kdf
kdf(uint8_t out[MLKEM_SHARED_SECRET_LENGTH], const uint8_t failure_secret[32],
kdf(uint8_t prot, fido_blob_t *key, /* const */ fido_blob_t *secret)
kdf(uint8_t *salt, size_t saltlen, int rounds, int allowstdin, int confirm,
static void kdf(void *buffer_ptr, aes_int_key key, UINT8 ndx, int nbytes)