Lines Matching refs:s2

4624     int64_t s2  = kBottom21Bits & (load_3(s +  5) >> 2);  in x25519_sc_reduce()  local
4771 s2 += s14 * 666643; in x25519_sc_reduce()
4780 s2 += s13 * 470296; in x25519_sc_reduce()
4789 s2 += s12 * 654183; in x25519_sc_reduce()
4798 carry2 = (s2 + (1 << 20)) >> 21; in x25519_sc_reduce()
4800 s2 -= carry2 * (1 << 21); in x25519_sc_reduce()
4815 s2 += carry1; in x25519_sc_reduce()
4835 s2 += s12 * 654183; in x25519_sc_reduce()
4845 s2 += carry1; in x25519_sc_reduce()
4847 carry2 = s2 >> 21; in x25519_sc_reduce()
4849 s2 -= carry2 * (1 << 21); in x25519_sc_reduce()
4880 s2 += s12 * 654183; in x25519_sc_reduce()
4890 s2 += carry1; in x25519_sc_reduce()
4892 carry2 = s2 >> 21; in x25519_sc_reduce()
4894 s2 -= carry2 * (1 << 21); in x25519_sc_reduce()
4925 s[ 5] = (uint8_t)((s1 >> 19) | (s2 << 2)); in x25519_sc_reduce()
4926 s[ 6] = (uint8_t) (s2 >> 6); in x25519_sc_reduce()
4927 s[ 7] = (uint8_t)((s2 >> 14) | (s3 << 7)); in x25519_sc_reduce()
5005 int64_t s2; in sc_muladd() local
5053 s2 = c2 + a0 * b2 + a1 * b1 + a2 * b0; in sc_muladd()
5079 carry2 = (s2 + (1 << 20)) >> 21; in sc_muladd()
5081 s2 -= carry2 * (1 << 21); in sc_muladd()
5114 s2 += carry1; in sc_muladd()
5254 s2 += s14 * 666643; in sc_muladd()
5263 s2 += s13 * 470296; in sc_muladd()
5272 s2 += s12 * 654183; in sc_muladd()
5281 carry2 = (s2 + (1 << 20)) >> 21; in sc_muladd()
5283 s2 -= carry2 * (1 << 21); in sc_muladd()
5298 s2 += carry1; in sc_muladd()
5318 s2 += s12 * 654183; in sc_muladd()
5328 s2 += carry1; in sc_muladd()
5330 carry2 = s2 >> 21; in sc_muladd()
5332 s2 -= carry2 * (1 << 21); in sc_muladd()
5363 s2 += s12 * 654183; in sc_muladd()
5373 s2 += carry1; in sc_muladd()
5375 carry2 = s2 >> 21; in sc_muladd()
5377 s2 -= carry2 * (1 << 21); in sc_muladd()
5408 s[ 5] = (uint8_t)((s1 >> 19) | (s2 << 2)); in sc_muladd()
5409 s[ 6] = (uint8_t) (s2 >> 6); in sc_muladd()
5410 s[ 7] = (uint8_t)((s2 >> 14) | (s3 << 7)); in sc_muladd()