blob: f36751dc8dd67514f67b813bac0b8684f2860f1f [file] [log] [blame]
/* Copyright lowRISC contributors. */
/* Licensed under the Apache License, Version 2.0, see LICENSE for details. */
/* SPDX-License-Identifier: Apache-2.0 */
/*
* Standalone test for P-256 scalar multiplication with base point.
*
* Performs multiplication of the base point of P-256 by a scalar. This
* resembles computing the public key for a given private key. The scalar
* (private key) is contained in the .data section below.
*
* See comment at the end of the file for expected values of coordinates
* of resulting point.
*/
.section .text.start
p256_base_mult_test:
/* call base point multiplication routine in P-256 lib */
jal x1, p256_base_mult
/* load result to WDRs for comparison with reference */
li x2, 0
la x3, x
bn.lid x2++, 0(x3)
la x3, y
bn.lid x2, 0(x3)
ecall
.data
/* scalar d */
.globl d0
.balign 32
d0:
.word 0xc7df1a56
.word 0xfbd94efe
.word 0xaa847f52
.word 0x2d869bf4
.word 0x543b963b
.word 0xe5f2cbee
.word 0x9144233d
.word 0xc0fbe256
.globl d1
.balign 32
d1:
.zero 32
/* result buffer x-coordinate */
.globl x
.balign 32
x:
.zero 32
/* result buffer y-coordinate */
.globl y
.balign 32
y:
.zero 32
/* Expected values in wide register file (x- and y-coordinates of result):
w0 is affine x-coordinate of resulting point,
w1 is affine y-coordinate of resulting point.
w0 = 0xb5511a6afacdc5461628ce58db6c8bf36ec0c0b2f36b06899773b7b3bfa8c334
w1 = 0x42a1c6971f31c14343dd09eab53a17fa7f7a11d0ab9c6924a87070589e008c2e
*/