Lines Matching refs:eor
369 eor $h34k.16b, $h34k.16b, $acc_h.16b @ h4k | h3k
430 eor $h12k.16b, $h12k.16b, $t0.16b @ h2k | h1k
457 eor $input_l0, $input_l0, $rk10_l @ AES block 0 - round 10 low
458 eor $input_h0, $input_h0, $rk10_h @ AES block 0 - round 10 high
460 eor $input_l2, $input_l2, $rk10_l @ AES block 2 - round 10 low
463 eor $input_l1, $input_l1, $rk10_l @ AES block 1 - round 10 low
464 eor $input_h2, $input_h2, $rk10_h @ AES block 2 - round 10 high
468 eor $input_h1, $input_h1, $rk10_h @ AES block 1 - round 10 high
470 eor $input_l3, $input_l3, $rk10_l @ AES block 3 - round 10 low
474 eor $input_h3, $input_h3, $rk10_h @ AES block 3 - round 10 high
480 eor $res0b, $ctr_t0b, $ctr0b @ AES block 0 - result
487 eor $res1b, $ctr_t1b, $ctr1b @ AES block 1 - result
503 eor $res2b, $ctr_t2b, $ctr2b @ AES block 2 - result
515 eor $res3b, $ctr_t3b, $ctr3b @ AES block 3 - result
545 eor $res0b, $res0b, $acc_lb @ PRE 1
548 eor $input_h3, $input_h3, $rk10_h @ AES block 4k+3 - round 10 high
551 eor $t6.8b, $t6.8b, $res2.8b @ GHASH block 4k+2 - mid
560 eor $t3.8b, $t3.8b, $res1.8b @ GHASH block 4k+1 - mid
571 eor $t0.8b, $t0.8b, $res0.8b @ GHASH block 4k - mid
576 eor $acc_hb, $acc_hb, $t1.16b @ GHASH block 4k+1 - high
589 eor $input_h0, $input_h0, $rk10_h @ AES block 4k+4 - round 10 high
591 eor $acc_mb, $acc_mb, $t3.16b @ GHASH block 4k+1 - mid
595 eor $acc_lb, $acc_lb, $t2.16b @ GHASH block 4k+1 - low
598 eor $input_l0, $input_l0, $rk10_l @ AES block 4k+4 - round 10 low
601 eor $t9.8b, $t9.8b, $res3.8b @ GHASH block 4k+3 - mid
606 eor $acc_hb, $acc_hb, $t4.16b @ GHASH block 4k+2 - high
614 eor $acc_lb, $acc_lb, $t5.16b @ GHASH block 4k+2 - low
622 eor $acc_hb, $acc_hb, $t7.16b @ GHASH block 4k+3 - high
631 eor $acc_mb, $acc_mb, $t6.16b @ GHASH block 4k+2 - mid
640 eor $acc_lb, $acc_lb, $t8.16b @ GHASH block 4k+3 - low
643 eor $input_l1, $input_l1, $rk10_l @ AES block 4k+5 - round 10 low
646 eor $acc_mb, $acc_mb, $t9.16b @ GHASH block 4k+3 - mid
649 eor $input_l3, $input_l3, $rk10_l @ AES block 4k+3 - round 10 low
652 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
666 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
669 eor $input_h1, $input_h1, $rk10_h @ AES block 4k+5 - round 10 high
681 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
684 eor $input_l2, $input_l2, $rk10_l @ AES block 4k+6 - round 10 low
685 eor $input_h2, $input_h2, $rk10_h @ AES block 4k+6 - round 10 high
694 eor $res0b, $ctr_t0b, $ctr0b @ AES block 4k+4 - result
701 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
704 eor $res1b, $ctr_t1b, $ctr1b @ AES block 4k+5 - result
716 eor $res2b, $ctr_t2b, $ctr2b @ AES block 4k+6 - result
724 eor $acc_lb, $acc_lb, $acc_hb @ MODULO - fold into low
732 eor $res3b, $ctr_t3b, $ctr3b @ AES block 4k+3 - result
734 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
753 eor $res0b, $res0b, $acc_lb @ PRE 1
767 eor $t3.8b, $t3.8b, $res1.8b @ GHASH block 4k+1 - mid
769 eor $t0.8b, $t0.8b, $res0.8b @ GHASH block 4k - mid
772 eor $t6.8b, $t6.8b, $res2.8b @ GHASH block 4k+2 - mid
777 eor $acc_lb, $acc_lb, $t2.16b @ GHASH block 4k+1 - low
786 eor $acc_mb, $acc_mb, $t3.16b @ GHASH block 4k+1 - mid
790 eor $acc_hb, $acc_hb, $t1.16b @ GHASH block 4k+1 - high
795 eor $t9.8b, $t9.8b, $res3.8b @ GHASH block 4k+3 - mid
802 eor $acc_hb, $acc_hb, $t4.16b @ GHASH block 4k+2 - high
810 eor $acc_lb, $acc_lb, $t5.16b @ GHASH block 4k+2 - low
815 eor $acc_mb, $acc_mb, $t6.16b @ GHASH block 4k+2 - mid
820 eor $acc_hb, $acc_hb, $t7.16b @ GHASH block 4k+3 - high
824 eor $acc_mb, $acc_mb, $t9.16b @ GHASH block 4k+3 - mid
828 eor $acc_lb, $acc_lb, $t8.16b @ GHASH block 4k+3 - low
833 eor $acc_mb, $acc_mb, $acc_hb @ karatsuba tidy up
843 eor $acc_mb, $acc_mb, $acc_lb
852 eor $acc_mb, $acc_mb, $t1.16b
861 eor $acc_mb, $acc_mb, $acc_hb
877 eor $acc_lb, $acc_lb, $t1.16b
888 eor $acc_lb, $acc_lb, $acc_mb
902 eor $input_l0, $input_l0, $rk10_l @ AES block 4k+4 - round 10 low
903 eor $input_h0, $input_h0, $rk10_h @ AES block 4k+4 - round 10 high
909 eor $res1b, $ctr_t0b, $ctr0b @ AES block 4k+4 - result
942 eor $res0b, $res0b, $t0.16b @ feed in partial tag
943 eor $input_h0, $input_h0, $rk10_h @ AES final-2 block - round 10 high
944 eor $input_l0, $input_l0, $rk10_l @ AES final-2 block - round 10 low
958 eor $res1b, $res1b, $ctr1b @ AES final-2 block - result
959 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-3 block - mid
972 eor $res0b, $res0b, $t0.16b @ feed in partial tag
974 eor $input_l0, $input_l0, $rk10_l @ AES final-1 block - round 10 low
977 eor $input_h0, $input_h0, $rk10_h @ AES final-1 block - round 10 high
986 eor $acc_hb, $acc_hb, $rk2 @ GHASH final-2 block - high
988 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-2 block - mid
990 eor $res1b, $res1b, $ctr2b @ AES final-1 block - result
992 eor $acc_lb, $acc_lb, $rk3 @ GHASH final-2 block - low
998 eor $acc_mb, $acc_mb, $rk4v.16b @ GHASH final-2 block - mid
1009 eor $res0b, $res0b, $t0.16b @ feed in partial tag
1011 eor $input_h0, $input_h0, $rk10_h @ AES final block - round 10 high
1012 eor $input_l0, $input_l0, $rk10_l @ AES final block - round 10 low
1023 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-1 block - mid
1025 eor $res1b, $res1b, $ctr3b @ AES final block - result
1031 eor $acc_lb, $acc_lb, $rk3 @ GHASH final-1 block - low
1033 eor $acc_hb, $acc_hb, $rk2 @ GHASH final-1 block - high
1035 eor $acc_mb, $acc_mb, $rk4v.16b @ GHASH final-1 block - mid
1063 eor $res0b, $res0b, $t0.16b @ feed in partial tag
1070 eor $t0.8b, $t0.8b, $res0.8b @ GHASH final block - mid
1080 eor $acc_lb, $acc_lb, $rk3 @ GHASH final block - low
1082 eor $acc_hb, $acc_hb, $rk2 @ GHASH final block - high
1084 eor $acc_mb, $acc_mb, $t0.16b @ GHASH final block - mid
1087 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
1091 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
1097 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
1099 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
1107 eor $acc_lb, $acc_lb, $acc_hb @ MODULO - fold into low
1112 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
1293 eor $h12k.16b, $h12k.16b, $t0.16b @ h2k | h1k
1315 eor $h34k.16b, $h34k.16b, $acc_h.16b @ h4k | h3k
1320 eor $ctr1b, $res1b, $ctr1b @ AES block 1 - result
1323 eor $ctr0b, $res0b, $ctr0b @ AES block 0 - result
1345 eor $output_l1, $output_l1, $rk10_l @ AES block 1 - round 10 low
1359 eor $output_h1, $output_h1, $rk10_h @ AES block 1 - round 10 high
1363 eor $output_l0, $output_l0, $rk10_l @ AES block 0 - round 10 low
1367 eor $ctr2b, $res2b, $ctr2b @ AES block 2 - result
1369 eor $output_h0, $output_h0, $rk10_h @ AES block 0 - round 10 high
1379 eor $ctr3b, $res3b, $ctr3b @ AES block 4k+3 - result
1394 eor $res0b, $res0b, $acc_lb @ PRE 1
1406 eor $t3.8b, $t3.8b, $res1.8b @ GHASH block 4k+1 - mid
1415 eor $acc_lb, $acc_lb, $t2.16b @ GHASH block 4k+1 - low
1423 eor $acc_hb, $acc_hb, $t1.16b @ GHASH block 4k+1 - high
1428 eor $t0.8b, $t0.8b, $res0.8b @ GHASH block 4k - mid
1431 eor $output_l3, $output_l3, $rk10_l @ AES block 4k+3 - round 10 low
1436 eor $output_h2, $output_h2, $rk10_h @ AES block 4k+2 - round 10 high
1443 eor $acc_lb, $acc_lb, $t5.16b @ GHASH block 4k+2 - low
1448 eor $t6.8b, $t6.8b, $res2.8b @ GHASH block 4k+2 - mid
1453 eor $acc_mb, $acc_mb, $t3.16b @ GHASH block 4k+1 - mid
1466 eor $acc_hb, $acc_hb, $t4.16b @ GHASH block 4k+2 - high
1469 eor $output_h3, $output_h3, $rk10_h @ AES block 4k+3 - round 10 high
1474 eor $t9.8b, $t9.8b, $res3.8b @ GHASH block 4k+3 - mid
1477 eor $output_l2, $output_l2, $rk10_l @ AES block 4k+2 - round 10 low
1485 eor $acc_lb, $acc_lb, $t8.16b @ GHASH block 4k+3 - low
1490 eor $acc_mb, $acc_mb, $t6.16b @ GHASH block 4k+2 - mid
1496 eor $acc_hb, $acc_hb, $t7.16b @ GHASH block 4k+3 - high
1506 eor $acc_mb, $acc_mb, $t9.16b @ GHASH block 4k+3 - mid
1512 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
1525 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
1530 eor $ctr0b, $res0b, $ctr0b @ AES block 4k+4 - result
1536 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
1537 eor $ctr1b, $res1b, $ctr1b @ AES block 4k+5 - result
1545 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
1563 eor $output_h0, $output_h0, $rk10_h @ AES block 4k+4 - round 10 high
1567 eor $acc_lb, $acc_lb, $mod_constant.16b @ MODULO - fold into low
1569 eor $output_l0, $output_l0, $rk10_l @ AES block 4k+4 - round 10 low
1573 eor $ctr2b, $res2b, $ctr2b @ AES block 4k+6 - result
1582 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
1588 eor $output_h1, $output_h1, $rk10_h @ AES block 4k+5 - round 10 high
1594 eor $output_l1, $output_l1, $rk10_l @ AES block 4k+5 - round 10 low
1609 eor $ctr3b, $res3b, $ctr3b @ AES block 4k+3 - result
1614 eor $res0b, $res0b, $acc_lb @ PRE 1
1623 eor $t3.8b, $t3.8b, $res1.8b @ GHASH block 4k+1 - mid
1643 eor $t6.8b, $t6.8b, $res2.8b @ GHASH block 4k+2 - mid
1648 eor $t0.8b, $t0.8b, $res0.8b @ GHASH block 4k - mid
1658 eor $acc_lb, $acc_lb, $t2.16b @ GHASH block 4k+1 - low
1663 eor $acc_hb, $acc_hb, $t1.16b @ GHASH block 4k+1 - high
1665 eor $acc_mb, $acc_mb, $t3.16b @ GHASH block 4k+1 - mid
1673 eor $acc_mb, $acc_mb, $t6.16b @ GHASH block 4k+2 - mid
1677 eor $acc_hb, $acc_hb, $t4.16b @ GHASH block 4k+2 - high
1681 eor $t9.8b, $t9.8b, $res3.8b @ GHASH block 4k+3 - mid
1683 eor $acc_lb, $acc_lb, $t5.16b @ GHASH block 4k+2 - low
1686 eor $acc_hb, $acc_hb, $t7.16b @ GHASH block 4k+3 - high
1689 eor $output_l3, $output_l3, $rk10_l @ AES block 4k+3 - round 10 low
1694 eor $output_l2, $output_l2, $rk10_l @ AES block 4k+2 - round 10 low
1698 eor $acc_lb, $acc_lb, $t8.16b @ GHASH block 4k+3 - low
1708 eor $acc_mb, $acc_mb, $t9.16b @ GHASH block 4k+3 - mid
1713 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
1722 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
1732 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
1741 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
1750 eor $output_h3, $output_h3, $rk10_h @ AES block 4k+3 - round 10 high
1760 eor $acc_lb, $acc_lb, $mod_constant.16b @ MODULO - fold into low
1765 eor $output_h2, $output_h2, $rk10_h @ AES block 4k+2 - round 10 high
1777 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
1783 eor $ctr0b, $res1b, $ctr0b @ AES block 4k+4 - result
1791 eor $output_h0, $output_h0, $rk10_h @ AES block 4k+4 - round 10 high
1796 eor $output_l0, $output_l0, $rk10_l @ AES block 4k+4 - round 10 low
1825 eor $res0b, $res0b, $t0.16b @ feed in partial tag
1829 eor $ctr0b, $res1b, $ctr1b @ AES final-2 block - result
1839 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-3 block - mid
1842 eor $output_h0, $output_h0, $rk10_h @ AES final-2 block - round 10 high
1847 eor $output_l0, $output_l0, $rk10_l @ AES final-2 block - round 10 low
1856 eor $res0b, $res0b, $t0.16b @ feed in partial tag
1858 eor $ctr0b, $res1b, $ctr2b @ AES final-1 block - result
1869 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-2 block - mid
1875 eor $output_l0, $output_l0, $rk10_l @ AES final-1 block - round 10 low
1879 eor $acc_lb, $acc_lb, $rk3 @ GHASH final-2 block - low
1881 eor $acc_hb, $acc_hb, $rk2 @ GHASH final-2 block - high
1883 eor $acc_mb, $acc_mb, $rk4v.16b @ GHASH final-2 block - mid
1884 eor $output_h0, $output_h0, $rk10_h @ AES final-1 block - round 10 high
1893 eor $res0b, $res0b, $t0.16b @ feed in partial tag
1897 eor $ctr0b, $res1b, $ctr3b @ AES final block - result
1899 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-1 block - mid
1914 eor $acc_lb, $acc_lb, $rk3 @ GHASH final-1 block - low
1916 eor $acc_hb, $acc_hb, $rk2 @ GHASH final-1 block - high
1917 eor $output_h0, $output_h0, $rk10_h @ AES final block - round 10 high
1921 eor $output_l0, $output_l0, $rk10_l @ AES final block - round 10 low
1925 eor $acc_mb, $acc_mb, $rk4v.16b @ GHASH final-1 block - mid
1952 eor $res0b, $res0b, $t0.16b @ feed in partial tag
1961 eor $t0.8b, $t0.8b, $res0.8b @ GHASH final block - mid
1962 eor $acc_hb, $acc_hb, $rk2 @ GHASH final block - high
1976 eor $acc_mb, $acc_mb, $t0.16b @ GHASH final block - mid
1979 eor $acc_lb, $acc_lb, $rk3 @ GHASH final block - low
1984 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
1988 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
1997 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
1999 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
2004 eor $acc_lb, $acc_lb, $mod_constant.16b @ MODULO - fold into low
2006 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
2279 eor $h12k.16b, $h12k.16b, $t0.16b @ h2k | h1k
2282 eor $h34k.16b, $h34k.16b, $acc_h.16b @ h4k | h3k
2322 eor $input_l0, $input_l0, $rk12_l @ AES block 0 - round 12 low
2324 eor $input_h0, $input_h0, $rk12_h @ AES block 0 - round 12 high
2325 eor $input_h2, $input_h2, $rk12_h @ AES block 2 - round 12 high
2328 eor $input_h3, $input_h3, $rk12_h @ AES block 3 - round 12 high
2331 eor $input_l2, $input_l2, $rk12_l @ AES block 2 - round 12 low
2332 eor $input_l1, $input_l1, $rk12_l @ AES block 1 - round 12 low
2335 eor $input_h1, $input_h1, $rk12_h @ AES block 1 - round 12 high
2339 eor $input_l3, $input_l3, $rk12_l @ AES block 3 - round 12 low
2343 eor $res0b, $ctr_t0b, $ctr0b @ AES block 0 - result
2357 eor $res1b, $ctr_t1b, $ctr1b @ AES block 1 - result
2369 eor $res2b, $ctr_t2b, $ctr2b @ AES block 2 - result
2378 eor $res3b, $ctr_t3b, $ctr3b @ AES block 3 - result
2413 eor $res0b, $res0b, $acc_lb @ PRE 1
2421 eor $input_h3, $input_h3, $rk12_h @ AES block 4k+3 - round 12 high
2429 eor $input_l2, $input_l2, $rk12_l @ AES block 4k+6 - round 12 low
2431 eor $t0.8b, $t0.8b, $res0.8b @ GHASH block 4k - mid
2432 eor $acc_lb, $acc_lb, $t2.16b @ GHASH block 4k+1 - low
2435 eor $input_l1, $input_l1, $rk12_l @ AES block 4k+5 - round 12 low
2448 eor $acc_hb, $acc_hb, $t1.16b @ GHASH block 4k+1 - high
2451 eor $t6.8b, $t6.8b, $res2.8b @ GHASH block 4k+2 - mid
2456 eor $t3.8b, $t3.8b, $res1.8b @ GHASH block 4k+1 - mid
2461 eor $input_h1, $input_h1, $rk12_h @ AES block 4k+5 - round 12 high
2468 eor $acc_hb, $acc_hb, $t4.16b @ GHASH block 4k+2 - high
2471 eor $input_h2, $input_h2, $rk12_h @ AES block 4k+6 - round 12 high
2474 eor $input_l3, $input_l3, $rk12_l @ AES block 4k+3 - round 12 low
2484 eor $t9.8b, $t9.8b, $res3.8b @ GHASH block 4k+3 - mid
2493 eor $acc_lb, $acc_lb, $t5.16b @ GHASH block 4k+2 - low
2502 eor $input_h0, $input_h0, $rk12_h @ AES block 4k+4 - round 12 high
2503 eor $acc_mb, $acc_mb, $t3.16b @ GHASH block 4k+1 - mid
2506 eor $input_l0, $input_l0, $rk12_l @ AES block 4k+4 - round 12 low
2512 eor $acc_hb, $acc_hb, $t7.16b @ GHASH block 4k+3 - high
2518 eor $acc_mb, $acc_mb, $t6.16b @ GHASH block 4k+2 - mid
2524 eor $acc_lb, $acc_lb, $t8.16b @ GHASH block 4k+3 - low
2536 eor $acc_mb, $acc_mb, $t9.16b @ GHASH block 4k+3 - mid
2537 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
2550 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
2559 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
2568 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
2572 eor $res0b, $ctr_t0b, $ctr0b @ AES block 4k+4 - result
2586 eor $res1b, $ctr_t1b, $ctr1b @ AES block 4k+5 - result
2599 eor $acc_lb, $acc_lb, $acc_hb @ MODULO - fold into low
2602 eor $res2b, $ctr_t2b, $ctr2b @ AES block 4k+6 - result
2609 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
2612 eor $res3b, $ctr_t3b, $ctr3b @ AES block 4k+3 - result
2630 eor $res0b, $res0b, $acc_lb @ PRE 1
2646 eor $t0.8b, $t0.8b, $res0.8b @ GHASH block 4k - mid
2649 eor $acc_lb, $acc_lb, $t2.16b @ GHASH block 4k+1 - low
2653 eor $acc_hb, $acc_hb, $t1.16b @ GHASH block 4k+1 - high
2657 eor $t3.8b, $t3.8b, $res1.8b @ GHASH block 4k+1 - mid
2658 eor $t6.8b, $t6.8b, $res2.8b @ GHASH block 4k+2 - mid
2663 eor $acc_hb, $acc_hb, $t4.16b @ GHASH block 4k+2 - high
2676 eor $t9.8b, $t9.8b, $res3.8b @ GHASH block 4k+3 - mid
2685 eor $acc_hb, $acc_hb, $t7.16b @ GHASH block 4k+3 - high
2690 eor $acc_mb, $acc_mb, $t3.16b @ GHASH block 4k+1 - mid
2695 eor $acc_lb, $acc_lb, $t5.16b @ GHASH block 4k+2 - low
2700 eor $acc_mb, $acc_mb, $t6.16b @ GHASH block 4k+2 - mid
2712 eor $acc_mb, $acc_mb, $t9.16b @ GHASH block 4k+3 - mid
2719 eor $acc_lb, $acc_lb, $t8.16b @ GHASH block 4k+3 - low
2724 eor $acc_mb, $acc_mb, $acc_hb @ karatsuba tidy up
2734 eor $acc_mb, $acc_mb, $acc_lb
2746 eor $acc_mb, $acc_mb, $t1.16b
2755 eor $acc_mb, $acc_mb, $acc_hb
2774 eor $acc_lb, $acc_lb, $t1.16b
2783 eor $acc_lb, $acc_lb, $acc_mb
2792 eor $input_l0, $input_l0, $rk12_l @ AES block 4k+4 - round 12 low
2793 eor $input_h0, $input_h0, $rk12_h @ AES block 4k+4 - round 12 high
2800 eor $res1b, $ctr_t0b, $ctr0b @ AES block 4k+4 - result
2834 eor $input_l0, $input_l0, $rk12_l @ AES final-2 block - round 12 low
2835 eor $res0b, $res0b, $t0.16b @ feed in partial tag
2837 eor $input_h0, $input_h0, $rk12_h @ AES final-2 block - round 12 high
2848 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-3 block - mid
2855 eor $res1b, $res1b, $ctr1b @ AES final-2 block - result
2866 eor $res0b, $res0b, $t0.16b @ feed in partial tag
2868 eor $input_h0, $input_h0, $rk12_h @ AES final-1 block - round 12 high
2874 eor $input_l0, $input_l0, $rk12_l @ AES final-1 block - round 12 low
2879 eor $acc_hb, $acc_hb, $rk2 @ GHASH final-2 block - high
2880 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-2 block - mid
2882 eor $acc_lb, $acc_lb, $rk3 @ GHASH final-2 block - low
2888 eor $res1b, $res1b, $ctr2b @ AES final-1 block - result
2890 eor $acc_mb, $acc_mb, $rk4v.16b @ GHASH final-2 block - mid
2902 eor $input_l0, $input_l0, $rk12_l @ AES final block - round 12 low
2903 eor $res0b, $res0b, $t0.16b @ feed in partial tag
2908 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-1 block - mid
2909 eor $input_h0, $input_h0, $rk12_h @ AES final block - round 12 high
2917 eor $acc_hb, $acc_hb, $rk2 @ GHASH final-1 block - high
2923 eor $res1b, $res1b, $ctr3b @ AES final block - result
2925 eor $acc_lb, $acc_lb, $rk3 @ GHASH final-1 block - low
2927 eor $acc_mb, $acc_mb, $rk4v.16b @ GHASH final-1 block - mid
2960 eor $res0b, $res0b, $t0.16b @ feed in partial tag
2968 eor $t0.8b, $t0.8b, $res0.8b @ GHASH final block - mid
2970 eor $acc_lb, $acc_lb, $rk3 @ GHASH final block - low
2972 eor $acc_hb, $acc_hb, $rk2 @ GHASH final block - high
2976 eor $acc_mb, $acc_mb, $t0.16b @ GHASH final block - mid
2979 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
2985 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
2991 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
2993 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
2999 eor $acc_lb, $acc_lb, $acc_hb @ MODULO - fold into low
3004 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
3218 eor $h12k.16b, $h12k.16b, $t0.16b @ h2k | h1k
3223 eor $h34k.16b, $h34k.16b, $acc_h.16b @ h4k | h3k
3230 eor $ctr1b, $res1b, $ctr1b @ AES block 1 - result
3232 eor $ctr0b, $res0b, $ctr0b @ AES block 0 - result
3251 eor $output_l1, $output_l1, $rk12_l @ AES block 1 - round 12 low
3260 eor $output_h1, $output_h1, $rk12_h @ AES block 1 - round 12 high
3266 eor $output_l0, $output_l0, $rk12_l @ AES block 0 - round 12 low
3271 eor $output_h0, $output_h0, $rk12_h @ AES block 0 - round 12 high
3281 eor $ctr2b, $res2b, $ctr2b @ AES block 2 - result
3292 eor $ctr3b, $res3b, $ctr3b @ AES block 4k+3 - result
3299 eor $res0b, $res0b, $acc_lb @ PRE 1
3322 eor $t0.8b, $t0.8b, $res0.8b @ GHASH block 4k - mid
3328 eor $output_h2, $output_h2, $rk12_h @ AES block 4k+2 - round 12 high
3333 eor $t3.8b, $t3.8b, $res1.8b @ GHASH block 4k+1 - mid
3343 eor $acc_lb, $acc_lb, $t2.16b @ GHASH block 4k+1 - low
3344 eor $output_l2, $output_l2, $rk12_l @ AES block 4k+2 - round 12 low
3352 eor $acc_mb, $acc_mb, $t3.16b @ GHASH block 4k+1 - mid
3356 eor $acc_hb, $acc_hb, $t1.16b @ GHASH block 4k+1 - high
3361 eor $t6.8b, $t6.8b, $res2.8b @ GHASH block 4k+2 - mid
3367 eor $acc_hb, $acc_hb, $t4.16b @ GHASH block 4k+2 - high
3375 eor $t9.8b, $t9.8b, $res3.8b @ GHASH block 4k+3 - mid
3385 eor $acc_lb, $acc_lb, $t5.16b @ GHASH block 4k+2 - low
3390 eor $acc_hb, $acc_hb, $t7.16b @ GHASH block 4k+3 - high
3400 eor $acc_mb, $acc_mb, $t6.16b @ GHASH block 4k+2 - mid
3405 eor $acc_lb, $acc_lb, $t8.16b @ GHASH block 4k+3 - low
3410 eor $acc_mb, $acc_mb, $t9.16b @ GHASH block 4k+3 - mid
3415 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
3428 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
3432 eor $output_l3, $output_l3, $rk12_l @ AES block 4k+3 - round 12 low
3443 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
3456 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
3460 eor $ctr0b, $res0b, $ctr0b @ AES block 4k+4 - result
3461 eor $output_h3, $output_h3, $rk12_h @ AES block 4k+3 - round 12 high
3465 eor $ctr1b, $res1b, $ctr1b @ AES block 4k+5 - result
3489 eor $ctr2b, $res2b, $ctr2b @ AES block 4k+6 - result
3493 eor $output_l0, $output_l0, $rk12_l @ AES block 4k+4 - round 12 low
3498 eor $acc_lb, $acc_lb, $mod_constant.16b @ MODULO - fold into low
3502 eor $output_l1, $output_l1, $rk12_l @ AES block 4k+5 - round 12 low
3508 eor $output_h1, $output_h1, $rk12_h @ AES block 4k+5 - round 12 high
3512 eor $output_h0, $output_h0, $rk12_h @ AES block 4k+4 - round 12 high
3517 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
3530 eor $ctr3b, $res3b, $ctr3b @ AES block 4k+3 - result
3538 eor $res0b, $res0b, $acc_lb @ PRE 1
3559 eor $t0.8b, $t0.8b, $res0.8b @ GHASH block 4k - mid
3563 eor $output_h3, $output_h3, $rk12_h @ AES block 4k+3 - round 12 high
3570 eor $output_l2, $output_l2, $rk12_l @ AES block 4k+2 - round 12 low
3575 eor $output_h2, $output_h2, $rk12_h @ AES block 4k+2 - round 12 high
3579 eor $t3.8b, $t3.8b, $res1.8b @ GHASH block 4k+1 - mid
3582 eor $output_l3, $output_l3, $rk12_l @ AES block 4k+3 - round 12 low
3592 eor $acc_hb, $acc_hb, $t1.16b @ GHASH block 4k+1 - high
3598 eor $acc_lb, $acc_lb, $t2.16b @ GHASH block 4k+1 - low
3602 eor $acc_mb, $acc_mb, $t3.16b @ GHASH block 4k+1 - mid
3608 eor $acc_hb, $acc_hb, $t4.16b @ GHASH block 4k+2 - high
3610 eor $t6.8b, $t6.8b, $res2.8b @ GHASH block 4k+2 - mid
3623 eor $t9.8b, $t9.8b, $res3.8b @ GHASH block 4k+3 - mid
3628 eor $acc_lb, $acc_lb, $t5.16b @ GHASH block 4k+2 - low
3640 eor $acc_hb, $acc_hb, $t7.16b @ GHASH block 4k+3 - high
3643 eor $acc_mb, $acc_mb, $t6.16b @ GHASH block 4k+2 - mid
3648 eor $acc_lb, $acc_lb, $t8.16b @ GHASH block 4k+3 - low
3653 eor $acc_mb, $acc_mb, $t9.16b @ GHASH block 4k+3 - mid
3658 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
3668 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
3679 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
3688 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
3712 eor $acc_lb, $acc_lb, $mod_constant.16b @ MODULO - fold into low
3720 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
3726 eor $ctr0b, $res1b, $ctr0b @ AES block 4k+4 - result
3736 eor $output_h0, $output_h0, $rk12_h @ AES block 4k+4 - round 12 high
3740 eor $output_l0, $output_l0, $rk12_l @ AES block 4k+4 - round 12 low
3771 eor $res0b, $res0b, $t0.16b @ feed in partial tag
3773 eor $ctr0b, $res1b, $ctr1b @ AES final-2 block - result
3782 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-3 block - mid
3786 eor $output_l0, $output_l0, $rk12_l @ AES final-2 block - round 12 low
3793 eor $output_h0, $output_h0, $rk12_h @ AES final-2 block - round 12 high
3802 eor $res0b, $res0b, $t0.16b @ feed in partial tag
3806 eor $ctr0b, $res1b, $ctr2b @ AES final-1 block - result
3814 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-2 block - mid
3817 eor $acc_lb, $acc_lb, $rk3 @ GHASH final-2 block - low
3824 eor $acc_hb, $acc_hb, $rk2 @ GHASH final-2 block - high
3825 eor $output_h0, $output_h0, $rk12_h @ AES final-1 block - round 12 high
3829 eor $output_l0, $output_l0, $rk12_l @ AES final-1 block - round 12 low
3833 eor $acc_mb, $acc_mb, $rk4v.16b @ GHASH final-2 block - mid
3838 eor $res0b, $res0b, $t0.16b @ feed in partial tag
3845 eor $ctr0b, $res1b, $ctr3b @ AES final block - result
3848 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-1 block - mid
3850 eor $acc_hb, $acc_hb, $rk2 @ GHASH final-1 block - high
3861 eor $acc_lb, $acc_lb, $rk3 @ GHASH final-1 block - low
3862 eor $output_h0, $output_h0, $rk12_h @ AES final block - round 12 high
3866 eor $output_l0, $output_l0, $rk12_l @ AES final block - round 12 low
3870 eor $acc_mb, $acc_mb, $rk4v.16b @ GHASH final-1 block - mid
3907 eor $res0b, $res0b, $t0.16b @ feed in partial tag
3917 eor $t0.8b, $t0.8b, $res0.8b @ GHASH final block - mid
3919 eor $acc_hb, $acc_hb, $rk2 @ GHASH final block - high
3923 eor $acc_lb, $acc_lb, $rk3 @ GHASH final block - low
3925 eor $acc_mb, $acc_mb, $t0.16b @ GHASH final block - mid
3928 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
3932 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
3940 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
3942 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
3946 eor $acc_lb, $acc_lb, $mod_constant.16b @ MODULO - fold into low
3950 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
4233 eor $h34k.16b, $h34k.16b, $acc_h.16b @ h4k | h3k
4249 eor $h12k.16b, $h12k.16b, $t0.16b @ h2k | h1k
4275 eor $input_l1, $input_l1, $rk14_l @ AES block 1 - round 14 low
4276 eor $input_h1, $input_h1, $rk14_h @ AES block 1 - round 14 high
4279 eor $input_l0, $input_l0, $rk14_l @ AES block 0 - round 14 low
4281 eor $input_h0, $input_h0, $rk14_h @ AES block 0 - round 14 high
4282 eor $input_h3, $input_h3, $rk14_h @ AES block 3 - round 14 high
4287 eor $input_l3, $input_l3, $rk14_l @ AES block 3 - round 14 low
4289 eor $input_l2, $input_l2, $rk14_l @ AES block 2 - round 14 low
4297 eor $input_h2, $input_h2, $rk14_h @ AES block 2 - round 14 high
4301 eor $res0b, $ctr_t0b, $ctr0b @ AES block 0 - result
4308 eor $res1b, $ctr_t1b, $ctr1b @ AES block 1 - result
4318 eor $res2b, $ctr_t2b, $ctr2b @ AES block 2 - result
4331 eor $res3b, $ctr_t3b, $ctr3b @ AES block 3 - result
4361 eor $res0b, $res0b, $acc_lb @ PRE 1
4366 eor $input_l3, $input_l3, $rk14_l @ AES block 4k+7 - round 14 low
4372 eor $input_h2, $input_h2, $rk14_h @ AES block 4k+6 - round 14 high
4381 eor $t0.8b, $t0.8b, $res0.8b @ GHASH block 4k - mid
4395 eor $acc_hb, $acc_hb, $t1.16b @ GHASH block 4k+1 - high
4401 eor $acc_lb, $acc_lb, $t2.16b @ GHASH block 4k+1 - low
4409 eor $t3.8b, $t3.8b, $res1.8b @ GHASH block 4k+1 - mid
4414 eor $t6.8b, $t6.8b, $res2.8b @ GHASH block 4k+2 - mid
4432 eor $acc_mb, $acc_mb, $t3.16b @ GHASH block 4k+1 - mid
4441 eor $acc_hb, $acc_hb, $t4.16b @ GHASH block 4k+2 - high
4453 eor $acc_lb, $acc_lb, $t5.16b @ GHASH block 4k+2 - low
4458 eor $t9.8b, $t9.8b, $res3.8b @ GHASH block 4k+3 - mid
4461 eor $input_l1, $input_l1, $rk14_l @ AES block 4k+5 - round 14 low
4464 eor $acc_mb, $acc_mb, $t6.16b @ GHASH block 4k+2 - mid
4467 eor $input_l2, $input_l2, $rk14_l @ AES block 4k+6 - round 14 low
4473 eor $acc_hb, $acc_hb, $t7.16b @ GHASH block 4k+3 - high
4486 eor $acc_lb, $acc_lb, $t8.16b @ GHASH block 4k+3 - low
4491 eor $acc_mb, $acc_mb, $t9.16b @ GHASH block 4k+3 - mid
4497 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
4507 eor $input_l0, $input_l0, $rk14_l @ AES block 4k+4 - round 14 low
4510 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
4513 eor $input_h0, $input_h0, $rk14_h @ AES block 4k+4 - round 14 high
4517 eor $mod_t.16b, $acc_hb, $mod_t.16b @ MODULO - fold into mid
4520 eor $input_h1, $input_h1, $rk14_h @ AES block 4k+5 - round 14 high
4523 eor $input_h3, $input_h3, $rk14_h @ AES block 4k+7 - round 14 high
4530 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
4544 eor $res0b, $ctr_t0b, $ctr0b @ AES block 4k+4 - result
4551 eor $res1b, $ctr_t1b, $ctr1b @ AES block 4k+5 - result
4563 eor $acc_lb, $acc_lb, $acc_hb @ MODULO - fold into low
4571 eor $res2b, $ctr_t2b, $ctr2b @ AES block 4k+6 - result
4578 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
4581 eor $res3b, $ctr_t3b, $ctr3b @ AES block 4k+7 - result
4602 eor $res0b, $res0b, $acc_lb @ PRE 1
4620 eor $t0.8b, $t0.8b, $res0.8b @ GHASH block 4k - mid
4636 eor $acc_hb, $acc_hb, $t1.16b @ GHASH block 4k+1 - high
4640 eor $acc_lb, $acc_lb, $t2.16b @ GHASH block 4k+1 - low
4644 eor $t3.8b, $t3.8b, $res1.8b @ GHASH block 4k+1 - mid
4653 eor $t6.8b, $t6.8b, $res2.8b @ GHASH block 4k+2 - mid
4661 eor $acc_mb, $acc_mb, $t3.16b @ GHASH block 4k+1 - mid
4665 eor $acc_lb, $acc_lb, $t5.16b @ GHASH block 4k+2 - low
4670 eor $acc_hb, $acc_hb, $t4.16b @ GHASH block 4k+2 - high
4677 eor $t9.8b, $t9.8b, $res3.8b @ GHASH block 4k+3 - mid
4684 eor $acc_mb, $acc_mb, $t6.16b @ GHASH block 4k+2 - mid
4698 eor $acc_hb, $acc_hb, $t7.16b @ GHASH block 4k+3 - high
4706 eor $acc_mb, $acc_mb, $t9.16b @ GHASH block 4k+3 - mid
4715 eor $acc_lb, $acc_lb, $t8.16b @ GHASH block 4k+3 - low
4719 eor $acc_mb, $acc_mb, $acc_hb @ karatsuba tidy up
4727 eor $acc_mb, $acc_mb, $acc_lb
4736 eor $acc_mb, $acc_mb, $t1.16b
4745 eor $acc_mb, $acc_mb, $acc_hb
4761 eor $acc_lb, $acc_lb, $t1.16b
4770 eor $acc_lb, $acc_lb, $acc_mb
4780 eor $input_l0, $input_l0, $rk14_l @ AES block 4k+4 - round 14 low
4781 eor $input_h0, $input_h0, $rk14_h @ AES block 4k+4 - round 14 high
4788 eor $res1b, $ctr_t0b, $ctr0b @ AES block 4k+4 - result
4820 eor $input_l0, $input_l0, $rk14_l @ AES final-2 block - round 14 low
4821 eor $res0b, $res0b, $t0.16b @ feed in partial tag
4823 eor $input_h0, $input_h0, $rk14_h @ AES final-2 block - round 14 high
4830 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-3 block - mid
4840 eor $res1b, $res1b, $ctr1b @ AES final-2 block - result
4852 eor $input_l0, $input_l0, $rk14_l @ AES final-1 block - round 14 low
4853 eor $res0b, $res0b, $t0.16b @ feed in partial tag
4856 eor $input_h0, $input_h0, $rk14_h @ AES final-1 block - round 14 high
4867 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-2 block - mid
4869 eor $res1b, $res1b, $ctr2b @ AES final-1 block - result
4871 eor $acc_hb, $acc_hb, $rk2 @ GHASH final-2 block - high
4875 eor $acc_lb, $acc_lb, $rk3 @ GHASH final-2 block - low
4877 eor $acc_mb, $acc_mb, $rk4v.16b @ GHASH final-2 block - mid
4889 eor $res0b, $res0b, $t0.16b @ feed in partial tag
4893 eor $input_l0, $input_l0, $rk14_l @ AES final block - round 14 low
4897 eor $input_h0, $input_h0, $rk14_h @ AES final block - round 14 high
4899 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-1 block - mid
4901 eor $acc_hb, $acc_hb, $rk2 @ GHASH final-1 block - high
4912 eor $res1b, $res1b, $ctr3b @ AES final block - result
4913 eor $acc_mb, $acc_mb, $rk4v.16b @ GHASH final-1 block - mid
4915 eor $acc_lb, $acc_lb, $rk3 @ GHASH final-1 block - low
4943 eor $res0b, $res0b, $t0.16b @ feed in partial tag
4957 eor $acc_hb, $acc_hb, $rk2 @ GHASH final block - high
4958 eor $t0.8b, $t0.8b, $res0.8b @ GHASH final block - mid
4962 eor $acc_lb, $acc_lb, $rk3 @ GHASH final block - low
4964 eor $acc_mb, $acc_mb, $t0.16b @ GHASH final block - mid
4967 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
4971 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
4977 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
4979 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
4988 eor $acc_lb, $acc_lb, $acc_hb @ MODULO - fold into low
4990 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
5235 eor $h34k.16b, $h34k.16b, $acc_h.16b @ h4k | h3k
5240 eor $h12k.16b, $h12k.16b, $t0.16b @ h2k | h1k
5251 eor $ctr0b, $res0b, $ctr0b @ AES block 0 - result
5253 eor $ctr1b, $res1b, $ctr1b @ AES block 1 - result
5274 eor $output_h0, $output_h0, $rk14_h @ AES block 0 - round 14 high
5278 eor $output_l0, $output_l0, $rk14_l @ AES block 0 - round 14 low
5291 eor $output_l1, $output_l1, $rk14_l @ AES block 1 - round 14 low
5297 eor $output_h1, $output_h1, $rk14_h @ AES block 1 - round 14 high
5303 eor $ctr2b, $res2b, $ctr2b @ AES block 2 - result
5310 eor $ctr3b, $res3b, $ctr3b @ AES block 4k+3 - result
5319 eor $res0b, $res0b, $acc_lb @ PRE 1
5339 eor $t0.8b, $t0.8b, $res0.8b @ GHASH block 4k - mid
5342 eor $output_h2, $output_h2, $rk14_h @ AES block 4k+2 - round 14 high
5353 eor $output_l2, $output_l2, $rk14_l @ AES block 4k+2 - round 14 low
5368 eor $output_l3, $output_l3, $rk14_l @ AES block 4k+3 - round 14 low
5373 eor $output_h3, $output_h3, $rk14_h @ AES block 4k+3 - round 14 high
5377 eor $acc_hb, $acc_hb, $t1.16b @ GHASH block 4k+1 - high
5385 eor $acc_lb, $acc_lb, $t2.16b @ GHASH block 4k+1 - low
5394 eor $t3.8b, $t3.8b, $res1.8b @ GHASH block 4k+1 - mid
5399 eor $t6.8b, $t6.8b, $res2.8b @ GHASH block 4k+2 - mid
5404 eor $acc_lb, $acc_lb, $t5.16b @ GHASH block 4k+2 - low
5418 eor $acc_mb, $acc_mb, $t3.16b @ GHASH block 4k+1 - mid
5430 eor $acc_hb, $acc_hb, $t4.16b @ GHASH block 4k+2 - high
5436 eor $acc_mb, $acc_mb, $t6.16b @ GHASH block 4k+2 - mid
5441 eor $t9.8b, $t9.8b, $res3.8b @ GHASH block 4k+3 - mid
5446 eor $acc_hb, $acc_hb, $t7.16b @ GHASH block 4k+3 - high
5454 eor $acc_lb, $acc_lb, $t8.16b @ GHASH block 4k+3 - low
5462 eor $acc_mb, $acc_mb, $t9.16b @ GHASH block 4k+3 - mid
5467 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
5476 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
5482 eor $ctr0b, $res0b, $ctr0b @ AES block 4k+4 - result
5488 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
5500 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
5512 eor $ctr1b, $res1b, $ctr1b @ AES block 4k+5 - result
5521 eor $output_l0, $output_l0, $rk14_l @ AES block 4k+4 - round 14 low
5525 eor $output_h0, $output_h0, $rk14_h @ AES block 4k+4 - round 14 high
5530 eor $ctr2b, $res2b, $ctr2b @ AES block 4k+6 - result
5531 eor $acc_lb, $acc_lb, $mod_constant.16b @ MODULO - fold into low
5547 eor $output_h1, $output_h1, $rk14_h @ AES block 4k+5 - round 14 high
5553 eor $output_l1, $output_l1, $rk14_l @ AES block 4k+5 - round 14 low
5560 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
5567 eor $ctr3b, $res3b, $ctr3b @ AES block 4k+3 - result
5577 eor $res0b, $res0b, $acc_lb @ PRE 1
5597 eor $t0.8b, $t0.8b, $res0.8b @ GHASH block 4k - mid
5607 eor $acc_hb, $acc_hb, $t1.16b @ GHASH block 4k+1 - high
5617 eor $acc_lb, $acc_lb, $t2.16b @ GHASH block 4k+1 - low
5625 eor $t3.8b, $t3.8b, $res1.8b @ GHASH block 4k+1 - mid
5632 eor $t6.8b, $t6.8b, $res2.8b @ GHASH block 4k+2 - mid
5637 eor $acc_lb, $acc_lb, $t5.16b @ GHASH block 4k+2 - low
5642 eor $acc_mb, $acc_mb, $t3.16b @ GHASH block 4k+1 - mid
5652 eor $acc_hb, $acc_hb, $t4.16b @ GHASH block 4k+2 - high
5664 eor $t9.8b, $t9.8b, $res3.8b @ GHASH block 4k+3 - mid
5669 eor $acc_mb, $acc_mb, $t6.16b @ GHASH block 4k+2 - mid
5677 eor $acc_lb, $acc_lb, $t8.16b @ GHASH block 4k+3 - low
5682 eor $acc_hb, $acc_hb, $t7.16b @ GHASH block 4k+3 - high
5687 eor $acc_mb, $acc_mb, $t9.16b @ GHASH block 4k+3 - mid
5692 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
5702 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
5712 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
5719 eor $output_h2, $output_h2, $rk14_h @ AES block 4k+2 - round 14 high
5724 eor $output_l3, $output_l3, $rk14_l @ AES block 4k+3 - round 14 low
5729 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
5735 eor $output_l2, $output_l2, $rk14_l @ AES block 4k+2 - round 14 low
5743 eor $output_h3, $output_h3, $rk14_h @ AES block 4k+3 - round 14 high
5758 eor $acc_lb, $acc_lb, $mod_constant.16b @ MODULO - fold into low
5767 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low
5773 eor $ctr0b, $res1b, $ctr0b @ AES block 4k+4 - result
5782 eor $output_l0, $output_l0, $rk14_l @ AES block 4k+4 - round 14 low
5787 eor $output_h0, $output_h0, $rk14_h @ AES block 4k+4 - round 14 high
5820 eor $res0b, $res0b, $t0.16b @ feed in partial tag
5822 eor $ctr0b, $res1b, $ctr1b @ AES final-2 block - result
5830 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-3 block - mid
5837 eor $output_l0, $output_l0, $rk14_l @ AES final-2 block - round 14 low
5843 eor $output_h0, $output_h0, $rk14_h @ AES final-2 block - round 14 high
5852 eor $res0b, $res0b, $t0.16b @ feed in partial tag
5855 eor $ctr0b, $res1b, $ctr2b @ AES final-1 block - result
5863 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-2 block - mid
5867 eor $acc_lb, $acc_lb, $rk3 @ GHASH final-2 block - low
5872 eor $acc_hb, $acc_hb, $rk2 @ GHASH final-2 block - high
5873 eor $output_l0, $output_l0, $rk14_l @ AES final-1 block - round 14 low
5878 eor $acc_mb, $acc_mb, $rk4v.16b @ GHASH final-2 block - mid
5879 eor $output_h0, $output_h0, $rk14_h @ AES final-1 block - round 14 high
5890 eor $res0b, $res0b, $t0.16b @ feed in partial tag
5895 eor $ctr0b, $res1b, $ctr3b @ AES final block - result
5899 eor $rk4v.8b, $rk4v.8b, $res0.8b @ GHASH final-1 block - mid
5909 eor $output_l0, $output_l0, $rk14_l @ AES final block - round 14 low
5913 eor $acc_lb, $acc_lb, $rk3 @ GHASH final-1 block - low
5915 eor $acc_hb, $acc_hb, $rk2 @ GHASH final-1 block - high
5917 eor $acc_mb, $acc_mb, $rk4v.16b @ GHASH final-1 block - mid
5918 eor $output_h0, $output_h0, $rk14_h @ AES final block - round 14 high
5965 eor $res0b, $res0b, $t0.16b @ feed in partial tag
5971 eor $t0.8b, $t0.8b, $res0.8b @ GHASH final block - mid
5977 eor $acc_hb, $acc_hb, $rk2 @ GHASH final block - high
5979 eor $acc_lb, $acc_lb, $rk3 @ GHASH final block - low
5981 eor $acc_mb, $acc_mb, $t0.16b @ GHASH final block - mid
5984 eor $t9.16b, $acc_lb, $acc_hb @ MODULO - karatsuba tidy up
5988 eor $acc_mb, $acc_mb, $t9.16b @ MODULO - karatsuba tidy up
5994 eor $acc_mb, $acc_mb, $mod_t.16b @ MODULO - fold into mid
5996 eor $acc_mb, $acc_mb, $acc_hb @ MODULO - fold into mid
6002 eor $acc_lb, $acc_lb, $mod_constant.16b @ MODULO - fold into low
6008 eor $acc_lb, $acc_lb, $acc_mb @ MODULO - fold into low