of x 2 + +x+ = 0 gives x 22 +2 +x 2 + = 0. Then by x 22 = x and x 2 + +x+ = 0 we have x 2 = x which implies that x = due to x 2 =, x 2m + = and gcd(2,2 m +) =, a contradiction. Thus, we arrive at x 2 + +x+ 0 for any x U, and then, h(x 2 ) = x 2 (+x 2 +x ) 2m can be rewritten as h(x 2 ) = x2 + +x 2 + x 2 + +x+. We next prove that h(x 2 ) = x2 + +x 2 + x 2 + +x+ permutes the unit circle of F 2 n. For any given a U, we show that h(x 2 ) = a has at most one solution in U. Note that h(x 2 ) = a can be expressed as We then can discuss it as follows: x 2 = ax+(a+) (a+)x+. (3) 4
) a =. If a =, then (3) is reduced to x 2 = x which has exactly one solution x = in U since gcd(2,2 m +) =. 2) a = (a+) 2, i.e., a 2 +a+ = 0. This case happens only if m is odd since a U. Then, (3) can be reduced to x 2 = a+ = a 2 which has exactly one solution in U when this case happens. 3) a 3. For this case, if (3) holds for some x U, then by Lemma 2, we have that (2) holds for the same x for any i 2. If is odd, then x 2i = x either x = x if one taes i = m. Thus, by (2) we have emx+ or x+e = m+ x, it then can be readily seen that no matter which case there exists at most one such x. If is even, assume that = 2 j for some positive j and odd, then we can conclude that 2 j m since gcd(2,2 m +) = if and only if gcd(m,) is odd. Tae i = m 2 j in (2), we have x 2i = x 2m case of is odd. = x since is odd. Therefore, the proof can be completed as the This completes the proof. If one taes =, then Theorem generalizes Theorem 3.2 in [3]. Corollary. Let n = 2m for a positive integer m. Then the trinomial f(x) defined by () is a permutation if (s,t) = (2, ) = (2,2 m ). If one taes = 2, then Theorem generalizes Theorem 3 in []. Corollary 2. Letn = 2mforanevenintegerm. Thenthetrinomialf(x)definedby()isapermutation if (s,t) = ( 4 3, 3 ) = (2m +5 3, 2m+ + 3 ). Theorem 2. Let n = 2m and gcd(2 +,2 m + ) =, where m, are positive integers. Then the trinomial f(x) defined by () is a permutation if (s,t) = ( 2 +, 2 2 + ). Proof. According to Lemma, we need to show that h(x) = x( + x s + x t ) 2m permutes the unit circle U of F 2 n if (s,t) = ( 2 +, 2 2 + ). Since gcd(2 +,2 m + ) =, then it suffices to prove that h(x 2 + ) = x 2 + (+x s(2 +) +x t(2 +) ) 2m = x 2 + (+x+x 2 ) 2m permutes U. First, we show that x 2 +x+ 0 for any x U. Suppose that x 2 +x+ = 0 and x 2m + + = 0, then one gets x 2 = x+ and x 2m = x which leads to x2m+ = (x+) 2m = ( x )2. This together with x 2 +x+ = 0 implies that (x +) 2m = x+, i.e., (x+)2m + =, and then, we obtain that x 2 + x+ = 0 due to x 2m + + = 0. However, this is impossible if m is even since x 2 + x + = 0 has no solution in U for even m. If m is odd, then x 2 + x + = 0 has two solutions in U satisfying x 3 =. Note that gcd(2 +,2 m +) = if and only if one of m gcd(m,) and 5 gcd(m,) is even which means that is even
and 2 (mod 3). This leads to x 2 +x+ = x+x+ =, a contradiction. Hence, x 2 +x+ 0 for any x U, and h(x 2 + ) = x 2 + (+x+x 2 ) 2m can be expressed as h(x 2 + ) = x2 + +x 2 +x. x 2 +x+ We next prove that h(x 2 + ) = x2 + +x 2 +x x 2 +x+ permutes the unit circle of F 2 n. For any given a U, we show that h(x 2 + ) = a has at most one solution in U. Note that h(x 2 + ) = a can be written as x 2 = (a+)x+a x+(a+). Taing 2 m -th power on both sides of the above equation gives x 2m+ = (a+)x+a x+(a+) = ax+(a+) (a+)x+. (4) Let = m+ and a = a. Thus, by Lemma 2, if a 3, then for any i 2 we have x 2i = x, if e 2 i +e + = 0, e i x+ x+e +, if e 2 i +e + 0, (5) i where e i = if e 2 i +e + = 0 and otherwise e i = φ(e 2 of Theorem, we can discuss it as follows: i ) for any i 2. Thus, similar as the proof ) a =. If a =, then (4) is reduced to x 2m+ = x, i.e., x 2 + =, which has exactly one solution x = in U since gcd(2 +,2 m +) =. 2) a = (a +) 2, i.e., a 2 +a + = 0. This case happens only if m is odd since a U. Then, (4) can be reduced to x 2m+ = a + = a 2 which has exactly one solution in U when this case happens. 3) a 3. For this case, if (4) holds for some x U, then by Lemma 2, we have that (5) holds for the same x for any i 2. If is odd, then x 2i = x if one taes i = m. Thus, by (5) we have either x = x or e m x+ x+e m + = x, which implies that there exists at most one such x. If is even, then we can claim that m is even. Moreover, let = 2 j for some positive j and odd, we have 2 j m. This can be verified by the fact that gcd(2 +,2 m + ) = if and only if one of m gcd(m,) and m gcd(m,) is even, i.e., gcd(m,) + gcd(m,) = m+ gcd(m,) = gcd(m,) is odd. Therefore, for even = 2 j, we can tae i = m in (5) and then 2 j x2i = x 2m = x since is odd. Then, the proof can be completed as the case of is odd. 6
This completes the proof. If one taes =, then Theorem 2 shows that the trinomial f(x) defined by () is a permutation for even m if (s,t) = ( 2 +, 2 2 + ) = ( 3, 2 3 ). However, this result is covered by Theorem 3.4 in [3] up to equivalence (see Table ). If one taes = 2, then Theorem 2 generalizes Theorem 6 in []. Corollary 3. Let n = 2m satisfy gcd(5,2 m + ) =. Then the trinomial f(x) defined by () is a permutation if (s,t) = ( 5, 4 5 ). Table : Known pairs (s,t) such that f(x) defined by () are permutation polynomials No. (s, t) h(x) Conditions Equivalent Pairs Proven in (, ) x see Thm. 3.4 in [3] ( ± 2, ±2 2 ) [3] 2 (2, ) x 3 +x 2 + x 3 +x+ positive m (, 3 ), (, 2 3 ) [3] 3 (, 2 ) x(x 3 +x 2 +) x 3 +x+ gcd(3,m) = (, 3 2 ), ( 4, 3 4 ) [3, 4, 7] 4 ( 3, 4 3 ) x 5 +x 4 + x 5 +x+ m even (, 5 ), (, 4 5 ) [, 4] 5 (3, ) x 4 +x 3 + x(x 4 +x+) m even ( 3 5, 4 5 ), ( 3, 4 3 ) [, 4] 6 ( 2 3, 5 3 ) x 7 +x 5 + x 7 +x 2 + m even (, 2 7 ), (, 5 7 ) [] 7 ( 5, 4 5 ) x(x 4 +x 3 +) x 4 +x+ gcd(5,2 m +) = (, 3 ), (, 4 3 ) [, 4, 7] 8 (2, 2 ) x(x 5 +x+) x 5 +x 4 + m 2,4 (mod 6) ( 2 3, 5 6 ),( 4, 5 4 ) [4] 9 (4, 2) x 6 +x 4 + x(x 6 +x 2 +) gcd(3,m) = ( 2 3, 5 6 ),( 4, 5 4 ) [4] 0 ( 2 2, 2 ) x 2 + +x 2 + x 2 + +x+ ( 2 +, 2 2 + ) x 2+ +x 2 +x x 2 +x+ gcd(2,2 m +) = (, 2 + ), (, 2 2 + ) Theorem gcd(2 +,2 m +) = (, 2 2 ), (, 2 ) Theorem 2 To end this section, we list all the nown pairs (s,t) such that the polynomials of the form () are permutations in Table and we claim that all the permutation trinomials obtained in this paper are multiplicative inequivalent with the nown ones. Notice that the inverse of a normalized Niho exponent, if exists, is still a normalized Niho exponent and the product of two normalized Niho exponents is also a normalized Niho exponent. With this fact, it can be readily checed that the permutation trinomials obtained in this paper are multiplicative inequivalent with the nown permutation trinomials listed in Theorem and Table in []. Theorem in [] listed all the nown permutation trinomials over F 2 n for even n and Table in [] presented all the nown permutation trinomials of the form (). The Equivalent Pairs column in Table are obtained based on Lemma 4 in [], which also leads to permutation trinomials of the form () if they exist. Note that the fractional polynomial in No. 0 covers those of in Nos. 2 and 4 as special cases and the fractional polynomial in No. covers that of 7
in No. 7 as a special case. Further, it also should be noted that trinomial permutations over F 2 n with a more general form f r,s,t (x) = x r +x s(2m )+r +x t(2m )+r can also be obtained by using the same techniques as in [] and this paper if the parametersr,s,t are suitably chosen based on Lemma. Lemma implies that the determination of the permutation property of f r,s,t (x) over F 2 n is equivalent to that of the permutation property of h r,s,t (x) = x r ( + x s + x t ) 2m = xr +x r s +x r t +x s +x t over the unit circle of F 2 n. From the viewpoint of Lemma, the trinomials f r,s,t (x) and f r2,s 2,t 2 (x) are viewed as the same in Table for different integer tuples (r,s,t ) and (r 2,s 2,t 2 ) if h r,s,t (x) = h r2,s 2,t 2 (x) although f r,s,t (x) and f r2,s 2,t 2 (x) are multiplicative inequivalent (anyway one of them can be easily obtained from the other). With this observation, the two conjectures proposed in [7] can be settled by using the fifth and fourth fractional permutation polynomials in Table over the unit circle of F 2 n proved in [, 4]. 4 Conclusion Remars In this paper new classes of permutation trinomials over F 2 n with the form () were obtained from Niho exponents by using the property of linear fractional polynomials and some techniques in solving equations over finite fields. It was shown that the presented results generalized some earlier wors in [3, 7,, 4]. It is interesting to generalize our method in general or find new ideas to prove the permutation property of fractional polynomials over finite fields in order to obtain more permutation trinomials. References [] C. Bracen, C.H. Tan and Y. Tan, Binomial differentially 4 uniform permutations with high nonlinearity, Finite Fields Appl. 8(3)(202), pp. 537-546. [2] L.E. Dicson, The analytic representation of substitutions on a power of a prime number of letters with a discussion of the linear group, Ann. of Math., (896), pp. 65-20. [3] C. Ding, L. Qu, Q. Wang, J. Yuan and P. Yuan, Permutation trinomials over finite fields with even characteristic, SIAM J. Dis. Math, 29 (205), pp. 79-92. [4] H. Dobbertin, Almost perfect nonlinear power functions on GF(2 n ): The Welch case, IEEE Trans Inform. Theory, 45(999), pp. 27-275. [5] H. Dobbertin, Almost perfect nonlinear power functions on GF(2 n ): the Niho case, Information and Computation, 5(-2)(999), pp. 57-72. [6] Ch. Hermite, Sur les fonctions de sept lettres, C. R. Acad. Sci. Paris, 57 (863), pp. 750-757. 8
[7] Rohit Gupta, R.K. Sharma, Some new classes of permutation trinomials over finite fields with even characteristic, Finite Fields Appl. 4 (206), pp. 89-96. [8] X. Hou, A class of permutation trinomials over finite fields, Acta Arith. 62 (204), pp. 5-64. [9] X. Hou, Permutation polynomials over finite fields A survey of recent advances, Finite Fields Appl. 32 (205), pp. 82-9. [0] X. Hou, Determination of a type of permutation trinomials over finite fields, II, Finite Fields Appl. 35 (205), pp. 6-35. [] N. Li and T. Helleseth, Several classes of permutation trinomials from Niho exponents, submitted. [2] N. Li, T. Helleseth, and X. Tang, Further results on a class of permutation polynomials over finite fields, Finite Fields Appl. 22(203), pp. 6-23. [3] K. Li, L. Qu and X. Chen, New classes of permutation binomials and permutation trinomials over finite fields, available online: http://arxiv.org/pdf/508.07590.pdf. [4] K. Li, L. Qu, C. Li and S. Fu, New permutation trinomials constructed from fractional polynomials, available online: https://arxiv.org/pdf/605.0626v.pdf [5] R. Lidl, H. Niederreiter, Finite Fields, 2nd ed. Cambridge Univ. Press, Cambridge, 997. [6] Y. Niho, Multivalued cross-correlation functions between two maximal linear recursive sequence, Ph.D. dissertation, Univ. Southern Calif., Los Angeles, 972. [7] Y. H. Par and J. B. Lee, Permutation polynomials and group permutation polynomials, Bull. Austral. Math. Soc. 63 (200), pp. 67-74. [8] Z. Tu, X. Zeng, L. Hu and C. Li, A class of binomial permutation polynomials, available online: http://arxiv.org/pdf/30.0337v.pdf. [9] Z. Tu, X. Zeng and L. Hu, Several classes of complete permutation polynomials, Finite Fields and Appl., 25 (204), pp. 82-93. [20] X. Zeng, X. Zhu, and Lei Hu, Two new permutation polynomials with the form (x 2 +x+d) s +x over F 2 n. Appl. Algebra Eng. Commun. Comput. 2(2)(200), pp. 45-50. [2] X. Zeng, S. Tian, and Z. Tu, Permutation polynomials from trace functions over finite fields, Finite Fields Appl. 35(205), pp. 36-5. [22] X. Zhu, X. Zeng, and Y. Chen, Some binomial and trinomial differentially 4-uniform permutation polynomials, Int. J. Found. Comput. Sci. 26(4)(205), pp, 487-498. 9
[23] M. Zieve, Permutation polynomials on F q induced form Rédei function bijections on subgroups of F q, available online: http://arxiv.org/pdf/30.0776v2.pdf. [24] M. Zieve, On some permutation polynomials over F q of the form x r h(x (q )/d ), Proc. Amer. Math. Soc. 37 (2009), pp. 2209-226. 0