Fix which bytes are incremented for AES-GCM - only 4 bytes are counter. Fix Curve25519 to reduce to below modulus at end.