1
0
mirror of http://galexander.org/git/simplesshd.git synced 2024-11-30 19:28:10 +00:00
simplesshd/dropbear/libtommath/bn_mp_montgomery_setup.c

43 lines
1.1 KiB
C
Raw Normal View History

2020-12-28 21:40:37 +00:00
#include "tommath_private.h"
2014-12-10 21:56:49 +00:00
#ifdef BN_MP_MONTGOMERY_SETUP_C
2020-12-28 21:40:37 +00:00
/* LibTomMath, multiple-precision integer library -- Tom St Denis */
/* SPDX-License-Identifier: Unlicense */
2014-12-10 21:56:49 +00:00
/* setups the montgomery reduction stuff */
2020-12-28 21:40:37 +00:00
mp_err mp_montgomery_setup(const mp_int *n, mp_digit *rho)
2014-12-10 21:56:49 +00:00
{
2020-12-28 21:40:37 +00:00
mp_digit x, b;
2014-12-10 21:56:49 +00:00
2020-12-28 21:40:37 +00:00
/* fast inversion mod 2**k
*
* Based on the fact that
*
* XA = 1 (mod 2**n) => (X(2-XA)) A = 1 (mod 2**2n)
* => 2*X*A - X*X*A*A = 1
* => 2*(1) - (1) = 1
*/
b = n->dp[0];
2014-12-10 21:56:49 +00:00
2020-12-28 21:40:37 +00:00
if ((b & 1u) == 0u) {
return MP_VAL;
}
2014-12-10 21:56:49 +00:00
2020-12-28 21:40:37 +00:00
x = (((b + 2u) & 4u) << 1) + b; /* here x*a==1 mod 2**4 */
x *= 2u - (b * x); /* here x*a==1 mod 2**8 */
2014-12-10 21:56:49 +00:00
#if !defined(MP_8BIT)
2020-12-28 21:40:37 +00:00
x *= 2u - (b * x); /* here x*a==1 mod 2**16 */
2014-12-10 21:56:49 +00:00
#endif
#if defined(MP_64BIT) || !(defined(MP_8BIT) || defined(MP_16BIT))
2020-12-28 21:40:37 +00:00
x *= 2u - (b * x); /* here x*a==1 mod 2**32 */
2014-12-10 21:56:49 +00:00
#endif
#ifdef MP_64BIT
2020-12-28 21:40:37 +00:00
x *= 2u - (b * x); /* here x*a==1 mod 2**64 */
2014-12-10 21:56:49 +00:00
#endif
2020-12-28 21:40:37 +00:00
/* rho = -1/m mod b */
*rho = (mp_digit)(((mp_word)1 << (mp_word)MP_DIGIT_BIT) - x) & MP_MASK;
2014-12-10 21:56:49 +00:00
2020-12-28 21:40:37 +00:00
return MP_OKAY;
2014-12-10 21:56:49 +00:00
}
#endif