• Top
    • Documentation
    • Books
    • Boolean-reasoning
    • Projects
    • Debugging
    • Std
    • Community
    • Proof-automation
    • ACL2
    • Macro-libraries
    • Interfacing-tools
    • Hardware-verification
    • Software-verification
      • Kestrel-books
        • Crypto-hdwallet
        • Apt
        • Error-checking
        • Fty-extensions
        • Isar
        • Kestrel-utilities
        • Set
        • Soft
        • C
          • Syntax-for-tools
          • Atc
            • Atc-implementation
              • Atc-abstract-syntax
              • Atc-pretty-printer
              • Atc-event-and-code-generation
                • Atc-symbolic-computation-states
                • Atc-symbolic-execution-rules
                • Atc-gen-ext-declon-lists
                • Atc-function-and-loop-generation
                  • Atc-gen-cfun-correct-thm
                  • Atc-typed-formals
                  • Atc-gen-outer-bindings-and-hyps
                  • Atc-gen-fundef
                  • Atc-gen-exec-stmt-while-for-loop
                  • Atc-gen-context-preamble
                  • Atc-gen-pop-frame-thm
                  • Atc-gen-loop-correct-thm
                  • Atc-gen-init-scope-thms
                  • Atc-gen-fun-correct-thm
                  • Atc-gen-fn-result-thm
                  • Atc-gen-loop-body-correct-thm
                  • Atc-gen-loop
                  • Atc-gen-loop-test-correct-thm
                  • Atc-check-guard-conjunct
                  • Atc-find-affected
                  • Atc-gen-cfun-final-compustate
                  • Atc-gen-init-inscope-auto
                  • Atc-gen-init-inscope-static
                  • Atc-gen-push-init-thm
                  • Atc-gen-loop-measure-fn
                  • Atc-gen-fun-endstate
                  • Atc-gen-loop-termination-thm
                  • Atc-gen-formal-thm
                  • Atc-gen-loop-final-compustate
                  • Atc-gen-loop-measure-thm
                  • Atc-gen-object-disjoint-hyps
                  • Atc-loop-body-term-subst
                  • Atc-gen-omap-update-formals
                  • Atc-gen-loop-tthm-formula
                  • Atc-gen-init-inscope
                  • Atc-gen-fn-def*
                    • Atc-gen-param-declon-list
                    • Atc-formal-affectablep
                    • Atc-gen-cfun-fun-env-thm
                    • Atc-gen-add-var-formals
                    • Atc-gen-cfun-fun-env-thm-name
                    • Atc-gen-fn-guard
                    • Atc-filter-exec-fun-args
                    • Atc-gen-context-preamble-aux-aux
                    • Atc-typed-formals-to-extobjs
                    • Atc-formal-affectable-listp
                  • Atc-statement-generation
                  • Atc-gen-fileset
                  • Atc-gen-everything
                  • Atc-gen-obj-declon
                  • Atc-gen-fileset-event
                  • Atc-tag-tables
                  • Atc-expression-generation
                  • Atc-generation-contexts
                  • Atc-gen-wf-thm
                  • Term-checkers-atc
                  • Atc-variable-tables
                  • Term-checkers-common
                  • Atc-gen-init-fun-env-thm
                  • Atc-gen-appconds
                  • Read-write-variables
                  • Atc-gen-thm-assert-events
                  • Test*
                  • Atc-gen-prog-const
                  • Atc-gen-expr-bool
                  • Atc-theorem-generation
                  • Atc-tag-generation
                  • Atc-gen-expr-pure
                  • Atc-function-tables
                  • Atc-object-tables
                • Fty-pseudo-term-utilities
                • Atc-term-recognizers
                • Atc-input-processing
                • Atc-shallow-embedding
                • Atc-process-inputs-and-gen-everything
                • Atc-table
                • Atc-fn
                • Atc-pretty-printing-options
                • Atc-types
                • Atc-macro-definition
              • Atc-tutorial
            • Language
            • Representation
            • Transformation-tools
            • Insertion-sort
            • Pack
          • Bv
          • Imp-language
          • Event-macros
          • Java
          • Bitcoin
          • Ethereum
          • Yul
          • Zcash
          • ACL2-programming-language
          • Prime-fields
          • Json
          • Syntheto
          • File-io-light
          • Cryptography
          • Number-theory
          • Lists-light
          • Axe
          • Builtins
          • Solidity
          • Helpers
          • Htclient
          • Typed-lists-light
          • Arithmetic-light
        • X86isa
        • Axe
        • Execloader
      • Math
      • Testing-utilities
    • Atc-function-and-loop-generation

    Atc-gen-fn-def*

    Generate a local theorem that defines fn using if*.

    Signature
    (atc-gen-fn-def* fn names-to-avoid wrld) 
      → 
    (mv events name names-to-avoid)
    Arguments
    fn — Guard (symbolp fn).
    names-to-avoid — Guard (symbol-listp names-to-avoid).
    wrld — Guard (plist-worldp wrld).
    Returns
    events — Type (pseudo-event-form-listp events).
    name — Type (symbolp name).
    names-to-avoid — Type (symbol-listp names-to-avoid), given (symbol-listp names-to-avoid).

    In order to have more control on case splitting, in our new modular proof generation approach, we use if* instead of if. The target functions use if of course, so we need to convert their definitions to use if*. We do so by generating, for each target function, a rule that expands it to its body but with if replaced with if*.

    Definitions and Theorems

    Function: atc-gen-fn-def*

    (defun atc-gen-fn-def* (fn names-to-avoid wrld)
     (declare (xargs :guard (and (symbolp fn)
                                 (symbol-listp names-to-avoid)
                                 (plist-worldp wrld))))
     (let ((__function__ 'atc-gen-fn-def*))
      (declare (ignorable __function__))
      (b*
       (((mv event-def fn-def names-to-avoid)
         (install-not-normalized-event fn t names-to-avoid wrld))
        (fn-def* (pack fn "-DEF*"))
        ((mv fn-def* names-to-avoid)
         (fresh-logical-name-with-$s-suffix
              fn-def* nil names-to-avoid wrld))
        (body (ubody+ fn wrld))
        (body* (fty-if-to-if* body))
        (formula (cons 'equal
                       (cons (cons fn (formals+ fn wrld))
                             (cons body* 'nil))))
        (hints
         (cons (cons '"Goal"
                     (cons ':in-theory
                           (cons (cons 'quote
                                       (cons (cons fn-def '(if*)) 'nil))
                                 'nil)))
               'nil))
        ((mv event-def* &)
         (evmac-generate-defthm fn-def*
                                :formula formula
                                :hints hints
                                :enable nil)))
       (mv (list event-def event-def*)
           fn-def* names-to-avoid))))

    Theorem: pseudo-event-form-listp-of-atc-gen-fn-def*.events

    (defthm pseudo-event-form-listp-of-atc-gen-fn-def*.events
      (b* (((mv ?events ?name ?names-to-avoid)
            (atc-gen-fn-def* fn names-to-avoid wrld)))
        (pseudo-event-form-listp events))
      :rule-classes :rewrite)

    Theorem: symbolp-of-atc-gen-fn-def*.name

    (defthm symbolp-of-atc-gen-fn-def*.name
      (b* (((mv ?events ?name ?names-to-avoid)
            (atc-gen-fn-def* fn names-to-avoid wrld)))
        (symbolp name))
      :rule-classes :rewrite)

    Theorem: symbol-listp-of-atc-gen-fn-def*.names-to-avoid

    (defthm symbol-listp-of-atc-gen-fn-def*.names-to-avoid
      (implies (symbol-listp names-to-avoid)
               (b* (((mv ?events ?name ?names-to-avoid)
                     (atc-gen-fn-def* fn names-to-avoid wrld)))
                 (symbol-listp names-to-avoid)))
      :rule-classes :rewrite)