mirror of
https://github.com/codex-storage/constantine.git
synced 2025-01-19 15:23:06 +00:00
e5612f5705
* unoptimized msm * MSM: reorder loops * add a signed windowed recoding technique * improve wNAF table access * use batchAffine * revamp EC tests * MSM signed digit support * refactor MSM: recode signed ahead of time * missing test vector * refactor allocs and Alloca sideeffect * add an endomorphism threshold * Add Jacobian extended coordinates * refactor recodings, prepare for parallelizable on-the-fly signed recoding * recoding changes, introduce proper NAF for pairings * more pairings refactoring, introduce miller accumulator for EVM * some optim to the addchain miller loop * start optimizing multi-pairing * finish multi-miller loop refactoring * minor tuning * MSM: signed encoding suitable for parallelism (no precompute) * cleanup signed window encoding * add prefetching * add metering * properly init result to infinity * comment on prefetching * introduce vartime inversion for batch additions * fix JacExt infinity conversion * add batchAffine for MSM, though slower than JacExtended at the moment * add a batch affine scheduler for MSM * Add Multi-Scalar-Multiplication endomorphism acceleration * some tuning * signed integer fixes + 32-bit + tuning * Some more tuning * common msm bench + don't use affine for c < 9 * nit
43 lines
1.5 KiB
Nim
43 lines
1.5 KiB
Nim
# Constantine
|
|
# Copyright (c) 2018-2019 Status Research & Development GmbH
|
|
# Copyright (c) 2020-Present Mamy André-Ratsimbazafy
|
|
# Licensed and distributed under either of
|
|
# * MIT license (license terms in the root directory or at http://opensource.org/licenses/MIT).
|
|
# * Apache v2 license (license terms in the root directory or at http://www.apache.org/licenses/LICENSE-2.0).
|
|
# at your option. This file may not be copied, modified, or distributed except according to those terms.
|
|
|
|
import
|
|
# Internals
|
|
../../constantine/math/config/[type_ff, curves],
|
|
../../constantine/math/elliptic/ec_shortweierstrass_jacobian,
|
|
../../constantine/math/elliptic/ec_shortweierstrass_projective,
|
|
# Test utilities
|
|
./t_ec_sage_template
|
|
|
|
# When ECP_ShortW_Aff[Fp[Foo], G1]
|
|
# and ECP_ShortW_Aff[Fp[Foo], G2]
|
|
# are generated in the same file (i.e. twists and base curve are both on Fp)
|
|
# this creates bad codegen, in the C code, the `value`parameter gets the wrong type
|
|
# TODO: upstream
|
|
|
|
staticFor(bits, [BW6_761.getCurveOrderBitwidth()]):
|
|
run_scalar_mul_test_vs_sage(
|
|
ECP_ShortW_Prj[Fp[BW6_761], G1], bits,
|
|
"t_ec_sage_bw6_761_g1_projective"
|
|
)
|
|
|
|
run_scalar_mul_test_vs_sage(
|
|
ECP_ShortW_Jac[Fp[BW6_761], G1], bits,
|
|
"t_ec_sage_bw6_761_g1_jacobian"
|
|
)
|
|
|
|
# run_scalar_mul_test_vs_sage(
|
|
# ECP_ShortW_Prj[Fp[BW6_761], G2], bits,
|
|
# "t_ec_sage_bw6_761_g2_projective"
|
|
# )
|
|
|
|
# run_scalar_mul_test_vs_sage(
|
|
# ECP_ShortW_Jac[Fp[BW6_761], G2], bits,
|
|
# "t_ec_sage_bw6_761_g2_jacobian"
|
|
# )
|