src/HOL/Nominal/Examples/SN.thy
author urbanc
Fri, 04 Jan 2008 09:34:11 +0100
changeset 25831 7711d60a5293
parent 24899 08865bb87098
child 25867 c24395ea4e71
permissions -rw-r--r--
adapted to new inversion rules
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
18263
7f75925498da cleaned up all examples so that they work with the
urbanc
parents: 18106
diff changeset
     1
(* $Id$ *)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
     2
19496
79dbe35c6cba Capitalized theory names.
berghofe
parents: 19218
diff changeset
     3
theory SN
21107
e69c0e82955a new file for defining functions in the lambda-calculus
urbanc
parents: 19972
diff changeset
     4
imports Lam_Funs
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
     5
begin
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
     6
18269
3f36e2165e51 some small tuning
urbanc
parents: 18263
diff changeset
     7
text {* Strong Normalisation proof from the Proofs and Types book *}
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
     8
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
     9
section {* Beta Reduction *}
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
    10
22418
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    11
lemma subst_rename: 
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    12
  assumes a: "c\<sharp>t1"
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    13
  shows "t1[a::=t2] = ([(c,a)]\<bullet>t1)[c::=t2]"
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    14
using a
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    15
by (nominal_induct t1 avoiding: a c t2 rule: lam.induct)
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    16
   (auto simp add: calc_atm fresh_atm abs_fresh)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
    17
18313
e61d2424863d initial cleanup to use the new induction method
urbanc
parents: 18269
diff changeset
    18
lemma forget: 
e61d2424863d initial cleanup to use the new induction method
urbanc
parents: 18269
diff changeset
    19
  assumes a: "a\<sharp>t1"
e61d2424863d initial cleanup to use the new induction method
urbanc
parents: 18269
diff changeset
    20
  shows "t1[a::=t2] = t1"
e61d2424863d initial cleanup to use the new induction method
urbanc
parents: 18269
diff changeset
    21
  using a
22418
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    22
by (nominal_induct t1 avoiding: a t2 rule: lam.induct)
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    23
   (auto simp add: abs_fresh fresh_atm)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
    24
18313
e61d2424863d initial cleanup to use the new induction method
urbanc
parents: 18269
diff changeset
    25
lemma fresh_fact: 
e61d2424863d initial cleanup to use the new induction method
urbanc
parents: 18269
diff changeset
    26
  fixes a::"name"
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
    27
  assumes a: "a\<sharp>t1" "a\<sharp>t2"
22540
e4817fa0f6a1 adapted to new nominal_inductive
urbanc
parents: 22538
diff changeset
    28
  shows "a\<sharp>t1[b::=t2]"
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
    29
using a
22418
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    30
by (nominal_induct t1 avoiding: a b t2 rule: lam.induct)
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    31
   (auto simp add: abs_fresh fresh_atm)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
    32
22540
e4817fa0f6a1 adapted to new nominal_inductive
urbanc
parents: 22538
diff changeset
    33
lemma fresh_fact': 
e4817fa0f6a1 adapted to new nominal_inductive
urbanc
parents: 22538
diff changeset
    34
  fixes a::"name"
e4817fa0f6a1 adapted to new nominal_inductive
urbanc
parents: 22538
diff changeset
    35
  assumes a: "a\<sharp>t2"
e4817fa0f6a1 adapted to new nominal_inductive
urbanc
parents: 22538
diff changeset
    36
  shows "a\<sharp>t1[a::=t2]"
e4817fa0f6a1 adapted to new nominal_inductive
urbanc
parents: 22538
diff changeset
    37
using a 
e4817fa0f6a1 adapted to new nominal_inductive
urbanc
parents: 22538
diff changeset
    38
by (nominal_induct t1 avoiding: a t2 rule: lam.induct)
e4817fa0f6a1 adapted to new nominal_inductive
urbanc
parents: 22538
diff changeset
    39
   (auto simp add: abs_fresh fresh_atm)
e4817fa0f6a1 adapted to new nominal_inductive
urbanc
parents: 22538
diff changeset
    40
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
    41
lemma subst_lemma:  
18313
e61d2424863d initial cleanup to use the new induction method
urbanc
parents: 18269
diff changeset
    42
  assumes a: "x\<noteq>y"
e61d2424863d initial cleanup to use the new induction method
urbanc
parents: 18269
diff changeset
    43
  and     b: "x\<sharp>L"
e61d2424863d initial cleanup to use the new induction method
urbanc
parents: 18269
diff changeset
    44
  shows "M[x::=N][y::=L] = M[y::=L][x::=N[y::=L]]"
e61d2424863d initial cleanup to use the new induction method
urbanc
parents: 18269
diff changeset
    45
using a b
18659
2ff0ae57431d changes to make use of the new induction principle proved by
urbanc
parents: 18654
diff changeset
    46
by (nominal_induct M avoiding: x y N L rule: lam.induct)
18313
e61d2424863d initial cleanup to use the new induction method
urbanc
parents: 18269
diff changeset
    47
   (auto simp add: fresh_fact forget)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
    48
22418
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    49
lemma id_subs: 
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    50
  shows "t[x::=Var x] = t"
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    51
  by (nominal_induct t avoiding: x rule: lam.induct)
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    52
     (simp_all add: fresh_atm)
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
    53
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
    54
lemma psubst_subst:
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
    55
  assumes h:"c\<sharp>\<theta>"
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
    56
  shows "(\<theta><t>)[c::=s] = ((c,s)#\<theta>)<t>"
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
    57
  using h
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
    58
by (nominal_induct t avoiding: \<theta> c s rule: lam.induct)
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
    59
   (auto simp add: fresh_list_cons fresh_atm forget lookup_fresh lookup_fresh')
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
    60
 
23760
aca2c7f80e2f Renamed inductive2 to inductive.
berghofe
parents: 23393
diff changeset
    61
inductive 
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
    62
  Beta :: "lam\<Rightarrow>lam\<Rightarrow>bool" (" _ \<longrightarrow>\<^isub>\<beta> _" [80,80] 80)
22271
51a80e238b29 Adapted to new inductive definition package.
berghofe
parents: 21404
diff changeset
    63
where
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
    64
  b1[intro!]: "s1 \<longrightarrow>\<^isub>\<beta> s2 \<Longrightarrow> App s1 t \<longrightarrow>\<^isub>\<beta> App s2 t"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
    65
| b2[intro!]: "s1\<longrightarrow>\<^isub>\<beta>s2 \<Longrightarrow> App t s1 \<longrightarrow>\<^isub>\<beta> App t s2"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
    66
| b3[intro!]: "s1\<longrightarrow>\<^isub>\<beta>s2 \<Longrightarrow> Lam [a].s1 \<longrightarrow>\<^isub>\<beta> Lam [a].s2"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
    67
| b4[intro!]: "a\<sharp>s2 \<Longrightarrow> App (Lam [a].s1) s2\<longrightarrow>\<^isub>\<beta> (s1[a::=s2])"
22538
3ccb92dfb5e9 tuned proofs (taking full advantage of nominal_inductive)
urbanc
parents: 22531
diff changeset
    68
22730
8bcc8809ed3b nominal_inductive no longer proves equivariance.
berghofe
parents: 22650
diff changeset
    69
equivariance Beta
8bcc8809ed3b nominal_inductive no longer proves equivariance.
berghofe
parents: 22650
diff changeset
    70
22538
3ccb92dfb5e9 tuned proofs (taking full advantage of nominal_inductive)
urbanc
parents: 22531
diff changeset
    71
nominal_inductive Beta
22540
e4817fa0f6a1 adapted to new nominal_inductive
urbanc
parents: 22538
diff changeset
    72
  by (simp_all add: abs_fresh fresh_fact')
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
    73
25831
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    74
lemma beta_preserves_fresh: 
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    75
  fixes a::"name"
18378
urbanc
parents: 18348
diff changeset
    76
  assumes a: "t\<longrightarrow>\<^isub>\<beta> s"
25831
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    77
  shows "a\<sharp>t \<Longrightarrow> a\<sharp>s"
18378
urbanc
parents: 18348
diff changeset
    78
using a
25831
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    79
apply(nominal_induct t s avoiding: a rule: Beta.strong_induct)
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    80
apply(auto simp add: abs_fresh fresh_fact fresh_atm)
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    81
done
18378
urbanc
parents: 18348
diff changeset
    82
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
    83
lemma beta_abs: 
25831
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    84
  assumes a: "Lam [a].t\<longrightarrow>\<^isub>\<beta> t'" 
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
    85
  shows "\<exists>t''. t'=Lam [a].t'' \<and> t\<longrightarrow>\<^isub>\<beta> t''"
25831
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    86
proof -
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    87
  have "a\<sharp>Lam [a].t" by (simp add: abs_fresh)
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    88
  with a have "a\<sharp>t'" by (simp add: beta_preserves_fresh)
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    89
  with a show ?thesis
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    90
    by (cases rule: Beta.strong_cases[where a="a" and aa="a"])
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    91
       (auto simp add: lam.inject abs_fresh alpha)
7711d60a5293 adapted to new inversion rules
urbanc
parents: 24899
diff changeset
    92
qed
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
    93
18313
e61d2424863d initial cleanup to use the new induction method
urbanc
parents: 18269
diff changeset
    94
lemma beta_subst: 
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
    95
  assumes a: "M \<longrightarrow>\<^isub>\<beta> M'"
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
    96
  shows "M[x::=N]\<longrightarrow>\<^isub>\<beta> M'[x::=N]" 
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
    97
using a
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
    98
by (nominal_induct M M' avoiding: x N rule: Beta.strong_induct)
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
    99
   (auto simp add: fresh_atm subst_lemma fresh_fact)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   100
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   101
section {* types *}
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   102
22418
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
   103
nominal_datatype ty =
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
   104
    TVar "nat"
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   105
  | TArr "ty" "ty" (infix "\<rightarrow>" 200)
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   106
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   107
lemma perm_ty:
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   108
  fixes pi ::"name prm"
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   109
  and   \<tau>  ::"ty"
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   110
  shows "pi\<bullet>\<tau> = \<tau>"
22418
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
   111
by (nominal_induct \<tau> rule: ty.induct) 
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
   112
   (simp_all add: perm_nat_def)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   113
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   114
lemma fresh_ty:
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   115
  fixes a ::"name"
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   116
  and   \<tau>  ::"ty"
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   117
  shows "a\<sharp>\<tau>"
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   118
  by (simp add: fresh_def perm_ty supp_def)
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   119
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   120
(* domain of a typing context *)
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   121
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   122
fun
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   123
  "dom_ty" :: "(name\<times>ty) list \<Rightarrow> (name list)"
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   124
where
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   125
  "dom_ty []    = []"
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   126
| "dom_ty ((x,\<tau>)#\<Gamma>) = (x)#(dom_ty \<Gamma>)" 
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   127
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   128
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   129
(* valid contexts *)
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   130
23760
aca2c7f80e2f Renamed inductive2 to inductive.
berghofe
parents: 23393
diff changeset
   131
inductive 
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   132
  valid :: "(name\<times>ty) list \<Rightarrow> bool"
22271
51a80e238b29 Adapted to new inductive definition package.
berghofe
parents: 21404
diff changeset
   133
where
51a80e238b29 Adapted to new inductive definition package.
berghofe
parents: 21404
diff changeset
   134
  v1[intro]: "valid []"
51a80e238b29 Adapted to new inductive definition package.
berghofe
parents: 21404
diff changeset
   135
| v2[intro]: "\<lbrakk>valid \<Gamma>;a\<sharp>\<Gamma>\<rbrakk>\<Longrightarrow> valid ((a,\<sigma>)#\<Gamma>)"
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   136
22538
3ccb92dfb5e9 tuned proofs (taking full advantage of nominal_inductive)
urbanc
parents: 22531
diff changeset
   137
equivariance valid 
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   138
23760
aca2c7f80e2f Renamed inductive2 to inductive.
berghofe
parents: 23393
diff changeset
   139
inductive_cases valid_elim[elim]: "valid ((a,\<tau>)#\<Gamma>)"
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   140
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   141
(* typing judgements *)
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   142
22418
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
   143
lemma fresh_context: 
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   144
  fixes  \<Gamma> :: "(name\<times>ty)list"
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   145
  and    a :: "name"
18378
urbanc
parents: 18348
diff changeset
   146
  assumes a: "a\<sharp>\<Gamma>"
urbanc
parents: 18348
diff changeset
   147
  shows "\<not>(\<exists>\<tau>::ty. (a,\<tau>)\<in>set \<Gamma>)"
urbanc
parents: 18348
diff changeset
   148
using a
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   149
by (induct \<Gamma>)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   150
   (auto simp add: fresh_prod fresh_list_cons fresh_atm)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   151
23760
aca2c7f80e2f Renamed inductive2 to inductive.
berghofe
parents: 23393
diff changeset
   152
inductive 
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   153
  typing :: "(name\<times>ty) list\<Rightarrow>lam\<Rightarrow>ty\<Rightarrow>bool" ("_ \<turnstile> _ : _" [60,60,60] 60)
22271
51a80e238b29 Adapted to new inductive definition package.
berghofe
parents: 21404
diff changeset
   154
where
22650
0c5b22076fb3 tuned the proof of lemma pt_list_set_fresh (as suggested by Randy Pollack) and tuned the syntax for sub_contexts
urbanc
parents: 22542
diff changeset
   155
  t1[intro]: "\<lbrakk>valid \<Gamma>; (a,\<tau>)\<in>set \<Gamma>\<rbrakk> \<Longrightarrow> \<Gamma> \<turnstile> Var a : \<tau>"
0c5b22076fb3 tuned the proof of lemma pt_list_set_fresh (as suggested by Randy Pollack) and tuned the syntax for sub_contexts
urbanc
parents: 22542
diff changeset
   156
| t2[intro]: "\<lbrakk>\<Gamma> \<turnstile> t1 : \<tau>\<rightarrow>\<sigma>; \<Gamma> \<turnstile> t2 : \<tau>\<rbrakk> \<Longrightarrow> \<Gamma> \<turnstile> App t1 t2 : \<sigma>"
22271
51a80e238b29 Adapted to new inductive definition package.
berghofe
parents: 21404
diff changeset
   157
| t3[intro]: "\<lbrakk>a\<sharp>\<Gamma>;((a,\<tau>)#\<Gamma>) \<turnstile> t : \<sigma>\<rbrakk> \<Longrightarrow> \<Gamma> \<turnstile> Lam [a].t : \<tau>\<rightarrow>\<sigma>"
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   158
22730
8bcc8809ed3b nominal_inductive no longer proves equivariance.
berghofe
parents: 22650
diff changeset
   159
equivariance typing
8bcc8809ed3b nominal_inductive no longer proves equivariance.
berghofe
parents: 22650
diff changeset
   160
22538
3ccb92dfb5e9 tuned proofs (taking full advantage of nominal_inductive)
urbanc
parents: 22531
diff changeset
   161
nominal_inductive typing
3ccb92dfb5e9 tuned proofs (taking full advantage of nominal_inductive)
urbanc
parents: 22531
diff changeset
   162
  by (simp_all add: abs_fresh fresh_ty)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   163
21107
e69c0e82955a new file for defining functions in the lambda-calculus
urbanc
parents: 19972
diff changeset
   164
abbreviation
22650
0c5b22076fb3 tuned the proof of lemma pt_list_set_fresh (as suggested by Randy Pollack) and tuned the syntax for sub_contexts
urbanc
parents: 22542
diff changeset
   165
  "sub" :: "(name\<times>ty) list \<Rightarrow> (name\<times>ty) list \<Rightarrow> bool" ("_ \<subseteq> _" [60,60] 60) 
0c5b22076fb3 tuned the proof of lemma pt_list_set_fresh (as suggested by Randy Pollack) and tuned the syntax for sub_contexts
urbanc
parents: 22542
diff changeset
   166
where
0c5b22076fb3 tuned the proof of lemma pt_list_set_fresh (as suggested by Randy Pollack) and tuned the syntax for sub_contexts
urbanc
parents: 22542
diff changeset
   167
  "\<Gamma>1 \<subseteq> \<Gamma>2 \<equiv> \<forall>a \<sigma>. (a,\<sigma>)\<in>set \<Gamma>1 \<longrightarrow>  (a,\<sigma>)\<in>set \<Gamma>2"
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   168
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   169
subsection {* some facts about beta *}
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   170
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   171
constdefs
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   172
  "NORMAL" :: "lam \<Rightarrow> bool"
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   173
  "NORMAL t \<equiv> \<not>(\<exists>t'. t\<longrightarrow>\<^isub>\<beta> t')"
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   174
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   175
lemma NORMAL_Var:
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   176
  shows "NORMAL (Var a)"
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   177
proof -
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   178
  { assume "\<exists>t'. (Var a) \<longrightarrow>\<^isub>\<beta> t'"
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   179
    then obtain t' where "(Var a) \<longrightarrow>\<^isub>\<beta> t'" by blast
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   180
    hence False by (cases, auto) 
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   181
  }
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   182
  thus "NORMAL (Var a)" by (force simp add: NORMAL_def)
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   183
qed
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   184
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   185
inductive 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   186
  SN :: "lam \<Rightarrow> bool"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   187
where
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   188
  SN_intro: "(\<And>t'. t \<longrightarrow>\<^isub>\<beta> t' \<Longrightarrow> SN t') \<Longrightarrow> SN t"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   189
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   190
lemma SN_elim:
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   191
  assumes a: "SN M"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   192
  shows "(\<forall>M. (\<forall>N. M \<longrightarrow>\<^isub>\<beta> N \<longrightarrow> P N)\<longrightarrow> P M) \<longrightarrow> P M"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   193
using a
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   194
by (induct rule: SN.SN.induct) (blast)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   195
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   196
lemma SN_preserved: 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   197
  assumes a: "SN t1" "t1\<longrightarrow>\<^isub>\<beta> t2"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   198
  shows "SN t2"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   199
using a 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   200
by (cases) (auto)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   201
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   202
lemma double_SN_aux:
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   203
  assumes a: "SN a"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   204
  and b: "SN b"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   205
  and hyp: "\<And>x z.
24899
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   206
    \<lbrakk>\<And>y. x \<longrightarrow>\<^isub>\<beta> y \<Longrightarrow> SN y; \<And>y. x \<longrightarrow>\<^isub>\<beta> y \<Longrightarrow> P y z;
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   207
     \<And>u. z \<longrightarrow>\<^isub>\<beta> u \<Longrightarrow> SN u; \<And>u. z \<longrightarrow>\<^isub>\<beta> u \<Longrightarrow> P x u\<rbrakk> \<Longrightarrow> P x z"
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   208
  shows "P a b"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   209
proof -
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   210
  from a
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   211
  have r: "\<And>b. SN b \<Longrightarrow> P a b"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   212
  proof (induct a rule: SN.SN.induct)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   213
    case (SN_intro x)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   214
    note SNI' = SN_intro
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   215
    have "SN b" by fact
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   216
    thus ?case
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   217
    proof (induct b rule: SN.SN.induct)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   218
      case (SN_intro y)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   219
      show ?case
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   220
	apply (rule hyp)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   221
	apply (erule SNI')
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   222
	apply (erule SNI')
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   223
	apply (rule SN.SN_intro)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   224
	apply (erule SN_intro)+
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   225
	done
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   226
    qed
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   227
  qed
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   228
  from b show ?thesis by (rule r)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   229
qed
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   230
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   231
lemma double_SN[consumes 2]:
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   232
  assumes a: "SN a"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   233
  and     b: "SN b" 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   234
  and     c: "\<And>x z. \<lbrakk>\<And>y. x \<longrightarrow>\<^isub>\<beta> y \<Longrightarrow> P y z; \<And>u. z \<longrightarrow>\<^isub>\<beta> u \<Longrightarrow> P x u\<rbrakk> \<Longrightarrow> P x z"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   235
  shows "P a b"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   236
using a b c
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   237
apply(rule_tac double_SN_aux)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   238
apply(assumption)+
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   239
apply(blast)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   240
done
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   241
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   242
section {* Candidates *}
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   243
22440
7e4f4f19002f deleted function for defining candidates and used nominal_primrec instead
urbanc
parents: 22420
diff changeset
   244
consts
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   245
  RED :: "ty \<Rightarrow> lam set"
22440
7e4f4f19002f deleted function for defining candidates and used nominal_primrec instead
urbanc
parents: 22420
diff changeset
   246
7e4f4f19002f deleted function for defining candidates and used nominal_primrec instead
urbanc
parents: 22420
diff changeset
   247
nominal_primrec
22418
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
   248
  "RED (TVar X) = {t. SN(t)}"
22440
7e4f4f19002f deleted function for defining candidates and used nominal_primrec instead
urbanc
parents: 22420
diff changeset
   249
  "RED (\<tau>\<rightarrow>\<sigma>) =   {t. \<forall>u. (u\<in>RED \<tau> \<longrightarrow> (App t u)\<in>RED \<sigma>)}"
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   250
by (rule TrueI)+
22418
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
   251
24899
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   252
(* neutral terms *)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   253
constdefs
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   254
  NEUT :: "lam \<Rightarrow> bool"
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   255
  "NEUT t \<equiv> (\<exists>a. t = Var a) \<or> (\<exists>t1 t2. t = App t1 t2)" 
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   256
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   257
(* a slight hack to get the first element of applications *)
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   258
(* this is needed to get (SN t) from SN (App t s)         *) 
23760
aca2c7f80e2f Renamed inductive2 to inductive.
berghofe
parents: 23393
diff changeset
   259
inductive 
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   260
  FST :: "lam\<Rightarrow>lam\<Rightarrow>bool" (" _ \<guillemotright> _" [80,80] 80)
22271
51a80e238b29 Adapted to new inductive definition package.
berghofe
parents: 21404
diff changeset
   261
where
22418
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
   262
  fst[intro!]:  "(App t s) \<guillemotright> t"
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   263
24899
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   264
consts
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   265
  fst_app_aux::"lam\<Rightarrow>lam option"
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   266
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   267
nominal_primrec
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   268
  "fst_app_aux (Var a)     = None"
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   269
  "fst_app_aux (App t1 t2) = Some t1"
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   270
  "fst_app_aux (Lam [x].t) = None"
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   271
apply(finite_guess)+
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   272
apply(rule TrueI)+
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   273
apply(simp add: fresh_none)
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   274
apply(fresh_guess)+
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   275
done
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   276
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   277
definition
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   278
  fst_app_def[simp]: "fst_app t = the (fst_app_aux t)"
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   279
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   280
lemma SN_of_FST_of_App: 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   281
  assumes a: "SN (App t s)"
24899
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   282
  shows "SN (fst_app (App t s))"
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   283
using a
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   284
proof - 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   285
  from a have "\<forall>z. (App t s \<guillemotright> z) \<longrightarrow> SN z"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   286
    by (induct rule: SN.SN.induct)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   287
       (blast elim: FST.cases intro: SN_intro)
24899
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   288
  then have "SN t" by blast
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   289
  then show "SN (fst_app (App t s))" by simp
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   290
qed
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   291
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   292
section {* Candidates *}
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   293
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   294
constdefs
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   295
  "CR1" :: "ty \<Rightarrow> bool"
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   296
  "CR1 \<tau> \<equiv> \<forall>t. (t\<in>RED \<tau> \<longrightarrow> SN t)"
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   297
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   298
  "CR2" :: "ty \<Rightarrow> bool"
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   299
  "CR2 \<tau> \<equiv> \<forall>t t'. (t\<in>RED \<tau> \<and> t \<longrightarrow>\<^isub>\<beta> t') \<longrightarrow> t'\<in>RED \<tau>"
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   300
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   301
  "CR3_RED" :: "lam \<Rightarrow> ty \<Rightarrow> bool"
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   302
  "CR3_RED t \<tau> \<equiv> \<forall>t'. t\<longrightarrow>\<^isub>\<beta> t' \<longrightarrow>  t'\<in>RED \<tau>" 
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   303
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   304
  "CR3" :: "ty \<Rightarrow> bool"
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   305
  "CR3 \<tau> \<equiv> \<forall>t. (NEUT t \<and> CR3_RED t \<tau>) \<longrightarrow> t\<in>RED \<tau>"
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   306
   
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   307
  "CR4" :: "ty \<Rightarrow> bool"
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   308
  "CR4 \<tau> \<equiv> \<forall>t. (NEUT t \<and> NORMAL t) \<longrightarrow>t\<in>RED \<tau>"
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   309
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   310
lemma CR3_implies_CR4: 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   311
  assumes a: "CR3 \<tau>" 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   312
  shows "CR4 \<tau>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   313
using a by (auto simp add: CR3_def CR3_RED_def CR4_def NORMAL_def)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   314
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   315
(* sub_induction in the arrow-type case for the next proof *) 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   316
lemma sub_induction: 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   317
  assumes a: "SN(u)"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   318
  and     b: "u\<in>RED \<tau>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   319
  and     c1: "NEUT t"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   320
  and     c2: "CR2 \<tau>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   321
  and     c3: "CR3 \<sigma>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   322
  and     c4: "CR3_RED t (\<tau>\<rightarrow>\<sigma>)"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   323
  shows "(App t u)\<in>RED \<sigma>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   324
using a b
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   325
proof (induct)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   326
  fix u
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   327
  assume as: "u\<in>RED \<tau>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   328
  assume ih: " \<And>u'. \<lbrakk>u \<longrightarrow>\<^isub>\<beta> u'; u' \<in> RED \<tau>\<rbrakk> \<Longrightarrow> App t u' \<in> RED \<sigma>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   329
  have "NEUT (App t u)" using c1 by (auto simp add: NEUT_def)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   330
  moreover
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   331
  have "CR3_RED (App t u) \<sigma>" unfolding CR3_RED_def
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   332
  proof (intro strip)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   333
    fix r
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   334
    assume red: "App t u \<longrightarrow>\<^isub>\<beta> r"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   335
    moreover
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   336
    { assume "\<exists>t'. t \<longrightarrow>\<^isub>\<beta> t' \<and> r = App t' u"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   337
      then obtain t' where a1: "t \<longrightarrow>\<^isub>\<beta> t'" and a2: "r = App t' u" by blast
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   338
      have "t'\<in>RED (\<tau>\<rightarrow>\<sigma>)" using c4 a1 by (simp add: CR3_RED_def)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   339
      then have "App t' u\<in>RED \<sigma>" using as by simp
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   340
      then have "r\<in>RED \<sigma>" using a2 by simp
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   341
    }
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   342
    moreover
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   343
    { assume "\<exists>u'. u \<longrightarrow>\<^isub>\<beta> u' \<and> r = App t u'"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   344
      then obtain u' where b1: "u \<longrightarrow>\<^isub>\<beta> u'" and b2: "r = App t u'" by blast
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   345
      have "u'\<in>RED \<tau>" using as b1 c2 by (auto simp add: CR2_def)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   346
      with ih have "App t u' \<in> RED \<sigma>" using b1 by simp
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   347
      then have "r\<in>RED \<sigma>" using b2 by simp
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   348
    }
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   349
    moreover
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   350
    { assume "\<exists>x t'. t = Lam [x].t'"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   351
      then obtain x t' where "t = Lam [x].t'" by blast
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   352
      then have "NEUT (Lam [x].t')" using c1 by simp
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   353
      then have "False" by (simp add: NEUT_def)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   354
      then have "r\<in>RED \<sigma>" by simp
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   355
    }
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   356
    ultimately show "r \<in> RED \<sigma>" by (cases) (auto simp add: lam.inject)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   357
  qed
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   358
  ultimately show "App t u \<in> RED \<sigma>" using c3 by (simp add: CR3_def)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   359
qed 
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   360
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   361
(* properties of the candiadates *)
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   362
lemma RED_props: 
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   363
  shows "CR1 \<tau>" and "CR2 \<tau>" and "CR3 \<tau>"
22418
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
   364
proof (nominal_induct \<tau> rule: ty.induct)
18611
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   365
  case (TVar a)
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   366
  { case 1 show "CR1 (TVar a)" by (simp add: CR1_def)
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   367
  next
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   368
    case 2 show "CR2 (TVar a)" by (auto intro: SN_preserved simp add: CR2_def)
18611
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   369
  next
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   370
    case 3 show "CR3 (TVar a)" by (auto intro: SN_intro simp add: CR3_def CR3_RED_def)
18611
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   371
  }
18599
e01112713fdc changed PRO_RED proof to conform with the new induction rules
urbanc
parents: 18383
diff changeset
   372
next
18611
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   373
  case (TArr \<tau>1 \<tau>2)
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   374
  { case 1
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   375
    have ih_CR3_\<tau>1: "CR3 \<tau>1" by fact
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   376
    have ih_CR1_\<tau>2: "CR1 \<tau>2" by fact
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   377
    show "CR1 (\<tau>1 \<rightarrow> \<tau>2)" unfolding CR1_def
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   378
    proof (simp, intro strip)
18611
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   379
      fix t
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   380
      assume a: "\<forall>u. u \<in> RED \<tau>1 \<longrightarrow> App t u \<in> RED \<tau>2"
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   381
      from ih_CR3_\<tau>1 have "CR4 \<tau>1" by (simp add: CR3_implies_CR4) 
18611
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   382
      moreover
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   383
      have "NEUT (Var a)" by (force simp add: NEUT_def)
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   384
      moreover
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   385
      have "NORMAL (Var a)" by (rule NORMAL_Var)
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   386
      ultimately have "(Var a)\<in> RED \<tau>1" by (simp add: CR4_def)
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   387
      with a have "App t (Var a) \<in> RED \<tau>2" by simp
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   388
      hence "SN (App t (Var a))" using ih_CR1_\<tau>2 by (simp add: CR1_def)
24899
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   389
      thus "SN(t)" by (auto dest: SN_of_FST_of_App)
18611
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   390
    qed
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   391
  next
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   392
    case 2
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   393
    have ih_CR1_\<tau>1: "CR1 \<tau>1" by fact
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   394
    have ih_CR2_\<tau>2: "CR2 \<tau>2" by fact
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   395
    show "CR2 (\<tau>1 \<rightarrow> \<tau>2)" unfolding CR2_def
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   396
    proof (simp, intro strip)
18611
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   397
      fix t1 t2 u
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   398
      assume "(\<forall>u. u \<in> RED \<tau>1 \<longrightarrow> App t1 u \<in> RED \<tau>2) \<and>  t1 \<longrightarrow>\<^isub>\<beta> t2" 
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   399
	and  "u \<in> RED \<tau>1"
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   400
      hence "t1 \<longrightarrow>\<^isub>\<beta> t2" and "App t1 u \<in> RED \<tau>2" by simp_all
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   401
      thus "App t2 u \<in> RED \<tau>2" using ih_CR2_\<tau>2 by (auto simp add: CR2_def)
18611
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   402
    qed
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   403
  next
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   404
    case 3
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   405
    have ih_CR1_\<tau>1: "CR1 \<tau>1" by fact
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   406
    have ih_CR2_\<tau>1: "CR2 \<tau>1" by fact
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   407
    have ih_CR3_\<tau>2: "CR3 \<tau>2" by fact
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   408
    show "CR3 (\<tau>1 \<rightarrow> \<tau>2)" unfolding CR3_def
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   409
    proof (simp, intro strip)
18611
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   410
      fix t u
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   411
      assume a1: "u \<in> RED \<tau>1"
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   412
      assume a2: "NEUT t \<and> CR3_RED t (\<tau>1 \<rightarrow> \<tau>2)"
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   413
      have "SN(u)" using a1 ih_CR1_\<tau>1 by (simp add: CR1_def)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   414
      then show "(App t u)\<in>RED \<tau>2" using ih_CR2_\<tau>1 ih_CR3_\<tau>2 a1 a2 by (blast intro: sub_induction)
18611
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   415
    qed
687c9bffbca1 another change for the new induct-method
urbanc
parents: 18599
diff changeset
   416
  }
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   417
qed
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   418
   
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   419
(* not as simple as on paper, because of the stronger double_SN induction *) 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   420
lemma abs_RED: 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   421
  assumes asm: "\<forall>s\<in>RED \<tau>. t[x::=s]\<in>RED \<sigma>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   422
  shows "Lam [x].t\<in>RED (\<tau>\<rightarrow>\<sigma>)"
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   423
proof -
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   424
  have b1: "SN t" 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   425
  proof -
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   426
    have "Var x\<in>RED \<tau>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   427
    proof -
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   428
      have "CR4 \<tau>" by (simp add: RED_props CR3_implies_CR4)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   429
      moreover
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   430
      have "NEUT (Var x)" by (auto simp add: NEUT_def)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   431
      moreover
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   432
      have "NORMAL (Var x)" by (auto elim: Beta.cases simp add: NORMAL_def)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   433
      ultimately show "Var x\<in>RED \<tau>" by (simp add: CR4_def)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   434
    qed
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   435
    then have "t[x::=Var x]\<in>RED \<sigma>" using asm by simp
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   436
    then have "t\<in>RED \<sigma>" by (simp add: id_subs)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   437
    moreover 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   438
    have "CR1 \<sigma>" by (simp add: RED_props)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   439
    ultimately show "SN t" by (simp add: CR1_def)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   440
  qed
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   441
  show "Lam [x].t\<in>RED (\<tau>\<rightarrow>\<sigma>)"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   442
  proof (simp, intro strip)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   443
    fix u
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   444
    assume b2: "u\<in>RED \<tau>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   445
    then have b3: "SN u" using RED_props by (auto simp add: CR1_def)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   446
    show "App (Lam [x].t) u \<in> RED \<sigma>" using b1 b3 b2 asm
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   447
    proof(induct t u rule: double_SN)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   448
      fix t u
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   449
      assume ih1: "\<And>t'.  \<lbrakk>t \<longrightarrow>\<^isub>\<beta> t'; u\<in>RED \<tau>; \<forall>s\<in>RED \<tau>. t'[x::=s]\<in>RED \<sigma>\<rbrakk> \<Longrightarrow> App (Lam [x].t') u \<in> RED \<sigma>" 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   450
      assume ih2: "\<And>u'.  \<lbrakk>u \<longrightarrow>\<^isub>\<beta> u'; u'\<in>RED \<tau>; \<forall>s\<in>RED \<tau>. t[x::=s]\<in>RED \<sigma>\<rbrakk> \<Longrightarrow> App (Lam [x].t) u' \<in> RED \<sigma>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   451
      assume as1: "u \<in> RED \<tau>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   452
      assume as2: "\<forall>s\<in>RED \<tau>. t[x::=s]\<in>RED \<sigma>"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   453
      have "CR3_RED (App (Lam [x].t) u) \<sigma>" unfolding CR3_RED_def
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   454
      proof(intro strip)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   455
	fix r
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   456
	assume red: "App (Lam [x].t) u \<longrightarrow>\<^isub>\<beta> r"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   457
	moreover
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   458
	{ assume "\<exists>t'. t \<longrightarrow>\<^isub>\<beta> t' \<and> r = App (Lam [x].t') u"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   459
	  then obtain t' where a1: "t \<longrightarrow>\<^isub>\<beta> t'" and a2: "r = App (Lam [x].t') u" by blast
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   460
	  have "App (Lam [x].t') u\<in>RED \<sigma>" using ih1 a1 as1 as2
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   461
	    apply(auto)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   462
	    apply(drule_tac x="t'" in meta_spec)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   463
	    apply(simp)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   464
	    apply(drule meta_mp)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   465
	    apply(auto)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   466
	    apply(drule_tac x="s" in bspec)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   467
	    apply(simp)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   468
	    apply(subgoal_tac "CR2 \<sigma>")
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   469
	    apply(unfold CR2_def)[1]
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   470
	    apply(drule_tac x="t[x::=s]" in spec)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   471
	    apply(drule_tac x="t'[x::=s]" in spec)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   472
	    apply(simp add: beta_subst)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   473
	    apply(simp add: RED_props)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   474
	    done
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   475
	  then have "r\<in>RED \<sigma>" using a2 by simp
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   476
	}
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   477
	moreover
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   478
	{ assume "\<exists>u'. u \<longrightarrow>\<^isub>\<beta> u' \<and> r = App (Lam [x].t) u'"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   479
	  then obtain u' where b1: "u \<longrightarrow>\<^isub>\<beta> u'" and b2: "r = App (Lam [x].t) u'" by blast
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   480
	  have "App (Lam [x].t) u'\<in>RED \<sigma>" using ih2 b1 as1 as2
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   481
	    apply(auto)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   482
	    apply(drule_tac x="u'" in meta_spec)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   483
	    apply(simp)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   484
	    apply(drule meta_mp)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   485
	    apply(subgoal_tac "CR2 \<tau>")
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   486
	    apply(unfold CR2_def)[1]
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   487
	    apply(drule_tac x="u" in spec)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   488
	    apply(drule_tac x="u'" in spec)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   489
	    apply(simp)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   490
	    apply(simp add: RED_props)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   491
	    apply(simp)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   492
	    done
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   493
	  then have "r\<in>RED \<sigma>" using b2 by simp
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   494
	}
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   495
	moreover
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   496
	{ assume "r = t[x::=u]"
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   497
	  then have "r\<in>RED \<sigma>" using as1 as2 by auto
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   498
	}
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   499
	ultimately show "r \<in> RED \<sigma>" 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   500
	apply(cases) 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   501
	apply(auto simp add: lam.inject)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   502
	apply(drule beta_abs)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   503
	apply(auto simp add: alpha subst_rename)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   504
	done
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   505
    qed
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   506
    moreover 
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   507
    have "NEUT (App (Lam [x].t) u)" unfolding NEUT_def by (auto)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   508
    ultimately show "App (Lam [x].t) u \<in> RED \<sigma>"  using RED_props by (simp add: CR3_def)
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   509
  qed
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   510
qed
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   511
qed
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   512
22420
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   513
abbreviation 
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   514
 mapsto :: "(name\<times>lam) list \<Rightarrow> name \<Rightarrow> lam \<Rightarrow> bool" ("_ maps _ to _" [55,55,55] 55) 
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   515
where
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   516
 "\<theta> maps x to e\<equiv> (lookup \<theta> x) = e"
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   517
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   518
abbreviation 
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   519
  closes :: "(name\<times>lam) list \<Rightarrow> (name\<times>ty) list \<Rightarrow> bool" ("_ closes _" [55,55] 55) 
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   520
where
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   521
  "\<theta> closes \<Gamma> \<equiv> \<forall>x T. ((x,T) \<in> set \<Gamma> \<longrightarrow> (\<exists>t. \<theta> maps x to t \<and> t \<in> RED T))"
21107
e69c0e82955a new file for defining functions in the lambda-calculus
urbanc
parents: 19972
diff changeset
   522
18106
836135c8acb2 Initial commit.
urbanc
parents:
diff changeset
   523
lemma all_RED: 
22420
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   524
  assumes a: "\<Gamma> \<turnstile> t : \<tau>"
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   525
  and     b: "\<theta> closes \<Gamma>"
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   526
  shows "\<theta><t> \<in> RED \<tau>"
18345
d37fb71754fe added an Isar-proof for the abs_ALL lemma
urbanc
parents: 18313
diff changeset
   527
using a b
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   528
proof(nominal_induct  avoiding: \<theta> rule: typing.strong_induct)
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   529
  case (t3 a \<Gamma> \<sigma> t \<tau> \<theta>) --"lambda case"
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   530
  have ih: "\<And>\<theta>. \<theta> closes ((a,\<sigma>)#\<Gamma>) \<Longrightarrow> \<theta><t> \<in> RED \<tau>" by fact
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   531
  have \<theta>_cond: "\<theta> closes \<Gamma>" by fact
23393
31781b2de73d tuned proofs: avoid implicit prems;
wenzelm
parents: 23142
diff changeset
   532
  have fresh: "a\<sharp>\<Gamma>" "a\<sharp>\<theta>" by fact+
24899
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   533
  from ih have "\<forall>s\<in>RED \<sigma>. ((a,s)#\<theta>)<t> \<in> RED \<tau>" using fresh \<theta>_cond fresh_context by simp
08865bb87098 Isar-fied many proofs
urbanc
parents: 23970
diff changeset
   534
  then have "\<forall>s\<in>RED \<sigma>. \<theta><t>[a::=s] \<in> RED \<tau>" using fresh by (simp add: psubst_subst)
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   535
  then have "Lam [a].(\<theta><t>) \<in> RED (\<sigma> \<rightarrow> \<tau>)" by (simp only: abs_RED)
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   536
  then show "\<theta><(Lam [a].t)> \<in> RED (\<sigma> \<rightarrow> \<tau>)" using fresh by simp
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   537
qed auto
18345
d37fb71754fe added an Isar-proof for the abs_ALL lemma
urbanc
parents: 18313
diff changeset
   538
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   539
section {* identity substitution generated from a context \<Gamma> *}
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   540
fun
18382
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   541
  "id" :: "(name\<times>ty) list \<Rightarrow> (name\<times>lam) list"
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   542
where
18382
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   543
  "id []    = []"
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   544
| "id ((x,\<tau>)#\<Gamma>) = (x,Var x)#(id \<Gamma>)"
18382
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   545
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   546
lemma id_maps:
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   547
  shows "(id \<Gamma>) maps a to (Var a)"
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   548
by (induct \<Gamma>) (auto)
18382
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   549
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   550
lemma id_fresh:
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   551
  fixes a::"name"
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   552
  assumes a: "a\<sharp>\<Gamma>"
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   553
  shows "a\<sharp>(id \<Gamma>)"
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   554
using a
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   555
by (induct \<Gamma>)
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   556
   (auto simp add: fresh_list_nil fresh_list_cons)
18382
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   557
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   558
lemma id_apply:  
22420
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   559
  shows "(id \<Gamma>)<t> = t"
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   560
by (nominal_induct t avoiding: \<Gamma> rule: lam.induct)
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   561
   (auto simp add: id_maps id_fresh)
18382
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   562
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   563
lemma id_closes:
22420
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   564
  shows "(id \<Gamma>) closes \<Gamma>"
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   565
apply(auto)
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   566
apply(simp add: id_maps)
22420
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   567
apply(subgoal_tac "CR3 T") --"A"
23970
a252a7da82b9 cleaned up the proofs a bit
urbanc
parents: 23760
diff changeset
   568
apply(drule CR3_implies_CR4)
18382
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   569
apply(simp add: CR4_def)
22420
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   570
apply(drule_tac x="Var x" in spec)
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   571
apply(force simp add: NEUT_def NORMAL_Var)
22418
49e2d9744ae1 major update of the nominal package; there is now an infrastructure
urbanc
parents: 22271
diff changeset
   572
--"A"
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   573
apply(rule RED_props)
18382
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   574
done
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   575
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   576
lemma typing_implies_RED:  
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   577
  assumes a: "\<Gamma> \<turnstile> t : \<tau>"
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   578
  shows "t \<in> RED \<tau>"
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   579
proof -
22420
4ccc8c1b08a3 updated this file to the new infrastructure
urbanc
parents: 22418
diff changeset
   580
  have "(id \<Gamma>)<t>\<in>RED \<tau>" 
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   581
  proof -
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   582
    have "(id \<Gamma>) closes \<Gamma>" by (rule id_closes)
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   583
    with a show ?thesis by (rule all_RED)
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   584
  qed
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   585
  thus"t \<in> RED \<tau>" by (simp add: id_apply)
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   586
qed
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   587
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   588
lemma typing_implies_SN: 
23142
cb1dbe64a4d5 tuned the proof
urbanc
parents: 22730
diff changeset
   589
  assumes a: "\<Gamma> \<turnstile> t : \<tau>"
18383
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   590
  shows "SN(t)"
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   591
proof -
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   592
  from a have "t \<in> RED \<tau>" by (rule typing_implies_RED)
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   593
  moreover
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   594
  have "CR1 \<tau>" by (rule RED_props)
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   595
  ultimately show "SN(t)" by (simp add: CR1_def)
5f40a59a798b ISAR-fied some proofs
urbanc
parents: 18382
diff changeset
   596
qed
18382
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   597
44578c918349 completed the sn proof and changed the manual
urbanc
parents: 18378
diff changeset
   598
end