libtommath/bn_mp_jacobi.c

120 lines
2.7 KiB
C
Raw Normal View History

#include <tommath_private.h>
2004-10-29 22:07:18 +00:00
#ifdef BN_MP_JACOBI_C
2003-02-28 16:08:34 +00:00
/* LibTomMath, multiple-precision integer library -- Tom St Denis
*
2003-08-05 01:24:44 +00:00
* LibTomMath is a library that provides multiple-precision
2003-02-28 16:08:34 +00:00
* integer arithmetic as well as number theoretic functionality.
*
2003-08-05 01:24:44 +00:00
* The library was designed directly after the MPI library by
2003-02-28 16:08:34 +00:00
* Michael Fromberger but has been written from scratch with
* additional optimizations in place.
*
* The library is free for all purposes without any express
* guarantee it works.
*
* Tom St Denis, tstdenis82@gmail.com, http://libtom.org
2003-02-28 16:08:34 +00:00
*/
2003-05-17 12:33:54 +00:00
/* computes the jacobi c = (a | n) (or Legendre if n is prime)
2003-02-28 16:08:34 +00:00
* HAC pp. 73 Algorithm 2.149
* HAC is wrong here, as the special case of (0 | 1) is not
* handled correctly.
2003-02-28 16:08:34 +00:00
*/
2017-09-20 14:59:43 +00:00
int mp_jacobi(const mp_int *a, const mp_int *n, int *c)
2003-02-28 16:08:34 +00:00
{
2017-08-30 18:23:46 +00:00
mp_int a1, p1;
int k, s, r, res;
mp_digit residue;
2003-02-28 16:08:34 +00:00
2017-08-30 18:23:46 +00:00
/* if a < 0 return MP_VAL */
if (mp_isneg(a) == MP_YES) {
return MP_VAL;
}
2017-08-30 18:23:46 +00:00
/* if n <= 0 return MP_VAL */
2017-10-15 14:11:09 +00:00
if (mp_cmp_d(n, 0uL) != MP_GT) {
2017-08-30 18:23:46 +00:00
return MP_VAL;
}
2003-08-05 01:24:44 +00:00
2017-08-30 18:23:46 +00:00
/* step 1. handle case of a == 0 */
if (mp_iszero(a) == MP_YES) {
/* special case of a == 0 and n == 1 */
2017-10-15 14:11:09 +00:00
if (mp_cmp_d(n, 1uL) == MP_EQ) {
2017-08-30 18:23:46 +00:00
*c = 1;
} else {
*c = 0;
}
return MP_OKAY;
}
2003-02-28 16:08:34 +00:00
2017-08-30 18:23:46 +00:00
/* step 2. if a == 1, return 1 */
2017-10-15 14:11:09 +00:00
if (mp_cmp_d(a, 1uL) == MP_EQ) {
2017-08-30 18:23:46 +00:00
*c = 1;
return MP_OKAY;
}
2003-02-28 16:08:34 +00:00
2017-08-30 18:23:46 +00:00
/* default */
s = 0;
2003-02-28 16:08:34 +00:00
2017-08-30 18:23:46 +00:00
/* step 3. write a = a1 * 2**k */
if ((res = mp_init_copy(&a1, a)) != MP_OKAY) {
return res;
}
2003-02-28 16:08:34 +00:00
2017-08-30 18:23:46 +00:00
if ((res = mp_init(&p1)) != MP_OKAY) {
goto LBL_A1;
}
2003-02-28 16:08:34 +00:00
2017-08-30 18:23:46 +00:00
/* divide out larger power of two */
k = mp_cnt_lsb(&a1);
if ((res = mp_div_2d(&a1, k, &a1, NULL)) != MP_OKAY) {
goto LBL_P1;
}
2003-02-28 16:08:34 +00:00
2017-08-30 18:23:46 +00:00
/* step 4. if e is even set s=1 */
2017-10-15 17:57:12 +00:00
if (((unsigned)k & 1u) == 0u) {
2003-02-28 16:08:34 +00:00
s = 1;
2017-08-30 18:23:46 +00:00
} else {
/* else set s=1 if p = 1/7 (mod 8) or s=-1 if p = 3/5 (mod 8) */
2017-10-15 17:57:12 +00:00
residue = n->dp[0] & 7u;
2003-02-28 16:08:34 +00:00
2017-10-15 17:57:12 +00:00
if ((residue == 1u) || (residue == 7u)) {
2017-08-30 18:23:46 +00:00
s = 1;
2017-10-15 17:57:12 +00:00
} else if ((residue == 3u) || (residue == 5u)) {
2017-08-30 18:23:46 +00:00
s = -1;
}
}
2003-02-28 16:08:34 +00:00
2017-08-30 18:23:46 +00:00
/* step 5. if p == 3 (mod 4) *and* a1 == 3 (mod 4) then s = -s */
2017-10-15 17:57:12 +00:00
if (((n->dp[0] & 3u) == 3u) && ((a1.dp[0] & 3u) == 3u)) {
2017-08-30 18:23:46 +00:00
s = -s;
}
/* if a1 == 1 we're done */
2017-10-15 14:11:09 +00:00
if (mp_cmp_d(&a1, 1uL) == MP_EQ) {
2017-08-30 18:23:46 +00:00
*c = s;
} else {
/* n1 = n mod a1 */
if ((res = mp_mod(n, &a1, &p1)) != MP_OKAY) {
goto LBL_P1;
}
if ((res = mp_jacobi(&p1, &a1, &r)) != MP_OKAY) {
goto LBL_P1;
}
*c = s * r;
}
2003-02-28 16:08:34 +00:00
2017-08-30 18:23:46 +00:00
/* done */
res = MP_OKAY;
2017-08-28 20:34:46 +00:00
LBL_P1:
2017-08-30 18:23:46 +00:00
mp_clear(&p1);
2017-08-28 20:34:46 +00:00
LBL_A1:
2017-08-30 18:23:46 +00:00
mp_clear(&a1);
return res;
2003-02-28 16:08:34 +00:00
}
2004-10-29 22:07:18 +00:00
#endif
2005-08-01 16:37:28 +00:00
2017-08-28 14:27:26 +00:00
/* ref: $Format:%D$ */
/* git commit: $Format:%H$ */
/* commit time: $Format:%ai$ */