[PATCH crypto 1/2] lib/crypto: blake2s-generic: reduce code size on small systems

Jason A. Donenfeld Jason at zx2c4.com
Wed Jan 12 18:50:58 UTC 2022


On Wed, Jan 12, 2022 at 7:32 PM Eric Biggers <ebiggers at kernel.org> wrote:
> How about unrolling the inner loop but not the outer one?  Wouldn't that give
> most of the benefit, without hurting performance as much?
>
> If you stay with this approach and don't unroll either loop, can you use 'r' and
> 'i' instead of 'i' and 'j', to match the naming in G()?

All this might work, sure. But as mentioned earlier, I've abandoned
this entirely, as I don't think this patch is necessary. See the v3
patchset instead:

https://lore.kernel.org/linux-crypto/20220111220506.742067-1-Jason@zx2c4.com/


More information about the WireGuard mailing list