diff options
author | Pieter Wuille <pieter.wuille@gmail.com> | 2016-12-08 17:09:07 -0800 |
---|---|---|
committer | Pieter Wuille <pieter.wuille@gmail.com> | 2016-12-08 17:09:07 -0800 |
commit | 760765d5a982464cdecc352c0eb42ea6836aee16 (patch) | |
tree | 0706166f2a4ab84edf2d7ee7703aabbb278e2a2c /src | |
parent | 86017842d6ef6c57f1e06ed395afecf11d71a650 (diff) | |
parent | 8501bedd7508ac514385806e191aec21ee978891 (diff) |
Update ctaes
Diffstat (limited to 'src')
-rw-r--r-- | src/crypto/ctaes/ctaes.c | 8 |
1 files changed, 4 insertions, 4 deletions
diff --git a/src/crypto/ctaes/ctaes.c b/src/crypto/ctaes/ctaes.c index 2389fc0bb2..55962bf252 100644 --- a/src/crypto/ctaes/ctaes.c +++ b/src/crypto/ctaes/ctaes.c @@ -134,7 +134,7 @@ static void SubBytes(AES_state *s, int inv) { D = U7; } - /* Non-linear transformation (identical to the code in SubBytes) */ + /* Non-linear transformation (shared between the forward and backward case) */ M1 = T13 & T6; M6 = T3 & T16; M11 = T1 & T15; @@ -469,9 +469,9 @@ static void AES_encrypt(const AES_state* rounds, int nrounds, unsigned char* cip static void AES_decrypt(const AES_state* rounds, int nrounds, unsigned char* plain16, const unsigned char* cipher16) { /* Most AES decryption implementations use the alternate scheme - * (the Equivalent Inverse Cipher), which looks more like encryption, but - * needs different round constants. We can't reuse any code here anyway, so - * don't bother. */ + * (the Equivalent Inverse Cipher), which allows for more code reuse between + * the encryption and decryption code, but requires separate setup for both. + */ AES_state s = {{0}}; int round; |