blake2b_amd64.s 7.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253
  1. // Copyright 2016 The Go Authors. All rights reserved.
  2. // Use of this source code is governed by a BSD-style
  3. // license that can be found in the LICENSE file.
  4. // +build amd64,!gccgo,!appengine
  5. #include "textflag.h"
  6. DATA ·iv0<>+0x00(SB)/8, $0x6a09e667f3bcc908
  7. DATA ·iv0<>+0x08(SB)/8, $0xbb67ae8584caa73b
  8. GLOBL ·iv0<>(SB), (NOPTR+RODATA), $16
  9. DATA ·iv1<>+0x00(SB)/8, $0x3c6ef372fe94f82b
  10. DATA ·iv1<>+0x08(SB)/8, $0xa54ff53a5f1d36f1
  11. GLOBL ·iv1<>(SB), (NOPTR+RODATA), $16
  12. DATA ·iv2<>+0x00(SB)/8, $0x510e527fade682d1
  13. DATA ·iv2<>+0x08(SB)/8, $0x9b05688c2b3e6c1f
  14. GLOBL ·iv2<>(SB), (NOPTR+RODATA), $16
  15. DATA ·iv3<>+0x00(SB)/8, $0x1f83d9abfb41bd6b
  16. DATA ·iv3<>+0x08(SB)/8, $0x5be0cd19137e2179
  17. GLOBL ·iv3<>(SB), (NOPTR+RODATA), $16
  18. DATA ·c40<>+0x00(SB)/8, $0x0201000706050403
  19. DATA ·c40<>+0x08(SB)/8, $0x0a09080f0e0d0c0b
  20. GLOBL ·c40<>(SB), (NOPTR+RODATA), $16
  21. DATA ·c48<>+0x00(SB)/8, $0x0100070605040302
  22. DATA ·c48<>+0x08(SB)/8, $0x09080f0e0d0c0b0a
  23. GLOBL ·c48<>(SB), (NOPTR+RODATA), $16
  24. #define SHUFFLE(v2, v3, v4, v5, v6, v7, t1, t2) \
  25. MOVO v4, t1; \
  26. MOVO v5, v4; \
  27. MOVO t1, v5; \
  28. MOVO v6, t1; \
  29. PUNPCKLQDQ v6, t2; \
  30. PUNPCKHQDQ v7, v6; \
  31. PUNPCKHQDQ t2, v6; \
  32. PUNPCKLQDQ v7, t2; \
  33. MOVO t1, v7; \
  34. MOVO v2, t1; \
  35. PUNPCKHQDQ t2, v7; \
  36. PUNPCKLQDQ v3, t2; \
  37. PUNPCKHQDQ t2, v2; \
  38. PUNPCKLQDQ t1, t2; \
  39. PUNPCKHQDQ t2, v3
  40. #define SHUFFLE_INV(v2, v3, v4, v5, v6, v7, t1, t2) \
  41. MOVO v4, t1; \
  42. MOVO v5, v4; \
  43. MOVO t1, v5; \
  44. MOVO v2, t1; \
  45. PUNPCKLQDQ v2, t2; \
  46. PUNPCKHQDQ v3, v2; \
  47. PUNPCKHQDQ t2, v2; \
  48. PUNPCKLQDQ v3, t2; \
  49. MOVO t1, v3; \
  50. MOVO v6, t1; \
  51. PUNPCKHQDQ t2, v3; \
  52. PUNPCKLQDQ v7, t2; \
  53. PUNPCKHQDQ t2, v6; \
  54. PUNPCKLQDQ t1, t2; \
  55. PUNPCKHQDQ t2, v7
  56. #define HALF_ROUND(v0, v1, v2, v3, v4, v5, v6, v7, m0, m1, m2, m3, t0, c40, c48) \
  57. PADDQ m0, v0; \
  58. PADDQ m1, v1; \
  59. PADDQ v2, v0; \
  60. PADDQ v3, v1; \
  61. PXOR v0, v6; \
  62. PXOR v1, v7; \
  63. PSHUFD $0xB1, v6, v6; \
  64. PSHUFD $0xB1, v7, v7; \
  65. PADDQ v6, v4; \
  66. PADDQ v7, v5; \
  67. PXOR v4, v2; \
  68. PXOR v5, v3; \
  69. PSHUFB c40, v2; \
  70. PSHUFB c40, v3; \
  71. PADDQ m2, v0; \
  72. PADDQ m3, v1; \
  73. PADDQ v2, v0; \
  74. PADDQ v3, v1; \
  75. PXOR v0, v6; \
  76. PXOR v1, v7; \
  77. PSHUFB c48, v6; \
  78. PSHUFB c48, v7; \
  79. PADDQ v6, v4; \
  80. PADDQ v7, v5; \
  81. PXOR v4, v2; \
  82. PXOR v5, v3; \
  83. MOVOU v2, t0; \
  84. PADDQ v2, t0; \
  85. PSRLQ $63, v2; \
  86. PXOR t0, v2; \
  87. MOVOU v3, t0; \
  88. PADDQ v3, t0; \
  89. PSRLQ $63, v3; \
  90. PXOR t0, v3
  91. #define LOAD_MSG(m0, m1, m2, m3, i0, i1, i2, i3, i4, i5, i6, i7) \
  92. MOVQ i0*8(SI), m0; \
  93. PINSRQ $1, i1*8(SI), m0; \
  94. MOVQ i2*8(SI), m1; \
  95. PINSRQ $1, i3*8(SI), m1; \
  96. MOVQ i4*8(SI), m2; \
  97. PINSRQ $1, i5*8(SI), m2; \
  98. MOVQ i6*8(SI), m3; \
  99. PINSRQ $1, i7*8(SI), m3
  100. // func fSSE4(h *[8]uint64, m *[16]uint64, c0, c1 uint64, flag uint64, rounds uint64)
  101. TEXT ·fSSE4(SB), 4, $24-48 // frame size = 8 + 16 byte alignment
  102. MOVQ h+0(FP), AX
  103. MOVQ m+8(FP), SI
  104. MOVQ c0+16(FP), R8
  105. MOVQ c1+24(FP), R9
  106. MOVQ flag+32(FP), CX
  107. MOVQ rounds+40(FP), BX
  108. MOVQ SP, BP
  109. MOVQ SP, R10
  110. ADDQ $15, R10
  111. ANDQ $~15, R10
  112. MOVQ R10, SP
  113. MOVOU ·iv3<>(SB), X0
  114. MOVO X0, 0(SP)
  115. XORQ CX, 0(SP) // 0(SP) = ·iv3 ^ (CX || 0)
  116. MOVOU ·c40<>(SB), X13
  117. MOVOU ·c48<>(SB), X14
  118. MOVOU 0(AX), X12
  119. MOVOU 16(AX), X15
  120. MOVQ R8, X8
  121. PINSRQ $1, R9, X8
  122. MOVO X12, X0
  123. MOVO X15, X1
  124. MOVOU 32(AX), X2
  125. MOVOU 48(AX), X3
  126. MOVOU ·iv0<>(SB), X4
  127. MOVOU ·iv1<>(SB), X5
  128. MOVOU ·iv2<>(SB), X6
  129. PXOR X8, X6
  130. MOVO 0(SP), X7
  131. loop:
  132. SUBQ $1, BX; JCS done
  133. LOAD_MSG(X8, X9, X10, X11, 0, 2, 4, 6, 1, 3, 5, 7)
  134. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  135. SHUFFLE(X2, X3, X4, X5, X6, X7, X8, X9)
  136. LOAD_MSG(X8, X9, X10, X11, 8, 10, 12, 14, 9, 11, 13, 15)
  137. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  138. SHUFFLE_INV(X2, X3, X4, X5, X6, X7, X8, X9)
  139. SUBQ $1, BX; JCS done
  140. LOAD_MSG(X8, X9, X10, X11, 14, 4, 9, 13, 10, 8, 15, 6)
  141. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  142. SHUFFLE(X2, X3, X4, X5, X6, X7, X8, X9)
  143. LOAD_MSG(X8, X9, X10, X11, 1, 0, 11, 5, 12, 2, 7, 3)
  144. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  145. SHUFFLE_INV(X2, X3, X4, X5, X6, X7, X8, X9)
  146. SUBQ $1, BX; JCS done
  147. LOAD_MSG(X8, X9, X10, X11, 11, 12, 5, 15, 8, 0, 2, 13)
  148. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  149. SHUFFLE(X2, X3, X4, X5, X6, X7, X8, X9)
  150. LOAD_MSG(X8, X9, X10, X11, 10, 3, 7, 9, 14, 6, 1, 4)
  151. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  152. SHUFFLE_INV(X2, X3, X4, X5, X6, X7, X8, X9)
  153. SUBQ $1, BX; JCS done
  154. LOAD_MSG(X8, X9, X10, X11, 7, 3, 13, 11, 9, 1, 12, 14)
  155. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  156. SHUFFLE(X2, X3, X4, X5, X6, X7, X8, X9)
  157. LOAD_MSG(X8, X9, X10, X11, 2, 5, 4, 15, 6, 10, 0, 8)
  158. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  159. SHUFFLE_INV(X2, X3, X4, X5, X6, X7, X8, X9)
  160. SUBQ $1, BX; JCS done
  161. LOAD_MSG(X8, X9, X10, X11, 9, 5, 2, 10, 0, 7, 4, 15)
  162. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  163. SHUFFLE(X2, X3, X4, X5, X6, X7, X8, X9)
  164. LOAD_MSG(X8, X9, X10, X11, 14, 11, 6, 3, 1, 12, 8, 13)
  165. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  166. SHUFFLE_INV(X2, X3, X4, X5, X6, X7, X8, X9)
  167. SUBQ $1, BX; JCS done
  168. LOAD_MSG(X8, X9, X10, X11, 2, 6, 0, 8, 12, 10, 11, 3)
  169. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  170. SHUFFLE(X2, X3, X4, X5, X6, X7, X8, X9)
  171. LOAD_MSG(X8, X9, X10, X11, 4, 7, 15, 1, 13, 5, 14, 9)
  172. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  173. SHUFFLE_INV(X2, X3, X4, X5, X6, X7, X8, X9)
  174. SUBQ $1, BX; JCS done
  175. LOAD_MSG(X8, X9, X10, X11, 12, 1, 14, 4, 5, 15, 13, 10)
  176. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  177. SHUFFLE(X2, X3, X4, X5, X6, X7, X8, X9)
  178. LOAD_MSG(X8, X9, X10, X11, 0, 6, 9, 8, 7, 3, 2, 11)
  179. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  180. SHUFFLE_INV(X2, X3, X4, X5, X6, X7, X8, X9)
  181. SUBQ $1, BX; JCS done
  182. LOAD_MSG(X8, X9, X10, X11, 13, 7, 12, 3, 11, 14, 1, 9)
  183. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  184. SHUFFLE(X2, X3, X4, X5, X6, X7, X8, X9)
  185. LOAD_MSG(X8, X9, X10, X11, 5, 15, 8, 2, 0, 4, 6, 10)
  186. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  187. SHUFFLE_INV(X2, X3, X4, X5, X6, X7, X8, X9)
  188. SUBQ $1, BX; JCS done
  189. LOAD_MSG(X8, X9, X10, X11, 6, 14, 11, 0, 15, 9, 3, 8)
  190. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  191. SHUFFLE(X2, X3, X4, X5, X6, X7, X8, X9)
  192. LOAD_MSG(X8, X9, X10, X11, 12, 13, 1, 10, 2, 7, 4, 5)
  193. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  194. SHUFFLE_INV(X2, X3, X4, X5, X6, X7, X8, X9)
  195. SUBQ $1, BX; JCS done
  196. LOAD_MSG(X8, X9, X10, X11, 10, 8, 7, 1, 2, 4, 6, 5)
  197. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  198. SHUFFLE(X2, X3, X4, X5, X6, X7, X8, X9)
  199. LOAD_MSG(X8, X9, X10, X11, 15, 9, 3, 13, 11, 14, 12, 0)
  200. HALF_ROUND(X0, X1, X2, X3, X4, X5, X6, X7, X8, X9, X10, X11, X11, X13, X14)
  201. SHUFFLE_INV(X2, X3, X4, X5, X6, X7, X8, X9)
  202. JMP loop
  203. done:
  204. MOVOU 32(AX), X10
  205. MOVOU 48(AX), X11
  206. PXOR X0, X12
  207. PXOR X1, X15
  208. PXOR X2, X10
  209. PXOR X3, X11
  210. PXOR X4, X12
  211. PXOR X5, X15
  212. PXOR X6, X10
  213. PXOR X7, X11
  214. MOVOU X10, 32(AX)
  215. MOVOU X11, 48(AX)
  216. MOVOU X12, 0(AX)
  217. MOVOU X15, 16(AX)
  218. MOVQ BP, SP
  219. RET