src/HOL/TLA/TLA.thy
author kleing
Wed, 14 Apr 2004 14:13:05 +0200
changeset 14565 c6dc17aab88a
parent 12114 a8e860c86252
child 17309 c43ed29bd197
permissions -rw-r--r--
use more symbols in HTML output
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
3807
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
     1
(* 
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
     2
    File:        TLA/TLA.thy
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
     3
    Author:      Stephan Merz
6255
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
     4
    Copyright:   1998 University of Munich
3807
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
     5
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
     6
    Theory Name: TLA
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
     7
    Logic Image: HOL
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
     8
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
     9
The temporal level of TLA.
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    10
*)
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    11
7562
wenzelm
parents: 6255
diff changeset
    12
TLA  =  Init +
3807
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    13
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    14
consts
6255
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    15
  (** abstract syntax **)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    16
  Box        :: ('w::world) form => temporal
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    17
  Dmd        :: ('w::world) form => temporal
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    18
  leadsto    :: ['w::world form, 'v::world form] => temporal
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    19
  Stable     :: stpred => temporal
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    20
  WF         :: [action, 'a stfun] => temporal
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    21
  SF         :: [action, 'a stfun] => temporal
3807
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    22
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    23
  (* Quantification over (flexible) state variables *)
6255
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    24
  EEx        :: ('a stfun => temporal) => temporal       (binder "Eex " 10)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    25
  AAll       :: ('a stfun => temporal) => temporal       (binder "Aall " 10)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    26
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    27
  (** concrete syntax **)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    28
syntax
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    29
  "_Box"     :: lift => lift                        ("([]_)" [40] 40)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    30
  "_Dmd"     :: lift => lift                        ("(<>_)" [40] 40)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    31
  "_leadsto" :: [lift,lift] => lift                 ("(_ ~> _)" [23,22] 22)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    32
  "_stable"  :: lift => lift                        ("(stable/ _)")
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    33
  "_WF"      :: [lift,lift] => lift                 ("(WF'(_')'_(_))" [0,60] 55)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    34
  "_SF"      :: [lift,lift] => lift                 ("(SF'(_')'_(_))" [0,60] 55)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    35
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    36
  "_EEx"     :: [idts, lift] => lift                ("(3EEX _./ _)" [0,10] 10)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    37
  "_AAll"    :: [idts, lift] => lift                ("(3AALL _./ _)" [0,10] 10)
3807
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    38
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    39
translations
6255
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    40
  "_Box"      ==   "Box"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    41
  "_Dmd"      ==   "Dmd"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    42
  "_leadsto"  ==   "leadsto"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    43
  "_stable"   ==   "Stable"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    44
  "_WF"       ==   "WF"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    45
  "_SF"       ==   "SF"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    46
  "_EEx v A"  ==   "Eex v. A"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    47
  "_AAll v A" ==   "Aall v. A"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    48
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    49
  "sigma |= []F"         <= "_Box F sigma"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    50
  "sigma |= <>F"         <= "_Dmd F sigma"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    51
  "sigma |= F ~> G"      <= "_leadsto F G sigma"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    52
  "sigma |= stable P"    <= "_stable P sigma"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    53
  "sigma |= WF(A)_v"     <= "_WF A v sigma"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    54
  "sigma |= SF(A)_v"     <= "_SF A v sigma"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    55
  "sigma |= EEX x. F"    <= "_EEx x F sigma"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    56
  "sigma |= AALL x. F"    <= "_AAll x F sigma"
3807
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    57
12114
a8e860c86252 eliminated old "symbols" syntax, use "xsymbols" instead;
wenzelm
parents: 9517
diff changeset
    58
syntax (xsymbols)
6255
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    59
  "_Box"     :: lift => lift                        ("(\\<box>_)" [40] 40)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    60
  "_Dmd"     :: lift => lift                        ("(\\<diamond>_)" [40] 40)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    61
  "_leadsto" :: [lift,lift] => lift                 ("(_ \\<leadsto> _)" [23,22] 22)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    62
  "_EEx"     :: [idts, lift] => lift                ("(3\\<exists>\\<exists> _./ _)" [0,10] 10)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    63
  "_AAll"    :: [idts, lift] => lift                ("(3\\<forall>\\<forall> _./ _)" [0,10] 10)
3808
8489375c6198 symbols syntax;
wenzelm
parents: 3807
diff changeset
    64
14565
c6dc17aab88a use more symbols in HTML output
kleing
parents: 12114
diff changeset
    65
syntax (HTML output)
c6dc17aab88a use more symbols in HTML output
kleing
parents: 12114
diff changeset
    66
  "_EEx"     :: [idts, lift] => lift                ("(3\\<exists>\\<exists> _./ _)" [0,10] 10)
c6dc17aab88a use more symbols in HTML output
kleing
parents: 12114
diff changeset
    67
  "_AAll"    :: [idts, lift] => lift                ("(3\\<forall>\\<forall> _./ _)" [0,10] 10)
c6dc17aab88a use more symbols in HTML output
kleing
parents: 12114
diff changeset
    68
3807
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    69
rules
6255
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    70
  (* Definitions of derived operators *)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    71
  dmd_def      "TEMP <>F  ==  TEMP ~[]~F"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    72
  boxInit      "TEMP []F  ==  TEMP []Init F"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    73
  leadsto_def  "TEMP F ~> G  ==  TEMP [](Init F --> <>G)"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    74
  stable_def   "TEMP stable P  ==  TEMP []($P --> P$)"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    75
  WF_def       "TEMP WF(A)_v  ==  TEMP <>[] Enabled(<A>_v) --> []<><A>_v"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    76
  SF_def       "TEMP SF(A)_v  ==  TEMP []<> Enabled(<A>_v) --> []<><A>_v"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    77
  aall_def     "TEMP (AALL x. F x)  ==  TEMP ~ (EEX x. ~ F x)"
3807
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    78
6255
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    79
(* Base axioms for raw TLA. *)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    80
  normalT    "|- [](F --> G) --> ([]F --> []G)"    (* polymorphic *)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    81
  reflT      "|- []F --> F"         (* F::temporal *)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    82
  transT     "|- []F --> [][]F"     (* polymorphic *)
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    83
  linT       "|- <>F & <>G --> (<>(F & <>G)) | (<>(G & <>F))"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    84
  discT      "|- [](F --> <>(~F & <>F)) --> (F --> []<>F)"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    85
  primeI     "|- []P --> Init P`"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    86
  primeE     "|- [](Init P --> []F) --> Init P` --> (F --> []F)"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    87
  indT       "|- [](Init P & ~[]F --> Init P` & F) --> Init P --> []F"
9517
f58863b1406a tuned version by Stephan Merz (unbatchified etc.);
wenzelm
parents: 7562
diff changeset
    88
  allT       "|- (ALL x. [](F x)) = ([](ALL x. F x))"
3807
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    89
6255
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    90
  necT       "|- F ==> |- []F"      (* polymorphic *)
3807
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    91
82a99b090d9d A formalization of TLA in HOL -- by Stephan Merz;
wenzelm
parents:
diff changeset
    92
(* Flexible quantification: refinement mappings, history variables *)
6255
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    93
  eexI       "|- F x --> (EEX x. F x)"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    94
  eexE       "[| sigma |= (EEX x. F x); basevars vs;
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    95
		 (!!x. [| basevars (x, vs); sigma |= F x |] ==> (G sigma)::bool) 
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    96
	      |] ==> G sigma"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    97
  history    "|- EEX h. Init(h = ha) & [](!x. $h = #x --> h` = hb x)"
db63752140c7 updated (Stephan Merz);
wenzelm
parents: 3808
diff changeset
    98
end