src/HOLCF/IOA/meta_theory/RefCorrectness.ML
author wenzelm
Mon, 13 Oct 1997 10:22:28 +0200
changeset 3847 d5905b98291f
parent 3457 a8ab7c64817c
child 4034 5bb30bedbdc2
permissions -rw-r--r--
fixed dots;
Ignore whitespace changes - Everywhere: Within whitespace: At end of lines:
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
     1
(*  Title:      HOLCF/IOA/meta_theory/RefCorrectness.ML
3275
3f53f2c876f4 changes for release 94-8
mueller
parents: 3071
diff changeset
     2
    ID:         $Id$
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
     3
    Author:     Olaf Mueller
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
     4
    Copyright   1996  TU Muenchen
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
     5
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
     6
Correctness of Refinement Mappings in HOLCF/IOA
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
     7
*)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
     8
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
     9
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    10
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    11
(* -------------------------------------------------------------------------------- *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    12
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    13
section "corresp_ex";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    14
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    15
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    16
(* ---------------------------------------------------------------- *)
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    17
(*                             corresp_exC                          *)
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    18
(* ---------------------------------------------------------------- *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    19
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    20
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    21
goal thy "corresp_exC A f  = (LAM ex. (%s. case ex of \
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    22
\      nil =>  nil   \
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    23
\    | x##xs => (flift1 (%pr. (@cex. move A cex (f s) (fst pr) (f (snd pr)))   \
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    24
\                              @@ ((corresp_exC A f `xs) (snd pr)))   \
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    25
\                        `x) ))";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    26
by (rtac trans 1);
3457
a8ab7c64817c Ran expandshort
paulson
parents: 3433
diff changeset
    27
by (rtac fix_eq2 1);
a8ab7c64817c Ran expandshort
paulson
parents: 3433
diff changeset
    28
by (rtac corresp_exC_def 1);
a8ab7c64817c Ran expandshort
paulson
parents: 3433
diff changeset
    29
by (rtac beta_cfun 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    30
by (simp_tac (!simpset addsimps [flift1_def]) 1);
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    31
qed"corresp_exC_unfold";
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    32
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    33
goal thy "(corresp_exC A f`UU) s=UU";
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    34
by (stac corresp_exC_unfold 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    35
by (Simp_tac 1);
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    36
qed"corresp_exC_UU";
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    37
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    38
goal thy "(corresp_exC A f`nil) s = nil";
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    39
by (stac corresp_exC_unfold 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    40
by (Simp_tac 1);
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    41
qed"corresp_exC_nil";
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    42
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    43
goal thy "(corresp_exC A f`(at>>xs)) s = \
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    44
\          (@cex. move A cex (f s) (fst at) (f (snd at)))  \
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    45
\          @@ ((corresp_exC A f`xs) (snd at))";
3457
a8ab7c64817c Ran expandshort
paulson
parents: 3433
diff changeset
    46
by (rtac trans 1);
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    47
by (stac corresp_exC_unfold 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    48
by (asm_full_simp_tac (!simpset addsimps [Cons_def,flift1_def]) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    49
by (Simp_tac 1);
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    50
qed"corresp_exC_cons";
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    51
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    52
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    53
Addsimps [corresp_exC_UU,corresp_exC_nil,corresp_exC_cons];
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    54
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    55
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    56
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    57
(* ------------------------------------------------------------------ *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    58
(*               The following lemmata describe the definition        *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    59
(*                         of move in more detail                     *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    60
(* ------------------------------------------------------------------ *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    61
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    62
section"properties of move";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    63
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    64
goalw thy [is_ref_map_def]
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    65
   "!!f. [|is_ref_map f C A; reachable C s; (s,a,t):trans_of C|] ==>\
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    66
\     move A (@x. move A x (f s) a (f t)) (f s) a (f t)";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    67
3847
d5905b98291f fixed dots;
wenzelm
parents: 3457
diff changeset
    68
by (subgoal_tac "? ex. move A ex (f s) a (f t)" 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    69
by (Asm_full_simp_tac 2);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    70
by (etac exE 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    71
by (rtac selectI 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    72
by (assume_tac 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    73
qed"move_is_move";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    74
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    75
goal thy
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    76
   "!!f. [|is_ref_map f C A; reachable C s; (s,a,t):trans_of C|] ==>\
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    77
\    is_exec_frag A (f s,@x. move A x (f s) a (f t))";
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    78
by (cut_inst_tac [] move_is_move 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    79
by (REPEAT (assume_tac 1));
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    80
by (asm_full_simp_tac (!simpset addsimps [move_def]) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    81
qed"move_subprop1";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    82
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    83
goal thy
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    84
   "!!f. [|is_ref_map f C A; reachable C s; (s,a,t):trans_of C|] ==>\
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    85
\    Finite ((@x. move A x (f s) a (f t)))";
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    86
by (cut_inst_tac [] move_is_move 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    87
by (REPEAT (assume_tac 1));
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    88
by (asm_full_simp_tac (!simpset addsimps [move_def]) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    89
qed"move_subprop2";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    90
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    91
goal thy
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    92
   "!!f. [|is_ref_map f C A; reachable C s; (s,a,t):trans_of C|] ==>\
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
    93
\    laststate (f s,@x. move A x (f s) a (f t)) = (f t)";
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    94
by (cut_inst_tac [] move_is_move 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    95
by (REPEAT (assume_tac 1));
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    96
by (asm_full_simp_tac (!simpset addsimps [move_def]) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    97
qed"move_subprop3";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    98
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
    99
goal thy
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   100
   "!!f. [|is_ref_map f C A; reachable C s; (s,a,t):trans_of C|] ==>\
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   101
\     mk_trace A`((@x. move A x (f s) a (f t))) = \
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   102
\       (if a:ext A then a>>nil else nil)";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   103
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   104
by (cut_inst_tac [] move_is_move 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   105
by (REPEAT (assume_tac 1));
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   106
by (asm_full_simp_tac (!simpset addsimps [move_def]) 1);
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   107
qed"move_subprop4";
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   108
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   109
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   110
(* ------------------------------------------------------------------ *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   111
(*                   The following lemmata contribute to              *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   112
(*                 TRACE INCLUSION Part 1: Traces coincide            *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   113
(* ------------------------------------------------------------------ *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   114
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   115
section "Lemmata for <==";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   116
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   117
(* --------------------------------------------------- *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   118
(*   Lemma 1.1: Distribution of mk_trace and @@        *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   119
(* --------------------------------------------------- *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   120
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   121
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   122
goal thy "mk_trace C`(ex1 @@ ex2)= (mk_trace C`ex1) @@ (mk_trace C`ex2)";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   123
by (simp_tac (!simpset addsimps [mk_trace_def,filter_act_def,
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   124
                                 FilterConc,MapConc]) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   125
qed"mk_traceConc";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   126
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   127
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   128
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   129
(* ------------------------------------------------------
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   130
                 Lemma 1 :Traces coincide  
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   131
   ------------------------------------------------------- *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   132
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   133
goalw thy [corresp_ex_def]
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   134
  "!!f.[|is_ref_map f C A; ext C = ext A|] ==>  \     
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   135
\        !s. reachable C s & is_exec_frag C (s,xs) --> \
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   136
\            mk_trace C`xs = mk_trace A`(snd (corresp_ex A f (s,xs)))";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   137
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   138
by (pair_induct_tac "xs" [is_exec_frag_def] 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   139
(* cons case *) 
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   140
by (safe_tac set_cs);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   141
by (asm_full_simp_tac (!simpset addsimps [mk_traceConc]) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   142
by (forward_tac [reachable.reachable_n] 1);
3457
a8ab7c64817c Ran expandshort
paulson
parents: 3433
diff changeset
   143
by (assume_tac 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   144
by (eres_inst_tac [("x","y")] allE 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   145
by (Asm_full_simp_tac 1);
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   146
by (asm_full_simp_tac (!simpset addsimps [move_subprop4] 
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   147
                          setloop split_tac [expand_if] ) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   148
qed"lemma_1";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   149
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   150
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   151
(* ------------------------------------------------------------------ *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   152
(*                   The following lemmata contribute to              *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   153
(*              TRACE INCLUSION Part 2: corresp_ex is execution       *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   154
(* ------------------------------------------------------------------ *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   155
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   156
section "Lemmata for ==>";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   157
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   158
(* -------------------------------------------------- *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   159
(*                   Lemma 2.1                        *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   160
(* -------------------------------------------------- *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   161
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   162
goal thy 
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   163
"Finite xs --> \
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   164
\(!s .is_exec_frag A (s,xs) & is_exec_frag A (t,ys) & \ 
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   165
\     t = laststate (s,xs) \
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   166
\ --> is_exec_frag A (s,xs @@ ys))";
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   167
3457
a8ab7c64817c Ran expandshort
paulson
parents: 3433
diff changeset
   168
by (rtac impI 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   169
by (Seq_Finite_induct_tac 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   170
(* base_case *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   171
by (fast_tac HOL_cs 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   172
(* main case *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   173
by (safe_tac set_cs);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   174
by (pair_tac "a" 1);
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   175
qed_spec_mp"lemma_2_1";
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   176
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   177
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   178
(* ----------------------------------------------------------- *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   179
(*               Lemma 2 : corresp_ex is execution             *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   180
(* ----------------------------------------------------------- *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   181
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   182
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   183
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   184
goalw thy [corresp_ex_def]
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   185
 "!!f.[| is_ref_map f C A |] ==>\
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   186
\ !s. reachable C s & is_exec_frag C (s,xs) \
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   187
\ --> is_exec_frag A (corresp_ex A f (s,xs))"; 
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   188
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   189
by (Asm_full_simp_tac 1);
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   190
by (pair_induct_tac "xs" [is_exec_frag_def] 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   191
(* main case *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   192
by (safe_tac set_cs);
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   193
by (res_inst_tac [("t","f y")]  lemma_2_1 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   194
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   195
(* Finite *)
3457
a8ab7c64817c Ran expandshort
paulson
parents: 3433
diff changeset
   196
by (etac move_subprop2 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   197
by (REPEAT (atac 1));
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   198
by (rtac conjI 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   199
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   200
(* is_exec_frag *)
3457
a8ab7c64817c Ran expandshort
paulson
parents: 3433
diff changeset
   201
by (etac move_subprop1 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   202
by (REPEAT (atac 1));
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   203
by (rtac conjI 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   204
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   205
(* Induction hypothesis  *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   206
(* reachable_n looping, therefore apply it manually *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   207
by (eres_inst_tac [("x","y")] allE 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   208
by (Asm_full_simp_tac 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   209
by (forward_tac [reachable.reachable_n] 1);
3457
a8ab7c64817c Ran expandshort
paulson
parents: 3433
diff changeset
   210
by (assume_tac 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   211
by (Asm_full_simp_tac 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   212
(* laststate *)
3457
a8ab7c64817c Ran expandshort
paulson
parents: 3433
diff changeset
   213
by (etac (move_subprop3 RS sym) 1);
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   214
by (REPEAT (atac 1));
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   215
qed"lemma_2";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   216
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   217
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   218
(* -------------------------------------------------------------------------------- *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   219
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   220
section "Main Theorem: T R A C E - I N C L U S I O N";
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   221
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   222
(* -------------------------------------------------------------------------------- *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   223
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   224
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   225
goalw thy [traces_def]
3433
2de17c994071 added deadlock freedom, polished definitions and proofs
mueller
parents: 3275
diff changeset
   226
  "!!f. [| ext C = ext A; is_ref_map f C A |] \
3071
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   227
\          ==> traces C <= traces A"; 
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   228
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   229
  by (simp_tac(!simpset addsimps [has_trace_def2])1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   230
  by (safe_tac set_cs);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   231
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   232
  (* give execution of abstract automata *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   233
  by (res_inst_tac[("x","corresp_ex A f ex")] bexI 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   234
  
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   235
  (* Traces coincide, Lemma 1 *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   236
  by (pair_tac "ex" 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   237
  by (etac (lemma_1 RS spec RS mp) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   238
  by (REPEAT (atac 1));
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   239
  by (asm_full_simp_tac (!simpset addsimps [executions_def,reachable.reachable_0]) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   240
 
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   241
  (* corresp_ex is execution, Lemma 2 *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   242
  by (pair_tac "ex" 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   243
  by (asm_full_simp_tac (!simpset addsimps [executions_def]) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   244
  (* start state *) 
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   245
  by (rtac conjI 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   246
  by (asm_full_simp_tac (!simpset addsimps [is_ref_map_def,corresp_ex_def]) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   247
  (* is-execution-fragment *)
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   248
  by (etac (lemma_2 RS spec RS mp) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   249
  by (asm_full_simp_tac (!simpset addsimps [reachable.reachable_0]) 1);
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   250
qed"trace_inclusion"; 
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   251
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   252
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   253
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   254
981258186b71 New meta theory for IOA based on HOLCF.
mueller
parents:
diff changeset
   255