Lines Matching refs:S
230 const u8 *crypt, size_t crypt_len, u8 *S) in aes_gcm_ghash() argument
240 ghash_start(S); in aes_gcm_ghash()
241 ghash(H, aad, aad_len, S); in aes_gcm_ghash()
242 ghash(H, crypt, crypt_len, S); in aes_gcm_ghash()
245 ghash(H, len_buf, sizeof(len_buf), S); in aes_gcm_ghash()
247 wpa_hexdump_key(MSG_EXCESSIVE, "S = GHASH_H(...)", S, 16); in aes_gcm_ghash()
260 u8 S[16]; in aes_gcm_ae() local
272 aes_gcm_ghash(H, aad, aad_len, crypt, plain_len, S); in aes_gcm_ae()
275 aes_gctr(aes, J0, S, sizeof(S), tag); in aes_gcm_ae()
294 u8 S[16], T[16]; in aes_gcm_ad() local
306 aes_gcm_ghash(H, aad, aad_len, crypt, crypt_len, S); in aes_gcm_ad()
309 aes_gctr(aes, J0, S, sizeof(S), T); in aes_gcm_ad()