Lines Matching full:s12
1064 int64_t s12 = 2097151 & (load_4(s + 31) >> 4); in x25519_sc_reduce() local
1095 s12 += s23 * 470296; in x25519_sc_reduce()
1104 s12 += s22 * 654183; in x25519_sc_reduce()
1113 s12 -= s21 * 997805; in x25519_sc_reduce()
1122 s12 += s20 * 136657; in x25519_sc_reduce()
1131 s12 -= s19 * 683901; in x25519_sc_reduce()
1151 carry12 = (s12 + (1 << 20)) >> 21; in x25519_sc_reduce()
1153 s12 -= int64_lshift21(carry12); in x25519_sc_reduce()
1168 s12 += carry11; in x25519_sc_reduce()
1217 s0 += s12 * 666643; in x25519_sc_reduce()
1218 s1 += s12 * 470296; in x25519_sc_reduce()
1219 s2 += s12 * 654183; in x25519_sc_reduce()
1220 s3 -= s12 * 997805; in x25519_sc_reduce()
1221 s4 += s12 * 136657; in x25519_sc_reduce()
1222 s5 -= s12 * 683901; in x25519_sc_reduce()
1223 s12 = 0; in x25519_sc_reduce()
1260 s12 += carry11; in x25519_sc_reduce()
1263 s0 += s12 * 666643; in x25519_sc_reduce()
1264 s1 += s12 * 470296; in x25519_sc_reduce()
1265 s2 += s12 * 654183; in x25519_sc_reduce()
1266 s3 -= s12 * 997805; in x25519_sc_reduce()
1267 s4 += s12 * 136657; in x25519_sc_reduce()
1268 s5 -= s12 * 683901; in x25519_sc_reduce()
1269 s12 = 0; in x25519_sc_reduce()
1305 s12 += carry11; in x25519_sc_reduce()
1308 s0 += s12 * 666643; in x25519_sc_reduce()
1309 s1 += s12 * 470296; in x25519_sc_reduce()
1310 s2 += s12 * 654183; in x25519_sc_reduce()
1311 s3 -= s12 * 997805; in x25519_sc_reduce()
1312 s4 += s12 * 136657; in x25519_sc_reduce()
1313 s5 -= s12 * 683901; in x25519_sc_reduce()
1314 s12 = 0; in x25519_sc_reduce()