boringssl/crypto/bn
Brian Smith 9b01c6148e Clarify origin of optimized computation of Montgomery n0.
I found an earlier reference for an algorithm for the optimized
computation of n0 that is very similar to the one in the "Montgomery
Multiplication" paper cited in the comments. Add a reference to it.

Henry S. Warren, Jr. pointed out that his "Montgomery Multiplication"
paper is not a chapter of his book, but a supplement to the book.
Correct the reference to it.

Change-Id: Iadeb148c61ce646d1262ccba0207a31ebdad63e9
Reviewed-on: https://boringssl-review.googlesource.com/10480
Reviewed-by: Adam Langley <agl@google.com>
2016-08-18 18:22:41 +00:00
..
asm Switch perlasm calling convention. 2016-06-27 21:59:26 +00:00
add.c
bn_asn1.c
bn_test.cc Add constants for BN_rand and use them. 2016-08-18 18:18:31 +00:00
bn_tests.txt Use BN_nnmod instead of BN_mod in BN_mod_exp_mont_consttime. 2016-08-02 20:24:58 +00:00
bn.c Ensure |BN_div| never gives negative zero in the no_branch code. 2016-08-02 18:53:45 +00:00
check_bn_tests.go Fix mixed comment markers. 2016-08-01 14:52:39 +00:00
CMakeLists.txt Calculate inverse in |BN_MONT_CTX_set| in constant time w.r.t. modulus. 2016-08-02 16:26:44 +00:00
cmp.c Add BN_rand_range_ex and use internally. 2016-07-29 16:09:26 +00:00
convert.c Check for errors in BN_bn2dec() 2016-08-16 19:46:35 +00:00
ctx.c
div.c Fix BN_mod_word bug. 2016-06-09 19:05:31 +00:00
exponentiation.c Use BN_nnmod instead of BN_mod in BN_mod_exp_mont_consttime. 2016-08-02 20:24:58 +00:00
gcd.c Don't add ERR_R_INTERNAL_ERROR to BN_R_NO_INVERSE. 2016-08-18 18:14:21 +00:00
generic.c
internal.h Calculate inverse in |BN_MONT_CTX_set| in constant time w.r.t. modulus. 2016-08-02 16:26:44 +00:00
kronecker.c
montgomery_inv.c Clarify origin of optimized computation of Montgomery n0. 2016-08-18 18:22:41 +00:00
montgomery.c Calculate inverse in |BN_MONT_CTX_set| in constant time w.r.t. modulus. 2016-08-02 16:26:44 +00:00
mul.c
prime.c Add constants for BN_rand and use them. 2016-08-18 18:18:31 +00:00
random.c Add constants for BN_rand and use them. 2016-08-18 18:18:31 +00:00
rsaz_exp.c
rsaz_exp.h
shift.c
sqrt.c Document that BN_mod_sqrt assumes p is a prime. 2016-07-06 23:15:41 +00:00