步骤

模乘

模加减

1

T1 = X1Z2

--

--

2

T2 = X2Z1

--

--

3

T3 = Z1Z2

--

X1Z2

4

T4 = X1X2

T1 = T1 − T2

X2Z1

5

T5 = aT3

T2 = T1 + T2

Z1Z2, X1Z2 − X2Z1

6

T6 = T0T3

T2 = T1 + T2

X1X2, X1Z2 + X2Z1

7

T 1 = T 1 2

T4 = T4 − T5

aZ1Z2

8

T2 = T6T2

--

4bZ1Z2, X1X2 − aZ1Z2

9

T 4 = T 4 2

--

( X 1 Z 2 X 2 Z 1 ) 2

10

T1 = GxT1

--

4 b Z 1 Z 2 ( X 1 Z 2 + X 2 Z 1 )

11

--

T4 = T4 − T2

( X 1 X 2 a Z 1 Z 2 ) 2

12

T1 = Z1Z1

--

G x ( X 1 Z 2 X 2 Z 1 ) 2 , ( X 1 X 2 a Z 1 Z 2 ) 2 b Z 1 Z 2 ( X 1 Z 2 + X 2 Z 1 )