(* Title: Pure/Isar/proof.ML
Author: Markus Wenzel, TU Muenchen
Proof states and methods.
- assume: improve schematic Vars handling (!?);
- bind: check rhs (extra (T)Vars etc.) (How to handle these anyway?);
- prep_result: avoid duplicate asms;
- goal: need asms field? (may take from goal context!?);
- finish: filter results (!??) (no?);
- finish_tac: make a parameter (method) (!!?);
- prep_result error: use error channel (!);
- next_block: fetch_facts (!?);
- warn_vars;
- string constants in one place (e.g. "it", "thesis") (??!);
- check_finished: trace results (!?);
signature PROOF =
type context
type state
exception STATE of string * state
val context_of: state -> context
val theory_of: state -> theory
val sign_of: state -> Sign.sg
val the_facts: state -> tthm list
val goal_facts: (state -> tthm list) -> state -> state
val use_facts: state -> state
val reset_facts: state -> state
val assert_backward: state -> state
val enter_forward: state -> state
val print_state: state -> unit
type method
val method: (tthm list -> thm ->
(thm * (indexname * term) list * (string * tthm list) list) Seq.seq) -> method
val refine: (context -> method) -> state -> state Seq.seq
val bind: (indexname * string) list -> state -> state
val bind_i: (indexname * term) list -> state -> state
val match_bind: (string * string) list -> state -> state
val match_bind_i: (term * term) list -> state -> state
val have_tthms: string -> context attribute list ->
(tthm * context attribute list) list -> state -> state
val assume: string -> context attribute list -> string list -> state -> state
val assume_i: string -> context attribute list -> term list -> state -> state
val fix: (string * string option) list -> state -> state
val fix_i: (string * typ) list -> state -> state
val theorem: bstring -> theory attribute list -> string -> theory -> state
val theorem_i: bstring -> theory attribute list -> term -> theory -> state
val lemma: bstring -> theory attribute list -> string -> theory -> state
val lemma_i: bstring -> theory attribute list -> term -> theory -> state
val chain: state -> state
val from_facts: tthm list -> state -> state
val show: string -> context attribute list -> string -> state -> state
val show_i: string -> context attribute list -> term -> state -> state
val have: string -> context attribute list -> string -> state -> state
val have_i: string -> context attribute list -> term -> state -> state
val begin_block: state -> state
val next_block: state -> state
val end_block: (context -> method) -> state -> state Seq.seq
val qed: (context -> method) -> bstring option -> theory attribute list option -> state
-> theory * (string * string * tthm)
signature PROOF_PRIVATE =
69 |
70 |
71 |
structure Proof: PROOF_PRIVATE =
(** proof state **)
type context = ProofContext.context;
(* type goal *)
datatype kind =
Theorem of theory attribute list | (*top-level theorem*)
Lemma of theory attribute list | (*top-level lemma*)
Goal of context attribute list | (*intermediate result, solving subgoal*)
Aux of context attribute list ; (*intermediate result*)
val kind_name =
fn Theorem _ => "theorem" | Lemma _ => "lemma" | Goal _ => "show" | Aux _ => "have";
type goal =
(kind * (*result kind*)
string * (*result name*)
cterm list * (*result assumptions*)
term) * (*result statement*)
(tthm list * (*use facts*)
thm); (*goal: subgoals ==> statement*)
(* type mode *)
datatype mode = Forward | ForwardChain | Backward;
107 |
108 |
109 |
111 |
112 |
type node =
{context: context,
facts: tthm list option,
mode: mode,
goal: goal option};
119 |
120 |
121 |
(* datatype state *)
125 |
126 |
127 |
128 |
129 |
exception STATE of string * state;
132 |
133 |
134 |
fun map_current f (State ({context, facts, mode, goal}, nodes)) =
State (make_node (f (context, facts, mode, goal)), nodes);
fun init_state thy =
State (make_node (ProofContext.init_context thy, None, Forward, None), []);
(** basic proof state operations **)
145 |
(* context *)
fun context_of (State ({context, ...}, _)) = context;
val theory_of = ProofContext.theory_of o context_of;
val sign_of = ProofContext.sign_of o context_of;
fun map_context f = map_current (fn (ctxt, facts, mode, goal) => (f ctxt, facts, mode, goal));
154 |
155 |
let val (context', result) = f context
156 |
157 |
fun put_data kind f = map_context o ProofContext.put_data kind f;
val declare_term = map_context o ProofContext.declare_term;
val add_binds = map_context o ProofContext.add_binds_i;
val put_tthms = map_context o ProofContext.put_tthms;
val put_tthmss = map_context o ProofContext.put_tthmss;
(* bind statements *)
fun bind_props bs state =
let val mk_bind = map (fn (x, t) => ((Syntax.binding x, 0), t)) o ObjectLogic.dest_statement
170 |
in state |> add_binds (flat (map mk_bind bs)) end;
fun bind_tthms (name, tthms) state =
174 |
val props = map (#prop o Thm.rep_thm o Attribute.thm_of) tthms;
175 |
val named_props =
176 |
(case props of
177 |
[prop] => [(name, prop)]
178 |
| props => map2 (fn (i, t) => (name ^ string_of_int i, t)) (1 upto length props, props));
179 |
in state |> bind_props named_props end;
fun let_tthms name_tthms state =
183 |
|> put_tthms name_tthms
184 |
|> bind_tthms name_tthms;
(* facts *)
189 |
190 |
| the_facts state = raise STATE ("No current facts available", state);
fun put_facts facts state =
194 |
|> map_current (fn (ctxt, _, mode, goal) => (ctxt, facts, mode, goal))
195 |
|> let_tthms ("facts", if_none facts []);
197 |
198 |
fun have_facts (name, facts) state =
201 |
202 |
203 |
fun these_facts (state, ths) = have_facts ths state;
fun fetch_facts (State ({facts, ...}, _)) = put_facts facts;
(* goal *)
210 |
211 |
212 |
213 |
214 |
fun put_goal goal = map_current (fn (ctxt, facts, mode, _) => (ctxt, facts, mode, goal));
217 |
218 |
219 |
220 |
221 |
222 |
223 |
fun goal_facts get state =
226 |
227 |
fun use_facts state =
230 |
231 |
232 |
(* mode *)
236 |
237 |
238 |
val enter_forward = put_mode Forward;
val enter_forward_chain = put_mode ForwardChain;
val enter_backward = put_mode Backward;
fun assert_mode pred state =
let val mode = get_mode state in
if pred mode then state
else raise STATE ("Illegal application of command in " ^ mode_name mode ^ " mode", state)
fun is_chain state = get_mode state = ForwardChain;
val assert_forward = assert_mode (equal Forward);
val assert_forward_or_chain = assert_mode (equal Forward orf equal ForwardChain);
val assert_backward = assert_mode (equal Backward);
(* blocks *)
257 |
258 |
261 |
262 |
263 |
fun close_block (State (_, node :: nodes)) = State (node, nodes)
265 |
268 |
(** print_state **)
271 |
272 |
val prt_tthm = Attribute.pretty_tthm;
276 |
277 |
278 |
279 |
fun levels_up 0 = ""
281 |
(writeln (kind_name kind ^ " " ^ quote name ^ levels_up (i div 1) ^ ":"); (* FIXME *)
Locale.print_goals (! goals_limit) thm);
286 |
287 |
288 |
289 |
290 |
291 |
292 |
293 |
294 |
(** proof steps **)
299 |
(* datatype method *)
datatype method = Method of
tthm list -> (*use facts*)
thm (*goal: subgoals ==> statement*)
-> (thm * (*refined goal*)
(indexname * term) list * (*new bindings*)
(string * tthm list) list) (*new thms*)
val method = Method;
312 |
(* refine goal *)
315 |
316 |
317 |
318 |
fun refine meth_fun (state as State ({context, ...}, _)) =
321 |
322 |
323 |
326 |
327 |
328 |
329 |
330 |
333 |
334 |
fun varify_frees names thm =
337 |
339 |
fun find_free t x = foldl_aterms (get_free x) (None, t);
342 |
343 |
345 |
|> Drule.forall_intr_list frees
|> Drule.forall_elim_vars (maxidx + 1)
350 |
351 |
352 |
fun prep_result state asms t raw_thm =
355 |
356 |
357 |
val ngoals = Thm.nprems_of raw_thm;
360 |
361 |
362 |
val thm =
raw_thm RS Drule.rev_triv_goal
|> implies_elim_hyps
|> Drule.implies_intr_list asms
|> varify_frees (ProofContext.fixed_names ctxt);
369 |
370 |
371 |
373 |
374 |
375 |
376 |
if not (null hyps) then
err ("Additional hypotheses:\n" ^ cat_lines (map (Sign.string_of_term sign) hyps))
(* FIXME else if not (Pattern.matches tsig (t, Logic.skip_flexpairs prop)) then
err ("Proved a different theorem: " ^ Sign.string_of_term sign prop) *)
else thm
383 |
385 |
386 |
fun strip_flexflex thm =
Seq.hd (Thm.flexflex_rule thm) handle THM _ => thm;
390 |
391 |
val thm =
394 |
395 |
396 |
397 |
val str_of_sort = Sign.str_of_sort (Thm.sign_of_thm thm);
val xshyps = Thm.extra_shyps thm;
401 |
402 |
403 |
404 |
(* solve goal *)
fun solve_goal rule state =
411 |
412 |
413 |
414 |
(*** structured proof commands ***)
(** context **)
421 |
423 |
424 |
|> assert_forward
|> map_context (f x)
|> reset_facts;
val bind = gen_bind ProofContext.add_binds;
val bind_i = gen_bind ProofContext.add_binds_i;
val match_bind = gen_bind ProofContext.match_binds;
val match_bind_i = gen_bind ProofContext.match_binds_i;
(* have_tthms *)
val def_name = fn "" => "it" | name => name;
fun have_tthms name atts ths_atts state =
442 |
443 |
444 |
445 |
(* fix *)
fun gen_fix f xs state =
451 |
452 |
453 |
454 |
val fix = gen_fix ProofContext.fix;
val fix_i = gen_fix ProofContext.fix_i;
(* assume *)
fun gen_assume f name atts props state =
463 |
464 |
465 |
466 |
467 |
val assume = gen_assume ProofContext.assume;
val assume_i = gen_assume ProofContext.assume_i;
(** goals **)
(* forward chaining *)
fun chain state =
479 |
480 |
481 |
fun from_facts facts state =
484 |
485 |
486 |
(* setup goals *)
val read_prop = ProofContext.read_prop o context_of;
val cert_prop = ProofContext.cert_prop o context_of;
fun setup_goal opt_block prep kind name atts raw_prop state =
495 |
496 |
497 |
val casms = map (#prop o Thm.crep_thm o Attribute.thm_of) (ProofContext.assumptions ctxt);
val asms = map Thm.term_of casms;
501 |
502 |
503 |
504 |
|> assert_forward_or_chain
|> enter_forward
|> opt_block
|> declare_term prop
|> put_goal (Some ((kind atts, (def_name name), casms, prop), ([], thm)))
|> bind_props [("thesis", prop)]
|> (if is_chain state then use_facts else reset_facts)
|> new_block
|> enter_backward
(*global goals*)
fun global_goal prep kind name atts x thy =
setup_goal I prep kind name atts x (init_state thy);
val theorem = global_goal read_prop Theorem;
val theorem_i = global_goal cert_prop Theorem;
val lemma = global_goal read_prop Lemma;
val lemma_i = global_goal cert_prop Lemma;
(*local goals*)
fun local_goal prep kind name atts x =
setup_goal open_block prep kind name atts x;
534 |
535 |
536 |
537 |
538 |
(** blocks **)
(* begin_block *)
fun begin_block state =
547 |
548 |
549 |
550 |
551 |
(* next_block *)
fun next_block state =
557 |
558 |
559 |
560 |
(** conclusions **)
(* current goal *)
fun current_goal (State ({goal = Some goal, ...}, _)) = goal
| current_goal state = raise STATE ("No current goal!", state);
570 |
571 |
fun assert_bottom true (state as State (_, _ :: _)) =
raise STATE ("Not at bottom of proof!", state)
| assert_bottom false (state as State (_, [])) =
raise STATE ("Already at bottom of proof!", state)
| assert_bottom _ state = state;
(* finish proof *)
fun check_finished state states =
(case Seq.pull states of
None => raise STATE ("Failed to finish proof", state)
| Some s_sq => Seq.cons s_sq);
586 |
587 |
|> assert_forward
|> close_block
|> assert_bottom bot
|> assert_current_goal
|> refine meth_fun
|> check_finished state;
(* conclude local proof *)
fun finish_local state =
600 |
601 |
602 |
603 |
604 |
605 |
606 |
607 |
|> close_block
|> have_tthms name atts [((result, []), [])]
|> opt_solve
fun end_block meth_fun state =
if can assert_current_goal (close_block state) then
617 |
618 |
619 |
|> assert_forward
|> close_block
|> close_block
|> fetch_facts state
|> Seq.single;
(* conclude global proof *)
fun finish_global alt_name alt_atts state =
632 |
633 |
634 |
val name = if_none alt_name def_name;
val atts =
(case kind of
Theorem atts => if_none alt_atts atts
| Lemma atts => Attribute.tag_lemma :: if_none alt_atts atts
| _ => raise STATE ("No global goal!", state));
642 |
643 |
644 |
fun qed meth_fun alt_name alt_atts state =
647 |
648 |
649 |
650 |
