diff options
Diffstat (limited to 'src/Specific/Framework/bench/gmpvar.c')
-rw-r--r-- | src/Specific/Framework/bench/gmpvar.c | 75 |
1 files changed, 44 insertions, 31 deletions
diff --git a/src/Specific/Framework/bench/gmpvar.c b/src/Specific/Framework/bench/gmpvar.c index 9c79dace8..3c79d4212 100644 --- a/src/Specific/Framework/bench/gmpvar.c +++ b/src/Specific/Framework/bench/gmpvar.c @@ -164,14 +164,15 @@ static void crypto_scalarmult(uint8_t *out, const uint8_t *secret, size_t secret } - fe_inv(nqz, nqz); - fe_mul(nqx, nqx, nqz); - for (size_t i = 0; i < modulus_bytes; i++) { out[i] = 0; } for (size_t i = 0; i < 8*modulus_bytes; i++) { mp_limb_t bit = (nqx[i/GMP_LIMB_BITS] >> (i%GMP_LIMB_BITS))&1; out [i/8] |= bit<<(i%8); } + for (size_t i = 0; i < 8*modulus_bytes; i++) { + mp_limb_t bit = (nqz[i/GMP_LIMB_BITS] >> (i%GMP_LIMB_BITS))&1; + out [i/8] ^= bit<<(i%8); + } } @@ -184,32 +185,44 @@ int main() { // printf("0x"); for (int i = 31; i>=0; --i) { printf("%02x", out[i]); }; printf("\n"); // } - { - const uint8_t expected[32] = {0x89, 0x16, 0x1f, 0xde, 0x88, 0x7b, 0x2b, 0x53, 0xde, 0x54, 0x9a, 0xf4, 0x83, 0x94, 0x01, 0x06, 0xec, 0xc1, 0x14, 0xd6, 0x98, 0x2d, 0xaa, 0x98, 0x25, 0x6d, 0xe2, 0x3b, 0xdf, 0x77, 0x66, 0x1a}; - const uint8_t basepoint[32] = {9, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0}; - - - uint8_t a[32] = {0}, b[32] = {0}; - uint8_t* in = a; - uint8_t* out = b; - a[0] = 1; - - for (int i = 0; i < 200; i++) { - in[0] &= 248; - in[31] &= 127; - in[31] |= 64; - - crypto_scalarmult(out, in, 256, basepoint); - uint8_t* t = out; - out = in; - in = t; - } - - for (int i = 0; i < 32; i++) { - if (in[i] != expected[i]) { - return (i+1); - } - } - return 0; - } + // { + // const uint8_t expected[32] = {0x89, 0x16, 0x1f, 0xde, 0x88, 0x7b, 0x2b, 0x53, 0xde, 0x54, 0x9a, 0xf4, 0x83, 0x94, 0x01, 0x06, 0xec, 0xc1, 0x14, 0xd6, 0x98, 0x2d, 0xaa, 0x98, 0x25, 0x6d, 0xe2, 0x3b, 0xdf, 0x77, 0x66, 0x1a}; + // const uint8_t basepoint[32] = {9, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0}; + + + // uint8_t a[32] = {0}, b[32] = {0}; + // uint8_t* in = a; + // uint8_t* out = b; + // a[0] = 1; + + // for (int i = 0; i < 200; i++) { + // in[0] &= 248; + // in[31] &= 127; + // in[31] |= 64; + + // crypto_scalarmult(out, in, 256, basepoint); + // uint8_t* t = out; + // out = in; + // in = t; + // } + + // for (int i = 0; i < 32; i++) { + // if (in[i] != expected[i]) { + // return (i+1); + // } + // } + // return 0; + // } + uint8_t secret[32]; + uint8_t point[modulus_bytes]; + + for (int i = 0; i < modulus_bytes; i++) { point[modulus_bytes-i] = i; } + + for (int i = 0; i < 1000; i++) { + for (int j = 0; j<modulus_bytes; j++) { + secret[j%32] ^= point[j]; + } + crypto_scalarmult(point, secret, 32*8, point); + } + return 0; } |