src/HOL/IMPP/EvenOdd.thy
author obua
Thu, 07 Jun 2007 17:21:43 +0200
changeset 23293 77577fc2f141
parent 19803 aa2581752afb
child 27362 a6dc1769fdda
permissions -rw-r--r--
deleted comments
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
8177
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
     1
(*  Title:      HOL/IMPP/EvenOdd.thy
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
     2
    ID:         $Id$
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
     3
    Author:     David von Oheimb
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
     4
    Copyright   1999 TUM
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
     5
*)
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
     6
17477
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
     7
header {* Example of mutually recursive procedures verified with Hoare logic *}
8177
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
     8
17477
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
     9
theory EvenOdd
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    10
imports Misc
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    11
begin
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    12
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    13
constdefs
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    14
  even :: "nat => bool"
11704
3c50a2cd6f00 * sane numerals (stage 2): plain "num" syntax (removed "#");
wenzelm
parents: 11701
diff changeset
    15
  "even n == 2 dvd n"
8177
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    16
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    17
consts
17477
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    18
  Even :: pname
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    19
  Odd :: pname
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    20
axioms
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    21
  Even_neq_Odd: "Even ~= Odd"
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    22
  Arg_neq_Res:  "Arg  ~= Res"
8177
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    23
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    24
constdefs
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    25
  evn :: com
15354
9234f5765d9c Added > and >= sugar
nipkow
parents: 11704
diff changeset
    26
 "evn == IF (%s. s<Arg> = 0)
8177
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    27
         THEN Loc Res:==(%s. 0)
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    28
         ELSE(Loc Res:=CALL Odd(%s. s<Arg> - 1);;
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    29
              Loc Arg:=CALL Odd(%s. s<Arg> - 1);;
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    30
              Loc Res:==(%s. s<Res> * s<Arg>))"
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    31
  odd :: com
15354
9234f5765d9c Added > and >= sugar
nipkow
parents: 11704
diff changeset
    32
 "odd == IF (%s. s<Arg> = 0)
8177
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    33
         THEN Loc Res:==(%s. 1)
11701
3d51fbf81c17 sane numerals (stage 1): added generic 1, removed 1' and 2 on nat,
wenzelm
parents: 8791
diff changeset
    34
         ELSE(Loc Res:=CALL Even (%s. s<Arg> - 1))"
8177
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    35
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    36
defs
17477
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    37
  bodies_def: "bodies == [(Even,evn),(Odd,odd)]"
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    38
8177
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    39
consts
17477
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    40
  Z_eq_Arg_plus   :: "nat => nat assn" ("Z=Arg+_" [50]50)
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    41
 "even_Z=(Res=0)" ::        "nat assn" ("Res'_ok")
8177
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
    42
defs
17477
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    43
  Z_eq_Arg_plus_def: "Z=Arg+n == %Z s.      Z =  s<Arg>+n"
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    44
  Res_ok_def:       "Res_ok   == %Z s. even Z = (s<Res> = 0)"
ceb42ea2f223 converted to Isar theory format;
wenzelm
parents: 15354
diff changeset
    45
19803
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    46
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    47
subsection "even"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    48
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    49
lemma even_0 [simp]: "even 0"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    50
apply (unfold even_def)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    51
apply simp
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    52
done
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    53
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    54
lemma not_even_1 [simp]: "even (Suc 0) = False"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    55
apply (unfold even_def)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    56
apply simp
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    57
done
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    58
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    59
lemma even_step [simp]: "even (Suc (Suc n)) = even n"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    60
apply (unfold even_def)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    61
apply (subgoal_tac "Suc (Suc n) = n+2")
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    62
prefer 2
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    63
apply  simp
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    64
apply (erule ssubst)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    65
apply (rule dvd_reduce)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    66
done
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    67
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    68
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    69
subsection "Arg, Res"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    70
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    71
declare Arg_neq_Res [simp] Arg_neq_Res [THEN not_sym, simp]
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    72
declare Even_neq_Odd [simp] Even_neq_Odd [THEN not_sym, simp]
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    73
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    74
lemma Z_eq_Arg_plus_def2: "(Z=Arg+n) Z s = (Z = s<Arg>+n)"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    75
apply (unfold Z_eq_Arg_plus_def)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    76
apply (rule refl)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    77
done
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    78
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    79
lemma Res_ok_def2: "Res_ok Z s = (even Z = (s<Res> = 0))"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    80
apply (unfold Res_ok_def)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    81
apply (rule refl)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    82
done
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    83
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    84
lemmas Arg_Res_simps = Z_eq_Arg_plus_def2 Res_ok_def2
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    85
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    86
lemma body_Odd [simp]: "body Odd = Some odd"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    87
apply (unfold body_def bodies_def)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    88
apply auto
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    89
done
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    90
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    91
lemma body_Even [simp]: "body Even = Some evn"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    92
apply (unfold body_def bodies_def)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    93
apply auto
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    94
done
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    95
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    96
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    97
subsection "verification"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    98
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
    99
lemma Odd_lemma: "{{Z=Arg+0}. BODY Even .{Res_ok}}|-{Z=Arg+Suc 0}. odd .{Res_ok}"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   100
apply (unfold odd_def)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   101
apply (rule hoare_derivs.If)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   102
apply (rule hoare_derivs.Ass [THEN conseq1])
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   103
apply  (clarsimp simp: Arg_Res_simps)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   104
apply (rule export_s)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   105
apply (rule hoare_derivs.Call [THEN conseq1])
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   106
apply  (rule_tac P = "Z=Arg+Suc (Suc 0) " in conseq12)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   107
apply (rule single_asm)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   108
apply (auto simp: Arg_Res_simps)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   109
done
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   110
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   111
lemma Even_lemma: "{{Z=Arg+1}. BODY Odd .{Res_ok}}|-{Z=Arg+0}. evn .{Res_ok}"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   112
apply (unfold evn_def)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   113
apply (rule hoare_derivs.If)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   114
apply (rule hoare_derivs.Ass [THEN conseq1])
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   115
apply  (clarsimp simp: Arg_Res_simps)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   116
apply (rule hoare_derivs.Comp)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   117
apply (rule_tac [2] hoare_derivs.Ass)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   118
apply clarsimp
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   119
apply (rule_tac Q = "%Z s. ?P Z s & Res_ok Z s" in hoare_derivs.Comp)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   120
apply (rule export_s)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   121
apply  (rule_tac I1 = "%Z l. Z = l Arg & 0 < Z" and Q1 = "Res_ok" in Call_invariant [THEN conseq12])
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   122
apply (rule single_asm [THEN conseq2])
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   123
apply   (clarsimp simp: Arg_Res_simps)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   124
apply  (force simp: Arg_Res_simps)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   125
apply (rule export_s)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   126
apply (rule_tac I1 = "%Z l. even Z = (l Res = 0) " and Q1 = "%Z s. even Z = (s<Arg> = 0) " in Call_invariant [THEN conseq12])
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   127
apply (rule single_asm [THEN conseq2])
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   128
apply  (clarsimp simp: Arg_Res_simps)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   129
apply (force simp: Arg_Res_simps)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   130
done
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   131
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   132
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   133
lemma Even_ok_N: "{}|-{Z=Arg+0}. BODY Even .{Res_ok}"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   134
apply (rule BodyN)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   135
apply (simp (no_asm))
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   136
apply (rule Even_lemma [THEN hoare_derivs.cut])
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   137
apply (rule BodyN)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   138
apply (simp (no_asm))
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   139
apply (rule Odd_lemma [THEN thin])
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   140
apply (simp (no_asm))
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   141
done
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   142
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   143
lemma Even_ok_S: "{}|-{Z=Arg+0}. BODY Even .{Res_ok}"
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   144
apply (rule conseq1)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   145
apply  (rule_tac Procs = "{Odd, Even}" and pn = "Even" and P = "%pn. Z=Arg+ (if pn = Odd then 1 else 0) " and Q = "%pn. Res_ok" in Body1)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   146
apply    auto
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   147
apply (rule hoare_derivs.insert)
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   148
apply (rule Odd_lemma [THEN thin])
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   149
apply  (simp (no_asm))
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   150
apply (rule Even_lemma [THEN thin])
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   151
apply (simp (no_asm))
aa2581752afb removed obsolete ML files;
wenzelm
parents: 17477
diff changeset
   152
done
8177
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
   153
e59e93ad85eb added IMPP to HOL
oheimb
parents:
diff changeset
   154
end