src/HOL/Isar_Examples/Expr_Compiler.thy
author wenzelm
Thu, 20 Feb 2014 23:46:40 +0100
changeset 55640 abc140f21caa
parent 46582 dcc312f22ee8
child 58249 180f1b3508ed
permissions -rw-r--r--
tuned proofs; more symbols;
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
33026
8f35633c4922 modernized session Isar_Examples;
wenzelm
parents: 31758
diff changeset
     1
(*  Title:      HOL/Isar_Examples/Expr_Compiler.thy
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
     2
    Author:     Markus Wenzel, TU Muenchen
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
     3
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
     4
Correctness of a simple expression/stack-machine compiler.
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
     5
*)
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
     6
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
     7
header {* Correctness of a simple expression compiler *}
7748
5b9c45b21782 improved presentation;
wenzelm
parents: 7740
diff changeset
     8
31758
3edd5f813f01 observe standard theory naming conventions;
wenzelm
parents: 23373
diff changeset
     9
theory Expr_Compiler
3edd5f813f01 observe standard theory naming conventions;
wenzelm
parents: 23373
diff changeset
    10
imports Main
3edd5f813f01 observe standard theory naming conventions;
wenzelm
parents: 23373
diff changeset
    11
begin
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    12
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    13
text {* This is a (rather trivial) example of program verification.
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    14
  We model a compiler for translating expressions to stack machine
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    15
  instructions, and prove its correctness wrt.\ some evaluation
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    16
  semantics. *}
7869
c007f801cd59 improved presentation;
wenzelm
parents: 7761
diff changeset
    17
c007f801cd59 improved presentation;
wenzelm
parents: 7761
diff changeset
    18
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
    19
subsection {* Binary operations *}
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    20
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    21
text {* Binary operations are just functions over some type of values.
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    22
  This is both for abstract syntax and semantics, i.e.\ we use a
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    23
  ``shallow embedding'' here. *}
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    24
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
    25
type_synonym 'val binop = "'val \<Rightarrow> 'val \<Rightarrow> 'val"
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    26
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    27
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
    28
subsection {* Expressions *}
7869
c007f801cd59 improved presentation;
wenzelm
parents: 7761
diff changeset
    29
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    30
text {* The language of expressions is defined as an inductive type,
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    31
  consisting of variables, constants, and binary operations on
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    32
  expressions. *}
7869
c007f801cd59 improved presentation;
wenzelm
parents: 7761
diff changeset
    33
c007f801cd59 improved presentation;
wenzelm
parents: 7761
diff changeset
    34
datatype ('adr, 'val) expr =
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    35
    Variable 'adr
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    36
  | Constant 'val
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    37
  | Binop "'val binop" "('adr, 'val) expr" "('adr, 'val) expr"
7869
c007f801cd59 improved presentation;
wenzelm
parents: 7761
diff changeset
    38
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    39
text {* Evaluation (wrt.\ some environment of variable assignments) is
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    40
  defined by primitive recursion over the structure of expressions. *}
7869
c007f801cd59 improved presentation;
wenzelm
parents: 7761
diff changeset
    41
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
    42
primrec eval :: "('adr, 'val) expr \<Rightarrow> ('adr \<Rightarrow> 'val) \<Rightarrow> 'val"
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    43
where
7869
c007f801cd59 improved presentation;
wenzelm
parents: 7761
diff changeset
    44
  "eval (Variable x) env = env x"
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    45
| "eval (Constant c) env = c"
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    46
| "eval (Binop f e1 e2) env = f (eval e1 env) (eval e2 env)"
7869
c007f801cd59 improved presentation;
wenzelm
parents: 7761
diff changeset
    47
c007f801cd59 improved presentation;
wenzelm
parents: 7761
diff changeset
    48
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
    49
subsection {* Machine *}
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    50
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    51
text {* Next we model a simple stack machine, with three
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    52
  instructions. *}
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    53
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    54
datatype ('adr, 'val) instr =
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    55
    Const 'val
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    56
  | Load 'adr
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    57
  | Apply "'val binop"
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    58
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    59
text {* Execution of a list of stack machine instructions is easily
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    60
  defined as follows. *}
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    61
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
    62
primrec exec :: "(('adr, 'val) instr) list \<Rightarrow> 'val list \<Rightarrow> ('adr \<Rightarrow> 'val) \<Rightarrow> 'val list"
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    63
where
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    64
  "exec [] stack env = stack"
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    65
| "exec (instr # instrs) stack env =
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    66
    (case instr of
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
    67
      Const c \<Rightarrow> exec instrs (c # stack) env
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
    68
    | Load x \<Rightarrow> exec instrs (env x # stack) env
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
    69
    | Apply f \<Rightarrow> exec instrs (f (hd stack) (hd (tl stack))
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
    70
                   # (tl (tl stack))) env)"
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    71
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
    72
definition execute :: "(('adr, 'val) instr) list \<Rightarrow> ('adr \<Rightarrow> 'val) \<Rightarrow> 'val"
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    73
  where "execute instrs env = hd (exec instrs [] env)"
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    74
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    75
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
    76
subsection {* Compiler *}
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    77
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    78
text {* We are ready to define the compilation function of expressions
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    79
  to lists of stack machine instructions. *}
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    80
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
    81
primrec compile :: "('adr, 'val) expr \<Rightarrow> (('adr, 'val) instr) list"
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    82
where
8031
826c6222cca2 renamed comp to compile (avoids clash with Relation.comp);
wenzelm
parents: 7982
diff changeset
    83
  "compile (Variable x) = [Load x]"
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    84
| "compile (Constant c) = [Const c]"
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    85
| "compile (Binop f e1 e2) = compile e2 @ compile e1 @ [Apply f]"
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    86
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    87
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    88
text {* The main result of this development is the correctness theorem
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    89
  for @{text compile}.  We first establish a lemma about @{text exec}
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
    90
  and list append. *}
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    91
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
    92
lemma exec_append:
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
    93
  "exec (xs @ ys) stack env =
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
    94
    exec ys (exec xs stack env) env"
20503
503ac4c5ef91 induct method: renamed 'fixing' to 'arbitrary';
wenzelm
parents: 18193
diff changeset
    95
proof (induct xs arbitrary: stack)
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
    96
  case Nil
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
    97
  show ?case by simp
11809
c9ffdd63dd93 tuned induction proofs;
wenzelm
parents: 10007
diff changeset
    98
next
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
    99
  case (Cons x xs)
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   100
  show ?case
11809
c9ffdd63dd93 tuned induction proofs;
wenzelm
parents: 10007
diff changeset
   101
  proof (induct x)
23373
ead82c82da9e tuned proofs: avoid implicit prems;
wenzelm
parents: 20523
diff changeset
   102
    case Const
ead82c82da9e tuned proofs: avoid implicit prems;
wenzelm
parents: 20523
diff changeset
   103
    from Cons show ?case by simp
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   104
  next
23373
ead82c82da9e tuned proofs: avoid implicit prems;
wenzelm
parents: 20523
diff changeset
   105
    case Load
ead82c82da9e tuned proofs: avoid implicit prems;
wenzelm
parents: 20523
diff changeset
   106
    from Cons show ?case by simp
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   107
  next
23373
ead82c82da9e tuned proofs: avoid implicit prems;
wenzelm
parents: 20523
diff changeset
   108
    case Apply
ead82c82da9e tuned proofs: avoid implicit prems;
wenzelm
parents: 20523
diff changeset
   109
    from Cons show ?case by simp
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   110
  qed
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   111
qed
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
   112
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   113
theorem correctness: "execute (compile e) env = eval e env"
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   114
proof -
18193
54419506df9e tuned document;
wenzelm
parents: 18153
diff changeset
   115
  have "\<And>stack. exec (compile e) stack env = eval e env # stack"
11809
c9ffdd63dd93 tuned induction proofs;
wenzelm
parents: 10007
diff changeset
   116
  proof (induct e)
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   117
    case Variable
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   118
    show ?case by simp
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   119
  next
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   120
    case Constant
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   121
    show ?case by simp
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   122
  next
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   123
    case Binop
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   124
    then show ?case by (simp add: exec_append)
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   125
  qed
23373
ead82c82da9e tuned proofs: avoid implicit prems;
wenzelm
parents: 20523
diff changeset
   126
  then show ?thesis by (simp add: execute_def)
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   127
qed
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
   128
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
   129
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
   130
text {* \bigskip In the proofs above, the @{text simp} method does
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
   131
  quite a lot of work behind the scenes (mostly ``functional program
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
   132
  execution'').  Subsequently, the same reasoning is elaborated in
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
   133
  detail --- at most one recursive function definition is used at a
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
   134
  time.  Thus we get a better idea of what is actually going on. *}
8051
wenzelm
parents: 8031
diff changeset
   135
13524
604d0f3622d6 *** empty log message ***
wenzelm
parents: 11809
diff changeset
   136
lemma exec_append':
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   137
  "exec (xs @ ys) stack env = exec ys (exec xs stack env) env"
20503
503ac4c5ef91 induct method: renamed 'fixing' to 'arbitrary';
wenzelm
parents: 18193
diff changeset
   138
proof (induct xs arbitrary: stack)
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   139
  case (Nil s)
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   140
  have "exec ([] @ ys) s env = exec ys s env"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   141
    by simp
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   142
  also have "\<dots> = exec ys (exec [] s env) env"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   143
    by simp
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   144
  finally show ?case .
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   145
next
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   146
  case (Cons x xs s)
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   147
  show ?case
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   148
  proof (induct x)
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   149
    case (Const val)
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   150
    have "exec ((Const val # xs) @ ys) s env = exec (Const val # xs @ ys) s env"
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   151
      by simp
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   152
    also have "\<dots> = exec (xs @ ys) (val # s) env"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   153
      by simp
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   154
    also from Cons have "\<dots> = exec ys (exec xs (val # s) env) env" .
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   155
    also have "\<dots> = exec ys (exec (Const val # xs) s env) env"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   156
      by simp
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   157
    finally show ?case .
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   158
  next
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   159
    case (Load adr)
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   160
    from Cons show ?case
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   161
      by simp -- {* same as above *}
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   162
  next
20523
36a59e5d0039 Major update to function package, including new syntax and the (only theoretical)
krauss
parents: 20503
diff changeset
   163
    case (Apply fn)
36a59e5d0039 Major update to function package, including new syntax and the (only theoretical)
krauss
parents: 20503
diff changeset
   164
    have "exec ((Apply fn # xs) @ ys) s env =
36a59e5d0039 Major update to function package, including new syntax and the (only theoretical)
krauss
parents: 20503
diff changeset
   165
        exec (Apply fn # xs @ ys) s env" by simp
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   166
    also have "\<dots> =
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   167
        exec (xs @ ys) (fn (hd s) (hd (tl s)) # (tl (tl s))) env"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   168
      by simp
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   169
    also from Cons have "\<dots> =
20523
36a59e5d0039 Major update to function package, including new syntax and the (only theoretical)
krauss
parents: 20503
diff changeset
   170
        exec ys (exec xs (fn (hd s) (hd (tl s)) # tl (tl s)) env) env" .
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   171
    also have "\<dots> = exec ys (exec (Apply fn # xs) s env) env"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   172
      by simp
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   173
    finally show ?case .
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   174
  qed
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   175
qed
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
   176
13537
f506eb568121 avoid duplicate fact bindings;
wenzelm
parents: 13524
diff changeset
   177
theorem correctness': "execute (compile e) env = eval e env"
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   178
proof -
18193
54419506df9e tuned document;
wenzelm
parents: 18153
diff changeset
   179
  have exec_compile: "\<And>stack. exec (compile e) stack env = eval e env # stack"
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   180
  proof (induct e)
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   181
    case (Variable adr s)
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   182
    have "exec (compile (Variable adr)) s env = exec [Load adr] s env"
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   183
      by simp
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   184
    also have "\<dots> = env adr # s"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   185
      by simp
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   186
    also have "env adr = eval (Variable adr) env"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   187
      by simp
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   188
    finally show ?case .
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   189
  next
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   190
    case (Constant val s)
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   191
    show ?case by simp -- {* same as above *}
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   192
  next
20523
36a59e5d0039 Major update to function package, including new syntax and the (only theoretical)
krauss
parents: 20503
diff changeset
   193
    case (Binop fn e1 e2 s)
36a59e5d0039 Major update to function package, including new syntax and the (only theoretical)
krauss
parents: 20503
diff changeset
   194
    have "exec (compile (Binop fn e1 e2)) s env =
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   195
        exec (compile e2 @ compile e1 @ [Apply fn]) s env"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   196
      by simp
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   197
    also have "\<dots> = exec [Apply fn]
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   198
        (exec (compile e1) (exec (compile e2) s env) env) env"
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   199
      by (simp only: exec_append)
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   200
    also have "exec (compile e2) s env = eval e2 env # s"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   201
      by fact
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   202
    also have "exec (compile e1) \<dots> env = eval e1 env # \<dots>"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   203
      by fact
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   204
    also have "exec [Apply fn] \<dots> env =
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   205
        fn (hd \<dots>) (hd (tl \<dots>)) # (tl (tl \<dots>))"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   206
      by simp
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   207
    also have "\<dots> = fn (eval e1 env) (eval e2 env) # s"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   208
      by simp
20523
36a59e5d0039 Major update to function package, including new syntax and the (only theoretical)
krauss
parents: 20503
diff changeset
   209
    also have "fn (eval e1 env) (eval e2 env) =
36a59e5d0039 Major update to function package, including new syntax and the (only theoretical)
krauss
parents: 20503
diff changeset
   210
        eval (Binop fn e1 e2) env"
18153
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   211
      by simp
a084aa91f701 tuned proofs;
wenzelm
parents: 16417
diff changeset
   212
    finally show ?case .
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   213
  qed
8051
wenzelm
parents: 8031
diff changeset
   214
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   215
  have "execute (compile e) env = hd (exec (compile e) [] env)"
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   216
    by (simp add: execute_def)
37671
fa53d267dab3 misc tuning and modernization;
wenzelm
parents: 35416
diff changeset
   217
  also from exec_compile have "exec (compile e) [] env = [eval e env]" .
55640
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   218
  also have "hd \<dots> = eval e env"
abc140f21caa tuned proofs;
wenzelm
parents: 46582
diff changeset
   219
    by simp
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   220
  finally show ?thesis .
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   221
qed
6444
2ebe9e630cab Miscellaneous Isabelle/Isar examples for Higher-Order Logic.
wenzelm
parents:
diff changeset
   222
10007
64bf7da1994a isar-strip-terminators;
wenzelm
parents: 9659
diff changeset
   223
end