48 const AllEntities& in,
50 const FF& scaling_factor)
53 using View =
typename Accumulator::View;
55 const auto& x1 = View(in.msm_x1);
56 const auto& y1 = View(in.msm_y1);
57 const auto& x2 = View(in.msm_x2);
58 const auto& y2 = View(in.msm_y2);
59 const auto& x3 = View(in.msm_x3);
60 const auto& y3 = View(in.msm_y3);
61 const auto& x4 = View(in.msm_x4);
62 const auto& y4 = View(in.msm_y4);
63 const auto& collision_inverse1 = View(in.msm_collision_x1);
64 const auto& collision_inverse2 = View(in.msm_collision_x2);
65 const auto& collision_inverse3 = View(in.msm_collision_x3);
66 const auto& collision_inverse4 = View(in.msm_collision_x4);
67 const auto& lambda1 = View(in.msm_lambda1);
68 const auto& lambda2 = View(in.msm_lambda2);
69 const auto& lambda3 = View(in.msm_lambda3);
70 const auto& lambda4 = View(in.msm_lambda4);
71 const auto& lagrange_first = View(in.lagrange_first);
72 const auto& add1 = View(in.msm_add1);
73 const auto& add1_shift = View(in.msm_add1_shift);
74 const auto& add2 = View(in.msm_add2);
75 const auto& add3 = View(in.msm_add3);
76 const auto& add4 = View(in.msm_add4);
77 const auto& acc_x = View(in.msm_accumulator_x);
78 const auto& acc_y = View(in.msm_accumulator_y);
79 const auto& acc_x_shift = View(in.msm_accumulator_x_shift);
80 const auto& acc_y_shift = View(in.msm_accumulator_y_shift);
81 const auto& slice1 = View(in.msm_slice1);
82 const auto& slice2 = View(in.msm_slice2);
83 const auto& slice3 = View(in.msm_slice3);
84 const auto& slice4 = View(in.msm_slice4);
85 const auto& msm_transition = View(in.msm_transition);
86 const auto& msm_transition_shift = View(in.msm_transition_shift);
87 const auto& round = View(in.msm_round);
88 const auto& round_shift = View(in.msm_round_shift);
89 const auto& q_add = View(in.msm_add);
90 const auto& q_add_shift = View(in.msm_add_shift);
91 const auto& q_skew = View(in.msm_skew);
92 const auto& q_skew_shift = View(in.msm_skew_shift);
93 const auto& q_double = View(in.msm_double);
94 const auto& q_double_shift = View(in.msm_double_shift);
95 const auto& msm_size = View(in.msm_size_of_msm);
97 const auto& pc = View(in.msm_pc);
98 const auto& pc_shift = View(in.msm_pc_shift);
99 const auto& count = View(in.msm_count);
100 const auto& count_shift = View(in.msm_count_shift);
101 auto is_not_first_row = (-lagrange_first + 1);
178 auto add = [&](
auto& xb,
185 auto& collision_relation) {
188 relation += selector * (lambda * (xb - xa - 1) - (yb - ya)) + lambda;
189 collision_relation += selector * (xb - xa);
191 auto x_out = lambda.sqr() + (-xb - xa - xa) * selector + xa;
194 auto y_out = lambda * (xa - x_out) + (-ya - ya) * selector + ya;
212 auto first_add = [&](
auto& xb,
219 auto& collision_relation) {
222 constexpr uint256_t oxu = offset_generator.x;
223 constexpr uint256_t oyu = offset_generator.y;
224 const Accumulator xo(oxu);
225 const Accumulator yo(oyu);
227 auto x = xo * selector + xb * (-selector + 1);
228 auto y = yo * selector + yb * (-selector + 1);
229 relation += lambda * (x - xa) - (y - ya);
230 collision_relation += (xa - x);
231 auto x_out = lambda * lambda + (-x - xa);
232 auto y_out = lambda * (xa - x_out) - ya;
237 Accumulator add_relation(0);
238 Accumulator x1_collision_relation(0);
239 Accumulator x2_collision_relation(0);
240 Accumulator x3_collision_relation(0);
241 Accumulator x4_collision_relation(0);
244 auto [x_t1, y_t1] = first_add(acc_x, acc_y, x1, y1, lambda1, msm_transition, add_relation, x1_collision_relation);
245 auto [x_t2, y_t2] = add(x2, y2, x_t1, y_t1, lambda2, add2, add_relation, x2_collision_relation);
246 auto [x_t3, y_t3] = add(x3, y3, x_t2, y_t2, lambda3, add3, add_relation, x3_collision_relation);
247 auto [x_t4, y_t4] = add(x4, y4, x_t3, y_t3, lambda4, add4, add_relation, x4_collision_relation);
251 std::get<0>(accumulator) += q_add * (acc_x_shift - x_t4) * scaling_factor;
252 std::get<1>(accumulator) += q_add * (acc_y_shift - y_t4) * scaling_factor;
253 std::get<2>(accumulator) += q_add * add_relation * scaling_factor;
262 auto dbl = [&](
auto& x,
auto& y,
auto& lambda,
auto& relation) {
264 relation += lambda * (y + y) - (two_x + x) * x;
265 auto x_out = lambda.sqr() - two_x;
266 auto y_out = lambda * (x - x_out) - y;
284 Accumulator double_relation(0);
285 auto [x_d1, y_d1] = dbl(acc_x, acc_y, lambda1, double_relation);
286 auto [x_d2, y_d2] = dbl(x_d1, y_d1, lambda2, double_relation);
287 auto [x_d3, y_d3] = dbl(x_d2, y_d2, lambda3, double_relation);
288 auto [x_d4, y_d4] = dbl(x_d3, y_d3, lambda4, double_relation);
289 std::get<10>(accumulator) += q_double * (acc_x_shift - x_d4) * scaling_factor;
290 std::get<11>(accumulator) += q_double * (acc_y_shift - y_d4) * scaling_factor;
291 std::get<12>(accumulator) += q_double * double_relation * scaling_factor;
302 Accumulator skew_relation(0);
304 auto skew1_select = slice1 * inverse_seven;
305 auto skew2_select = slice2 * inverse_seven;
306 auto skew3_select = slice3 * inverse_seven;
307 auto skew4_select = slice4 * inverse_seven;
308 Accumulator x1_skew_collision_relation(0);
309 Accumulator x2_skew_collision_relation(0);
310 Accumulator x3_skew_collision_relation(0);
311 Accumulator x4_skew_collision_relation(0);
317 auto [x_s1, y_s1] = add(x1, y1, acc_x, acc_y, lambda1, skew1_select, skew_relation, x1_skew_collision_relation);
318 auto [x_s2, y_s2] = add(x2, y2, x_s1, y_s1, lambda2, skew2_select, skew_relation, x2_skew_collision_relation);
319 auto [x_s3, y_s3] = add(x3, y3, x_s2, y_s2, lambda3, skew3_select, skew_relation, x3_skew_collision_relation);
320 auto [x_s4, y_s4] = add(x4, y4, x_s3, y_s3, lambda4, skew4_select, skew_relation, x4_skew_collision_relation);
324 std::get<3>(accumulator) += q_skew * (acc_x_shift - x_s4) * scaling_factor;
325 std::get<4>(accumulator) += q_skew * (acc_y_shift - y_s4) * scaling_factor;
326 std::get<5>(accumulator) += q_skew * skew_relation * scaling_factor;
331 const auto add_first_point = add1 * q_add + q_skew * skew1_select;
332 const auto add_second_point = add2 * q_add + q_skew * skew2_select;
333 const auto add_third_point = add3 * q_add + q_skew * skew3_select;
334 const auto add_fourth_point = add4 * q_add + q_skew * skew4_select;
336 const auto x1_delta = x1_skew_collision_relation * q_skew + x1_collision_relation * q_add;
337 const auto x2_delta = x2_skew_collision_relation * q_skew + x2_collision_relation * q_add;
338 const auto x3_delta = x3_skew_collision_relation * q_skew + x3_collision_relation * q_add;
339 const auto x4_delta = x4_skew_collision_relation * q_skew + x4_collision_relation * q_add;
341 std::get<6>(accumulator) += (x1_delta * collision_inverse1 - add_first_point) * scaling_factor;
342 std::get<7>(accumulator) += (x2_delta * collision_inverse2 - add_second_point) * scaling_factor;
343 std::get<8>(accumulator) += (x3_delta * collision_inverse3 - add_third_point) * scaling_factor;
344 std::get<9>(accumulator) += (x4_delta * collision_inverse4 - add_fourth_point) * scaling_factor;
349 std::get<32>(accumulator) += (add1 - q_add - q_skew) * scaling_factor;
353 std::get<13>(accumulator) += (-add1 + 1) * slice1 * scaling_factor;
354 std::get<14>(accumulator) += (-add2 + 1) * slice2 * scaling_factor;
355 std::get<15>(accumulator) += (-add3 + 1) * slice3 * scaling_factor;
356 std::get<16>(accumulator) += (-add4 + 1) * slice4 * scaling_factor;
359 std::get<17>(accumulator) += (q_add * q_double + q_add * q_skew + q_double * q_skew) * scaling_factor;
368 const auto round_delta = round_shift - round;
372 const auto round_transition = round_delta * (-msm_transition_shift + 1);
373 std::get<18>(accumulator) += round_transition * (round_delta - 1) * scaling_factor;
380 std::get<19>(accumulator) += round_transition * q_skew_shift * (round - 31) * scaling_factor;
381 std::get<20>(accumulator) += round_transition * (q_skew_shift + q_double_shift - 1) * scaling_factor;
384 std::get<21>(accumulator) += round_transition * (-q_double_shift + 1) * (-q_skew_shift + 1) * scaling_factor;
387 std::get<22>(accumulator) += q_double * q_double_shift * scaling_factor;
390 std::get<23>(accumulator) += q_double * (-q_add_shift + 1) * scaling_factor;
395 std::get<24>(accumulator) += (-msm_transition_shift + 1) * (-round_delta + 1) *
396 (count_shift - count - add1 - add2 - add3 - add4) * scaling_factor;
399 is_not_first_row * (-msm_transition_shift + 1) * round_delta * count_shift * scaling_factor;
402 std::get<26>(accumulator) += is_not_first_row * msm_transition_shift * count_shift * scaling_factor;
406 std::get<27>(accumulator) += is_not_first_row * msm_transition_shift * (msm_size + pc_shift - pc) * scaling_factor;
417 std::get<28>(accumulator) += add2 * (-add1 + 1) * scaling_factor;
418 std::get<29>(accumulator) += add3 * (-add2 + 1) * scaling_factor;
419 std::get<30>(accumulator) += add4 * (-add3 + 1) * scaling_factor;
429 (q_add * q_add_shift + q_skew * q_skew_shift) * (-add4 + 1) * add1_shift * scaling_factor;