Lines Matching refs:EG

119 	ret = local_memset(pi_buf, 0, sizeof(pi_buf)); EG(ret, err);  in sdsa_sign()
128 ret = nn_check_initialized(p); EG(ret, err); in sdsa_sign()
129 ret = nn_check_initialized(q); EG(ret, err); in sdsa_sign()
130 ret = nn_check_initialized(g); EG(ret, err); in sdsa_sign()
131 ret = nn_check_initialized(x); EG(ret, err); in sdsa_sign()
134 ret = nn_bitlen(p, &alpha); EG(ret, err); in sdsa_sign()
136 ret = nn_bitlen(q, &beta); EG(ret, err); in sdsa_sign()
138 ret = gen_hash_get_hash_sizes(sdsa_hash, &hlen, &block_size); EG(ret, err); in sdsa_sign()
150 ret = _os2ip(&k, nonce, noncelen); EG(ret, err); in sdsa_sign()
153 ret = nn_get_random_mod(&k, q); EG(ret, err); in sdsa_sign()
157 ret = nn_copy(&k_, &k); EG(ret, err); in sdsa_sign()
160 ret = _blind_scalar(&k_, q, &k_); EG(ret, err); in sdsa_sign()
162 ret = _fix_scalar_msb(&k_, q, &k_); EG(ret, err); in sdsa_sign()
166 ret = nn_init(pi, 0); EG(ret, err); in sdsa_sign()
168 ret = nn_mod_pow(pi, g, &k_, p); EG(ret, err); in sdsa_sign()
172 ret = _i2osp(pi, pi_buf, (u16)BYTECEIL(alpha)); EG(ret, err); in sdsa_sign()
175 ret = gen_hash_init(&hash_ctx, sdsa_hash); EG(ret, err); in sdsa_sign()
176 ret = gen_hash_update(&hash_ctx, pi_buf, (u16)BYTECEIL(alpha), sdsa_hash); EG(ret, err); in sdsa_sign()
177 ret = gen_hash_update(&hash_ctx, msg, msglen, sdsa_hash); EG(ret, err); in sdsa_sign()
179 ret = gen_hash_final(&hash_ctx, sig, sdsa_hash); EG(ret, err); in sdsa_sign()
182 ret = _os2ip(&r, sig, hlen); EG(ret, err); in sdsa_sign()
183 ret = nn_mod(&r, &r, q); EG(ret, err); in sdsa_sign()
186 ret = nn_iszero(&r, &iszero); EG(ret, err); in sdsa_sign()
195 ret = nn_get_random_mod(&b, q); EG(ret, err); in sdsa_sign()
197 ret = nn_mod_mul(&r, &r, &b, q); EG(ret, err); in sdsa_sign()
199 ret = nn_mod_mul(&k, &k, &b, q); EG(ret, err); in sdsa_sign()
205 ret = nn_modinv_fermat(&b, &b, q); EG(ret, err); in sdsa_sign()
209 ret = nn_mod_mul(&s, &r, x, q); EG(ret, err); in sdsa_sign()
210 ret = nn_mod_add(&s, &s, &k, q); EG(ret, err); in sdsa_sign()
214 ret = nn_mod_mul(&s, &s, &b, q); EG(ret, err); in sdsa_sign()
217 ret = nn_iszero(&s, &iszero); EG(ret, err); in sdsa_sign()
223 ret = _i2osp(&s, sig + hlen, (u16)(siglen - hlen)); EG(ret, err); in sdsa_sign()
278 ret = local_memset(pi_buf, 0, sizeof(pi_buf)); EG(ret, err); in sdsa_verify()
279 ret = local_memset(hash, 0, sizeof(hash)); EG(ret, err); in sdsa_verify()
288 ret = nn_check_initialized(p); EG(ret, err); in sdsa_verify()
289 ret = nn_check_initialized(q); EG(ret, err); in sdsa_verify()
290 ret = nn_check_initialized(g); EG(ret, err); in sdsa_verify()
291 ret = nn_check_initialized(y); EG(ret, err); in sdsa_verify()
294 ret = nn_bitlen(p, &alpha); EG(ret, err); in sdsa_verify()
296 ret = nn_bitlen(q, &beta); EG(ret, err); in sdsa_verify()
298 ret = gen_hash_get_hash_sizes(sdsa_hash, &hlen, &block_size); EG(ret, err); in sdsa_verify()
305 ret = _os2ip(&r, sig, hlen); EG(ret, err); in sdsa_verify()
306 ret = _os2ip(&s, sig + hlen, (u16)(siglen - hlen)); EG(ret, err); in sdsa_verify()
309 ret = nn_iszero(&r, &iszero); EG(ret, err); in sdsa_verify()
311 ret = nn_iszero(&s, &iszero); EG(ret, err); in sdsa_verify()
314 ret = nn_cmp(&s, q, &cmp); EG(ret, err); in sdsa_verify()
318 ret = nn_mod(&r, &r, q); EG(ret, err); in sdsa_verify()
321 ret = nn_init(&u, 0); EG(ret, err); in sdsa_verify()
322 ret = nn_init(&pi, 0); EG(ret, err); in sdsa_verify()
328 ret = nn_sub(&r, q, &r); EG(ret, err); /* compute -r = (q - r) mod q */ in sdsa_verify()
329 ret = _nn_mod_pow_insecure(&u, y, &r, p); EG(ret, err); in sdsa_verify()
331 ret = _nn_mod_pow_insecure(&pi, g, &s, p); EG(ret, err); in sdsa_verify()
333 ret = nn_mod_mul(&pi, &pi, &u, p); EG(ret, err); in sdsa_verify()
338 ret = _i2osp(&pi, pi_buf, (u16)BYTECEIL(alpha)); EG(ret, err); in sdsa_verify()
340 ret = gen_hash_init(&hash_ctx, sdsa_hash); EG(ret, err); in sdsa_verify()
341 ret = gen_hash_update(&hash_ctx, pi_buf, (u16)BYTECEIL(alpha), sdsa_hash); EG(ret, err); in sdsa_verify()
342 ret = gen_hash_update(&hash_ctx, msg, msglen, sdsa_hash); EG(ret, err); in sdsa_verify()
343 ret = gen_hash_final(&hash_ctx, hash, sdsa_hash); EG(ret, err); in sdsa_verify()
346 ret = are_equal(sig, hash, hlen, &cmp); EG(ret, err); in sdsa_verify()
451 …ret = sdsa_import_priv_key(&priv, p, sizeof(p), q, sizeof(q), g, sizeof(g), x, sizeof(x)); EG(ret,… in main()
452 …ret = sdsa_import_pub_key(&pub, p, sizeof(p), q, sizeof(q), g, sizeof(g), y, sizeof(y)); EG(ret, e… in main()
453 ret = sdsa_compute_pub_from_priv(&pub2, &priv); EG(ret, err); in main()
457 …sign(&priv, msg, sizeof(msg)-1, nonce, sizeof(nonce), sig, sizeof(sig), HASH_SHA256); EG(ret, err); in main()