Implementation notes: aarch64, pi3aplus, crypto_kem/sikep503comp

Computer: pi3aplus
Microarchitecture: aarch64; Cortex-A53 (410fd034)
Architecture: aarch64
CPU ID: 410fd034
SUPERCOP version: 20240107
Operation: crypto_kem
Primitive: sikep503comp
TimeObject sizeTest sizeImplementationCompilerBenchmark dateSUPERCOP version
151787774453576 0 16470757 792 1568T:arm64asmclang_-mcpu=native_-O3_-fomit-frame-pointer_-fwrapv_-Qunused-arguments_-fPIC_-fPIE2024010620231212
152384778415556 0 16434000 856 1584T:arm64asmgcc_-march=native_-mtune=native_-O3_-fomit-frame-pointer_-fwrapv_-fPIC_-fPIE2024010620231212
154054137390788 0 16408016 856 1568T:arm64asmgcc_-march=native_-mtune=native_-O2_-fomit-frame-pointer_-fwrapv_-fPIC_-fPIE2024010620231212
156254309383612 0 16400832 856 1568T:arm64asmgcc_-march=native_-mtune=native_-O_-fomit-frame-pointer_-fwrapv_-fPIC_-fPIE2024010620231212
156405175364476 0 16380792 840 1552T:arm64asmgcc_-march=native_-mtune=native_-Os_-fomit-frame-pointer_-fwrapv_-fPIC_-fPIE2024010620231212
746895703424204 0 16442712 872 1584T:arm64gcc_-march=native_-mtune=native_-O3_-fomit-frame-pointer_-fwrapv_-fPIC_-fPIE2024010620231212
746957561424204 0 16442712 872 1584T:amd64gcc_-march=native_-mtune=native_-O3_-fomit-frame-pointer_-fwrapv_-fPIC_-fPIE2024010620231212
815150752434884 0 16452053 808 1568T:amd64clang_-mcpu=native_-O3_-fomit-frame-pointer_-fwrapv_-Qunused-arguments_-fPIC_-fPIE2024010620231212
815369844434884 0 16452053 808 1568T:arm64clang_-mcpu=native_-O3_-fomit-frame-pointer_-fwrapv_-Qunused-arguments_-fPIC_-fPIE2024010620231212
987555948392912 0 16410176 872 1568T:arm64gcc_-march=native_-mtune=native_-O2_-fomit-frame-pointer_-fwrapv_-fPIC_-fPIE2024010620231212
987877792392912 0 16410176 872 1568T:amd64gcc_-march=native_-mtune=native_-O2_-fomit-frame-pointer_-fwrapv_-fPIC_-fPIE2024010620231212
1283183390385888 0 16403160 872 1568T:arm64gcc_-march=native_-mtune=native_-O_-fomit-frame-pointer_-fwrapv_-fPIC_-fPIE2024010620231212
1283406376385888 0 16403160 872 1568T:amd64gcc_-march=native_-mtune=native_-O_-fomit-frame-pointer_-fwrapv_-fPIC_-fPIE2024010620231212
1707773638363320 0 16379688 856 1552T:arm64gcc_-march=native_-mtune=native_-Os_-fomit-frame-pointer_-fwrapv_-fPIC_-fPIE2024010620231212
1708619752363320 0 16379688 856 1552T:amd64gcc_-march=native_-mtune=native_-Os_-fomit-frame-pointer_-fwrapv_-fPIC_-fPIE2024010620231212

Compiler output

Implementation: T:arm64asm
Security model: timingleaks
Compiler: clang -mcpu=native -O3 -fomit-frame-pointer -fwrapv -Qunused-arguments -fPIC -fPIE
fp_arm64.c: fp_arm64.c:71:5: warning: implicit declaration of function 'mp_shiftr1' is invalid in C99 [-Wimplicit-function-declaration]
fp_arm64.c: mp_shiftr1(c, NWORDS_FIELD);
fp_arm64.c: ^
fp_arm64.c: 1 warning generated.

Number of similar (compiler,implementation) pairs: 1, namely:
CompilerImplementations
clang -mcpu=native -O3 -fomit-frame-pointer -fwrapv -Qunused-arguments -fPIC -fPIE T:arm64asm

Compiler output

Implementation: T:arm64asm
Security model: timingleaks
Compiler: gcc -march=native -mtune=native -O2 -fomit-frame-pointer -fwrapv -fPIC -fPIE
fp_arm64.c: fp_arm64.c: In function 'fpdiv2_503':
fp_arm64.c: fp_arm64.c:71:5: warning: implicit declaration of function 'mp_shiftr1' [-Wimplicit-function-declaration]
fp_arm64.c: mp_shiftr1(c, NWORDS_FIELD);
fp_arm64.c: ^~~~~~~~~~

Number of similar (compiler,implementation) pairs: 4, namely:
CompilerImplementations
gcc -march=native -mtune=native -O2 -fomit-frame-pointer -fwrapv -fPIC -fPIE T:arm64asm
gcc -march=native -mtune=native -O3 -fomit-frame-pointer -fwrapv -fPIC -fPIE T:arm64asm
gcc -march=native -mtune=native -O -fomit-frame-pointer -fwrapv -fPIC -fPIE T:arm64asm
gcc -march=native -mtune=native -Os -fomit-frame-pointer -fwrapv -fPIC -fPIE T:arm64asm

Namespace violations

Implementation: T:amd64
Security model: timingleaks
Compiler: clang -mcpu=native -O3 -fomit-frame-pointer -fwrapv -Qunused-arguments -fPIC -fPIE
P503_compressed.o A_basis_zero R
P503_compressed.o A_gen R
P503_compressed.o Alice_order R
P503_compressed.o B_basis_zero R
P503_compressed.o B_gen R
P503_compressed.o B_gen_3_tors R
P503_compressed.o Bob_order R
P503_compressed.o CompleteMPoint T
P503_compressed.o Double T
P503_compressed.o EphemeralKeyGeneration_A_SIDHp503_Compressed T
P503_compressed.o EphemeralKeyGeneration_B_SIDHp503_Compressed T
P503_compressed.o EphemeralSecretAgreement_A_SIDHp503_Compressed T
P503_compressed.o EphemeralSecretAgreement_B_SIDHp503_Compressed T
P503_compressed.o FormatPrivKey_B T
P503_compressed.o Ladder T
P503_compressed.o Montgomery_R R
P503_compressed.o Montgomery_R2 R
P503_compressed.o Montgomery_RB1 R
P503_compressed.o Montgomery_RB2 R
P503_compressed.o Montgomery_inversion_mod_order_bingcd T
P503_compressed.o Montgomery_multiply_mod_order T
P503_compressed.o Montgomery_neg T
P503_compressed.o Montgomery_one R
P503_compressed.o T_tate2_P R
P503_compressed.o T_tate2_Q R
P503_compressed.o T_tate2_firststep_P R
P503_compressed.o T_tate2_firststep_Q R
P503_compressed.o T_tate3 R
P503_compressed.o Tate2_pairings T
P503_compressed.o Tate3_pairings T
P503_compressed.o Traverse_w_div_e_fullsigned T
P503_compressed.o Traverse_w_div_e_torus T
P503_compressed.o Traverse_w_notdiv_e_fullsigned T
P503_compressed.o U3 R
P503_compressed.o XQB3 R
P503_compressed.o clear_words T
P503_compressed.o cmp_f2elm T
P503_compressed.o copy_words T
P503_compressed.o ct_cmov T
P503_compressed.o ct_compare T
P503_compressed.o cube_Fp2_cycl T
P503_compressed.o eval_3_isog T
P503_compressed.o eval_4_isog T
P503_compressed.o fp2_conj T
P503_compressed.o fp2add503 T
P503_compressed.o fp2copy503 T
P503_compressed.o fp2correction503 T
P503_compressed.o fp2div2_503 T
P503_compressed.o fp2inv503_mont T
P503_compressed.o fp2inv503_mont_bingcd T
P503_compressed.o fp2mul503_mont T
P503_compressed.o fp2neg503 T
P503_compressed.o fp2shl T
P503_compressed.o fp2sqr503_mont T
P503_compressed.o fp2sub503 T
P503_compressed.o fp2zero503 T
P503_compressed.o fpcopy503 T
P503_compressed.o fpinv503_chain_mont T
P503_compressed.o fpinv503_mont T
P503_compressed.o fpinv503_mont_bingcd T
P503_compressed.o fpmul503_mont T
P503_compressed.o fpsqr503_mont T
P503_compressed.o fpzero503 T
P503_compressed.o from_Montgomery_mod_order T
P503_compressed.o from_base T
P503_compressed.o from_fp2mont T
P503_compressed.o from_mont T
P503_compressed.o fromproj T
P503_compressed.o g_R_S_im R
P503_compressed.o get_3_isog T
P503_compressed.o get_4_isog T
P503_compressed.o get_A T
P503_compressed.o highest_2t T
P503_compressed.o highest_t T
P503_compressed.o inv_3_way T
P503_compressed.o inv_Fp2_cycl_proj T
P503_compressed.o inv_mod_orderA T
P503_compressed.o is_sqr_fp2 T
P503_compressed.o j_inv T
P503_compressed.o mod T
P503_compressed.o mod3 T
P503_compressed.o mont_n_way_inv T
P503_compressed.o mp_add T
P503_compressed.o mp_shiftl1 T
P503_compressed.o mp_shiftleft T
P503_compressed.o mp_shiftr1 T
P503_compressed.o mp_sub T
P503_compressed.o mul3 T
P503_compressed.o mulmixed_montproj T
P503_compressed.o multiply T
P503_compressed.o ord2w_dlog T
P503_compressed.o ord2w_dloghyb T
P503_compressed.o p503 R
P503_compressed.o p503p1 R
P503_compressed.o p503p1x64 R
P503_compressed.o p503x16p R
P503_compressed.o p503x2 R
P503_compressed.o p503x4 R
P503_compressed.o ph2_CT R
P503_compressed.o ph2_G R
P503_compressed.o ph2_Log R
P503_compressed.o ph2_Texp R
P503_compressed.o ph2_path R
P503_compressed.o ph3_T R
P503_compressed.o ph3_T1 B
P503_compressed.o ph3_T2 B
P503_compressed.o ph3_path R
P503_compressed.o random_mod_order_A_SIDHp503 T
P503_compressed.o random_mod_order_B_SIDHp503 T
P503_compressed.o recover_os T
P503_compressed.o reverse_bits T
P503_compressed.o solve_dlog T
P503_compressed.o sqr_Fp2_cycl T
P503_compressed.o sqr_Fp2_cycl_proj T
P503_compressed.o sqrt_Fp2 T
P503_compressed.o strat_Alice R
P503_compressed.o strat_Bob R
P503_compressed.o table_r_qnr R
P503_compressed.o table_r_qr R
P503_compressed.o table_v_qnr R
P503_compressed.o table_v_qr R
P503_compressed.o threeinv R
P503_compressed.o to_Montgomery_mod_order T
P503_compressed.o to_fp2mont T
P503_compressed.o to_mont T
P503_compressed.o toproj T
P503_compressed.o u_entang R
P503_compressed.o v_3_torsion R
P503_compressed.o validate_ciphertext T
P503_compressed.o xDBL T
P503_compressed.o xDBLADD T
P503_compressed.o xDBL_e T
P503_compressed.o xDBLe T
P503_compressed.o xTPL T
P503_compressed.o xTPL_fast T
P503_compressed.o xTPLe T
P503_compressed.o xTPLe_fast T
fips202.o KeccakF1600_StatePermute T
fips202.o shake128 T
fips202.o shake128_absorb T
fips202.o shake128_squeezeblocks T
fips202.o shake256 T
fips202.o shake256_absorb T
fips202.o shake256_squeezeblocks T
fp_generic.o digit_x_digit T
fp_generic.o fpadd503 T
fp_generic.o fpcorrection503 T
fp_generic.o fpdiv2_503 T
fp_generic.o fpneg503 T
fp_generic.o fpsub503 T
fp_generic.o mp_mul T
fp_generic.o mp_sub503_p2 T
fp_generic.o mp_sub503_p4 T
fp_generic.o rdc_mont T

Number of similar (compiler,implementation) pairs: 10, namely:
CompilerImplementations
clang -mcpu=native -O3 -fomit-frame-pointer -fwrapv -Qunused-arguments -fPIC -fPIE T:amd64
gcc -march=native -mtune=native -O2 -fomit-frame-pointer -fwrapv -fPIC -fPIE T:amd64
gcc -march=native -mtune=native -O3 -fomit-frame-pointer -fwrapv -fPIC -fPIE T:amd64
gcc -march=native -mtune=native -O -fomit-frame-pointer -fwrapv -fPIC -fPIE T:amd64
gcc -march=native -mtune=native -Os -fomit-frame-pointer -fwrapv -fPIC -fPIE T:amd64
clang -mcpu=native -O3 -fomit-frame-pointer -fwrapv -Qunused-arguments -fPIC -fPIE T:arm64
gcc -march=native -mtune=native -O2 -fomit-frame-pointer -fwrapv -fPIC -fPIE T:arm64
gcc -march=native -mtune=native -O3 -fomit-frame-pointer -fwrapv -fPIC -fPIE T:arm64
gcc -march=native -mtune=native -O -fomit-frame-pointer -fwrapv -fPIC -fPIE T:arm64
gcc -march=native -mtune=native -Os -fomit-frame-pointer -fwrapv -fPIC -fPIE T:arm64

Namespace violations

Implementation: T:arm64asm
Security model: timingleaks
Compiler: clang -mcpu=native -O3 -fomit-frame-pointer -fwrapv -Qunused-arguments -fPIC -fPIE
P503_compressed.o A_basis_zero R
P503_compressed.o A_gen R
P503_compressed.o Alice_order R
P503_compressed.o B_basis_zero R
P503_compressed.o B_gen R
P503_compressed.o B_gen_3_tors R
P503_compressed.o Bob_order R
P503_compressed.o CompleteMPoint T
P503_compressed.o Double T
P503_compressed.o EphemeralKeyGeneration_A_SIDHp503_Compressed T
P503_compressed.o EphemeralKeyGeneration_B_SIDHp503_Compressed T
P503_compressed.o EphemeralSecretAgreement_A_SIDHp503_Compressed T
P503_compressed.o EphemeralSecretAgreement_B_SIDHp503_Compressed T
P503_compressed.o FormatPrivKey_B T
P503_compressed.o Ladder T
P503_compressed.o Montgomery_R R
P503_compressed.o Montgomery_R2 R
P503_compressed.o Montgomery_RB1 R
P503_compressed.o Montgomery_RB2 R
P503_compressed.o Montgomery_inversion_mod_order_bingcd T
P503_compressed.o Montgomery_multiply_mod_order T
P503_compressed.o Montgomery_neg T
P503_compressed.o Montgomery_one R
P503_compressed.o T_tate2_P R
P503_compressed.o T_tate2_Q R
P503_compressed.o T_tate2_firststep_P R
P503_compressed.o T_tate2_firststep_Q R
P503_compressed.o T_tate3 R
P503_compressed.o Tate2_pairings T
P503_compressed.o Tate3_pairings T
P503_compressed.o Traverse_w_div_e_fullsigned T
P503_compressed.o Traverse_w_div_e_torus T
P503_compressed.o Traverse_w_notdiv_e_fullsigned T
P503_compressed.o U3 R
P503_compressed.o XQB3 R
P503_compressed.o clear_words T
P503_compressed.o cmp_f2elm T
P503_compressed.o copy_words T
P503_compressed.o ct_cmov T
P503_compressed.o ct_compare T
P503_compressed.o cube_Fp2_cycl T
P503_compressed.o eval_3_isog T
P503_compressed.o eval_4_isog T
P503_compressed.o fp2_conj T
P503_compressed.o fp2add503 T
P503_compressed.o fp2copy503 T
P503_compressed.o fp2correction503 T
P503_compressed.o fp2div2_503 T
P503_compressed.o fp2inv503_mont T
P503_compressed.o fp2inv503_mont_bingcd T
P503_compressed.o fp2mul503_mont T
P503_compressed.o fp2neg503 T
P503_compressed.o fp2shl T
P503_compressed.o fp2sqr503_mont T
P503_compressed.o fp2sub503 T
P503_compressed.o fp2zero503 T
P503_compressed.o fpcopy503 T
P503_compressed.o fpinv503_chain_mont T
P503_compressed.o fpinv503_mont T
P503_compressed.o fpinv503_mont_bingcd T
P503_compressed.o fpmul503_mont T
P503_compressed.o fpsqr503_mont T
P503_compressed.o fpzero503 T
P503_compressed.o from_Montgomery_mod_order T
P503_compressed.o from_base T
P503_compressed.o from_fp2mont T
P503_compressed.o from_mont T
P503_compressed.o fromproj T
P503_compressed.o g_R_S_im R
P503_compressed.o get_3_isog T
P503_compressed.o get_4_isog T
P503_compressed.o get_A T
P503_compressed.o highest_2t T
P503_compressed.o highest_t T
P503_compressed.o inv_3_way T
P503_compressed.o inv_Fp2_cycl_proj T
P503_compressed.o inv_mod_orderA T
P503_compressed.o is_sqr_fp2 T
P503_compressed.o j_inv T
P503_compressed.o mod T
P503_compressed.o mod3 T
P503_compressed.o mont_n_way_inv T
P503_compressed.o mp_add T
P503_compressed.o mp_shiftl1 T
P503_compressed.o mp_shiftleft T
P503_compressed.o mp_shiftr1 T
P503_compressed.o mp_sub T
P503_compressed.o mul3 T
P503_compressed.o mulmixed_montproj T
P503_compressed.o multiply T
P503_compressed.o ord2w_dlog T
P503_compressed.o ord2w_dloghyb T
P503_compressed.o p503 R
P503_compressed.o p503p1 R
P503_compressed.o p503p1x64 R
P503_compressed.o p503x16p R
P503_compressed.o p503x2 R
P503_compressed.o p503x4 R
P503_compressed.o ph2_CT R
P503_compressed.o ph2_G R
P503_compressed.o ph2_Log R
P503_compressed.o ph2_Texp R
P503_compressed.o ph2_path R
P503_compressed.o ph3_T R
P503_compressed.o ph3_T1 B
P503_compressed.o ph3_T2 B
P503_compressed.o ph3_path R
P503_compressed.o random_mod_order_A_SIDHp503 T
P503_compressed.o random_mod_order_B_SIDHp503 T
P503_compressed.o recover_os T
P503_compressed.o reverse_bits T
P503_compressed.o solve_dlog T
P503_compressed.o sqr_Fp2_cycl T
P503_compressed.o sqr_Fp2_cycl_proj T
P503_compressed.o sqrt_Fp2 T
P503_compressed.o strat_Alice R
P503_compressed.o strat_Bob R
P503_compressed.o table_r_qnr R
P503_compressed.o table_r_qr R
P503_compressed.o table_v_qnr R
P503_compressed.o table_v_qr R
P503_compressed.o threeinv R
P503_compressed.o to_Montgomery_mod_order T
P503_compressed.o to_fp2mont T
P503_compressed.o to_mont T
P503_compressed.o toproj T
P503_compressed.o u_entang R
P503_compressed.o v_3_torsion R
P503_compressed.o validate_ciphertext T
P503_compressed.o xDBL T
P503_compressed.o xDBLADD T
P503_compressed.o xDBL_e T
P503_compressed.o xDBLe T
P503_compressed.o xTPL T
P503_compressed.o xTPL_fast T
P503_compressed.o xTPLe T
P503_compressed.o xTPLe_fast T
fips202.o KeccakF1600_StatePermute T
fips202.o shake128 T
fips202.o shake128_absorb T
fips202.o shake128_squeezeblocks T
fips202.o shake256 T
fips202.o shake256_absorb T
fips202.o shake256_squeezeblocks T
fp_arm64.o fpadd503 T
fp_arm64.o fpcorrection503 T
fp_arm64.o fpdiv2_503 T
fp_arm64.o fpneg503 T
fp_arm64.o fpsub503 T
fp_arm64.o mp_mul T
fp_arm64.o mp_sub503_p2 T
fp_arm64.o mp_sub503_p4 T
fp_arm64.o rdc_mont T
fp_arm64_asm.o fpadd503_asm T
fp_arm64_asm.o fpsub503_asm T
fp_arm64_asm.o mp_add503_asm T
fp_arm64_asm.o mp_add503x2_asm T
fp_arm64_asm.o mp_dblsub503x2_asm T
fp_arm64_asm.o mp_sub503_p2_asm T
fp_arm64_asm.o mp_sub503_p4_asm T
fp_arm64_asm.o mp_subadd503x2_asm T
fp_arm64_asm.o mul503_asm T
fp_arm64_asm.o rdc503_asm T

Number of similar (compiler,implementation) pairs: 5, namely:
CompilerImplementations
clang -mcpu=native -O3 -fomit-frame-pointer -fwrapv -Qunused-arguments -fPIC -fPIE T:arm64asm
gcc -march=native -mtune=native -O2 -fomit-frame-pointer -fwrapv -fPIC -fPIE T:arm64asm
gcc -march=native -mtune=native -O3 -fomit-frame-pointer -fwrapv -fPIC -fPIE T:arm64asm
gcc -march=native -mtune=native -O -fomit-frame-pointer -fwrapv -fPIC -fPIE T:arm64asm
gcc -march=native -mtune=native -Os -fomit-frame-pointer -fwrapv -fPIC -fPIE T:arm64asm