Lines Matching defs:pad
345 unsigned int len = (i == (x4 - 1) ? last : frag), pad, j;
365 /* pad */
366 pad = 15 - len % 16;
367 for (j = 0; j <= pad; j++)
368 *(out++) = pad;
369 len += pad + 1;
466 /* pad the payload|hmac */
492 unsigned int res, maxpad, pad, bitlen;
511 pad = out[len - 1];
516 mask = constant_time_ge(maxpad, pad);
519 * If pad is invalid then we will fail the above test but we must
521 * we'll use the maxpad value instead of the supplied pad to make
524 pad = constant_time_select(mask, pad, maxpad);
526 inp_len = len - (SHA256_DIGEST_LENGTH + pad + 1);
665 res |= (c ^ pad) & ~cmask; /* ... and padding */