1pub(crate) fn divide_scalar_bytes_by_cofactor(scalar: &mut [u8; 32]) {
16 let mut low = 0u8;
17 for i in scalar.iter_mut().rev() {
18 let r = *i & 0b00000111; *i >>= 3; *i += low;
21 low = r << 5;
22 }
23}
24
25pub(crate) fn multiply_scalar_bytes_by_cofactor(scalar: &mut [u8; 32]) {
26 let mut high = 0u8;
27 for i in scalar.iter_mut() {
28 let r = *i & 0b11100000; *i <<= 3; *i += high;
31 high = r >> 5;
32 }
33}
34
35#[cfg(test)]
36mod tests {
37 use super::*;
38 use rand::{thread_rng, Rng};
40
41 #[test]
47 fn cofactor_adjustment() {
48 let mut x: [u8; 32] = thread_rng().gen();
49 x[31] &= 0b00011111;
50 let mut y = x.clone();
51 multiply_scalar_bytes_by_cofactor(&mut y);
52 divide_scalar_bytes_by_cofactor(&mut y);
53 assert_eq!(x, y);
54
55 let mut x: [u8; 32] = thread_rng().gen();
56 x[0] &= 0b11111000;
57 let mut y = x.clone();
58 divide_scalar_bytes_by_cofactor(&mut y);
59 multiply_scalar_bytes_by_cofactor(&mut y);
60 assert_eq!(x, y);
61 }
62}