Lines Matching refs:s8

4630     int64_t s8  = kBottom21Bits &  load_3(s + 21);  in x25519_sc_reduce()  local
4688 s8 += s20 * 666643; in x25519_sc_reduce()
4697 s8 += s19 * 470296; in x25519_sc_reduce()
4706 s8 += s18 * 654183; in x25519_sc_reduce()
4715 carry8 = (s8 + (1 << 20)) >> 21; in x25519_sc_reduce()
4717 s8 -= carry8 * (1 << 21); in x25519_sc_reduce()
4732 s8 += carry7; in x25519_sc_reduce()
4750 s8 -= s17 * 997805; in x25519_sc_reduce()
4759 s8 += s16 * 136657; in x25519_sc_reduce()
4768 s8 -= s15 * 683901; in x25519_sc_reduce()
4807 carry8 = (s8 + (1 << 20)) >> 21; in x25519_sc_reduce()
4809 s8 -= carry8 * (1 << 21); in x25519_sc_reduce()
4824 s8 += carry7; in x25519_sc_reduce()
4863 s8 += carry7; in x25519_sc_reduce()
4865 carry8 = s8 >> 21; in x25519_sc_reduce()
4867 s8 -= carry8 * (1 << 21); in x25519_sc_reduce()
4908 s8 += carry7; in x25519_sc_reduce()
4910 carry8 = s8 >> 21; in x25519_sc_reduce()
4912 s8 -= carry8 * (1 << 21); in x25519_sc_reduce()
4941 s[21] = (uint8_t) (s8 >> 0); in x25519_sc_reduce()
4942 s[22] = (uint8_t) (s8 >> 8); in x25519_sc_reduce()
4943 s[23] = (uint8_t)((s8 >> 16) | (s9 << 5)); in x25519_sc_reduce()
5011 int64_t s8; in sc_muladd() local
5059s8 = c8 + a0 * b8 + a1 * b7 + a2 * b6 + a3 * b5 + a4 * b4 + a5 * b3 + a6 *… in sc_muladd()
5088 carry8 = (s8 + (1 << 20)) >> 21; in sc_muladd()
5090 s8 -= carry8 * (1 << 21); in sc_muladd()
5123 s8 += carry7; in sc_muladd()
5171 s8 += s20 * 666643; in sc_muladd()
5180 s8 += s19 * 470296; in sc_muladd()
5189 s8 += s18 * 654183; in sc_muladd()
5198 carry8 = (s8 + (1 << 20)) >> 21; in sc_muladd()
5200 s8 -= carry8 * (1 << 21); in sc_muladd()
5215 s8 += carry7; in sc_muladd()
5233 s8 -= s17 * 997805; in sc_muladd()
5242 s8 += s16 * 136657; in sc_muladd()
5251 s8 -= s15 * 683901; in sc_muladd()
5290 carry8 = (s8 + (1 << 20)) >> 21; in sc_muladd()
5292 s8 -= carry8 * (1 << 21); in sc_muladd()
5307 s8 += carry7; in sc_muladd()
5346 s8 += carry7; in sc_muladd()
5348 carry8 = s8 >> 21; in sc_muladd()
5350 s8 -= carry8 * (1 << 21); in sc_muladd()
5391 s8 += carry7; in sc_muladd()
5393 carry8 = s8 >> 21; in sc_muladd()
5395 s8 -= carry8 * (1 << 21); in sc_muladd()
5424 s[21] = (uint8_t) (s8 >> 0); in sc_muladd()
5425 s[22] = (uint8_t) (s8 >> 8); in sc_muladd()
5426 s[23] = (uint8_t)((s8 >> 16) | (s9 << 5)); in sc_muladd()