mirror of
https://github.com/codex-storage/constantine.git
synced 2025-01-28 11:36:17 +00:00
e5612f5705
* unoptimized msm * MSM: reorder loops * add a signed windowed recoding technique * improve wNAF table access * use batchAffine * revamp EC tests * MSM signed digit support * refactor MSM: recode signed ahead of time * missing test vector * refactor allocs and Alloca sideeffect * add an endomorphism threshold * Add Jacobian extended coordinates * refactor recodings, prepare for parallelizable on-the-fly signed recoding * recoding changes, introduce proper NAF for pairings * more pairings refactoring, introduce miller accumulator for EVM * some optim to the addchain miller loop * start optimizing multi-pairing * finish multi-miller loop refactoring * minor tuning * MSM: signed encoding suitable for parallelism (no precompute) * cleanup signed window encoding * add prefetching * add metering * properly init result to infinity * comment on prefetching * introduce vartime inversion for batch additions * fix JacExt infinity conversion * add batchAffine for MSM, though slower than JacExtended at the moment * add a batch affine scheduler for MSM * Add Multi-Scalar-Multiplication endomorphism acceleration * some tuning * signed integer fixes + 32-bit + tuning * Some more tuning * common msm bench + don't use affine for c < 9 * nit
45 lines
1.6 KiB
Nim
45 lines
1.6 KiB
Nim
# Constantine
|
|
# Copyright (c) 2018-2019 Status Research & Development GmbH
|
|
# Copyright (c) 2020-Present Mamy André-Ratsimbazafy
|
|
# Licensed and distributed under either of
|
|
# * MIT license (license terms in the root directory or at http://opensource.org/licenses/MIT).
|
|
# * Apache v2 license (license terms in the root directory or at http://www.apache.org/licenses/LICENSE-2.0).
|
|
# at your option. This file may not be copied, modified, or distributed except according to those terms.
|
|
|
|
import
|
|
std/times,
|
|
./reports, ./tracer,
|
|
../constantine/math/config/curves,
|
|
../constantine/math/[arithmetic, extension_fields, ec_shortweierstrass],
|
|
../constantine/math/constants/zoo_subgroups,
|
|
../constantine/math/elliptic/ec_multi_scalar_mul,
|
|
../constantine/platforms/abstractions,
|
|
# Helpers
|
|
../helpers/prng_unsafe
|
|
|
|
var rng*: RngState
|
|
let seed = uint32(getTime().toUnix() and (1'i64 shl 32 - 1)) # unixTime mod 2^32
|
|
rng.seed(seed)
|
|
echo "bench xoshiro512** seed: ", seed
|
|
|
|
proc msmMeter*(EC: typedesc, numPoints: int) =
|
|
const bits = EC.F.C.getCurveOrderBitwidth()
|
|
var points = newSeq[ECP_ShortW_Aff[EC.F, EC.G]](numPoints)
|
|
var scalars = newSeq[BigInt[bits]](numPoints)
|
|
|
|
for i in 0 ..< numPoints:
|
|
var tmp = rng.random_unsafe(EC)
|
|
tmp.clearCofactor()
|
|
points[i].affine(tmp)
|
|
scalars[i] = rng.random_unsafe(BigInt[bits])
|
|
|
|
var r{.noInit.}: EC
|
|
r.setinf()
|
|
resetMetering()
|
|
r.multiScalarMul_vartime(scalars, points)
|
|
|
|
resetMetering()
|
|
msmMeter(ECP_ShortW_Jac[Fp[BLS12_381], G1], 10000)
|
|
const flags = if UseASM_X86_64 or UseASM_X86_32: "UseAssembly" else: "NoAssembly"
|
|
reportCli(Metrics, flags)
|