author | haftmann |
Mon, 15 Jun 2009 08:16:08 +0200 | |
changeset 31636 | 138625ae4067 |
parent 27702 | 80608e96e760 |
child 32740 | 9dd0a2f83429 |
permissions | -rw-r--r-- |
615 | 1 |
(* Title: ZF/ZF.thy |
0 | 2 |
ID: $Id$ |
3 |
Author: Lawrence C Paulson and Martin D Coen, CU Computer Laboratory |
|
4 |
Copyright 1993 University of Cambridge |
|
14076 | 5 |
*) |
0 | 6 |
|
14076 | 7 |
header{*Zermelo-Fraenkel Set Theory*} |
0 | 8 |
|
16417 | 9 |
theory ZF imports FOL begin |
0 | 10 |
|
23168 | 11 |
ML {* reset eta_contract *} |
12 |
||
3906 | 13 |
global |
14 |
||
14076 | 15 |
typedecl i |
16 |
arities i :: "term" |
|
0 | 17 |
|
18 |
consts |
|
19 |
||
14076 | 20 |
"0" :: "i" ("0") --{*the empty set*} |
21 |
Pow :: "i => i" --{*power sets*} |
|
22 |
Inf :: "i" --{*infinite set*} |
|
0 | 23 |
|
14076 | 24 |
text {*Bounded Quantifiers *} |
25 |
consts |
|
13780 | 26 |
Ball :: "[i, i => o] => o" |
27 |
Bex :: "[i, i => o] => o" |
|
0 | 28 |
|
14076 | 29 |
text {*General Union and Intersection *} |
30 |
consts |
|
13780 | 31 |
Union :: "i => i" |
32 |
Inter :: "i => i" |
|
0 | 33 |
|
14076 | 34 |
text {*Variations on Replacement *} |
35 |
consts |
|
13144 | 36 |
PrimReplace :: "[i, [i, i] => o] => i" |
37 |
Replace :: "[i, [i, i] => o] => i" |
|
38 |
RepFun :: "[i, i => i] => i" |
|
39 |
Collect :: "[i, i => o] => i" |
|
0 | 40 |
|
14883 | 41 |
text{*Definite descriptions -- via Replace over the set "1"*} |
14076 | 42 |
consts |
13780 | 43 |
The :: "(i => o) => i" (binder "THE " 10) |
13144 | 44 |
If :: "[o, i, i] => i" ("(if (_)/ then (_)/ else (_))" [10] 10) |
6068 | 45 |
|
24826 | 46 |
abbreviation (input) |
47 |
old_if :: "[o, i, i] => i" ("if '(_,_,_')") where |
|
48 |
"if(P,a,b) == If(P,a,b)" |
|
6068 | 49 |
|
50 |
||
14076 | 51 |
text {*Finite Sets *} |
6068 | 52 |
consts |
13780 | 53 |
Upair :: "[i, i] => i" |
54 |
cons :: "[i, i] => i" |
|
55 |
succ :: "i => i" |
|
0 | 56 |
|
14076 | 57 |
text {*Ordered Pairing *} |
58 |
consts |
|
13780 | 59 |
Pair :: "[i, i] => i" |
60 |
fst :: "i => i" |
|
61 |
snd :: "i => i" |
|
14854 | 62 |
split :: "[[i, i] => 'a, i] => 'a::{}" --{*for pattern-matching*} |
0 | 63 |
|
14076 | 64 |
text {*Sigma and Pi Operators *} |
65 |
consts |
|
13780 | 66 |
Sigma :: "[i, i => i] => i" |
67 |
Pi :: "[i, i => i] => i" |
|
0 | 68 |
|
14076 | 69 |
text {*Relations and Functions *} |
70 |
consts |
|
71 |
"domain" :: "i => i" |
|
13144 | 72 |
range :: "i => i" |
73 |
field :: "i => i" |
|
74 |
converse :: "i => i" |
|
14076 | 75 |
relation :: "i => o" --{*recognizes sets of pairs*} |
24826 | 76 |
"function" :: "i => o" --{*recognizes functions; can have non-pairs*} |
13144 | 77 |
Lambda :: "[i, i => i] => i" |
78 |
restrict :: "[i, i] => i" |
|
0 | 79 |
|
14076 | 80 |
text {*Infixes in order of decreasing precedence *} |
81 |
consts |
|
0 | 82 |
|
24826 | 83 |
Image :: "[i, i] => i" (infixl "``" 90) --{*image*} |
84 |
vimage :: "[i, i] => i" (infixl "-``" 90) --{*inverse image*} |
|
85 |
"apply" :: "[i, i] => i" (infixl "`" 90) --{*function application*} |
|
86 |
"Int" :: "[i, i] => i" (infixl "Int" 70) --{*binary intersection*} |
|
87 |
"Un" :: "[i, i] => i" (infixl "Un" 65) --{*binary union*} |
|
88 |
Diff :: "[i, i] => i" (infixl "-" 65) --{*set difference*} |
|
89 |
Subset :: "[i, i] => o" (infixl "<=" 50) --{*subset relation*} |
|
90 |
mem :: "[i, i] => o" (infixl ":" 50) --{*membership relation*} |
|
91 |
||
92 |
abbreviation |
|
93 |
not_mem :: "[i, i] => o" (infixl "~:" 50) --{*negated membership relation*} |
|
94 |
where "x ~: y == ~ (x : y)" |
|
95 |
||
96 |
abbreviation |
|
97 |
cart_prod :: "[i, i] => i" (infixr "*" 80) --{*Cartesian product*} |
|
98 |
where "A * B == Sigma(A, %_. B)" |
|
99 |
||
100 |
abbreviation |
|
101 |
function_space :: "[i, i] => i" (infixr "->" 60) --{*function space*} |
|
102 |
where "A -> B == Pi(A, %_. B)" |
|
0 | 103 |
|
104 |
||
13780 | 105 |
nonterminals "is" patterns |
615 | 106 |
|
107 |
syntax |
|
13144 | 108 |
"" :: "i => is" ("_") |
109 |
"@Enum" :: "[i, is] => is" ("_,/ _") |
|
24826 | 110 |
|
13144 | 111 |
"@Finset" :: "is => i" ("{(_)}") |
112 |
"@Tuple" :: "[i, is] => i" ("<(_,/ _)>") |
|
113 |
"@Collect" :: "[pttrn, i, o] => i" ("(1{_: _ ./ _})") |
|
114 |
"@Replace" :: "[pttrn, pttrn, i, o] => i" ("(1{_ ./ _: _, _})") |
|
115 |
"@RepFun" :: "[i, pttrn, i] => i" ("(1{_ ./ _: _})" [51,0,51]) |
|
116 |
"@INTER" :: "[pttrn, i, i] => i" ("(3INT _:_./ _)" 10) |
|
117 |
"@UNION" :: "[pttrn, i, i] => i" ("(3UN _:_./ _)" 10) |
|
118 |
"@PROD" :: "[pttrn, i, i] => i" ("(3PROD _:_./ _)" 10) |
|
119 |
"@SUM" :: "[pttrn, i, i] => i" ("(3SUM _:_./ _)" 10) |
|
120 |
"@lam" :: "[pttrn, i, i] => i" ("(3lam _:_./ _)" 10) |
|
121 |
"@Ball" :: "[pttrn, i, o] => o" ("(3ALL _:_./ _)" 10) |
|
122 |
"@Bex" :: "[pttrn, i, o] => o" ("(3EX _:_./ _)" 10) |
|
1106
62bdb9e5722b
Added pattern-matching code from CHOL/Prod.thy. Changed
lcp
parents:
690
diff
changeset
|
123 |
|
62bdb9e5722b
Added pattern-matching code from CHOL/Prod.thy. Changed
lcp
parents:
690
diff
changeset
|
124 |
(** Patterns -- extends pre-defined type "pttrn" used in abstractions **) |
62bdb9e5722b
Added pattern-matching code from CHOL/Prod.thy. Changed
lcp
parents:
690
diff
changeset
|
125 |
|
13144 | 126 |
"@pattern" :: "patterns => pttrn" ("<_>") |
127 |
"" :: "pttrn => patterns" ("_") |
|
128 |
"@patterns" :: "[pttrn, patterns] => patterns" ("_,/_") |
|
615 | 129 |
|
0 | 130 |
translations |
131 |
"{x, xs}" == "cons(x, {xs})" |
|
132 |
"{x}" == "cons(x, 0)" |
|
133 |
"{x:A. P}" == "Collect(A, %x. P)" |
|
134 |
"{y. x:A, Q}" == "Replace(A, %x y. Q)" |
|
615 | 135 |
"{b. x:A}" == "RepFun(A, %x. b)" |
0 | 136 |
"INT x:A. B" == "Inter({B. x:A})" |
137 |
"UN x:A. B" == "Union({B. x:A})" |
|
24826 | 138 |
"PROD x:A. B" == "Pi(A, %x. B)" |
139 |
"SUM x:A. B" == "Sigma(A, %x. B)" |
|
0 | 140 |
"lam x:A. f" == "Lambda(A, %x. f)" |
141 |
"ALL x:A. P" == "Ball(A, %x. P)" |
|
142 |
"EX x:A. P" == "Bex(A, %x. P)" |
|
37 | 143 |
|
1106
62bdb9e5722b
Added pattern-matching code from CHOL/Prod.thy. Changed
lcp
parents:
690
diff
changeset
|
144 |
"<x, y, z>" == "<x, <y, z>>" |
62bdb9e5722b
Added pattern-matching code from CHOL/Prod.thy. Changed
lcp
parents:
690
diff
changeset
|
145 |
"<x, y>" == "Pair(x, y)" |
2286 | 146 |
"%<x,y,zs>.b" == "split(%x <y,zs>.b)" |
3840 | 147 |
"%<x,y>.b" == "split(%x y. b)" |
2286 | 148 |
|
0 | 149 |
|
24826 | 150 |
notation (xsymbols) |
151 |
cart_prod (infixr "\<times>" 80) and |
|
152 |
Int (infixl "\<inter>" 70) and |
|
153 |
Un (infixl "\<union>" 65) and |
|
154 |
function_space (infixr "\<rightarrow>" 60) and |
|
155 |
Subset (infixl "\<subseteq>" 50) and |
|
156 |
mem (infixl "\<in>" 50) and |
|
157 |
not_mem (infixl "\<notin>" 50) and |
|
158 |
Union ("\<Union>_" [90] 90) and |
|
159 |
Inter ("\<Inter>_" [90] 90) |
|
160 |
||
12114
a8e860c86252
eliminated old "symbols" syntax, use "xsymbols" instead;
wenzelm
parents:
11322
diff
changeset
|
161 |
syntax (xsymbols) |
13780 | 162 |
"@Collect" :: "[pttrn, i, o] => i" ("(1{_ \<in> _ ./ _})") |
163 |
"@Replace" :: "[pttrn, pttrn, i, o] => i" ("(1{_ ./ _ \<in> _, _})") |
|
164 |
"@RepFun" :: "[i, pttrn, i] => i" ("(1{_ ./ _ \<in> _})" [51,0,51]) |
|
165 |
"@UNION" :: "[pttrn, i, i] => i" ("(3\<Union>_\<in>_./ _)" 10) |
|
166 |
"@INTER" :: "[pttrn, i, i] => i" ("(3\<Inter>_\<in>_./ _)" 10) |
|
167 |
"@PROD" :: "[pttrn, i, i] => i" ("(3\<Pi>_\<in>_./ _)" 10) |
|
168 |
"@SUM" :: "[pttrn, i, i] => i" ("(3\<Sigma>_\<in>_./ _)" 10) |
|
169 |
"@lam" :: "[pttrn, i, i] => i" ("(3\<lambda>_\<in>_./ _)" 10) |
|
170 |
"@Ball" :: "[pttrn, i, o] => o" ("(3\<forall>_\<in>_./ _)" 10) |
|
171 |
"@Bex" :: "[pttrn, i, o] => o" ("(3\<exists>_\<in>_./ _)" 10) |
|
172 |
"@Tuple" :: "[i, is] => i" ("\<langle>(_,/ _)\<rangle>") |
|
173 |
"@pattern" :: "patterns => pttrn" ("\<langle>_\<rangle>") |
|
2540 | 174 |
|
24826 | 175 |
notation (HTML output) |
176 |
cart_prod (infixr "\<times>" 80) and |
|
177 |
Int (infixl "\<inter>" 70) and |
|
178 |
Un (infixl "\<union>" 65) and |
|
179 |
Subset (infixl "\<subseteq>" 50) and |
|
180 |
mem (infixl "\<in>" 50) and |
|
181 |
not_mem (infixl "\<notin>" 50) and |
|
182 |
Union ("\<Union>_" [90] 90) and |
|
183 |
Inter ("\<Inter>_" [90] 90) |
|
184 |
||
6340 | 185 |
syntax (HTML output) |
14565 | 186 |
"@Collect" :: "[pttrn, i, o] => i" ("(1{_ \<in> _ ./ _})") |
187 |
"@Replace" :: "[pttrn, pttrn, i, o] => i" ("(1{_ ./ _ \<in> _, _})") |
|
188 |
"@RepFun" :: "[i, pttrn, i] => i" ("(1{_ ./ _ \<in> _})" [51,0,51]) |
|
189 |
"@UNION" :: "[pttrn, i, i] => i" ("(3\<Union>_\<in>_./ _)" 10) |
|
190 |
"@INTER" :: "[pttrn, i, i] => i" ("(3\<Inter>_\<in>_./ _)" 10) |
|
191 |
"@PROD" :: "[pttrn, i, i] => i" ("(3\<Pi>_\<in>_./ _)" 10) |
|
192 |
"@SUM" :: "[pttrn, i, i] => i" ("(3\<Sigma>_\<in>_./ _)" 10) |
|
193 |
"@lam" :: "[pttrn, i, i] => i" ("(3\<lambda>_\<in>_./ _)" 10) |
|
194 |
"@Ball" :: "[pttrn, i, o] => o" ("(3\<forall>_\<in>_./ _)" 10) |
|
195 |
"@Bex" :: "[pttrn, i, o] => o" ("(3\<exists>_\<in>_./ _)" 10) |
|
196 |
"@Tuple" :: "[i, is] => i" ("\<langle>(_,/ _)\<rangle>") |
|
197 |
"@pattern" :: "patterns => pttrn" ("\<langle>_\<rangle>") |
|
6340 | 198 |
|
2540 | 199 |
|
14227 | 200 |
finalconsts |
24826 | 201 |
0 Pow Inf Union PrimReplace mem |
14227 | 202 |
|
13780 | 203 |
defs |
204 |
(*don't try to use constdefs: the declaration order is tightly constrained*) |
|
0 | 205 |
|
615 | 206 |
(* Bounded Quantifiers *) |
14227 | 207 |
Ball_def: "Ball(A, P) == \<forall>x. x\<in>A --> P(x)" |
208 |
Bex_def: "Bex(A, P) == \<exists>x. x\<in>A & P(x)" |
|
690 | 209 |
|
14227 | 210 |
subset_def: "A <= B == \<forall>x\<in>A. x\<in>B" |
690 | 211 |
|
3906 | 212 |
|
3940 | 213 |
local |
3906 | 214 |
|
13780 | 215 |
axioms |
0 | 216 |
|
615 | 217 |
(* ZF axioms -- see Suppes p.238 |
218 |
Axioms for Union, Pow and Replace state existence only, |
|
219 |
uniqueness is derivable using extensionality. *) |
|
0 | 220 |
|
13780 | 221 |
extension: "A = B <-> A <= B & B <= A" |
14227 | 222 |
Union_iff: "A \<in> Union(C) <-> (\<exists>B\<in>C. A\<in>B)" |
223 |
Pow_iff: "A \<in> Pow(B) <-> A <= B" |
|
0 | 224 |
|
615 | 225 |
(*We may name this set, though it is not uniquely defined.*) |
14227 | 226 |
infinity: "0\<in>Inf & (\<forall>y\<in>Inf. succ(y): Inf)" |
0 | 227 |
|
615 | 228 |
(*This formulation facilitates case analysis on A.*) |
14227 | 229 |
foundation: "A=0 | (\<exists>x\<in>A. \<forall>y\<in>x. y~:A)" |
0 | 230 |
|
615 | 231 |
(*Schema axiom since predicate P is a higher-order variable*) |
14227 | 232 |
replacement: "(\<forall>x\<in>A. \<forall>y z. P(x,y) & P(x,z) --> y=z) ==> |
233 |
b \<in> PrimReplace(A,P) <-> (\<exists>x\<in>A. P(x,b))" |
|
615 | 234 |
|
14883 | 235 |
|
690 | 236 |
defs |
237 |
||
615 | 238 |
(* Derived form of replacement, restricting P to its functional part. |
239 |
The resulting set (for functional P) is the same as with |
|
240 |
PrimReplace, but the rules are simpler. *) |
|
0 | 241 |
|
13780 | 242 |
Replace_def: "Replace(A,P) == PrimReplace(A, %x y. (EX!z. P(x,z)) & P(x,y))" |
615 | 243 |
|
244 |
(* Functional form of replacement -- analgous to ML's map functional *) |
|
0 | 245 |
|
14227 | 246 |
RepFun_def: "RepFun(A,f) == {y . x\<in>A, y=f(x)}" |
0 | 247 |
|
615 | 248 |
(* Separation and Pairing can be derived from the Replacement |
249 |
and Powerset Axioms using the following definitions. *) |
|
0 | 250 |
|
14227 | 251 |
Collect_def: "Collect(A,P) == {y . x\<in>A, x=y & P(x)}" |
0 | 252 |
|
615 | 253 |
(*Unordered pairs (Upair) express binary union/intersection and cons; |
254 |
set enumerations translate as {a,...,z} = cons(a,...,cons(z,0)...)*) |
|
0 | 255 |
|
14227 | 256 |
Upair_def: "Upair(a,b) == {y. x\<in>Pow(Pow(0)), (x=0 & y=a) | (x=Pow(0) & y=b)}" |
13780 | 257 |
cons_def: "cons(a,A) == Upair(a,a) Un A" |
258 |
succ_def: "succ(i) == cons(i, i)" |
|
615 | 259 |
|
2872
ac81a17f86f8
Moved definitions (binary intersection, etc.) from upair.thy back to ZF.thy
paulson
parents:
2540
diff
changeset
|
260 |
(* Difference, general intersection, binary union and small intersection *) |
ac81a17f86f8
Moved definitions (binary intersection, etc.) from upair.thy back to ZF.thy
paulson
parents:
2540
diff
changeset
|
261 |
|
14227 | 262 |
Diff_def: "A - B == { x\<in>A . ~(x\<in>B) }" |
263 |
Inter_def: "Inter(A) == { x\<in>Union(A) . \<forall>y\<in>A. x\<in>y}" |
|
13780 | 264 |
Un_def: "A Un B == Union(Upair(A,B))" |
265 |
Int_def: "A Int B == Inter(Upair(A,B))" |
|
2872
ac81a17f86f8
Moved definitions (binary intersection, etc.) from upair.thy back to ZF.thy
paulson
parents:
2540
diff
changeset
|
266 |
|
14883 | 267 |
(* definite descriptions *) |
14227 | 268 |
the_def: "The(P) == Union({y . x \<in> {0}, P(y)})" |
13780 | 269 |
if_def: "if(P,a,b) == THE z. P & z=a | ~P & z=b" |
0 | 270 |
|
615 | 271 |
(* this "symmetric" definition works better than {{a}, {a,b}} *) |
13780 | 272 |
Pair_def: "<a,b> == {{a,a}, {a,b}}" |
14227 | 273 |
fst_def: "fst(p) == THE a. \<exists>b. p=<a,b>" |
274 |
snd_def: "snd(p) == THE b. \<exists>a. p=<a,b>" |
|
13780 | 275 |
split_def: "split(c) == %p. c(fst(p), snd(p))" |
14227 | 276 |
Sigma_def: "Sigma(A,B) == \<Union>x\<in>A. \<Union>y\<in>B(x). {<x,y>}" |
0 | 277 |
|
615 | 278 |
(* Operations on relations *) |
0 | 279 |
|
615 | 280 |
(*converse of relation r, inverse of function*) |
14227 | 281 |
converse_def: "converse(r) == {z. w\<in>r, \<exists>x y. w=<x,y> & z=<y,x>}" |
0 | 282 |
|
14227 | 283 |
domain_def: "domain(r) == {x. w\<in>r, \<exists>y. w=<x,y>}" |
13780 | 284 |
range_def: "range(r) == domain(converse(r))" |
285 |
field_def: "field(r) == domain(r) Un range(r)" |
|
14227 | 286 |
relation_def: "relation(r) == \<forall>z\<in>r. \<exists>x y. z = <x,y>" |
13780 | 287 |
function_def: "function(r) == |
14227 | 288 |
\<forall>x y. <x,y>:r --> (\<forall>y'. <x,y'>:r --> y=y')" |
289 |
image_def: "r `` A == {y : range(r) . \<exists>x\<in>A. <x,y> : r}" |
|
13780 | 290 |
vimage_def: "r -`` A == converse(r)``A" |
0 | 291 |
|
615 | 292 |
(* Abstraction, application and Cartesian product of a family of sets *) |
0 | 293 |
|
14227 | 294 |
lam_def: "Lambda(A,b) == {<x,b(x)> . x\<in>A}" |
13780 | 295 |
apply_def: "f`a == Union(f``{a})" |
14227 | 296 |
Pi_def: "Pi(A,B) == {f\<in>Pow(Sigma(A,B)). A<=domain(f) & function(f)}" |
0 | 297 |
|
12891 | 298 |
(* Restrict the relation r to the domain A *) |
14227 | 299 |
restrict_def: "restrict(r,A) == {z : r. \<exists>x\<in>A. \<exists>y. z = <x,y>}" |
13780 | 300 |
|
301 |
||
302 |
subsection {* Substitution*} |
|
303 |
||
304 |
(*Useful examples: singletonI RS subst_elem, subst_elem RSN (2,IntI) *) |
|
14227 | 305 |
lemma subst_elem: "[| b\<in>A; a=b |] ==> a\<in>A" |
13780 | 306 |
by (erule ssubst, assumption) |
307 |
||
308 |
||
309 |
subsection{*Bounded universal quantifier*} |
|
310 |
||
14227 | 311 |
lemma ballI [intro!]: "[| !!x. x\<in>A ==> P(x) |] ==> \<forall>x\<in>A. P(x)" |
13780 | 312 |
by (simp add: Ball_def) |
313 |
||
15481 | 314 |
lemmas strip = impI allI ballI |
315 |
||
14227 | 316 |
lemma bspec [dest?]: "[| \<forall>x\<in>A. P(x); x: A |] ==> P(x)" |
13780 | 317 |
by (simp add: Ball_def) |
318 |
||
319 |
(*Instantiates x first: better for automatic theorem proving?*) |
|
320 |
lemma rev_ballE [elim]: |
|
14227 | 321 |
"[| \<forall>x\<in>A. P(x); x~:A ==> Q; P(x) ==> Q |] ==> Q" |
13780 | 322 |
by (simp add: Ball_def, blast) |
323 |
||
14227 | 324 |
lemma ballE: "[| \<forall>x\<in>A. P(x); P(x) ==> Q; x~:A ==> Q |] ==> Q" |
13780 | 325 |
by blast |
326 |
||
327 |
(*Used in the datatype package*) |
|
14227 | 328 |
lemma rev_bspec: "[| x: A; \<forall>x\<in>A. P(x) |] ==> P(x)" |
13780 | 329 |
by (simp add: Ball_def) |
330 |
||
14227 | 331 |
(*Trival rewrite rule; (\<forall>x\<in>A.P)<->P holds only if A is nonempty!*) |
332 |
lemma ball_triv [simp]: "(\<forall>x\<in>A. P) <-> ((\<exists>x. x\<in>A) --> P)" |
|
13780 | 333 |
by (simp add: Ball_def) |
334 |
||
335 |
(*Congruence rule for rewriting*) |
|
336 |
lemma ball_cong [cong]: |
|
14227 | 337 |
"[| A=A'; !!x. x\<in>A' ==> P(x) <-> P'(x) |] ==> (\<forall>x\<in>A. P(x)) <-> (\<forall>x\<in>A'. P'(x))" |
13780 | 338 |
by (simp add: Ball_def) |
339 |
||
18845 | 340 |
lemma atomize_ball: |
341 |
"(!!x. x \<in> A ==> P(x)) == Trueprop (\<forall>x\<in>A. P(x))" |
|
342 |
by (simp only: Ball_def atomize_all atomize_imp) |
|
343 |
||
344 |
lemmas [symmetric, rulify] = atomize_ball |
|
345 |
and [symmetric, defn] = atomize_ball |
|
346 |
||
13780 | 347 |
|
348 |
subsection{*Bounded existential quantifier*} |
|
349 |
||
14227 | 350 |
lemma bexI [intro]: "[| P(x); x: A |] ==> \<exists>x\<in>A. P(x)" |
13780 | 351 |
by (simp add: Bex_def, blast) |
352 |
||
14227 | 353 |
(*The best argument order when there is only one x\<in>A*) |
354 |
lemma rev_bexI: "[| x\<in>A; P(x) |] ==> \<exists>x\<in>A. P(x)" |
|
13780 | 355 |
by blast |
356 |
||
14227 | 357 |
(*Not of the general form for such rules; ~\<exists>has become ALL~ *) |
358 |
lemma bexCI: "[| \<forall>x\<in>A. ~P(x) ==> P(a); a: A |] ==> \<exists>x\<in>A. P(x)" |
|
13780 | 359 |
by blast |
360 |
||
14227 | 361 |
lemma bexE [elim!]: "[| \<exists>x\<in>A. P(x); !!x. [| x\<in>A; P(x) |] ==> Q |] ==> Q" |
13780 | 362 |
by (simp add: Bex_def, blast) |
363 |
||
14227 | 364 |
(*We do not even have (\<exists>x\<in>A. True) <-> True unless A is nonempty!!*) |
365 |
lemma bex_triv [simp]: "(\<exists>x\<in>A. P) <-> ((\<exists>x. x\<in>A) & P)" |
|
13780 | 366 |
by (simp add: Bex_def) |
367 |
||
368 |
lemma bex_cong [cong]: |
|
14227 | 369 |
"[| A=A'; !!x. x\<in>A' ==> P(x) <-> P'(x) |] |
370 |
==> (\<exists>x\<in>A. P(x)) <-> (\<exists>x\<in>A'. P'(x))" |
|
13780 | 371 |
by (simp add: Bex_def cong: conj_cong) |
372 |
||
373 |
||
374 |
||
375 |
subsection{*Rules for subsets*} |
|
376 |
||
377 |
lemma subsetI [intro!]: |
|
14227 | 378 |
"(!!x. x\<in>A ==> x\<in>B) ==> A <= B" |
13780 | 379 |
by (simp add: subset_def) |
380 |
||
381 |
(*Rule in Modus Ponens style [was called subsetE] *) |
|
14227 | 382 |
lemma subsetD [elim]: "[| A <= B; c\<in>A |] ==> c\<in>B" |
13780 | 383 |
apply (unfold subset_def) |
384 |
apply (erule bspec, assumption) |
|
385 |
done |
|
386 |
||
387 |
(*Classical elimination rule*) |
|
388 |
lemma subsetCE [elim]: |
|
14227 | 389 |
"[| A <= B; c~:A ==> P; c\<in>B ==> P |] ==> P" |
13780 | 390 |
by (simp add: subset_def, blast) |
391 |
||
392 |
(*Sometimes useful with premises in this order*) |
|
14227 | 393 |
lemma rev_subsetD: "[| c\<in>A; A<=B |] ==> c\<in>B" |
13780 | 394 |
by blast |
395 |
||
396 |
lemma contra_subsetD: "[| A <= B; c ~: B |] ==> c ~: A" |
|
397 |
by blast |
|
398 |
||
399 |
lemma rev_contra_subsetD: "[| c ~: B; A <= B |] ==> c ~: A" |
|
400 |
by blast |
|
401 |
||
402 |
lemma subset_refl [simp]: "A <= A" |
|
403 |
by blast |
|
404 |
||
405 |
lemma subset_trans: "[| A<=B; B<=C |] ==> A<=C" |
|
406 |
by blast |
|
407 |
||
408 |
(*Useful for proving A<=B by rewriting in some cases*) |
|
409 |
lemma subset_iff: |
|
14227 | 410 |
"A<=B <-> (\<forall>x. x\<in>A --> x\<in>B)" |
13780 | 411 |
apply (unfold subset_def Ball_def) |
412 |
apply (rule iff_refl) |
|
413 |
done |
|
414 |
||
415 |
||
416 |
subsection{*Rules for equality*} |
|
417 |
||
418 |
(*Anti-symmetry of the subset relation*) |
|
419 |
lemma equalityI [intro]: "[| A <= B; B <= A |] ==> A = B" |
|
420 |
by (rule extension [THEN iffD2], rule conjI) |
|
421 |
||
422 |
||
14227 | 423 |
lemma equality_iffI: "(!!x. x\<in>A <-> x\<in>B) ==> A = B" |
13780 | 424 |
by (rule equalityI, blast+) |
425 |
||
426 |
lemmas equalityD1 = extension [THEN iffD1, THEN conjunct1, standard] |
|
427 |
lemmas equalityD2 = extension [THEN iffD1, THEN conjunct2, standard] |
|
428 |
||
429 |
lemma equalityE: "[| A = B; [| A<=B; B<=A |] ==> P |] ==> P" |
|
430 |
by (blast dest: equalityD1 equalityD2) |
|
431 |
||
432 |
lemma equalityCE: |
|
14227 | 433 |
"[| A = B; [| c\<in>A; c\<in>B |] ==> P; [| c~:A; c~:B |] ==> P |] ==> P" |
13780 | 434 |
by (erule equalityE, blast) |
435 |
||
27702 | 436 |
lemma equality_iffD: |
437 |
"A = B ==> (!!x. x : A <-> x : B)" |
|
438 |
by auto |
|
439 |
||
13780 | 440 |
|
441 |
subsection{*Rules for Replace -- the derived form of replacement*} |
|
442 |
||
443 |
lemma Replace_iff: |
|
14227 | 444 |
"b : {y. x\<in>A, P(x,y)} <-> (\<exists>x\<in>A. P(x,b) & (\<forall>y. P(x,y) --> y=b))" |
13780 | 445 |
apply (unfold Replace_def) |
446 |
apply (rule replacement [THEN iff_trans], blast+) |
|
447 |
done |
|
448 |
||
449 |
(*Introduction; there must be a unique y such that P(x,y), namely y=b. *) |
|
450 |
lemma ReplaceI [intro]: |
|
451 |
"[| P(x,b); x: A; !!y. P(x,y) ==> y=b |] ==> |
|
14227 | 452 |
b : {y. x\<in>A, P(x,y)}" |
13780 | 453 |
by (rule Replace_iff [THEN iffD2], blast) |
454 |
||
455 |
(*Elimination; may asssume there is a unique y such that P(x,y), namely y=b. *) |
|
456 |
lemma ReplaceE: |
|
14227 | 457 |
"[| b : {y. x\<in>A, P(x,y)}; |
458 |
!!x. [| x: A; P(x,b); \<forall>y. P(x,y)-->y=b |] ==> R |
|
13780 | 459 |
|] ==> R" |
460 |
by (rule Replace_iff [THEN iffD1, THEN bexE], simp+) |
|
461 |
||
462 |
(*As above but without the (generally useless) 3rd assumption*) |
|
463 |
lemma ReplaceE2 [elim!]: |
|
14227 | 464 |
"[| b : {y. x\<in>A, P(x,y)}; |
13780 | 465 |
!!x. [| x: A; P(x,b) |] ==> R |
466 |
|] ==> R" |
|
467 |
by (erule ReplaceE, blast) |
|
468 |
||
469 |
lemma Replace_cong [cong]: |
|
14227 | 470 |
"[| A=B; !!x y. x\<in>B ==> P(x,y) <-> Q(x,y) |] ==> |
13780 | 471 |
Replace(A,P) = Replace(B,Q)" |
472 |
apply (rule equality_iffI) |
|
473 |
apply (simp add: Replace_iff) |
|
474 |
done |
|
475 |
||
476 |
||
477 |
subsection{*Rules for RepFun*} |
|
478 |
||
14227 | 479 |
lemma RepFunI: "a \<in> A ==> f(a) : {f(x). x\<in>A}" |
13780 | 480 |
by (simp add: RepFun_def Replace_iff, blast) |
481 |
||
482 |
(*Useful for coinduction proofs*) |
|
14227 | 483 |
lemma RepFun_eqI [intro]: "[| b=f(a); a \<in> A |] ==> b : {f(x). x\<in>A}" |
13780 | 484 |
apply (erule ssubst) |
485 |
apply (erule RepFunI) |
|
486 |
done |
|
487 |
||
488 |
lemma RepFunE [elim!]: |
|
14227 | 489 |
"[| b : {f(x). x\<in>A}; |
490 |
!!x.[| x\<in>A; b=f(x) |] ==> P |] ==> |
|
13780 | 491 |
P" |
492 |
by (simp add: RepFun_def Replace_iff, blast) |
|
493 |
||
494 |
lemma RepFun_cong [cong]: |
|
14227 | 495 |
"[| A=B; !!x. x\<in>B ==> f(x)=g(x) |] ==> RepFun(A,f) = RepFun(B,g)" |
13780 | 496 |
by (simp add: RepFun_def) |
497 |
||
14227 | 498 |
lemma RepFun_iff [simp]: "b : {f(x). x\<in>A} <-> (\<exists>x\<in>A. b=f(x))" |
13780 | 499 |
by (unfold Bex_def, blast) |
500 |
||
14227 | 501 |
lemma triv_RepFun [simp]: "{x. x\<in>A} = A" |
13780 | 502 |
by blast |
503 |
||
504 |
||
505 |
subsection{*Rules for Collect -- forming a subset by separation*} |
|
506 |
||
507 |
(*Separation is derivable from Replacement*) |
|
14227 | 508 |
lemma separation [simp]: "a : {x\<in>A. P(x)} <-> a\<in>A & P(a)" |
13780 | 509 |
by (unfold Collect_def, blast) |
510 |
||
14227 | 511 |
lemma CollectI [intro!]: "[| a\<in>A; P(a) |] ==> a : {x\<in>A. P(x)}" |
13780 | 512 |
by simp |
513 |
||
14227 | 514 |
lemma CollectE [elim!]: "[| a : {x\<in>A. P(x)}; [| a\<in>A; P(a) |] ==> R |] ==> R" |
13780 | 515 |
by simp |
516 |
||
14227 | 517 |
lemma CollectD1: "a : {x\<in>A. P(x)} ==> a\<in>A" |
13780 | 518 |
by (erule CollectE, assumption) |
519 |
||
14227 | 520 |
lemma CollectD2: "a : {x\<in>A. P(x)} ==> P(a)" |
13780 | 521 |
by (erule CollectE, assumption) |
522 |
||
523 |
lemma Collect_cong [cong]: |
|
14227 | 524 |
"[| A=B; !!x. x\<in>B ==> P(x) <-> Q(x) |] |
13780 | 525 |
==> Collect(A, %x. P(x)) = Collect(B, %x. Q(x))" |
526 |
by (simp add: Collect_def) |
|
527 |
||
528 |
||
529 |
subsection{*Rules for Unions*} |
|
530 |
||
531 |
declare Union_iff [simp] |
|
532 |
||
533 |
(*The order of the premises presupposes that C is rigid; A may be flexible*) |
|
534 |
lemma UnionI [intro]: "[| B: C; A: B |] ==> A: Union(C)" |
|
535 |
by (simp, blast) |
|
536 |
||
14227 | 537 |
lemma UnionE [elim!]: "[| A \<in> Union(C); !!B.[| A: B; B: C |] ==> R |] ==> R" |
13780 | 538 |
by (simp, blast) |
539 |
||
540 |
||
541 |
subsection{*Rules for Unions of families*} |
|
14227 | 542 |
(* \<Union>x\<in>A. B(x) abbreviates Union({B(x). x\<in>A}) *) |
13780 | 543 |
|
14227 | 544 |
lemma UN_iff [simp]: "b : (\<Union>x\<in>A. B(x)) <-> (\<exists>x\<in>A. b \<in> B(x))" |
13780 | 545 |
by (simp add: Bex_def, blast) |
546 |
||
547 |
(*The order of the premises presupposes that A is rigid; b may be flexible*) |
|
14227 | 548 |
lemma UN_I: "[| a: A; b: B(a) |] ==> b: (\<Union>x\<in>A. B(x))" |
13780 | 549 |
by (simp, blast) |
550 |
||
551 |
||
552 |
lemma UN_E [elim!]: |
|
14227 | 553 |
"[| b : (\<Union>x\<in>A. B(x)); !!x.[| x: A; b: B(x) |] ==> R |] ==> R" |
13780 | 554 |
by blast |
555 |
||
556 |
lemma UN_cong: |
|
14227 | 557 |
"[| A=B; !!x. x\<in>B ==> C(x)=D(x) |] ==> (\<Union>x\<in>A. C(x)) = (\<Union>x\<in>B. D(x))" |
13780 | 558 |
by simp |
559 |
||
560 |
||
14227 | 561 |
(*No "Addcongs [UN_cong]" because \<Union>is a combination of constants*) |
13780 | 562 |
|
563 |
(* UN_E appears before UnionE so that it is tried first, to avoid expensive |
|
564 |
calls to hyp_subst_tac. Cannot include UN_I as it is unsafe: would enlarge |
|
565 |
the search space.*) |
|
566 |
||
567 |
||
568 |
subsection{*Rules for the empty set*} |
|
569 |
||
14227 | 570 |
(*The set {x\<in>0. False} is empty; by foundation it equals 0 |
13780 | 571 |
See Suppes, page 21.*) |
572 |
lemma not_mem_empty [simp]: "a ~: 0" |
|
573 |
apply (cut_tac foundation) |
|
574 |
apply (best dest: equalityD2) |
|
575 |
done |
|
576 |
||
577 |
lemmas emptyE [elim!] = not_mem_empty [THEN notE, standard] |
|
578 |
||
579 |
||
580 |
lemma empty_subsetI [simp]: "0 <= A" |
|
581 |
by blast |
|
582 |
||
14227 | 583 |
lemma equals0I: "[| !!y. y\<in>A ==> False |] ==> A=0" |
13780 | 584 |
by blast |
585 |
||
586 |
lemma equals0D [dest]: "A=0 ==> a ~: A" |
|
587 |
by blast |
|
588 |
||
589 |
declare sym [THEN equals0D, dest] |
|
590 |
||
14227 | 591 |
lemma not_emptyI: "a\<in>A ==> A ~= 0" |
13780 | 592 |
by blast |
593 |
||
14227 | 594 |
lemma not_emptyE: "[| A ~= 0; !!x. x\<in>A ==> R |] ==> R" |
13780 | 595 |
by blast |
596 |
||
597 |
||
14095
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
598 |
subsection{*Rules for Inter*} |
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
599 |
|
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
600 |
(*Not obviously useful for proving InterI, InterD, InterE*) |
14227 | 601 |
lemma Inter_iff: "A \<in> Inter(C) <-> (\<forall>x\<in>C. A: x) & C\<noteq>0" |
14095
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
602 |
by (simp add: Inter_def Ball_def, blast) |
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
603 |
|
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
604 |
(* Intersection is well-behaved only if the family is non-empty! *) |
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
605 |
lemma InterI [intro!]: |
14227 | 606 |
"[| !!x. x: C ==> A: x; C\<noteq>0 |] ==> A \<in> Inter(C)" |
14095
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
607 |
by (simp add: Inter_iff) |
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
608 |
|
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
609 |
(*A "destruct" rule -- every B in C contains A as an element, but |
14227 | 610 |
A\<in>B can hold when B\<in>C does not! This rule is analogous to "spec". *) |
611 |
lemma InterD [elim]: "[| A \<in> Inter(C); B \<in> C |] ==> A \<in> B" |
|
14095
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
612 |
by (unfold Inter_def, blast) |
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
613 |
|
14227 | 614 |
(*"Classical" elimination rule -- does not require exhibiting B\<in>C *) |
14095
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
615 |
lemma InterE [elim]: |
14227 | 616 |
"[| A \<in> Inter(C); B~:C ==> R; A\<in>B ==> R |] ==> R" |
14095
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
617 |
by (simp add: Inter_def, blast) |
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
618 |
|
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
619 |
|
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
620 |
subsection{*Rules for Intersections of families*} |
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
621 |
|
14227 | 622 |
(* \<Inter>x\<in>A. B(x) abbreviates Inter({B(x). x\<in>A}) *) |
14095
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
623 |
|
14227 | 624 |
lemma INT_iff: "b : (\<Inter>x\<in>A. B(x)) <-> (\<forall>x\<in>A. b \<in> B(x)) & A\<noteq>0" |
14095
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
625 |
by (force simp add: Inter_def) |
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
626 |
|
14227 | 627 |
lemma INT_I: "[| !!x. x: A ==> b: B(x); A\<noteq>0 |] ==> b: (\<Inter>x\<in>A. B(x))" |
14095
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
628 |
by blast |
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
629 |
|
14227 | 630 |
lemma INT_E: "[| b : (\<Inter>x\<in>A. B(x)); a: A |] ==> b \<in> B(a)" |
14095
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
631 |
by blast |
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
632 |
|
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
633 |
lemma INT_cong: |
14227 | 634 |
"[| A=B; !!x. x\<in>B ==> C(x)=D(x) |] ==> (\<Inter>x\<in>A. C(x)) = (\<Inter>x\<in>B. D(x))" |
14095
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
635 |
by simp |
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
636 |
|
14227 | 637 |
(*No "Addcongs [INT_cong]" because \<Inter>is a combination of constants*) |
14095
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
638 |
|
a1ba833d6b61
Changed many Intersection rules from i:I to I~=0 to avoid introducing a new
paulson
parents:
14076
diff
changeset
|
639 |
|
13780 | 640 |
subsection{*Rules for Powersets*} |
641 |
||
14227 | 642 |
lemma PowI: "A <= B ==> A \<in> Pow(B)" |
13780 | 643 |
by (erule Pow_iff [THEN iffD2]) |
644 |
||
14227 | 645 |
lemma PowD: "A \<in> Pow(B) ==> A<=B" |
13780 | 646 |
by (erule Pow_iff [THEN iffD1]) |
647 |
||
648 |
declare Pow_iff [iff] |
|
649 |
||
14227 | 650 |
lemmas Pow_bottom = empty_subsetI [THEN PowI] (* 0 \<in> Pow(B) *) |
651 |
lemmas Pow_top = subset_refl [THEN PowI] (* A \<in> Pow(A) *) |
|
13780 | 652 |
|
653 |
||
654 |
subsection{*Cantor's Theorem: There is no surjection from a set to its powerset.*} |
|
655 |
||
656 |
(*The search is undirected. Allowing redundant introduction rules may |
|
657 |
make it diverge. Variable b represents ANY map, such as |
|
14227 | 658 |
(lam x\<in>A.b(x)): A->Pow(A). *) |
659 |
lemma cantor: "\<exists>S \<in> Pow(A). \<forall>x\<in>A. b(x) ~= S" |
|
13780 | 660 |
by (best elim!: equalityCE del: ReplaceI RepFun_eqI) |
661 |
||
662 |
(*Functions for ML scripts*) |
|
663 |
ML |
|
664 |
{* |
|
14227 | 665 |
(*Converts A<=B to x\<in>A ==> x\<in>B*) |
24893 | 666 |
fun impOfSubs th = th RSN (2, @{thm rev_subsetD}); |
13780 | 667 |
|
14227 | 668 |
(*Takes assumptions \<forall>x\<in>A.P(x) and a\<in>A; creates assumption P(a)*) |
24893 | 669 |
val ball_tac = dtac @{thm bspec} THEN' assume_tac |
13780 | 670 |
*} |
0 | 671 |
|
672 |
end |
|
673 |