Lines Matching refs:int64_t

594         int64_t x = f[i] ^ g[i];  in fe51_cswap()
773 static const int64_t kBottom21Bits = 0x1fffffLL;
774 static const int64_t kBottom25Bits = 0x1ffffffLL;
775 static const int64_t kBottom26Bits = 0x3ffffffLL;
776 static const int64_t kTop39Bits = 0xfffffffffe000000LL;
777 static const int64_t kTop38Bits = 0xfffffffffc000000LL;
803 int64_t h0 = load_4(s); in fe_frombytes()
804 int64_t h1 = load_3(s + 4) << 6; in fe_frombytes()
805 int64_t h2 = load_3(s + 7) << 5; in fe_frombytes()
806 int64_t h3 = load_3(s + 10) << 3; in fe_frombytes()
807 int64_t h4 = load_3(s + 13) << 2; in fe_frombytes()
808 int64_t h5 = load_4(s + 16); in fe_frombytes()
809 int64_t h6 = load_3(s + 20) << 7; in fe_frombytes()
810 int64_t h7 = load_3(s + 23) << 5; in fe_frombytes()
811 int64_t h8 = load_3(s + 26) << 4; in fe_frombytes()
812 int64_t h9 = (load_3(s + 29) & 0x7fffff) << 2; in fe_frombytes()
813 int64_t carry0; in fe_frombytes()
814 int64_t carry1; in fe_frombytes()
815 int64_t carry2; in fe_frombytes()
816 int64_t carry3; in fe_frombytes()
817 int64_t carry4; in fe_frombytes()
818 int64_t carry5; in fe_frombytes()
819 int64_t carry6; in fe_frombytes()
820 int64_t carry7; in fe_frombytes()
821 int64_t carry8; in fe_frombytes()
822 int64_t carry9; in fe_frombytes()
1081 int64_t f0g0 = f0 * (int64_t) g0; in fe_mul()
1082 int64_t f0g1 = f0 * (int64_t) g1; in fe_mul()
1083 int64_t f0g2 = f0 * (int64_t) g2; in fe_mul()
1084 int64_t f0g3 = f0 * (int64_t) g3; in fe_mul()
1085 int64_t f0g4 = f0 * (int64_t) g4; in fe_mul()
1086 int64_t f0g5 = f0 * (int64_t) g5; in fe_mul()
1087 int64_t f0g6 = f0 * (int64_t) g6; in fe_mul()
1088 int64_t f0g7 = f0 * (int64_t) g7; in fe_mul()
1089 int64_t f0g8 = f0 * (int64_t) g8; in fe_mul()
1090 int64_t f0g9 = f0 * (int64_t) g9; in fe_mul()
1091 int64_t f1g0 = f1 * (int64_t) g0; in fe_mul()
1092 int64_t f1g1_2 = f1_2 * (int64_t) g1; in fe_mul()
1093 int64_t f1g2 = f1 * (int64_t) g2; in fe_mul()
1094 int64_t f1g3_2 = f1_2 * (int64_t) g3; in fe_mul()
1095 int64_t f1g4 = f1 * (int64_t) g4; in fe_mul()
1096 int64_t f1g5_2 = f1_2 * (int64_t) g5; in fe_mul()
1097 int64_t f1g6 = f1 * (int64_t) g6; in fe_mul()
1098 int64_t f1g7_2 = f1_2 * (int64_t) g7; in fe_mul()
1099 int64_t f1g8 = f1 * (int64_t) g8; in fe_mul()
1100 int64_t f1g9_38 = f1_2 * (int64_t) g9_19; in fe_mul()
1101 int64_t f2g0 = f2 * (int64_t) g0; in fe_mul()
1102 int64_t f2g1 = f2 * (int64_t) g1; in fe_mul()
1103 int64_t f2g2 = f2 * (int64_t) g2; in fe_mul()
1104 int64_t f2g3 = f2 * (int64_t) g3; in fe_mul()
1105 int64_t f2g4 = f2 * (int64_t) g4; in fe_mul()
1106 int64_t f2g5 = f2 * (int64_t) g5; in fe_mul()
1107 int64_t f2g6 = f2 * (int64_t) g6; in fe_mul()
1108 int64_t f2g7 = f2 * (int64_t) g7; in fe_mul()
1109 int64_t f2g8_19 = f2 * (int64_t) g8_19; in fe_mul()
1110 int64_t f2g9_19 = f2 * (int64_t) g9_19; in fe_mul()
1111 int64_t f3g0 = f3 * (int64_t) g0; in fe_mul()
1112 int64_t f3g1_2 = f3_2 * (int64_t) g1; in fe_mul()
1113 int64_t f3g2 = f3 * (int64_t) g2; in fe_mul()
1114 int64_t f3g3_2 = f3_2 * (int64_t) g3; in fe_mul()
1115 int64_t f3g4 = f3 * (int64_t) g4; in fe_mul()
1116 int64_t f3g5_2 = f3_2 * (int64_t) g5; in fe_mul()
1117 int64_t f3g6 = f3 * (int64_t) g6; in fe_mul()
1118 int64_t f3g7_38 = f3_2 * (int64_t) g7_19; in fe_mul()
1119 int64_t f3g8_19 = f3 * (int64_t) g8_19; in fe_mul()
1120 int64_t f3g9_38 = f3_2 * (int64_t) g9_19; in fe_mul()
1121 int64_t f4g0 = f4 * (int64_t) g0; in fe_mul()
1122 int64_t f4g1 = f4 * (int64_t) g1; in fe_mul()
1123 int64_t f4g2 = f4 * (int64_t) g2; in fe_mul()
1124 int64_t f4g3 = f4 * (int64_t) g3; in fe_mul()
1125 int64_t f4g4 = f4 * (int64_t) g4; in fe_mul()
1126 int64_t f4g5 = f4 * (int64_t) g5; in fe_mul()
1127 int64_t f4g6_19 = f4 * (int64_t) g6_19; in fe_mul()
1128 int64_t f4g7_19 = f4 * (int64_t) g7_19; in fe_mul()
1129 int64_t f4g8_19 = f4 * (int64_t) g8_19; in fe_mul()
1130 int64_t f4g9_19 = f4 * (int64_t) g9_19; in fe_mul()
1131 int64_t f5g0 = f5 * (int64_t) g0; in fe_mul()
1132 int64_t f5g1_2 = f5_2 * (int64_t) g1; in fe_mul()
1133 int64_t f5g2 = f5 * (int64_t) g2; in fe_mul()
1134 int64_t f5g3_2 = f5_2 * (int64_t) g3; in fe_mul()
1135 int64_t f5g4 = f5 * (int64_t) g4; in fe_mul()
1136 int64_t f5g5_38 = f5_2 * (int64_t) g5_19; in fe_mul()
1137 int64_t f5g6_19 = f5 * (int64_t) g6_19; in fe_mul()
1138 int64_t f5g7_38 = f5_2 * (int64_t) g7_19; in fe_mul()
1139 int64_t f5g8_19 = f5 * (int64_t) g8_19; in fe_mul()
1140 int64_t f5g9_38 = f5_2 * (int64_t) g9_19; in fe_mul()
1141 int64_t f6g0 = f6 * (int64_t) g0; in fe_mul()
1142 int64_t f6g1 = f6 * (int64_t) g1; in fe_mul()
1143 int64_t f6g2 = f6 * (int64_t) g2; in fe_mul()
1144 int64_t f6g3 = f6 * (int64_t) g3; in fe_mul()
1145 int64_t f6g4_19 = f6 * (int64_t) g4_19; in fe_mul()
1146 int64_t f6g5_19 = f6 * (int64_t) g5_19; in fe_mul()
1147 int64_t f6g6_19 = f6 * (int64_t) g6_19; in fe_mul()
1148 int64_t f6g7_19 = f6 * (int64_t) g7_19; in fe_mul()
1149 int64_t f6g8_19 = f6 * (int64_t) g8_19; in fe_mul()
1150 int64_t f6g9_19 = f6 * (int64_t) g9_19; in fe_mul()
1151 int64_t f7g0 = f7 * (int64_t) g0; in fe_mul()
1152 int64_t f7g1_2 = f7_2 * (int64_t) g1; in fe_mul()
1153 int64_t f7g2 = f7 * (int64_t) g2; in fe_mul()
1154 int64_t f7g3_38 = f7_2 * (int64_t) g3_19; in fe_mul()
1155 int64_t f7g4_19 = f7 * (int64_t) g4_19; in fe_mul()
1156 int64_t f7g5_38 = f7_2 * (int64_t) g5_19; in fe_mul()
1157 int64_t f7g6_19 = f7 * (int64_t) g6_19; in fe_mul()
1158 int64_t f7g7_38 = f7_2 * (int64_t) g7_19; in fe_mul()
1159 int64_t f7g8_19 = f7 * (int64_t) g8_19; in fe_mul()
1160 int64_t f7g9_38 = f7_2 * (int64_t) g9_19; in fe_mul()
1161 int64_t f8g0 = f8 * (int64_t) g0; in fe_mul()
1162 int64_t f8g1 = f8 * (int64_t) g1; in fe_mul()
1163 int64_t f8g2_19 = f8 * (int64_t) g2_19; in fe_mul()
1164 int64_t f8g3_19 = f8 * (int64_t) g3_19; in fe_mul()
1165 int64_t f8g4_19 = f8 * (int64_t) g4_19; in fe_mul()
1166 int64_t f8g5_19 = f8 * (int64_t) g5_19; in fe_mul()
1167 int64_t f8g6_19 = f8 * (int64_t) g6_19; in fe_mul()
1168 int64_t f8g7_19 = f8 * (int64_t) g7_19; in fe_mul()
1169 int64_t f8g8_19 = f8 * (int64_t) g8_19; in fe_mul()
1170 int64_t f8g9_19 = f8 * (int64_t) g9_19; in fe_mul()
1171 int64_t f9g0 = f9 * (int64_t) g0; in fe_mul()
1172 int64_t f9g1_38 = f9_2 * (int64_t) g1_19; in fe_mul()
1173 int64_t f9g2_19 = f9 * (int64_t) g2_19; in fe_mul()
1174 int64_t f9g3_38 = f9_2 * (int64_t) g3_19; in fe_mul()
1175 int64_t f9g4_19 = f9 * (int64_t) g4_19; in fe_mul()
1176 int64_t f9g5_38 = f9_2 * (int64_t) g5_19; in fe_mul()
1177 int64_t f9g6_19 = f9 * (int64_t) g6_19; in fe_mul()
1178 int64_t f9g7_38 = f9_2 * (int64_t) g7_19; in fe_mul()
1179 int64_t f9g8_19 = f9 * (int64_t) g8_19; in fe_mul()
1180 int64_t f9g9_38 = f9_2 * (int64_t) g9_19; in fe_mul()
1181int64_t h0 = f0g0 + f1g9_38 + f2g8_19 + f3g7_38 + f4g6_19 + f5g5_38 + f6g4_19 + f7g3_38 + f8g2_19 … in fe_mul()
1182int64_t h1 = f0g1 + f1g0 + f2g9_19 + f3g8_19 + f4g7_19 + f5g6_19 + f6g5_19 + f7g4_19 + f8g3_19 … in fe_mul()
1183int64_t h2 = f0g2 + f1g1_2 + f2g0 + f3g9_38 + f4g8_19 + f5g7_38 + f6g6_19 + f7g5_38 + f8g4_19 … in fe_mul()
1184int64_t h3 = f0g3 + f1g2 + f2g1 + f3g0 + f4g9_19 + f5g8_19 + f6g7_19 + f7g6_19 + f8g5_19 … in fe_mul()
1185int64_t h4 = f0g4 + f1g3_2 + f2g2 + f3g1_2 + f4g0 + f5g9_38 + f6g8_19 + f7g7_38 + f8g6_19 … in fe_mul()
1186int64_t h5 = f0g5 + f1g4 + f2g3 + f3g2 + f4g1 + f5g0 + f6g9_19 + f7g8_19 + f8g7_19 … in fe_mul()
1187int64_t h6 = f0g6 + f1g5_2 + f2g4 + f3g3_2 + f4g2 + f5g1_2 + f6g0 + f7g9_38 + f8g8_19 … in fe_mul()
1188int64_t h7 = f0g7 + f1g6 + f2g5 + f3g4 + f4g3 + f5g2 + f6g1 + f7g0 + f8g9_19 … in fe_mul()
1189int64_t h8 = f0g8 + f1g7_2 + f2g6 + f3g5_2 + f4g4 + f5g3_2 + f6g2 + f7g1_2 + f8g0 … in fe_mul()
1190int64_t h9 = f0g9 + f1g8 + f2g7 + f3g6 + f4g5 + f5g4 + f6g3 + f7g2 + f8g1 … in fe_mul()
1191 int64_t carry0; in fe_mul()
1192 int64_t carry1; in fe_mul()
1193 int64_t carry2; in fe_mul()
1194 int64_t carry3; in fe_mul()
1195 int64_t carry4; in fe_mul()
1196 int64_t carry5; in fe_mul()
1197 int64_t carry6; in fe_mul()
1198 int64_t carry7; in fe_mul()
1199 int64_t carry8; in fe_mul()
1200 int64_t carry9; in fe_mul()
1300 int64_t f0f0 = f0 * (int64_t) f0; in fe_sq()
1301 int64_t f0f1_2 = f0_2 * (int64_t) f1; in fe_sq()
1302 int64_t f0f2_2 = f0_2 * (int64_t) f2; in fe_sq()
1303 int64_t f0f3_2 = f0_2 * (int64_t) f3; in fe_sq()
1304 int64_t f0f4_2 = f0_2 * (int64_t) f4; in fe_sq()
1305 int64_t f0f5_2 = f0_2 * (int64_t) f5; in fe_sq()
1306 int64_t f0f6_2 = f0_2 * (int64_t) f6; in fe_sq()
1307 int64_t f0f7_2 = f0_2 * (int64_t) f7; in fe_sq()
1308 int64_t f0f8_2 = f0_2 * (int64_t) f8; in fe_sq()
1309 int64_t f0f9_2 = f0_2 * (int64_t) f9; in fe_sq()
1310 int64_t f1f1_2 = f1_2 * (int64_t) f1; in fe_sq()
1311 int64_t f1f2_2 = f1_2 * (int64_t) f2; in fe_sq()
1312 int64_t f1f3_4 = f1_2 * (int64_t) f3_2; in fe_sq()
1313 int64_t f1f4_2 = f1_2 * (int64_t) f4; in fe_sq()
1314 int64_t f1f5_4 = f1_2 * (int64_t) f5_2; in fe_sq()
1315 int64_t f1f6_2 = f1_2 * (int64_t) f6; in fe_sq()
1316 int64_t f1f7_4 = f1_2 * (int64_t) f7_2; in fe_sq()
1317 int64_t f1f8_2 = f1_2 * (int64_t) f8; in fe_sq()
1318 int64_t f1f9_76 = f1_2 * (int64_t) f9_38; in fe_sq()
1319 int64_t f2f2 = f2 * (int64_t) f2; in fe_sq()
1320 int64_t f2f3_2 = f2_2 * (int64_t) f3; in fe_sq()
1321 int64_t f2f4_2 = f2_2 * (int64_t) f4; in fe_sq()
1322 int64_t f2f5_2 = f2_2 * (int64_t) f5; in fe_sq()
1323 int64_t f2f6_2 = f2_2 * (int64_t) f6; in fe_sq()
1324 int64_t f2f7_2 = f2_2 * (int64_t) f7; in fe_sq()
1325 int64_t f2f8_38 = f2_2 * (int64_t) f8_19; in fe_sq()
1326 int64_t f2f9_38 = f2 * (int64_t) f9_38; in fe_sq()
1327 int64_t f3f3_2 = f3_2 * (int64_t) f3; in fe_sq()
1328 int64_t f3f4_2 = f3_2 * (int64_t) f4; in fe_sq()
1329 int64_t f3f5_4 = f3_2 * (int64_t) f5_2; in fe_sq()
1330 int64_t f3f6_2 = f3_2 * (int64_t) f6; in fe_sq()
1331 int64_t f3f7_76 = f3_2 * (int64_t) f7_38; in fe_sq()
1332 int64_t f3f8_38 = f3_2 * (int64_t) f8_19; in fe_sq()
1333 int64_t f3f9_76 = f3_2 * (int64_t) f9_38; in fe_sq()
1334 int64_t f4f4 = f4 * (int64_t) f4; in fe_sq()
1335 int64_t f4f5_2 = f4_2 * (int64_t) f5; in fe_sq()
1336 int64_t f4f6_38 = f4_2 * (int64_t) f6_19; in fe_sq()
1337 int64_t f4f7_38 = f4 * (int64_t) f7_38; in fe_sq()
1338 int64_t f4f8_38 = f4_2 * (int64_t) f8_19; in fe_sq()
1339 int64_t f4f9_38 = f4 * (int64_t) f9_38; in fe_sq()
1340 int64_t f5f5_38 = f5 * (int64_t) f5_38; in fe_sq()
1341 int64_t f5f6_38 = f5_2 * (int64_t) f6_19; in fe_sq()
1342 int64_t f5f7_76 = f5_2 * (int64_t) f7_38; in fe_sq()
1343 int64_t f5f8_38 = f5_2 * (int64_t) f8_19; in fe_sq()
1344 int64_t f5f9_76 = f5_2 * (int64_t) f9_38; in fe_sq()
1345 int64_t f6f6_19 = f6 * (int64_t) f6_19; in fe_sq()
1346 int64_t f6f7_38 = f6 * (int64_t) f7_38; in fe_sq()
1347 int64_t f6f8_38 = f6_2 * (int64_t) f8_19; in fe_sq()
1348 int64_t f6f9_38 = f6 * (int64_t) f9_38; in fe_sq()
1349 int64_t f7f7_38 = f7 * (int64_t) f7_38; in fe_sq()
1350 int64_t f7f8_38 = f7_2 * (int64_t) f8_19; in fe_sq()
1351 int64_t f7f9_76 = f7_2 * (int64_t) f9_38; in fe_sq()
1352 int64_t f8f8_19 = f8 * (int64_t) f8_19; in fe_sq()
1353 int64_t f8f9_38 = f8 * (int64_t) f9_38; in fe_sq()
1354 int64_t f9f9_38 = f9 * (int64_t) f9_38; in fe_sq()
1355 int64_t h0 = f0f0 + f1f9_76 + f2f8_38 + f3f7_76 + f4f6_38 + f5f5_38; in fe_sq()
1356 int64_t h1 = f0f1_2 + f2f9_38 + f3f8_38 + f4f7_38 + f5f6_38; in fe_sq()
1357 int64_t h2 = f0f2_2 + f1f1_2 + f3f9_76 + f4f8_38 + f5f7_76 + f6f6_19; in fe_sq()
1358 int64_t h3 = f0f3_2 + f1f2_2 + f4f9_38 + f5f8_38 + f6f7_38; in fe_sq()
1359 int64_t h4 = f0f4_2 + f1f3_4 + f2f2 + f5f9_76 + f6f8_38 + f7f7_38; in fe_sq()
1360 int64_t h5 = f0f5_2 + f1f4_2 + f2f3_2 + f6f9_38 + f7f8_38; in fe_sq()
1361 int64_t h6 = f0f6_2 + f1f5_4 + f2f4_2 + f3f3_2 + f7f9_76 + f8f8_19; in fe_sq()
1362 int64_t h7 = f0f7_2 + f1f6_2 + f2f5_2 + f3f4_2 + f8f9_38; in fe_sq()
1363 int64_t h8 = f0f8_2 + f1f7_4 + f2f6_2 + f3f5_4 + f4f4 + f9f9_38; in fe_sq()
1364 int64_t h9 = f0f9_2 + f1f8_2 + f2f7_2 + f3f6_2 + f4f5_2; in fe_sq()
1365 int64_t carry0; in fe_sq()
1366 int64_t carry1; in fe_sq()
1367 int64_t carry2; in fe_sq()
1368 int64_t carry3; in fe_sq()
1369 int64_t carry4; in fe_sq()
1370 int64_t carry5; in fe_sq()
1371 int64_t carry6; in fe_sq()
1372 int64_t carry7; in fe_sq()
1373 int64_t carry8; in fe_sq()
1374 int64_t carry9; in fe_sq()
1609 int64_t f0f0 = f0 * (int64_t) f0; in fe_sq2()
1610 int64_t f0f1_2 = f0_2 * (int64_t) f1; in fe_sq2()
1611 int64_t f0f2_2 = f0_2 * (int64_t) f2; in fe_sq2()
1612 int64_t f0f3_2 = f0_2 * (int64_t) f3; in fe_sq2()
1613 int64_t f0f4_2 = f0_2 * (int64_t) f4; in fe_sq2()
1614 int64_t f0f5_2 = f0_2 * (int64_t) f5; in fe_sq2()
1615 int64_t f0f6_2 = f0_2 * (int64_t) f6; in fe_sq2()
1616 int64_t f0f7_2 = f0_2 * (int64_t) f7; in fe_sq2()
1617 int64_t f0f8_2 = f0_2 * (int64_t) f8; in fe_sq2()
1618 int64_t f0f9_2 = f0_2 * (int64_t) f9; in fe_sq2()
1619 int64_t f1f1_2 = f1_2 * (int64_t) f1; in fe_sq2()
1620 int64_t f1f2_2 = f1_2 * (int64_t) f2; in fe_sq2()
1621 int64_t f1f3_4 = f1_2 * (int64_t) f3_2; in fe_sq2()
1622 int64_t f1f4_2 = f1_2 * (int64_t) f4; in fe_sq2()
1623 int64_t f1f5_4 = f1_2 * (int64_t) f5_2; in fe_sq2()
1624 int64_t f1f6_2 = f1_2 * (int64_t) f6; in fe_sq2()
1625 int64_t f1f7_4 = f1_2 * (int64_t) f7_2; in fe_sq2()
1626 int64_t f1f8_2 = f1_2 * (int64_t) f8; in fe_sq2()
1627 int64_t f1f9_76 = f1_2 * (int64_t) f9_38; in fe_sq2()
1628 int64_t f2f2 = f2 * (int64_t) f2; in fe_sq2()
1629 int64_t f2f3_2 = f2_2 * (int64_t) f3; in fe_sq2()
1630 int64_t f2f4_2 = f2_2 * (int64_t) f4; in fe_sq2()
1631 int64_t f2f5_2 = f2_2 * (int64_t) f5; in fe_sq2()
1632 int64_t f2f6_2 = f2_2 * (int64_t) f6; in fe_sq2()
1633 int64_t f2f7_2 = f2_2 * (int64_t) f7; in fe_sq2()
1634 int64_t f2f8_38 = f2_2 * (int64_t) f8_19; in fe_sq2()
1635 int64_t f2f9_38 = f2 * (int64_t) f9_38; in fe_sq2()
1636 int64_t f3f3_2 = f3_2 * (int64_t) f3; in fe_sq2()
1637 int64_t f3f4_2 = f3_2 * (int64_t) f4; in fe_sq2()
1638 int64_t f3f5_4 = f3_2 * (int64_t) f5_2; in fe_sq2()
1639 int64_t f3f6_2 = f3_2 * (int64_t) f6; in fe_sq2()
1640 int64_t f3f7_76 = f3_2 * (int64_t) f7_38; in fe_sq2()
1641 int64_t f3f8_38 = f3_2 * (int64_t) f8_19; in fe_sq2()
1642 int64_t f3f9_76 = f3_2 * (int64_t) f9_38; in fe_sq2()
1643 int64_t f4f4 = f4 * (int64_t) f4; in fe_sq2()
1644 int64_t f4f5_2 = f4_2 * (int64_t) f5; in fe_sq2()
1645 int64_t f4f6_38 = f4_2 * (int64_t) f6_19; in fe_sq2()
1646 int64_t f4f7_38 = f4 * (int64_t) f7_38; in fe_sq2()
1647 int64_t f4f8_38 = f4_2 * (int64_t) f8_19; in fe_sq2()
1648 int64_t f4f9_38 = f4 * (int64_t) f9_38; in fe_sq2()
1649 int64_t f5f5_38 = f5 * (int64_t) f5_38; in fe_sq2()
1650 int64_t f5f6_38 = f5_2 * (int64_t) f6_19; in fe_sq2()
1651 int64_t f5f7_76 = f5_2 * (int64_t) f7_38; in fe_sq2()
1652 int64_t f5f8_38 = f5_2 * (int64_t) f8_19; in fe_sq2()
1653 int64_t f5f9_76 = f5_2 * (int64_t) f9_38; in fe_sq2()
1654 int64_t f6f6_19 = f6 * (int64_t) f6_19; in fe_sq2()
1655 int64_t f6f7_38 = f6 * (int64_t) f7_38; in fe_sq2()
1656 int64_t f6f8_38 = f6_2 * (int64_t) f8_19; in fe_sq2()
1657 int64_t f6f9_38 = f6 * (int64_t) f9_38; in fe_sq2()
1658 int64_t f7f7_38 = f7 * (int64_t) f7_38; in fe_sq2()
1659 int64_t f7f8_38 = f7_2 * (int64_t) f8_19; in fe_sq2()
1660 int64_t f7f9_76 = f7_2 * (int64_t) f9_38; in fe_sq2()
1661 int64_t f8f8_19 = f8 * (int64_t) f8_19; in fe_sq2()
1662 int64_t f8f9_38 = f8 * (int64_t) f9_38; in fe_sq2()
1663 int64_t f9f9_38 = f9 * (int64_t) f9_38; in fe_sq2()
1664 int64_t h0 = f0f0 + f1f9_76 + f2f8_38 + f3f7_76 + f4f6_38 + f5f5_38; in fe_sq2()
1665 int64_t h1 = f0f1_2 + f2f9_38 + f3f8_38 + f4f7_38 + f5f6_38; in fe_sq2()
1666 int64_t h2 = f0f2_2 + f1f1_2 + f3f9_76 + f4f8_38 + f5f7_76 + f6f6_19; in fe_sq2()
1667 int64_t h3 = f0f3_2 + f1f2_2 + f4f9_38 + f5f8_38 + f6f7_38; in fe_sq2()
1668 int64_t h4 = f0f4_2 + f1f3_4 + f2f2 + f5f9_76 + f6f8_38 + f7f7_38; in fe_sq2()
1669 int64_t h5 = f0f5_2 + f1f4_2 + f2f3_2 + f6f9_38 + f7f8_38; in fe_sq2()
1670 int64_t h6 = f0f6_2 + f1f5_4 + f2f4_2 + f3f3_2 + f7f9_76 + f8f8_19; in fe_sq2()
1671 int64_t h7 = f0f7_2 + f1f6_2 + f2f5_2 + f3f4_2 + f8f9_38; in fe_sq2()
1672 int64_t h8 = f0f8_2 + f1f7_4 + f2f6_2 + f3f5_4 + f4f4 + f9f9_38; in fe_sq2()
1673 int64_t h9 = f0f9_2 + f1f8_2 + f2f7_2 + f3f6_2 + f4f5_2; in fe_sq2()
1674 int64_t carry0; in fe_sq2()
1675 int64_t carry1; in fe_sq2()
1676 int64_t carry2; in fe_sq2()
1677 int64_t carry3; in fe_sq2()
1678 int64_t carry4; in fe_sq2()
1679 int64_t carry5; in fe_sq2()
1680 int64_t carry6; in fe_sq2()
1681 int64_t carry7; in fe_sq2()
1682 int64_t carry8; in fe_sq2()
1683 int64_t carry9; in fe_sq2()
4332 int64_t h0 = f0 * (int64_t) 121666; in fe_mul121666()
4333 int64_t h1 = f1 * (int64_t) 121666; in fe_mul121666()
4334 int64_t h2 = f2 * (int64_t) 121666; in fe_mul121666()
4335 int64_t h3 = f3 * (int64_t) 121666; in fe_mul121666()
4336 int64_t h4 = f4 * (int64_t) 121666; in fe_mul121666()
4337 int64_t h5 = f5 * (int64_t) 121666; in fe_mul121666()
4338 int64_t h6 = f6 * (int64_t) 121666; in fe_mul121666()
4339 int64_t h7 = f7 * (int64_t) 121666; in fe_mul121666()
4340 int64_t h8 = f8 * (int64_t) 121666; in fe_mul121666()
4341 int64_t h9 = f9 * (int64_t) 121666; in fe_mul121666()
4342 int64_t carry0; in fe_mul121666()
4343 int64_t carry1; in fe_mul121666()
4344 int64_t carry2; in fe_mul121666()
4345 int64_t carry3; in fe_mul121666()
4346 int64_t carry4; in fe_mul121666()
4347 int64_t carry5; in fe_mul121666()
4348 int64_t carry6; in fe_mul121666()
4349 int64_t carry7; in fe_mul121666()
4350 int64_t carry8; in fe_mul121666()
4351 int64_t carry9; in fe_mul121666()
4627 int64_t s0 = kBottom21Bits & load_3(s); in x25519_sc_reduce()
4628 int64_t s1 = kBottom21Bits & (load_4(s + 2) >> 5); in x25519_sc_reduce()
4629 int64_t s2 = kBottom21Bits & (load_3(s + 5) >> 2); in x25519_sc_reduce()
4630 int64_t s3 = kBottom21Bits & (load_4(s + 7) >> 7); in x25519_sc_reduce()
4631 int64_t s4 = kBottom21Bits & (load_4(s + 10) >> 4); in x25519_sc_reduce()
4632 int64_t s5 = kBottom21Bits & (load_3(s + 13) >> 1); in x25519_sc_reduce()
4633 int64_t s6 = kBottom21Bits & (load_4(s + 15) >> 6); in x25519_sc_reduce()
4634 int64_t s7 = kBottom21Bits & (load_3(s + 18) >> 3); in x25519_sc_reduce()
4635 int64_t s8 = kBottom21Bits & load_3(s + 21); in x25519_sc_reduce()
4636 int64_t s9 = kBottom21Bits & (load_4(s + 23) >> 5); in x25519_sc_reduce()
4637 int64_t s10 = kBottom21Bits & (load_3(s + 26) >> 2); in x25519_sc_reduce()
4638 int64_t s11 = kBottom21Bits & (load_4(s + 28) >> 7); in x25519_sc_reduce()
4639 int64_t s12 = kBottom21Bits & (load_4(s + 31) >> 4); in x25519_sc_reduce()
4640 int64_t s13 = kBottom21Bits & (load_3(s + 34) >> 1); in x25519_sc_reduce()
4641 int64_t s14 = kBottom21Bits & (load_4(s + 36) >> 6); in x25519_sc_reduce()
4642 int64_t s15 = kBottom21Bits & (load_3(s + 39) >> 3); in x25519_sc_reduce()
4643 int64_t s16 = kBottom21Bits & load_3(s + 42); in x25519_sc_reduce()
4644 int64_t s17 = kBottom21Bits & (load_4(s + 44) >> 5); in x25519_sc_reduce()
4645 int64_t s18 = kBottom21Bits & (load_3(s + 47) >> 2); in x25519_sc_reduce()
4646 int64_t s19 = kBottom21Bits & (load_4(s + 49) >> 7); in x25519_sc_reduce()
4647 int64_t s20 = kBottom21Bits & (load_4(s + 52) >> 4); in x25519_sc_reduce()
4648 int64_t s21 = kBottom21Bits & (load_3(s + 55) >> 1); in x25519_sc_reduce()
4649 int64_t s22 = kBottom21Bits & (load_4(s + 57) >> 6); in x25519_sc_reduce()
4650 int64_t s23 = (load_4(s + 60) >> 3); in x25519_sc_reduce()
4651 int64_t carry0; in x25519_sc_reduce()
4652 int64_t carry1; in x25519_sc_reduce()
4653 int64_t carry2; in x25519_sc_reduce()
4654 int64_t carry3; in x25519_sc_reduce()
4655 int64_t carry4; in x25519_sc_reduce()
4656 int64_t carry5; in x25519_sc_reduce()
4657 int64_t carry6; in x25519_sc_reduce()
4658 int64_t carry7; in x25519_sc_reduce()
4659 int64_t carry8; in x25519_sc_reduce()
4660 int64_t carry9; in x25519_sc_reduce()
4661 int64_t carry10; in x25519_sc_reduce()
4662 int64_t carry11; in x25519_sc_reduce()
4663 int64_t carry12; in x25519_sc_reduce()
4664 int64_t carry13; in x25519_sc_reduce()
4665 int64_t carry14; in x25519_sc_reduce()
4666 int64_t carry15; in x25519_sc_reduce()
4667 int64_t carry16; in x25519_sc_reduce()
4972 int64_t a0 = kBottom21Bits & load_3(a); in sc_muladd()
4973 int64_t a1 = kBottom21Bits & (load_4(a + 2) >> 5); in sc_muladd()
4974 int64_t a2 = kBottom21Bits & (load_3(a + 5) >> 2); in sc_muladd()
4975 int64_t a3 = kBottom21Bits & (load_4(a + 7) >> 7); in sc_muladd()
4976 int64_t a4 = kBottom21Bits & (load_4(a + 10) >> 4); in sc_muladd()
4977 int64_t a5 = kBottom21Bits & (load_3(a + 13) >> 1); in sc_muladd()
4978 int64_t a6 = kBottom21Bits & (load_4(a + 15) >> 6); in sc_muladd()
4979 int64_t a7 = kBottom21Bits & (load_3(a + 18) >> 3); in sc_muladd()
4980 int64_t a8 = kBottom21Bits & load_3(a + 21); in sc_muladd()
4981 int64_t a9 = kBottom21Bits & (load_4(a + 23) >> 5); in sc_muladd()
4982 int64_t a10 = kBottom21Bits & (load_3(a + 26) >> 2); in sc_muladd()
4983 int64_t a11 = (load_4(a + 28) >> 7); in sc_muladd()
4984 int64_t b0 = kBottom21Bits & load_3(b); in sc_muladd()
4985 int64_t b1 = kBottom21Bits & (load_4(b + 2) >> 5); in sc_muladd()
4986 int64_t b2 = kBottom21Bits & (load_3(b + 5) >> 2); in sc_muladd()
4987 int64_t b3 = kBottom21Bits & (load_4(b + 7) >> 7); in sc_muladd()
4988 int64_t b4 = kBottom21Bits & (load_4(b + 10) >> 4); in sc_muladd()
4989 int64_t b5 = kBottom21Bits & (load_3(b + 13) >> 1); in sc_muladd()
4990 int64_t b6 = kBottom21Bits & (load_4(b + 15) >> 6); in sc_muladd()
4991 int64_t b7 = kBottom21Bits & (load_3(b + 18) >> 3); in sc_muladd()
4992 int64_t b8 = kBottom21Bits & load_3(b + 21); in sc_muladd()
4993 int64_t b9 = kBottom21Bits & (load_4(b + 23) >> 5); in sc_muladd()
4994 int64_t b10 = kBottom21Bits & (load_3(b + 26) >> 2); in sc_muladd()
4995 int64_t b11 = (load_4(b + 28) >> 7); in sc_muladd()
4996 int64_t c0 = kBottom21Bits & load_3(c); in sc_muladd()
4997 int64_t c1 = kBottom21Bits & (load_4(c + 2) >> 5); in sc_muladd()
4998 int64_t c2 = kBottom21Bits & (load_3(c + 5) >> 2); in sc_muladd()
4999 int64_t c3 = kBottom21Bits & (load_4(c + 7) >> 7); in sc_muladd()
5000 int64_t c4 = kBottom21Bits & (load_4(c + 10) >> 4); in sc_muladd()
5001 int64_t c5 = kBottom21Bits & (load_3(c + 13) >> 1); in sc_muladd()
5002 int64_t c6 = kBottom21Bits & (load_4(c + 15) >> 6); in sc_muladd()
5003 int64_t c7 = kBottom21Bits & (load_3(c + 18) >> 3); in sc_muladd()
5004 int64_t c8 = kBottom21Bits & load_3(c + 21); in sc_muladd()
5005 int64_t c9 = kBottom21Bits & (load_4(c + 23) >> 5); in sc_muladd()
5006 int64_t c10 = kBottom21Bits & (load_3(c + 26) >> 2); in sc_muladd()
5007 int64_t c11 = (load_4(c + 28) >> 7); in sc_muladd()
5008 int64_t s0; in sc_muladd()
5009 int64_t s1; in sc_muladd()
5010 int64_t s2; in sc_muladd()
5011 int64_t s3; in sc_muladd()
5012 int64_t s4; in sc_muladd()
5013 int64_t s5; in sc_muladd()
5014 int64_t s6; in sc_muladd()
5015 int64_t s7; in sc_muladd()
5016 int64_t s8; in sc_muladd()
5017 int64_t s9; in sc_muladd()
5018 int64_t s10; in sc_muladd()
5019 int64_t s11; in sc_muladd()
5020 int64_t s12; in sc_muladd()
5021 int64_t s13; in sc_muladd()
5022 int64_t s14; in sc_muladd()
5023 int64_t s15; in sc_muladd()
5024 int64_t s16; in sc_muladd()
5025 int64_t s17; in sc_muladd()
5026 int64_t s18; in sc_muladd()
5027 int64_t s19; in sc_muladd()
5028 int64_t s20; in sc_muladd()
5029 int64_t s21; in sc_muladd()
5030 int64_t s22; in sc_muladd()
5031 int64_t s23; in sc_muladd()
5032 int64_t carry0; in sc_muladd()
5033 int64_t carry1; in sc_muladd()
5034 int64_t carry2; in sc_muladd()
5035 int64_t carry3; in sc_muladd()
5036 int64_t carry4; in sc_muladd()
5037 int64_t carry5; in sc_muladd()
5038 int64_t carry6; in sc_muladd()
5039 int64_t carry7; in sc_muladd()
5040 int64_t carry8; in sc_muladd()
5041 int64_t carry9; in sc_muladd()
5042 int64_t carry10; in sc_muladd()
5043 int64_t carry11; in sc_muladd()
5044 int64_t carry12; in sc_muladd()
5045 int64_t carry13; in sc_muladd()
5046 int64_t carry14; in sc_muladd()
5047 int64_t carry15; in sc_muladd()
5048 int64_t carry16; in sc_muladd()
5049 int64_t carry17; in sc_muladd()
5050 int64_t carry18; in sc_muladd()
5051 int64_t carry19; in sc_muladd()
5052 int64_t carry20; in sc_muladd()
5053 int64_t carry21; in sc_muladd()
5054 int64_t carry22; in sc_muladd()