Lines Matching refs:s11
4628 int64_t s11 = kBottom21Bits & (load_4(s + 28) >> 7); in x25519_sc_reduce() local
4659 s11 += s23 * 666643; in x25519_sc_reduce()
4668 s11 += s22 * 470296; in x25519_sc_reduce()
4677 s11 += s21 * 654183; in x25519_sc_reduce()
4686 s11 -= s20 * 997805; in x25519_sc_reduce()
4695 s11 += s19 * 136657; in x25519_sc_reduce()
4704 s11 -= s18 * 683901; in x25519_sc_reduce()
4714 s11 += carry10; in x25519_sc_reduce()
4732 carry11 = (s11 + (1 << 20)) >> 21; in x25519_sc_reduce()
4734 s11 -= carry11 * (1 << 21); in x25519_sc_reduce()
4806 s11 += carry10; in x25519_sc_reduce()
4824 carry11 = (s11 + (1 << 20)) >> 21; in x25519_sc_reduce()
4826 s11 -= carry11 * (1 << 21); in x25519_sc_reduce()
4867 s11 += carry10; in x25519_sc_reduce()
4869 carry11 = s11 >> 21; in x25519_sc_reduce()
4871 s11 -= carry11 * (1 << 21); in x25519_sc_reduce()
4912 s11 += carry10; in x25519_sc_reduce()
4943 s[28] = (uint8_t)((s10 >> 14) | (s11 << 7)); in x25519_sc_reduce()
4944 s[29] = (uint8_t) (s11 >> 1); in x25519_sc_reduce()
4945 s[30] = (uint8_t) (s11 >> 9); in x25519_sc_reduce()
4946 s[31] = (uint8_t) (s11 >> 17); in x25519_sc_reduce()
5009 int64_t s11; in sc_muladd() local
5057 …s11 = c11 + a0 * b11 + a1 * b10 + a2 * b9 + a3 * b8 + a4 * b7 + a5 * b6 + a6 *… in sc_muladd()
5087 s11 += carry10; in sc_muladd()
5123 carry11 = (s11 + (1 << 20)) >> 21; in sc_muladd()
5125 s11 -= carry11 * (1 << 21); in sc_muladd()
5142 s11 += s23 * 666643; in sc_muladd()
5151 s11 += s22 * 470296; in sc_muladd()
5160 s11 += s21 * 654183; in sc_muladd()
5169 s11 -= s20 * 997805; in sc_muladd()
5178 s11 += s19 * 136657; in sc_muladd()
5187 s11 -= s18 * 683901; in sc_muladd()
5197 s11 += carry10; in sc_muladd()
5215 carry11 = (s11 + (1 << 20)) >> 21; in sc_muladd()
5217 s11 -= carry11 * (1 << 21); in sc_muladd()
5289 s11 += carry10; in sc_muladd()
5307 carry11 = (s11 + (1 << 20)) >> 21; in sc_muladd()
5309 s11 -= carry11 * (1 << 21); in sc_muladd()
5350 s11 += carry10; in sc_muladd()
5352 carry11 = s11 >> 21; in sc_muladd()
5354 s11 -= carry11 * (1 << 21); in sc_muladd()
5395 s11 += carry10; in sc_muladd()
5426 s[28] = (uint8_t)((s10 >> 14) | (s11 << 7)); in sc_muladd()
5427 s[29] = (uint8_t) (s11 >> 1); in sc_muladd()
5428 s[30] = (uint8_t) (s11 >> 9); in sc_muladd()
5429 s[31] = (uint8_t) (s11 >> 17); in sc_muladd()