• Top
    • Documentation
    • Books
    • Boolean-reasoning
    • Projects
    • Debugging
    • Std
    • Proof-automation
      • Gl
      • Witness-cp
      • Ccg
      • Install-not-normalized
      • Rewrite$
      • Fgl
        • Fgl-rewrite-rules
        • Fgl-function-mode
        • Fgl-object
        • Fgl-solving
          • Fgl-sat-check
          • Fgl-exhaustive-test-config
          • Fgl-prove
            • Fgl-vacuity-check
            • Fgl-sat-check/print-counterexample
          • Fgl-handling-if-then-elses
          • Fgl-getting-bits-from-objects
          • Fgl-primitive-and-meta-rules
          • Fgl-counterexamples
          • Fgl-interpreter-overview
          • Fgl-correctness-of-binding-free-variables
          • Fgl-debugging
          • Fgl-testbenches
          • Def-fgl-boolean-constraint
          • Fgl-stack
          • Fgl-rewrite-tracing
          • Def-fgl-param-thm
          • Def-fgl-thm
          • Fgl-fast-alist-support
          • Fgl-array-support
          • Advanced-equivalence-checking-with-fgl
          • Fgl-fty-support
          • Fgl-internals
        • Removable-runes
        • Efficiency
        • Rewrite-bounds
        • Bash
        • Def-dag-measure
        • Bdd
        • Remove-hyps
        • Contextual-rewriting
        • Simp
        • Rewrite$-hyps
        • Bash-term-to-dnf
        • Use-trivial-ancestors-check
        • Minimal-runes
        • Clause-processor-tools
        • Fn-is-body
        • Without-subsumption
        • Rewrite-equiv-hint
        • Def-bounds
        • Rewrite$-context
        • Try-gl-concls
        • Hint-utils
      • Macro-libraries
      • ACL2
      • Interfacing-tools
      • Hardware-verification
      • Software-verification
      • Math
      • Testing-utilities
    • Fgl-solving

    Fgl-prove

    Check that the given object is never NIL and report an error if not.

    Signature
    (fgl-prove params msg x &key stop-on-ctrex stop-on-fail) → *
    Arguments
    params — Parameters for the SAT check -- depending on the attachment for the pluggable checker.
    msg — String or message identifying the particular SAT check.
    x — Object to check for validity.

    Logically, (fgl-prove params x) just returns x fixed to a Boolean value. But when FGL symbolic execution encounters an fgl-prove term, it checks Boolean satisfiability of (not x). If the SAT check returns UNSAT, then x is never NIL and the proof has succeeded. If the SAT check returns SAT, then a counterexample is extracted and run on the current top-level goal; we also cause an error if the :stop-on-ctrex keyword argument is nonnil. If the SAT check fails, then the :stop-on-fail keyword argument similarly determines whether we cause an error.

    Definitions and Theorems

    Function: fgl-prove-fn

    (defun fgl-prove-fn (params msg x stop-on-ctrex stop-on-fail)
      (declare (ignore params msg stop-on-ctrex stop-on-fail))
      (declare (xargs :guard t))
      (let ((__function__ 'fgl-prove))
        (declare (ignorable __function__))
        (if x t nil)))