libsodium: Needed for Dnscrypto-proxy Release 1.3.0
[tomato.git] / release / src / router / libsodium / src / libsodium / crypto_sign / ed25519 / ref10 / pow225521.h
blob109df779a2d8adcfb8ccd7716d6aa096bd2338af
2 /* qhasm: fe z1 */
4 /* qhasm: fe z2 */
6 /* qhasm: fe z8 */
8 /* qhasm: fe z9 */
10 /* qhasm: fe z11 */
12 /* qhasm: fe z22 */
14 /* qhasm: fe z_5_0 */
16 /* qhasm: fe z_10_5 */
18 /* qhasm: fe z_10_0 */
20 /* qhasm: fe z_20_10 */
22 /* qhasm: fe z_20_0 */
24 /* qhasm: fe z_40_20 */
26 /* qhasm: fe z_40_0 */
28 /* qhasm: fe z_50_10 */
30 /* qhasm: fe z_50_0 */
32 /* qhasm: fe z_100_50 */
34 /* qhasm: fe z_100_0 */
36 /* qhasm: fe z_200_100 */
38 /* qhasm: fe z_200_0 */
40 /* qhasm: fe z_250_50 */
42 /* qhasm: fe z_250_0 */
44 /* qhasm: fe z_255_5 */
46 /* qhasm: fe z_255_21 */
48 /* qhasm: enter pow225521 */
50 /* qhasm: z2 = z1^2^1 */
51 /* asm 1: fe_sq(>z2=fe#1,<z1=fe#11); for (i = 1;i < 1;++i) fe_sq(>z2=fe#1,>z2=fe#1); */
52 /* asm 2: fe_sq(>z2=t0,<z1=z); for (i = 1;i < 1;++i) fe_sq(>z2=t0,>z2=t0); */
53 fe_sq(t0,z); for (i = 1;i < 1;++i) fe_sq(t0,t0);
55 /* qhasm: z8 = z2^2^2 */
56 /* asm 1: fe_sq(>z8=fe#2,<z2=fe#1); for (i = 1;i < 2;++i) fe_sq(>z8=fe#2,>z8=fe#2); */
57 /* asm 2: fe_sq(>z8=t1,<z2=t0); for (i = 1;i < 2;++i) fe_sq(>z8=t1,>z8=t1); */
58 fe_sq(t1,t0); for (i = 1;i < 2;++i) fe_sq(t1,t1);
60 /* qhasm: z9 = z1*z8 */
61 /* asm 1: fe_mul(>z9=fe#2,<z1=fe#11,<z8=fe#2); */
62 /* asm 2: fe_mul(>z9=t1,<z1=z,<z8=t1); */
63 fe_mul(t1,z,t1);
65 /* qhasm: z11 = z2*z9 */
66 /* asm 1: fe_mul(>z11=fe#1,<z2=fe#1,<z9=fe#2); */
67 /* asm 2: fe_mul(>z11=t0,<z2=t0,<z9=t1); */
68 fe_mul(t0,t0,t1);
70 /* qhasm: z22 = z11^2^1 */
71 /* asm 1: fe_sq(>z22=fe#3,<z11=fe#1); for (i = 1;i < 1;++i) fe_sq(>z22=fe#3,>z22=fe#3); */
72 /* asm 2: fe_sq(>z22=t2,<z11=t0); for (i = 1;i < 1;++i) fe_sq(>z22=t2,>z22=t2); */
73 fe_sq(t2,t0); for (i = 1;i < 1;++i) fe_sq(t2,t2);
75 /* qhasm: z_5_0 = z9*z22 */
76 /* asm 1: fe_mul(>z_5_0=fe#2,<z9=fe#2,<z22=fe#3); */
77 /* asm 2: fe_mul(>z_5_0=t1,<z9=t1,<z22=t2); */
78 fe_mul(t1,t1,t2);
80 /* qhasm: z_10_5 = z_5_0^2^5 */
81 /* asm 1: fe_sq(>z_10_5=fe#3,<z_5_0=fe#2); for (i = 1;i < 5;++i) fe_sq(>z_10_5=fe#3,>z_10_5=fe#3); */
82 /* asm 2: fe_sq(>z_10_5=t2,<z_5_0=t1); for (i = 1;i < 5;++i) fe_sq(>z_10_5=t2,>z_10_5=t2); */
83 fe_sq(t2,t1); for (i = 1;i < 5;++i) fe_sq(t2,t2);
85 /* qhasm: z_10_0 = z_10_5*z_5_0 */
86 /* asm 1: fe_mul(>z_10_0=fe#2,<z_10_5=fe#3,<z_5_0=fe#2); */
87 /* asm 2: fe_mul(>z_10_0=t1,<z_10_5=t2,<z_5_0=t1); */
88 fe_mul(t1,t2,t1);
90 /* qhasm: z_20_10 = z_10_0^2^10 */
91 /* asm 1: fe_sq(>z_20_10=fe#3,<z_10_0=fe#2); for (i = 1;i < 10;++i) fe_sq(>z_20_10=fe#3,>z_20_10=fe#3); */
92 /* asm 2: fe_sq(>z_20_10=t2,<z_10_0=t1); for (i = 1;i < 10;++i) fe_sq(>z_20_10=t2,>z_20_10=t2); */
93 fe_sq(t2,t1); for (i = 1;i < 10;++i) fe_sq(t2,t2);
95 /* qhasm: z_20_0 = z_20_10*z_10_0 */
96 /* asm 1: fe_mul(>z_20_0=fe#3,<z_20_10=fe#3,<z_10_0=fe#2); */
97 /* asm 2: fe_mul(>z_20_0=t2,<z_20_10=t2,<z_10_0=t1); */
98 fe_mul(t2,t2,t1);
100 /* qhasm: z_40_20 = z_20_0^2^20 */
101 /* asm 1: fe_sq(>z_40_20=fe#4,<z_20_0=fe#3); for (i = 1;i < 20;++i) fe_sq(>z_40_20=fe#4,>z_40_20=fe#4); */
102 /* asm 2: fe_sq(>z_40_20=t3,<z_20_0=t2); for (i = 1;i < 20;++i) fe_sq(>z_40_20=t3,>z_40_20=t3); */
103 fe_sq(t3,t2); for (i = 1;i < 20;++i) fe_sq(t3,t3);
105 /* qhasm: z_40_0 = z_40_20*z_20_0 */
106 /* asm 1: fe_mul(>z_40_0=fe#3,<z_40_20=fe#4,<z_20_0=fe#3); */
107 /* asm 2: fe_mul(>z_40_0=t2,<z_40_20=t3,<z_20_0=t2); */
108 fe_mul(t2,t3,t2);
110 /* qhasm: z_50_10 = z_40_0^2^10 */
111 /* asm 1: fe_sq(>z_50_10=fe#3,<z_40_0=fe#3); for (i = 1;i < 10;++i) fe_sq(>z_50_10=fe#3,>z_50_10=fe#3); */
112 /* asm 2: fe_sq(>z_50_10=t2,<z_40_0=t2); for (i = 1;i < 10;++i) fe_sq(>z_50_10=t2,>z_50_10=t2); */
113 fe_sq(t2,t2); for (i = 1;i < 10;++i) fe_sq(t2,t2);
115 /* qhasm: z_50_0 = z_50_10*z_10_0 */
116 /* asm 1: fe_mul(>z_50_0=fe#2,<z_50_10=fe#3,<z_10_0=fe#2); */
117 /* asm 2: fe_mul(>z_50_0=t1,<z_50_10=t2,<z_10_0=t1); */
118 fe_mul(t1,t2,t1);
120 /* qhasm: z_100_50 = z_50_0^2^50 */
121 /* asm 1: fe_sq(>z_100_50=fe#3,<z_50_0=fe#2); for (i = 1;i < 50;++i) fe_sq(>z_100_50=fe#3,>z_100_50=fe#3); */
122 /* asm 2: fe_sq(>z_100_50=t2,<z_50_0=t1); for (i = 1;i < 50;++i) fe_sq(>z_100_50=t2,>z_100_50=t2); */
123 fe_sq(t2,t1); for (i = 1;i < 50;++i) fe_sq(t2,t2);
125 /* qhasm: z_100_0 = z_100_50*z_50_0 */
126 /* asm 1: fe_mul(>z_100_0=fe#3,<z_100_50=fe#3,<z_50_0=fe#2); */
127 /* asm 2: fe_mul(>z_100_0=t2,<z_100_50=t2,<z_50_0=t1); */
128 fe_mul(t2,t2,t1);
130 /* qhasm: z_200_100 = z_100_0^2^100 */
131 /* asm 1: fe_sq(>z_200_100=fe#4,<z_100_0=fe#3); for (i = 1;i < 100;++i) fe_sq(>z_200_100=fe#4,>z_200_100=fe#4); */
132 /* asm 2: fe_sq(>z_200_100=t3,<z_100_0=t2); for (i = 1;i < 100;++i) fe_sq(>z_200_100=t3,>z_200_100=t3); */
133 fe_sq(t3,t2); for (i = 1;i < 100;++i) fe_sq(t3,t3);
135 /* qhasm: z_200_0 = z_200_100*z_100_0 */
136 /* asm 1: fe_mul(>z_200_0=fe#3,<z_200_100=fe#4,<z_100_0=fe#3); */
137 /* asm 2: fe_mul(>z_200_0=t2,<z_200_100=t3,<z_100_0=t2); */
138 fe_mul(t2,t3,t2);
140 /* qhasm: z_250_50 = z_200_0^2^50 */
141 /* asm 1: fe_sq(>z_250_50=fe#3,<z_200_0=fe#3); for (i = 1;i < 50;++i) fe_sq(>z_250_50=fe#3,>z_250_50=fe#3); */
142 /* asm 2: fe_sq(>z_250_50=t2,<z_200_0=t2); for (i = 1;i < 50;++i) fe_sq(>z_250_50=t2,>z_250_50=t2); */
143 fe_sq(t2,t2); for (i = 1;i < 50;++i) fe_sq(t2,t2);
145 /* qhasm: z_250_0 = z_250_50*z_50_0 */
146 /* asm 1: fe_mul(>z_250_0=fe#2,<z_250_50=fe#3,<z_50_0=fe#2); */
147 /* asm 2: fe_mul(>z_250_0=t1,<z_250_50=t2,<z_50_0=t1); */
148 fe_mul(t1,t2,t1);
150 /* qhasm: z_255_5 = z_250_0^2^5 */
151 /* asm 1: fe_sq(>z_255_5=fe#2,<z_250_0=fe#2); for (i = 1;i < 5;++i) fe_sq(>z_255_5=fe#2,>z_255_5=fe#2); */
152 /* asm 2: fe_sq(>z_255_5=t1,<z_250_0=t1); for (i = 1;i < 5;++i) fe_sq(>z_255_5=t1,>z_255_5=t1); */
153 fe_sq(t1,t1); for (i = 1;i < 5;++i) fe_sq(t1,t1);
155 /* qhasm: z_255_21 = z_255_5*z11 */
156 /* asm 1: fe_mul(>z_255_21=fe#12,<z_255_5=fe#2,<z11=fe#1); */
157 /* asm 2: fe_mul(>z_255_21=out,<z_255_5=t1,<z11=t0); */
158 fe_mul(out,t1,t0);
160 /* qhasm: return */