author | wenzelm |
Thu, 08 Dec 2022 11:24:43 +0100 | |
changeset 76598 | 9f97eda3fcf1 |
parent 75878 | fcd118d9242f |
permissions | -rw-r--r-- |
23193 | 1 |
(* Title: HOL/ex/Arith_Examples.thy |
2 |
Author: Tjark Weber |
|
3 |
*) |
|
4 |
||
61343 | 5 |
section \<open>Arithmetic\<close> |
23193 | 6 |
|
31066 | 7 |
theory Arith_Examples |
8 |
imports Main |
|
9 |
begin |
|
23193 | 10 |
|
61343 | 11 |
text \<open> |
61933 | 12 |
The \<open>arith\<close> method is used frequently throughout the Isabelle |
23193 | 13 |
distribution. This file merely contains some additional tests and special |
14 |
corner cases. Some rather technical remarks: |
|
15 |
||
69597 | 16 |
\<^ML>\<open>Lin_Arith.simple_tac\<close> is a very basic version of the tactic. It performs no |
23193 | 17 |
meta-to-object-logic conversion, and only some splitting of operators. |
69597 | 18 |
\<^ML>\<open>Lin_Arith.tac\<close> performs meta-to-object-logic conversion, full |
61933 | 19 |
splitting of operators, and NNF normalization of the goal. The \<open>arith\<close> |
20 |
method combines them both, and tries other methods (e.g.~\<open>presburger\<close>) |
|
23193 | 21 |
as well. This is the one that you should use in your proofs! |
22 |
||
69597 | 23 |
An \<open>arith\<close>-based simproc is available as well (see \<^ML>\<open>Lin_Arith.simproc\<close>), which---for performance |
24 |
reasons---however does even less splitting than \<^ML>\<open>Lin_Arith.simple_tac\<close> |
|
24093 | 25 |
at the moment (namely inequalities only). (On the other hand, it |
69597 | 26 |
does take apart conjunctions, which \<^ML>\<open>Lin_Arith.simple_tac\<close> currently |
24093 | 27 |
does not do.) |
61343 | 28 |
\<close> |
23193 | 29 |
|
30 |
||
69597 | 31 |
subsection \<open>Splitting of Operators: \<^term>\<open>max\<close>, \<^term>\<open>min\<close>, \<^term>\<open>abs\<close>, |
32 |
\<^term>\<open>minus\<close>, \<^term>\<open>nat\<close>, \<^term>\<open>modulo\<close>, |
|
33 |
\<^term>\<open>divide\<close>\<close> |
|
23193 | 34 |
|
35 |
lemma "(i::nat) <= max i j" |
|
31066 | 36 |
by linarith |
23193 | 37 |
|
38 |
lemma "(i::int) <= max i j" |
|
31066 | 39 |
by linarith |
23193 | 40 |
|
41 |
lemma "min i j <= (i::nat)" |
|
31066 | 42 |
by linarith |
23193 | 43 |
|
44 |
lemma "min i j <= (i::int)" |
|
31066 | 45 |
by linarith |
23193 | 46 |
|
47 |
lemma "min (i::nat) j <= max i j" |
|
31066 | 48 |
by linarith |
23193 | 49 |
|
50 |
lemma "min (i::int) j <= max i j" |
|
31066 | 51 |
by linarith |
23193 | 52 |
|
23208 | 53 |
lemma "min (i::nat) j + max i j = i + j" |
31066 | 54 |
by linarith |
23208 | 55 |
|
56 |
lemma "min (i::int) j + max i j = i + j" |
|
31066 | 57 |
by linarith |
23208 | 58 |
|
23193 | 59 |
lemma "(i::nat) < j ==> min i j < max i j" |
31066 | 60 |
by linarith |
23193 | 61 |
|
62 |
lemma "(i::int) < j ==> min i j < max i j" |
|
31066 | 63 |
by linarith |
23193 | 64 |
|
61945 | 65 |
lemma "(0::int) <= \<bar>i\<bar>" |
31066 | 66 |
by linarith |
23193 | 67 |
|
61945 | 68 |
lemma "(i::int) <= \<bar>i\<bar>" |
31066 | 69 |
by linarith |
23193 | 70 |
|
61945 | 71 |
lemma "\<bar>\<bar>i::int\<bar>\<bar> = \<bar>i\<bar>" |
31066 | 72 |
by linarith |
23193 | 73 |
|
61343 | 74 |
text \<open>Also testing subgoals with bound variables.\<close> |
23193 | 75 |
|
76 |
lemma "!!x. (x::nat) <= y ==> x - y = 0" |
|
31066 | 77 |
by linarith |
23193 | 78 |
|
79 |
lemma "!!x. (x::nat) - y = 0 ==> x <= y" |
|
31066 | 80 |
by linarith |
23193 | 81 |
|
82 |
lemma "!!x. ((x::nat) <= y) = (x - y = 0)" |
|
31066 | 83 |
by linarith |
23193 | 84 |
|
85 |
lemma "[| (x::nat) < y; d < 1 |] ==> x - y = d" |
|
31066 | 86 |
by linarith |
23193 | 87 |
|
88 |
lemma "[| (x::nat) < y; d < 1 |] ==> x - y - x = d - x" |
|
31066 | 89 |
by linarith |
23193 | 90 |
|
91 |
lemma "(x::int) < y ==> x - y < 0" |
|
31066 | 92 |
by linarith |
23193 | 93 |
|
94 |
lemma "nat (i + j) <= nat i + nat j" |
|
31066 | 95 |
by linarith |
23193 | 96 |
|
97 |
lemma "i < j ==> nat (i - j) = 0" |
|
31066 | 98 |
by linarith |
23193 | 99 |
|
100 |
lemma "(i::nat) mod 0 = i" |
|
75878 | 101 |
using split_mod [of _ _ 0, linarith_split] |
70356
4a327c061870
streamlined setup for linear algebra, particularly removed redundant rule declarations
haftmann
parents:
69597
diff
changeset
|
102 |
\<comment> \<open>rule \<^text>\<open>split_mod\<close> is only declared by default for numerals\<close> |
31066 | 103 |
by linarith |
23198 | 104 |
|
105 |
lemma "(i::nat) mod 1 = 0" |
|
46597 | 106 |
(* rule split_mod is only declared by default for numerals *) |
75878 | 107 |
using split_mod [of _ _ 1, linarith_split] |
70356
4a327c061870
streamlined setup for linear algebra, particularly removed redundant rule declarations
haftmann
parents:
69597
diff
changeset
|
108 |
\<comment> \<open>rule \<^text>\<open>split_mod\<close> is only declared by default for numerals\<close> |
31066 | 109 |
by linarith |
23193 | 110 |
|
23198 | 111 |
lemma "(i::nat) mod 42 <= 41" |
31066 | 112 |
by linarith |
23198 | 113 |
|
114 |
lemma "(i::int) mod 0 = i" |
|
75878 | 115 |
using split_zmod [of _ _ 0, linarith_split] |
70356
4a327c061870
streamlined setup for linear algebra, particularly removed redundant rule declarations
haftmann
parents:
69597
diff
changeset
|
116 |
\<comment> \<open>rule \<^text>\<open>split_zmod\<close> is only declared by default for numerals\<close> |
31066 | 117 |
by linarith |
23198 | 118 |
|
119 |
lemma "(i::int) mod 1 = 0" |
|
75878 | 120 |
using split_zmod [of _ _ "1", linarith_split] |
70356
4a327c061870
streamlined setup for linear algebra, particularly removed redundant rule declarations
haftmann
parents:
69597
diff
changeset
|
121 |
\<comment> \<open>rule \<^text>\<open>split_zmod\<close> is only declared by default for numerals\<close> |
46597 | 122 |
by linarith |
23193 | 123 |
|
23198 | 124 |
lemma "(i::int) mod 42 <= 41" |
46597 | 125 |
by linarith |
23193 | 126 |
|
24328
83afe527504d
fixed a bug in demult: -a in (-a * b) is no longer treated as atomic
webertj
parents:
24093
diff
changeset
|
127 |
lemma "-(i::int) * 1 = 0 ==> i = 0" |
31066 | 128 |
by linarith |
24328
83afe527504d
fixed a bug in demult: -a in (-a * b) is no longer treated as atomic
webertj
parents:
24093
diff
changeset
|
129 |
|
61945 | 130 |
lemma "[| (0::int) < \<bar>i\<bar>; \<bar>i\<bar> * 1 < \<bar>i\<bar> * j |] ==> 1 < \<bar>i\<bar> * j" |
31066 | 131 |
by linarith |
24328
83afe527504d
fixed a bug in demult: -a in (-a * b) is no longer treated as atomic
webertj
parents:
24093
diff
changeset
|
132 |
|
23218 | 133 |
|
61343 | 134 |
subsection \<open>Meta-Logic\<close> |
23193 | 135 |
|
136 |
lemma "x < Suc y == x <= y" |
|
31066 | 137 |
by linarith |
23193 | 138 |
|
139 |
lemma "((x::nat) == z ==> x ~= y) ==> x ~= y | z ~= y" |
|
31066 | 140 |
by linarith |
23193 | 141 |
|
23218 | 142 |
|
61343 | 143 |
subsection \<open>Various Other Examples\<close> |
23193 | 144 |
|
23198 | 145 |
lemma "(x < Suc y) = (x <= y)" |
31066 | 146 |
by linarith |
23198 | 147 |
|
23193 | 148 |
lemma "[| (x::nat) < y; y < z |] ==> x < z" |
31066 | 149 |
by linarith |
23193 | 150 |
|
151 |
lemma "(x::nat) < y & y < z ==> x < z" |
|
31066 | 152 |
by linarith |
23193 | 153 |
|
61343 | 154 |
text \<open>This example involves no arithmetic at all, but is solved by |
155 |
preprocessing (i.e. NNF normalization) alone.\<close> |
|
23208 | 156 |
|
157 |
lemma "(P::bool) = Q ==> Q = P" |
|
31066 | 158 |
by linarith |
23208 | 159 |
|
160 |
lemma "[| P = (x = 0); (~P) = (y = 0) |] ==> min (x::nat) y = 0" |
|
31066 | 161 |
by linarith |
23208 | 162 |
|
163 |
lemma "[| P = (x = 0); (~P) = (y = 0) |] ==> max (x::nat) y = x + y" |
|
31066 | 164 |
by linarith |
23208 | 165 |
|
23193 | 166 |
lemma "[| (x::nat) ~= y; a + 2 = b; a < y; y < b; a < x; x < b |] ==> False" |
31066 | 167 |
by linarith |
23193 | 168 |
|
169 |
lemma "[| (x::nat) > y; y > z; z > x |] ==> False" |
|
31066 | 170 |
by linarith |
23193 | 171 |
|
172 |
lemma "(x::nat) - 5 > y ==> y < x" |
|
31066 | 173 |
by linarith |
23193 | 174 |
|
175 |
lemma "(x::nat) ~= 0 ==> 0 < x" |
|
31066 | 176 |
by linarith |
23193 | 177 |
|
178 |
lemma "[| (x::nat) ~= y; x <= y |] ==> x < y" |
|
31066 | 179 |
by linarith |
23193 | 180 |
|
23196 | 181 |
lemma "[| (x::nat) < y; P (x - y) |] ==> P 0" |
31066 | 182 |
by linarith |
23193 | 183 |
|
184 |
lemma "(x - y) - (x::nat) = (x - x) - y" |
|
31066 | 185 |
by linarith |
23193 | 186 |
|
187 |
lemma "[| (a::nat) < b; c < d |] ==> (a - b) = (c - d)" |
|
31066 | 188 |
by linarith |
23193 | 189 |
|
190 |
lemma "((a::nat) - (b - (c - (d - e)))) = (a - (b - (c - (d - e))))" |
|
31066 | 191 |
by linarith |
23193 | 192 |
|
23198 | 193 |
lemma "(n < m & m < n') | (n < m & m = n') | (n < n' & n' < m) | |
194 |
(n = n' & n' < m) | (n = m & m < n') | |
|
195 |
(n' < m & m < n) | (n' < m & m = n) | |
|
196 |
(n' < n & n < m) | (n' = n & n < m) | (n' = m & m < n) | |
|
197 |
(m < n & n < n') | (m < n & n' = n) | (m < n' & n' < n) | |
|
198 |
(m = n & n < n') | (m = n' & n' < n) | |
|
199 |
(n' = m & m = (n::nat))" |
|
200 |
(* FIXME: this should work in principle, but is extremely slow because *) |
|
201 |
(* preprocessing negates the goal and tries to compute its negation *) |
|
202 |
(* normal form, which creates lots of separate cases for this *) |
|
203 |
(* disjunction of conjunctions *) |
|
31101
26c7bb764a38
qualified names for Lin_Arith tactics and simprocs
haftmann
parents:
31100
diff
changeset
|
204 |
(* by (tactic {* Lin_Arith.tac 1 *}) *) |
23198 | 205 |
oops |
206 |
||
207 |
lemma "2 * (x::nat) ~= 1" |
|
23208 | 208 |
(* FIXME: this is beyond the scope of the decision procedure at the moment, *) |
209 |
(* because its negation is satisfiable in the rationals? *) |
|
31101
26c7bb764a38
qualified names for Lin_Arith tactics and simprocs
haftmann
parents:
31100
diff
changeset
|
210 |
(* by (tactic {* Lin_Arith.simple_tac 1 *}) *) |
23198 | 211 |
oops |
212 |
||
61343 | 213 |
text \<open>Constants.\<close> |
23198 | 214 |
|
215 |
lemma "(0::nat) < 1" |
|
31066 | 216 |
by linarith |
23198 | 217 |
|
218 |
lemma "(0::int) < 1" |
|
31066 | 219 |
by linarith |
23198 | 220 |
|
47108
2a1953f0d20d
merged fork with new numeral representation (see NEWS)
huffman
parents:
46597
diff
changeset
|
221 |
lemma "(47::nat) + 11 < 8 * 15" |
31066 | 222 |
by linarith |
23198 | 223 |
|
47108
2a1953f0d20d
merged fork with new numeral representation (see NEWS)
huffman
parents:
46597
diff
changeset
|
224 |
lemma "(47::int) + 11 < 8 * 15" |
31066 | 225 |
by linarith |
23198 | 226 |
|
61343 | 227 |
text \<open>Splitting of inequalities of different type.\<close> |
23193 | 228 |
|
229 |
lemma "[| (a::nat) ~= b; (i::int) ~= j; a < 2; b < 2 |] ==> |
|
61945 | 230 |
a + b <= nat (max \<bar>i\<bar> \<bar>j\<bar>)" |
31066 | 231 |
by linarith |
23193 | 232 |
|
61343 | 233 |
text \<open>Again, but different order.\<close> |
23198 | 234 |
|
23193 | 235 |
lemma "[| (i::int) ~= j; (a::nat) ~= b; a < 2; b < 2 |] ==> |
61945 | 236 |
a + b <= nat (max \<bar>i\<bar> \<bar>j\<bar>)" |
31066 | 237 |
by linarith |
23193 | 238 |
|
239 |
end |