src/HOL/UNITY/Handshake.thy
author paulson
Sat, 23 Sep 2000 16:02:01 +0200
changeset 10064 1a77667b21ef
parent 6295 351b3c2b0d83
permissions -rw-r--r--
added compatibility relation: AllowedActs, Allowed, ok, OK and changes to "guarantees", etc.
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
5252
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
     1
(*  Title:      HOL/UNITY/Handshake.thy
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
     2
    ID:         $Id$
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
     3
    Author:     Lawrence C Paulson, Cambridge University Computer Laboratory
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
     4
    Copyright   1998  University of Cambridge
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
     5
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
     6
Handshake Protocol
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
     7
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
     8
From Misra, "Asynchronous Compositions of Programs", Section 5.3.2
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
     9
*)
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    10
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    11
Handshake = Union +
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    12
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    13
record state =
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    14
  BB :: bool
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    15
  NF :: nat
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    16
  NG :: nat
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    17
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    18
constdefs
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    19
  (*F's program*)
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    20
  cmdF :: "(state*state) set"
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    21
    "cmdF == {(s,s'). s' = s (|NF:= Suc(NF s), BB:=False|) & BB s}"
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    22
5648
fe887910e32e specifications as sets of programs
paulson
parents: 5596
diff changeset
    23
  F :: "state program"
10064
1a77667b21ef added compatibility relation: AllowedActs, Allowed, ok,
paulson
parents: 6295
diff changeset
    24
    "F == mk_program ({s. NF s = 0 & BB s}, {cmdF}, UNIV)"
5252
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    25
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    26
  (*G's program*)
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    27
  cmdG :: "(state*state) set"
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    28
    "cmdG == {(s,s'). s' = s (|NG:= Suc(NG s), BB:=True|) & ~ BB s}"
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    29
5648
fe887910e32e specifications as sets of programs
paulson
parents: 5596
diff changeset
    30
  G :: "state program"
10064
1a77667b21ef added compatibility relation: AllowedActs, Allowed, ok,
paulson
parents: 6295
diff changeset
    31
    "G == mk_program ({s. NG s = 0 & BB s}, {cmdG}, UNIV)"
5252
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    32
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    33
  (*the joint invariant*)
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    34
  invFG :: "state set"
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    35
    "invFG == {s. NG s <= NF s & NF s <= Suc (NG s) & (BB s = (NF s = NG s))}"
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    36
1b0f14d11142 Union primitives and examples
paulson
parents:
diff changeset
    37
end