LCOV - code coverage report
Current view: top level - src/crypto - sha256_x86_shani.cpp (source / functions) Coverage Total Hit
Test: total_coverage.info Lines: 100.0 % 277 277
Test Date: 2025-01-19 05:08:01 Functions: 100.0 % 2 2
Branches: 100.0 % 2 2

             Branch data     Line data    Source code
       1                 :             : // Copyright (c) 2018-2022 The Bitcoin Core developers
       2                 :             : // Distributed under the MIT software license, see the accompanying
       3                 :             : // file COPYING or http://www.opensource.org/licenses/mit-license.php.
       4                 :             : //
       5                 :             : // Based on https://github.com/noloader/SHA-Intrinsics/blob/master/sha256-x86.c,
       6                 :             : // Written and placed in public domain by Jeffrey Walton.
       7                 :             : // Based on code from Intel, and by Sean Gulley for the miTLS project.
       8                 :             : 
       9                 :             : #if defined(ENABLE_SSE41) && defined(ENABLE_X86_SHANI)
      10                 :             : 
      11                 :             : #include <stdint.h>
      12                 :             : #include <immintrin.h>
      13                 :             : 
      14                 :             : #include <attributes.h>
      15                 :             : 
      16                 :             : namespace {
      17                 :             : 
      18                 :             : alignas(__m128i) const uint8_t MASK[16] = {0x03, 0x02, 0x01, 0x00, 0x07, 0x06, 0x05, 0x04, 0x0b, 0x0a, 0x09, 0x08, 0x0f, 0x0e, 0x0d, 0x0c};
      19                 :             : alignas(__m128i) const uint8_t INIT0[16] = {0x8c, 0x68, 0x05, 0x9b, 0x7f, 0x52, 0x0e, 0x51, 0x85, 0xae, 0x67, 0xbb, 0x67, 0xe6, 0x09, 0x6a};
      20                 :             : alignas(__m128i) const uint8_t INIT1[16] = {0x19, 0xcd, 0xe0, 0x5b, 0xab, 0xd9, 0x83, 0x1f, 0x3a, 0xf5, 0x4f, 0xa5, 0x72, 0xf3, 0x6e, 0x3c};
      21                 :             : 
      22                 :      201101 : void ALWAYS_INLINE QuadRound(__m128i& state0, __m128i& state1, uint64_t k1, uint64_t k0)
      23                 :             : {
      24                 :      201101 :     const __m128i msg = _mm_set_epi64x(k1, k0);
      25                 :      201101 :     state1 = _mm_sha256rnds2_epu32(state1, state0, msg);
      26                 :      201101 :     state0 = _mm_sha256rnds2_epu32(state0, state1, _mm_shuffle_epi32(msg, 0x0e));
      27                 :             : }
      28                 :             : 
      29                 :   459212727 : void ALWAYS_INLINE QuadRound(__m128i& state0, __m128i& state1, __m128i m, uint64_t k1, uint64_t k0)
      30                 :             : {
      31                 :   459212727 :     const __m128i msg = _mm_add_epi32(m, _mm_set_epi64x(k1, k0));
      32                 :   459011626 :     state1 = _mm_sha256rnds2_epu32(state1, state0, msg);
      33                 :   459011626 :     state0 = _mm_sha256rnds2_epu32(state0, state1, _mm_shuffle_epi32(msg, 0x0e));
      34                 :             : }
      35                 :             : 
      36                 :   459212727 : void ALWAYS_INLINE ShiftMessageA(__m128i& m0, __m128i m1)
      37                 :             : {
      38                 :   459212727 :     m0 = _mm_sha256msg1_epu32(m0, m1);
      39                 :             : }
      40                 :             : 
      41                 :   459212727 : void ALWAYS_INLINE ShiftMessageC(__m128i& m0, __m128i m1, __m128i& m2)
      42                 :             : {
      43                 :   459212727 :     m2 = _mm_sha256msg2_epu32(_mm_add_epi32(m2, _mm_alignr_epi8(m1, m0, 4)), m1);
      44                 :             : }
      45                 :             : 
      46                 :   459212727 : void ALWAYS_INLINE ShiftMessageB(__m128i& m0, __m128i m1, __m128i& m2)
      47                 :             : {
      48                 :   459212727 :     ShiftMessageC(m0, m1, m2);
      49                 :   459212727 :     ShiftMessageA(m0, m1);
      50                 :             : }
      51                 :             : 
      52                 :    50774939 : void ALWAYS_INLINE Shuffle(__m128i& s0, __m128i& s1)
      53                 :             : {
      54                 :    50774939 :     const __m128i t1 = _mm_shuffle_epi32(s0, 0xB1);
      55                 :    50774939 :     const __m128i t2 = _mm_shuffle_epi32(s1, 0x1B);
      56                 :    50774939 :     s0 = _mm_alignr_epi8(t1, t2, 0x08);
      57                 :    50774939 :     s1 = _mm_blend_epi16(t2, t1, 0xF0);
      58                 :    50774939 : }
      59                 :             : 
      60                 :    50976040 : void ALWAYS_INLINE Unshuffle(__m128i& s0, __m128i& s1)
      61                 :             : {
      62                 :    50976040 :     const __m128i t1 = _mm_shuffle_epi32(s0, 0x1B);
      63                 :    50976040 :     const __m128i t2 = _mm_shuffle_epi32(s1, 0xB1);
      64                 :    50976040 :     s0 = _mm_blend_epi16(t1, t2, 0xF0);
      65                 :    50976040 :     s1 = _mm_alignr_epi8(t2, t1, 0x08);
      66                 :             : }
      67                 :             : 
      68                 :   459212727 : __m128i ALWAYS_INLINE Load(const unsigned char* in)
      69                 :             : {
      70                 :   459212727 :     return _mm_shuffle_epi8(_mm_loadu_si128((const __m128i*)in), _mm_load_si128((const __m128i*)MASK));
      71                 :             : }
      72                 :             : 
      73                 :      201101 : void ALWAYS_INLINE Save(unsigned char* out, __m128i s)
      74                 :             : {
      75                 :      201101 :     _mm_storeu_si128((__m128i*)out, _mm_shuffle_epi8(s, _mm_load_si128((const __m128i*)MASK)));
      76                 :             : }
      77                 :             : }
      78                 :             : 
      79                 :             : namespace sha256_x86_shani {
      80                 :    50774939 : void Transform(uint32_t* s, const unsigned char* chunk, size_t blocks)
      81                 :             : {
      82                 :    50774939 :     __m128i m0, m1, m2, m3, s0, s1, so0, so1;
      83                 :             : 
      84                 :             :     /* Load state */
      85                 :    50774939 :     s0 = _mm_loadu_si128((const __m128i*)s);
      86                 :    50774939 :     s1 = _mm_loadu_si128((const __m128i*)(s + 4));
      87                 :    50774939 :     Shuffle(s0, s1);
      88                 :             : 
      89         [ +  + ]:   509786565 :     while (blocks--) {
      90                 :             :         /* Remember old state */
      91                 :   459011626 :         so0 = s0;
      92                 :   459011626 :         so1 = s1;
      93                 :             : 
      94                 :             :         /* Load data and transform */
      95                 :   459011626 :         m0 = Load(chunk);
      96                 :   459011626 :         QuadRound(s0, s1, m0, 0xe9b5dba5b5c0fbcfull, 0x71374491428a2f98ull);
      97                 :   459011626 :         m1 = Load(chunk + 16);
      98                 :   459011626 :         QuadRound(s0, s1, m1, 0xab1c5ed5923f82a4ull, 0x59f111f13956c25bull);
      99                 :   459011626 :         ShiftMessageA(m0, m1);
     100                 :   459011626 :         m2 = Load(chunk + 32);
     101                 :   459011626 :         QuadRound(s0, s1, m2, 0x550c7dc3243185beull, 0x12835b01d807aa98ull);
     102                 :   459011626 :         ShiftMessageA(m1, m2);
     103                 :   459011626 :         m3 = Load(chunk + 48);
     104                 :   459011626 :         QuadRound(s0, s1, m3, 0xc19bf1749bdc06a7ull, 0x80deb1fe72be5d74ull);
     105                 :   459011626 :         ShiftMessageB(m2, m3, m0);
     106                 :   459011626 :         QuadRound(s0, s1, m0, 0x240ca1cc0fc19dc6ull, 0xefbe4786E49b69c1ull);
     107                 :   459011626 :         ShiftMessageB(m3, m0, m1);
     108                 :   459011626 :         QuadRound(s0, s1, m1, 0x76f988da5cb0a9dcull, 0x4a7484aa2de92c6full);
     109                 :   459011626 :         ShiftMessageB(m0, m1, m2);
     110                 :   459011626 :         QuadRound(s0, s1, m2, 0xbf597fc7b00327c8ull, 0xa831c66d983e5152ull);
     111                 :   459011626 :         ShiftMessageB(m1, m2, m3);
     112                 :   459011626 :         QuadRound(s0, s1, m3, 0x1429296706ca6351ull, 0xd5a79147c6e00bf3ull);
     113                 :   459011626 :         ShiftMessageB(m2, m3, m0);
     114                 :   459011626 :         QuadRound(s0, s1, m0, 0x53380d134d2c6dfcull, 0x2e1b213827b70a85ull);
     115                 :   459011626 :         ShiftMessageB(m3, m0, m1);
     116                 :   459011626 :         QuadRound(s0, s1, m1, 0x92722c8581c2c92eull, 0x766a0abb650a7354ull);
     117                 :   459011626 :         ShiftMessageB(m0, m1, m2);
     118                 :   459011626 :         QuadRound(s0, s1, m2, 0xc76c51A3c24b8b70ull, 0xa81a664ba2bfe8a1ull);
     119                 :   459011626 :         ShiftMessageB(m1, m2, m3);
     120                 :   459011626 :         QuadRound(s0, s1, m3, 0x106aa070f40e3585ull, 0xd6990624d192e819ull);
     121                 :   459011626 :         ShiftMessageB(m2, m3, m0);
     122                 :   459011626 :         QuadRound(s0, s1, m0, 0x34b0bcb52748774cull, 0x1e376c0819a4c116ull);
     123                 :   459011626 :         ShiftMessageB(m3, m0, m1);
     124                 :   459011626 :         QuadRound(s0, s1, m1, 0x682e6ff35b9cca4full, 0x4ed8aa4a391c0cb3ull);
     125                 :   459011626 :         ShiftMessageC(m0, m1, m2);
     126                 :   459011626 :         QuadRound(s0, s1, m2, 0x8cc7020884c87814ull, 0x78a5636f748f82eeull);
     127                 :   459011626 :         ShiftMessageC(m1, m2, m3);
     128                 :   459011626 :         QuadRound(s0, s1, m3, 0xc67178f2bef9A3f7ull, 0xa4506ceb90befffaull);
     129                 :             : 
     130                 :             :         /* Combine with old state */
     131                 :   459011626 :         s0 = _mm_add_epi32(s0, so0);
     132                 :   459011626 :         s1 = _mm_add_epi32(s1, so1);
     133                 :             : 
     134                 :             :         /* Advance */
     135                 :   459011626 :         chunk += 64;
     136                 :             :     }
     137                 :             : 
     138                 :    50774939 :     Unshuffle(s0, s1);
     139                 :    50774939 :     _mm_storeu_si128((__m128i*)s, s0);
     140                 :    50774939 :     _mm_storeu_si128((__m128i*)(s + 4), s1);
     141                 :    50774939 : }
     142                 :             : }
     143                 :             : 
     144                 :             : namespace sha256d64_x86_shani {
     145                 :             : 
     146                 :      201101 : void Transform_2way(unsigned char* out, const unsigned char* in)
     147                 :             : {
     148                 :      201101 :     __m128i am0, am1, am2, am3, as0, as1, aso0, aso1;
     149                 :      201101 :     __m128i bm0, bm1, bm2, bm3, bs0, bs1, bso0, bso1;
     150                 :             : 
     151                 :             :     /* Transform 1 */
     152                 :      201101 :     bs0 = as0 = _mm_load_si128((const __m128i*)INIT0);
     153                 :      201101 :     bs1 = as1 = _mm_load_si128((const __m128i*)INIT1);
     154                 :      201101 :     am0 = Load(in);
     155                 :      201101 :     bm0 = Load(in + 64);
     156                 :      201101 :     QuadRound(as0, as1, am0, 0xe9b5dba5b5c0fbcfull, 0x71374491428a2f98ull);
     157                 :      201101 :     QuadRound(bs0, bs1, bm0, 0xe9b5dba5b5c0fbcfull, 0x71374491428a2f98ull);
     158                 :      201101 :     am1 = Load(in + 16);
     159                 :      201101 :     bm1 = Load(in + 80);
     160                 :      201101 :     QuadRound(as0, as1, am1, 0xab1c5ed5923f82a4ull, 0x59f111f13956c25bull);
     161                 :      201101 :     QuadRound(bs0, bs1, bm1, 0xab1c5ed5923f82a4ull, 0x59f111f13956c25bull);
     162                 :      201101 :     ShiftMessageA(am0, am1);
     163                 :      201101 :     ShiftMessageA(bm0, bm1);
     164                 :      201101 :     am2 = Load(in + 32);
     165                 :      201101 :     bm2 = Load(in + 96);
     166                 :      201101 :     QuadRound(as0, as1, am2, 0x550c7dc3243185beull, 0x12835b01d807aa98ull);
     167                 :      201101 :     QuadRound(bs0, bs1, bm2, 0x550c7dc3243185beull, 0x12835b01d807aa98ull);
     168                 :      201101 :     ShiftMessageA(am1, am2);
     169                 :      201101 :     ShiftMessageA(bm1, bm2);
     170                 :      201101 :     am3 = Load(in + 48);
     171                 :      201101 :     bm3 = Load(in + 112);
     172                 :      201101 :     QuadRound(as0, as1, am3, 0xc19bf1749bdc06a7ull, 0x80deb1fe72be5d74ull);
     173                 :      201101 :     QuadRound(bs0, bs1, bm3, 0xc19bf1749bdc06a7ull, 0x80deb1fe72be5d74ull);
     174                 :      201101 :     ShiftMessageB(am2, am3, am0);
     175                 :      201101 :     ShiftMessageB(bm2, bm3, bm0);
     176                 :      201101 :     QuadRound(as0, as1, am0, 0x240ca1cc0fc19dc6ull, 0xefbe4786E49b69c1ull);
     177                 :      201101 :     QuadRound(bs0, bs1, bm0, 0x240ca1cc0fc19dc6ull, 0xefbe4786E49b69c1ull);
     178                 :      201101 :     ShiftMessageB(am3, am0, am1);
     179                 :      201101 :     ShiftMessageB(bm3, bm0, bm1);
     180                 :      201101 :     QuadRound(as0, as1, am1, 0x76f988da5cb0a9dcull, 0x4a7484aa2de92c6full);
     181                 :      201101 :     QuadRound(bs0, bs1, bm1, 0x76f988da5cb0a9dcull, 0x4a7484aa2de92c6full);
     182                 :      201101 :     ShiftMessageB(am0, am1, am2);
     183                 :      201101 :     ShiftMessageB(bm0, bm1, bm2);
     184                 :      201101 :     QuadRound(as0, as1, am2, 0xbf597fc7b00327c8ull, 0xa831c66d983e5152ull);
     185                 :      201101 :     QuadRound(bs0, bs1, bm2, 0xbf597fc7b00327c8ull, 0xa831c66d983e5152ull);
     186                 :      201101 :     ShiftMessageB(am1, am2, am3);
     187                 :      201101 :     ShiftMessageB(bm1, bm2, bm3);
     188                 :      201101 :     QuadRound(as0, as1, am3, 0x1429296706ca6351ull, 0xd5a79147c6e00bf3ull);
     189                 :      201101 :     QuadRound(bs0, bs1, bm3, 0x1429296706ca6351ull, 0xd5a79147c6e00bf3ull);
     190                 :      201101 :     ShiftMessageB(am2, am3, am0);
     191                 :      201101 :     ShiftMessageB(bm2, bm3, bm0);
     192                 :      201101 :     QuadRound(as0, as1, am0, 0x53380d134d2c6dfcull, 0x2e1b213827b70a85ull);
     193                 :      201101 :     QuadRound(bs0, bs1, bm0, 0x53380d134d2c6dfcull, 0x2e1b213827b70a85ull);
     194                 :      201101 :     ShiftMessageB(am3, am0, am1);
     195                 :      201101 :     ShiftMessageB(bm3, bm0, bm1);
     196                 :      201101 :     QuadRound(as0, as1, am1, 0x92722c8581c2c92eull, 0x766a0abb650a7354ull);
     197                 :      201101 :     QuadRound(bs0, bs1, bm1, 0x92722c8581c2c92eull, 0x766a0abb650a7354ull);
     198                 :      201101 :     ShiftMessageB(am0, am1, am2);
     199                 :      201101 :     ShiftMessageB(bm0, bm1, bm2);
     200                 :      201101 :     QuadRound(as0, as1, am2, 0xc76c51A3c24b8b70ull, 0xa81a664ba2bfe8a1ull);
     201                 :      201101 :     QuadRound(bs0, bs1, bm2, 0xc76c51A3c24b8b70ull, 0xa81a664ba2bfe8a1ull);
     202                 :      201101 :     ShiftMessageB(am1, am2, am3);
     203                 :      201101 :     ShiftMessageB(bm1, bm2, bm3);
     204                 :      201101 :     QuadRound(as0, as1, am3, 0x106aa070f40e3585ull, 0xd6990624d192e819ull);
     205                 :      201101 :     QuadRound(bs0, bs1, bm3, 0x106aa070f40e3585ull, 0xd6990624d192e819ull);
     206                 :      201101 :     ShiftMessageB(am2, am3, am0);
     207                 :      201101 :     ShiftMessageB(bm2, bm3, bm0);
     208                 :      201101 :     QuadRound(as0, as1, am0, 0x34b0bcb52748774cull, 0x1e376c0819a4c116ull);
     209                 :      201101 :     QuadRound(bs0, bs1, bm0, 0x34b0bcb52748774cull, 0x1e376c0819a4c116ull);
     210                 :      201101 :     ShiftMessageB(am3, am0, am1);
     211                 :      201101 :     ShiftMessageB(bm3, bm0, bm1);
     212                 :      201101 :     QuadRound(as0, as1, am1, 0x682e6ff35b9cca4full, 0x4ed8aa4a391c0cb3ull);
     213                 :      201101 :     QuadRound(bs0, bs1, bm1, 0x682e6ff35b9cca4full, 0x4ed8aa4a391c0cb3ull);
     214                 :      201101 :     ShiftMessageC(am0, am1, am2);
     215                 :      201101 :     ShiftMessageC(bm0, bm1, bm2);
     216                 :      201101 :     QuadRound(as0, as1, am2, 0x8cc7020884c87814ull, 0x78a5636f748f82eeull);
     217                 :      201101 :     QuadRound(bs0, bs1, bm2, 0x8cc7020884c87814ull, 0x78a5636f748f82eeull);
     218                 :      201101 :     ShiftMessageC(am1, am2, am3);
     219                 :      201101 :     ShiftMessageC(bm1, bm2, bm3);
     220                 :      201101 :     QuadRound(as0, as1, am3, 0xc67178f2bef9A3f7ull, 0xa4506ceb90befffaull);
     221                 :      201101 :     QuadRound(bs0, bs1, bm3, 0xc67178f2bef9A3f7ull, 0xa4506ceb90befffaull);
     222                 :      201101 :     as0 = _mm_add_epi32(as0, _mm_load_si128((const __m128i*)INIT0));
     223                 :      201101 :     bs0 = _mm_add_epi32(bs0, _mm_load_si128((const __m128i*)INIT0));
     224                 :      201101 :     as1 = _mm_add_epi32(as1, _mm_load_si128((const __m128i*)INIT1));
     225                 :      201101 :     bs1 = _mm_add_epi32(bs1, _mm_load_si128((const __m128i*)INIT1));
     226                 :             : 
     227                 :             :     /* Transform 2 */
     228                 :      201101 :     aso0 = as0;
     229                 :      201101 :     bso0 = bs0;
     230                 :      201101 :     aso1 = as1;
     231                 :      201101 :     bso1 = bs1;
     232                 :      201101 :     QuadRound(as0, as1, 0xe9b5dba5b5c0fbcfull, 0x71374491c28a2f98ull);
     233                 :      201101 :     QuadRound(bs0, bs1, 0xe9b5dba5b5c0fbcfull, 0x71374491c28a2f98ull);
     234                 :      201101 :     QuadRound(as0, as1, 0xab1c5ed5923f82a4ull, 0x59f111f13956c25bull);
     235                 :      201101 :     QuadRound(bs0, bs1, 0xab1c5ed5923f82a4ull, 0x59f111f13956c25bull);
     236                 :      201101 :     QuadRound(as0, as1, 0x550c7dc3243185beull, 0x12835b01d807aa98ull);
     237                 :      201101 :     QuadRound(bs0, bs1, 0x550c7dc3243185beull, 0x12835b01d807aa98ull);
     238                 :      201101 :     QuadRound(as0, as1, 0xc19bf3749bdc06a7ull, 0x80deb1fe72be5d74ull);
     239                 :      201101 :     QuadRound(bs0, bs1, 0xc19bf3749bdc06a7ull, 0x80deb1fe72be5d74ull);
     240                 :      201101 :     QuadRound(as0, as1, 0x240cf2540fe1edc6ull, 0xf0fe4786649b69c1ull);
     241                 :      201101 :     QuadRound(bs0, bs1, 0x240cf2540fe1edc6ull, 0xf0fe4786649b69c1ull);
     242                 :      201101 :     QuadRound(as0, as1, 0x16f988fa61b9411eull, 0x6cc984be4fe9346full);
     243                 :      201101 :     QuadRound(bs0, bs1, 0x16f988fa61b9411eull, 0x6cc984be4fe9346full);
     244                 :      201101 :     QuadRound(as0, as1, 0xb9d99ec7b019fc65ull, 0xa88e5a6df2c65152ull);
     245                 :      201101 :     QuadRound(bs0, bs1, 0xb9d99ec7b019fc65ull, 0xa88e5a6df2c65152ull);
     246                 :      201101 :     QuadRound(as0, as1, 0xc7353eb0fdb1232bull, 0xe70eeaa09a1231c3ull);
     247                 :      201101 :     QuadRound(bs0, bs1, 0xc7353eb0fdb1232bull, 0xe70eeaa09a1231c3ull);
     248                 :      201101 :     QuadRound(as0, as1, 0xdc1eeefd5a0f118full, 0xcb976d5f3069bad5ull);
     249                 :      201101 :     QuadRound(bs0, bs1, 0xdc1eeefd5a0f118full, 0xcb976d5f3069bad5ull);
     250                 :      201101 :     QuadRound(as0, as1, 0xe15d5b1658f4ca9dull, 0xde0b7a040a35b689ull);
     251                 :      201101 :     QuadRound(bs0, bs1, 0xe15d5b1658f4ca9dull, 0xde0b7a040a35b689ull);
     252                 :      201101 :     QuadRound(as0, as1, 0x6fab9537a507ea32ull, 0x37088980007f3e86ull);
     253                 :      201101 :     QuadRound(bs0, bs1, 0x6fab9537a507ea32ull, 0x37088980007f3e86ull);
     254                 :      201101 :     QuadRound(as0, as1, 0xc0bbbe37cdaa3b6dull, 0x0d8cd6f117406110ull);
     255                 :      201101 :     QuadRound(bs0, bs1, 0xc0bbbe37cdaa3b6dull, 0x0d8cd6f117406110ull);
     256                 :      201101 :     QuadRound(as0, as1, 0x6fd15ca70b02e931ull, 0xdb48a36383613bdaull);
     257                 :      201101 :     QuadRound(bs0, bs1, 0x6fd15ca70b02e931ull, 0xdb48a36383613bdaull);
     258                 :      201101 :     QuadRound(as0, as1, 0x6d4378906ed41a95ull, 0x31338431521afacaull);
     259                 :      201101 :     QuadRound(bs0, bs1, 0x6d4378906ed41a95ull, 0x31338431521afacaull);
     260                 :      201101 :     QuadRound(as0, as1, 0x532fb63cb5c9a0e6ull, 0x9eccabbdc39c91f2ull);
     261                 :      201101 :     QuadRound(bs0, bs1, 0x532fb63cb5c9a0e6ull, 0x9eccabbdc39c91f2ull);
     262                 :      201101 :     QuadRound(as0, as1, 0x4c191d76a4954b68ull, 0x07237ea3d2c741c6ull);
     263                 :      201101 :     QuadRound(bs0, bs1, 0x4c191d76a4954b68ull, 0x07237ea3d2c741c6ull);
     264                 :      201101 :     as0 = _mm_add_epi32(as0, aso0);
     265                 :      201101 :     bs0 = _mm_add_epi32(bs0, bso0);
     266                 :      201101 :     as1 = _mm_add_epi32(as1, aso1);
     267                 :      201101 :     bs1 = _mm_add_epi32(bs1, bso1);
     268                 :             : 
     269                 :             :     /* Extract hash */
     270                 :      201101 :     Unshuffle(as0, as1);
     271                 :      201101 :     Unshuffle(bs0, bs1);
     272                 :      201101 :     am0 = as0;
     273                 :      201101 :     bm0 = bs0;
     274                 :      201101 :     am1 = as1;
     275                 :      201101 :     bm1 = bs1;
     276                 :             : 
     277                 :             :     /* Transform 3 */
     278                 :      201101 :     bs0 = as0 = _mm_load_si128((const __m128i*)INIT0);
     279                 :      201101 :     bs1 = as1 = _mm_load_si128((const __m128i*)INIT1);
     280                 :      201101 :     QuadRound(as0, as1, am0, 0xe9b5dba5B5c0fbcfull, 0x71374491428a2f98ull);
     281                 :      201101 :     QuadRound(bs0, bs1, bm0, 0xe9b5dba5B5c0fbcfull, 0x71374491428a2f98ull);
     282                 :      201101 :     QuadRound(as0, as1, am1, 0xab1c5ed5923f82a4ull, 0x59f111f13956c25bull);
     283                 :      201101 :     QuadRound(bs0, bs1, bm1, 0xab1c5ed5923f82a4ull, 0x59f111f13956c25bull);
     284                 :      201101 :     ShiftMessageA(am0, am1);
     285                 :      201101 :     ShiftMessageA(bm0, bm1);
     286                 :      201101 :     bm2 = am2 = _mm_set_epi64x(0x0ull, 0x80000000ull);
     287                 :      201101 :     QuadRound(as0, as1, 0x550c7dc3243185beull, 0x12835b015807aa98ull);
     288                 :      201101 :     QuadRound(bs0, bs1, 0x550c7dc3243185beull, 0x12835b015807aa98ull);
     289                 :      201101 :     ShiftMessageA(am1, am2);
     290                 :      201101 :     ShiftMessageA(bm1, bm2);
     291                 :      201101 :     bm3 = am3 = _mm_set_epi64x(0x10000000000ull, 0x0ull);
     292                 :      201101 :     QuadRound(as0, as1, 0xc19bf2749bdc06a7ull, 0x80deb1fe72be5d74ull);
     293                 :      201101 :     QuadRound(bs0, bs1, 0xc19bf2749bdc06a7ull, 0x80deb1fe72be5d74ull);
     294                 :      201101 :     ShiftMessageB(am2, am3, am0);
     295                 :      201101 :     ShiftMessageB(bm2, bm3, bm0);
     296                 :      201101 :     QuadRound(as0, as1, am0, 0x240ca1cc0fc19dc6ull, 0xefbe4786e49b69c1ull);
     297                 :      201101 :     QuadRound(bs0, bs1, bm0, 0x240ca1cc0fc19dc6ull, 0xefbe4786e49b69c1ull);
     298                 :      201101 :     ShiftMessageB(am3, am0, am1);
     299                 :      201101 :     ShiftMessageB(bm3, bm0, bm1);
     300                 :      201101 :     QuadRound(as0, as1, am1, 0x76f988da5cb0a9dcull, 0x4a7484aa2de92c6full);
     301                 :      201101 :     QuadRound(bs0, bs1, bm1, 0x76f988da5cb0a9dcull, 0x4a7484aa2de92c6full);
     302                 :      201101 :     ShiftMessageB(am0, am1, am2);
     303                 :      201101 :     ShiftMessageB(bm0, bm1, bm2);
     304                 :      201101 :     QuadRound(as0, as1, am2, 0xbf597fc7b00327c8ull, 0xa831c66d983e5152ull);
     305                 :      201101 :     QuadRound(bs0, bs1, bm2, 0xbf597fc7b00327c8ull, 0xa831c66d983e5152ull);
     306                 :      201101 :     ShiftMessageB(am1, am2, am3);
     307                 :      201101 :     ShiftMessageB(bm1, bm2, bm3);
     308                 :      201101 :     QuadRound(as0, as1, am3, 0x1429296706ca6351ull, 0xd5a79147c6e00bf3ull);
     309                 :      201101 :     QuadRound(bs0, bs1, bm3, 0x1429296706ca6351ull, 0xd5a79147c6e00bf3ull);
     310                 :      201101 :     ShiftMessageB(am2, am3, am0);
     311                 :      201101 :     ShiftMessageB(bm2, bm3, bm0);
     312                 :      201101 :     QuadRound(as0, as1, am0, 0x53380d134d2c6dfcull, 0x2e1b213827b70a85ull);
     313                 :      201101 :     QuadRound(bs0, bs1, bm0, 0x53380d134d2c6dfcull, 0x2e1b213827b70a85ull);
     314                 :      201101 :     ShiftMessageB(am3, am0, am1);
     315                 :      201101 :     ShiftMessageB(bm3, bm0, bm1);
     316                 :      201101 :     QuadRound(as0, as1, am1, 0x92722c8581c2c92eull, 0x766a0abb650a7354ull);
     317                 :      201101 :     QuadRound(bs0, bs1, bm1, 0x92722c8581c2c92eull, 0x766a0abb650a7354ull);
     318                 :      201101 :     ShiftMessageB(am0, am1, am2);
     319                 :      201101 :     ShiftMessageB(bm0, bm1, bm2);
     320                 :      201101 :     QuadRound(as0, as1, am2, 0xc76c51a3c24b8b70ull, 0xa81a664ba2bfe8A1ull);
     321                 :      201101 :     QuadRound(bs0, bs1, bm2, 0xc76c51a3c24b8b70ull, 0xa81a664ba2bfe8A1ull);
     322                 :      201101 :     ShiftMessageB(am1, am2, am3);
     323                 :      201101 :     ShiftMessageB(bm1, bm2, bm3);
     324                 :      201101 :     QuadRound(as0, as1, am3, 0x106aa070f40e3585ull, 0xd6990624d192e819ull);
     325                 :      201101 :     QuadRound(bs0, bs1, bm3, 0x106aa070f40e3585ull, 0xd6990624d192e819ull);
     326                 :      201101 :     ShiftMessageB(am2, am3, am0);
     327                 :      201101 :     ShiftMessageB(bm2, bm3, bm0);
     328                 :      201101 :     QuadRound(as0, as1, am0, 0x34b0bcb52748774cull, 0x1e376c0819a4c116ull);
     329                 :      201101 :     QuadRound(bs0, bs1, bm0, 0x34b0bcb52748774cull, 0x1e376c0819a4c116ull);
     330                 :      201101 :     ShiftMessageB(am3, am0, am1);
     331                 :      201101 :     ShiftMessageB(bm3, bm0, bm1);
     332                 :      201101 :     QuadRound(as0, as1, am1, 0x682e6ff35b9cca4full, 0x4ed8aa4a391c0cb3ull);
     333                 :      201101 :     QuadRound(bs0, bs1, bm1, 0x682e6ff35b9cca4full, 0x4ed8aa4a391c0cb3ull);
     334                 :      201101 :     ShiftMessageC(am0, am1, am2);
     335                 :      201101 :     ShiftMessageC(bm0, bm1, bm2);
     336                 :      201101 :     QuadRound(as0, as1, am2, 0x8cc7020884c87814ull, 0x78a5636f748f82eeull);
     337                 :      201101 :     QuadRound(bs0, bs1, bm2, 0x8cc7020884c87814ull, 0x78a5636f748f82eeull);
     338                 :      201101 :     ShiftMessageC(am1, am2, am3);
     339                 :      201101 :     ShiftMessageC(bm1, bm2, bm3);
     340                 :      201101 :     QuadRound(as0, as1, am3, 0xc67178f2bef9a3f7ull, 0xa4506ceb90befffaull);
     341                 :      201101 :     QuadRound(bs0, bs1, bm3, 0xc67178f2bef9a3f7ull, 0xa4506ceb90befffaull);
     342                 :      201101 :     as0 = _mm_add_epi32(as0, _mm_load_si128((const __m128i*)INIT0));
     343                 :      201101 :     bs0 = _mm_add_epi32(bs0, _mm_load_si128((const __m128i*)INIT0));
     344                 :      201101 :     as1 = _mm_add_epi32(as1, _mm_load_si128((const __m128i*)INIT1));
     345                 :      201101 :     bs1 = _mm_add_epi32(bs1, _mm_load_si128((const __m128i*)INIT1));
     346                 :             : 
     347                 :             :     /* Extract hash into out */
     348                 :      201101 :     Unshuffle(as0, as1);
     349                 :      201101 :     Unshuffle(bs0, bs1);
     350                 :      201101 :     Save(out, as0);
     351                 :      201101 :     Save(out + 16, as1);
     352                 :      201101 :     Save(out + 32, bs0);
     353                 :      201101 :     Save(out + 48, bs1);
     354                 :      201101 : }
     355                 :             : 
     356                 :             : }
     357                 :             : 
     358                 :             : #endif
        

Generated by: LCOV version 2.0-1