Monero
Loading...
Searching...
No Matches
crypto-ops.h
Go to the documentation of this file.
1// Copyright (c) 2014-2022, The Monero Project
2//
3// All rights reserved.
4//
5// Redistribution and use in source and binary forms, with or without modification, are
6// permitted provided that the following conditions are met:
7//
8// 1. Redistributions of source code must retain the above copyright notice, this list of
9// conditions and the following disclaimer.
10//
11// 2. Redistributions in binary form must reproduce the above copyright notice, this list
12// of conditions and the following disclaimer in the documentation and/or other
13// materials provided with the distribution.
14//
15// 3. Neither the name of the copyright holder nor the names of its contributors may be
16// used to endorse or promote products derived from this software without specific
17// prior written permission.
18//
19// THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" AND ANY
20// EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF
21// MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL
22// THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
23// SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO,
24// PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
25// INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
26// STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF
27// THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
28//
29// Parts of this file are originally copyright (c) 2012-2013 The Cryptonote developers
30
31#pragma once
32
33/* From fe.h */
34
35typedef int32_t fe[10];
36
37/* From ge.h */
38
39typedef struct {
40 fe X;
41 fe Y;
42 fe Z;
43} ge_p2;
44
45typedef struct {
46 fe X;
47 fe Y;
48 fe Z;
49 fe T;
50} ge_p3;
51
52typedef struct {
53 fe X;
54 fe Y;
55 fe Z;
56 fe T;
57} ge_p1p1;
58
59typedef struct {
60 fe yplusx;
61 fe yminusx;
62 fe xy2d;
64
65typedef struct {
66 fe YplusX;
67 fe YminusX;
68 fe Z;
69 fe T2d;
70} ge_cached;
71
72/* From ge_add.c */
73
74void ge_add(ge_p1p1 *, const ge_p3 *, const ge_cached *);
75
76/* From ge_double_scalarmult.c, modified */
77
78typedef ge_cached ge_dsmp[8];
79extern const ge_precomp ge_Bi[8];
80void ge_dsm_precomp(ge_dsmp r, const ge_p3 *s);
81void ge_double_scalarmult_base_vartime(ge_p2 *, const unsigned char *, const ge_p3 *, const unsigned char *);
82
83/* From ge_frombytes.c, modified */
84
85extern const fe fe_sqrtm1;
86extern const fe fe_d;
87int ge_frombytes_vartime(ge_p3 *, const unsigned char *);
88
89/* From ge_p1p1_to_p2.c */
90
91void ge_p1p1_to_p2(ge_p2 *, const ge_p1p1 *);
92
93/* From ge_p1p1_to_p3.c */
94
95void ge_p1p1_to_p3(ge_p3 *, const ge_p1p1 *);
96
97/* From ge_p2_dbl.c */
98
99void ge_p2_dbl(ge_p1p1 *, const ge_p2 *);
100
101/* From ge_p3_to_cached.c */
102
103extern const fe fe_d2;
104void ge_p3_to_cached(ge_cached *, const ge_p3 *);
105
106/* From ge_p3_to_p2.c */
107
108void ge_p3_to_p2(ge_p2 *, const ge_p3 *);
109
110/* From ge_p3_tobytes.c */
111
112void ge_p3_tobytes(unsigned char *, const ge_p3 *);
113
114/* From ge_scalarmult_base.c */
115
116extern const ge_precomp ge_base[32][8];
117void ge_scalarmult_base(ge_p3 *, const unsigned char *);
118
119/* From ge_tobytes.c */
120
121void ge_tobytes(unsigned char *, const ge_p2 *);
122
123/* From sc_reduce.c */
124
125void sc_reduce(unsigned char *);
126
127/* New code */
128
129void ge_scalarmult(ge_p2 *, const unsigned char *, const ge_p3 *);
130void ge_double_scalarmult_precomp_vartime(ge_p2 *, const unsigned char *, const ge_p3 *, const unsigned char *, const ge_dsmp);
131void ge_mul8(ge_p1p1 *, const ge_p2 *);
132extern const fe fe_ma2;
133extern const fe fe_ma;
134extern const fe fe_fffb1;
135extern const fe fe_fffb2;
136extern const fe fe_fffb3;
137extern const fe fe_fffb4;
138void ge_fromfe_frombytes_vartime(ge_p2 *, const unsigned char *);
139void sc_0(unsigned char *);
140void sc_reduce32(unsigned char *);
141void sc_add(unsigned char *, const unsigned char *, const unsigned char *);
142void sc_sub(unsigned char *, const unsigned char *, const unsigned char *);
143void sc_mulsub(unsigned char *, const unsigned char *, const unsigned char *, const unsigned char *);
144int sc_check(const unsigned char *);
145int sc_isnonzero(const unsigned char *); /* Doesn't normalize */
#define s(x, c)
Definition aesb.c:47
#define fe(x)
Definition aesb.c:128
void ge_double_scalarmult_precomp_vartime(ge_p2 *, const unsigned char *, const ge_p3 *, const unsigned char *, const ge_dsmp)
Definition crypto-ops.c:2294
void sc_0(unsigned char *)
Definition crypto-ops.c:2426
ge_cached ge_dsmp[8]
Definition crypto-ops.h:78
void sc_reduce32(unsigned char *)
Definition crypto-ops.c:2433
void ge_dsm_precomp(ge_dsmp r, const ge_p3 *s)
Definition crypto-ops.c:1175
int ge_frombytes_vartime(ge_p3 *, const unsigned char *)
Definition crypto-ops.c:1334
void sc_sub(unsigned char *, const unsigned char *, const unsigned char *)
Definition crypto-ops.c:2687
void sc_mulsub(unsigned char *, const unsigned char *, const unsigned char *, const unsigned char *)
Definition crypto-ops.c:2837
void ge_mul8(ge_p1p1 *, const ge_p2 *)
Definition crypto-ops.c:2301
int sc_check(const unsigned char *)
Definition crypto-ops.c:3814
void ge_double_scalarmult_base_vartime(ge_p2 *, const unsigned char *, const ge_p3 *, const unsigned char *)
Definition crypto-ops.c:1196
int sc_isnonzero(const unsigned char *)
Definition crypto-ops.c:3826
void sc_add(unsigned char *, const unsigned char *, const unsigned char *)
Definition crypto-ops.c:2548
void ge_fromfe_frombytes_vartime(ge_p2 *, const unsigned char *)
Definition crypto-ops.c:2310
void ge_scalarmult(ge_p2 *, const unsigned char *, const ge_p3 *)
Definition crypto-ops.c:2038
#define Z
Definition mdb.c:474
#define ge_scalarmult_base
Definition ge.h:71
#define ge_p1p1_to_p2
Definition ge.h:62
#define ge_p1p1_to_p3
Definition ge.h:63
#define ge_p3_tobytes
Definition ge.h:55
#define ge_p3_to_cached
Definition ge.h:61
#define ge_add
Definition ge.h:69
#define ge_p3_to_p2
Definition ge.h:60
#define ge_p2_dbl
Definition ge.h:64
#define ge_tobytes
Definition ge.h:54
#define sc_reduce
Definition sc.h:9
const fe fe_fffb4
Definition crypto-ops-data.c:872
const fe fe_d2
Definition crypto-ops-data.c:39
const fe fe_fffb3
Definition crypto-ops-data.c:871
const fe fe_ma2
Definition crypto-ops-data.c:867
const fe fe_ma
Definition crypto-ops-data.c:868
const ge_precomp ge_base[32][8]
Definition crypto-ops-data.c:42
const fe fe_d
Definition crypto-ops-data.c:37
const fe fe_fffb1
Definition crypto-ops-data.c:869
const ge_precomp ge_Bi[8]
Definition crypto-ops-data.c:846
const fe fe_sqrtm1
Definition crypto-ops-data.c:38
const fe fe_fffb2
Definition crypto-ops-data.c:870
signed int int32_t
Definition stdint.h:123
Definition crypto-ops.h:65
Definition crypto-ops.h:52
Definition crypto-ops.h:39
Definition crypto-ops.h:45
Definition crypto-ops.h:59
#define T(x)