步骤

模乘(M)

模加减(AS)

计算结果

1

T1 = Z1Z1

--

--

2

T2 = X1X1

--

--

3

T3 = aT1

--

Z 1 2

4

T4 = T1T0

--

X 1 2

5

T5 = X1Z1

T6 = T2 − T3

a Z 1 2

6

T1 = T1T4

T3 = T2 + T3

4 b Z 1 2 , X 1 2 a Z 1 2

7

T4 = T5T4

T3 = T3 + T3

X 1 Z 1 , X 1 2 + a Z 1 2

8

T6 = T6T6

T3 = T3 + T3

4 b Z 1 4 , 2 ( X 1 2 + a Z 1 2 )

9

T3 = T5T3

T4 = T4 + T4

4 b X 1 Z 1 3 , 4 ( X 1 2 + a Z 1 2 )

10

--

T6 = T6 − T4

( X 1 2 a Z 1 2 ) 2 , 8 b X 1 Z 1 3

11

--

T1 = T1 + T3

4 X 1 Z 1 ( X 1 2 + a Z 1 2 ) , ( X 1 2 a Z 1 2 ) 2 8 b X 1 Z 1 3

12

T1 = Z1Z1

--

4 X 1 Z 1 ( X 1 2 + a Z 1 2 ) + 4 b Z 1 4