17
|
1 module whileTestGears1 where
|
4
|
2
|
|
3 open import Function
|
|
4 open import Data.Nat
|
88
|
5 open import Data.Bool hiding ( _≟_ ; _≤?_ ; _≤_ ; _<_ )
|
4
|
6 open import Level renaming ( suc to succ ; zero to Zero )
|
|
7 open import Relation.Nullary using (¬_; Dec; yes; no)
|
|
8 open import Relation.Binary.PropositionalEquality
|
|
9
|
10
|
10 open import utilities
|
|
11 open _/\_
|
4
|
12
|
6
|
13 record Env : Set where
|
|
14 field
|
|
15 varn : ℕ
|
|
16 vari : ℕ
|
|
17 open Env
|
|
18
|
87
|
19 whileTestS : { m : Level} → (c10 : ℕ) → (Code : Env → Set m) → Set m
|
85
|
20 whileTestS c10 next = next (record {varn = c10 ; vari = 0} )
|
|
21
|
|
22 whileTestS1 : (c10 : ℕ) → whileTestS c10 (λ e → ((varn e ≡ c10) /\ (vari e ≡ 0 )) )
|
|
23 whileTestS1 c10 = record { pi1 = refl ; pi2 = refl }
|
|
24
|
|
25
|
87
|
26 whileTest : {l : Level} {t : Set l} → (c10 : ℕ) → (Code : Env → t) → t
|
14
|
27 whileTest c10 next = next (record {varn = c10 ; vari = 0} )
|
4
|
28
|
|
29 {-# TERMINATING #-}
|
87
|
30 whileLoop : {l : Level} {t : Set l} → Env → (Code : Env → t) → t
|
4
|
31 whileLoop env next with lt 0 (varn env)
|
|
32 whileLoop env next | false = next env
|
|
33 whileLoop env next | true =
|
|
34 whileLoop (record {varn = (varn env) - 1 ; vari = (vari env) + 1}) next
|
|
35
|
|
36 test1 : Env
|
14
|
37 test1 = whileTest 10 (λ env → whileLoop env (λ env1 → env1 ))
|
4
|
38
|
|
39
|
14
|
40 proof1 : whileTest 10 (λ env → whileLoop env (λ e → (vari e) ≡ 10 ))
|
4
|
41 proof1 = refl
|
|
42
|
16
|
43 -- ↓PostCondition
|
87
|
44 whileTest' : {l : Level} {t : Set l} → {c10 : ℕ } → (Code : (env : Env) → ((vari env) ≡ 0) /\ ((varn env) ≡ c10) → t) → t
|
14
|
45 whileTest' {_} {_} {c10} next = next env proof2
|
4
|
46 where
|
|
47 env : Env
|
14
|
48 env = record {vari = 0 ; varn = c10}
|
16
|
49 proof2 : ((vari env) ≡ 0) /\ ((varn env) ≡ c10) -- PostCondition
|
4
|
50 proof2 = record {pi1 = refl ; pi2 = refl}
|
11
|
51
|
|
52 open import Data.Empty
|
|
53 open import Data.Nat.Properties
|
|
54
|
87
|
55 lemma1 : {i : ℕ} → ¬ 1 ≤ i → i ≡ 0
|
|
56 lemma1 {zero} not = refl
|
|
57 lemma1 {suc i} not = ⊥-elim ( not (s≤s z≤n) )
|
11
|
58
|
16
|
59 {-# TERMINATING #-} -- ↓PreCondition(Invaliant)
|
87
|
60 whileLoop' : {l : Level} {t : Set l} → (env : Env) → {c10 : ℕ } → ((varn env) + (vari env) ≡ c10)
|
|
61 → (Code : (e1 : Env )→ vari e1 ≡ c10 → t) → t
|
9
|
62 whileLoop' env proof next with ( suc zero ≤? (varn env) )
|
87
|
63 whileLoop' env {c10} proof next | no p = next env ( begin
|
|
64 vari env ≡⟨ refl ⟩
|
|
65 0 + vari env ≡⟨ cong (λ k → k + vari env) (sym (lemma1 p )) ⟩
|
|
66 varn env + vari env ≡⟨ proof ⟩
|
|
67 c10 ∎ ) where open ≡-Reasoning
|
|
68 whileLoop' env {c10} proof next | yes p = whileLoop' env1 (proof3 p ) next where
|
4
|
69 env1 = record {varn = (varn env) - 1 ; vari = (vari env) + 1}
|
11
|
70 1<0 : 1 ≤ zero → ⊥
|
|
71 1<0 ()
|
14
|
72 proof3 : (suc zero ≤ (varn env)) → varn env1 + vari env1 ≡ c10
|
9
|
73 proof3 (s≤s lt) with varn env
|
11
|
74 proof3 (s≤s z≤n) | zero = ⊥-elim (1<0 p)
|
87
|
75 proof3 (s≤s (z≤n {n'}) ) | suc n = let open ≡-Reasoning in begin
|
|
76 n' + (vari env + 1) ≡⟨ cong ( λ z → n' + z ) ( +-sym {vari env} {1} ) ⟩
|
|
77 n' + (1 + vari env ) ≡⟨ sym ( +-assoc (n') 1 (vari env) ) ⟩
|
|
78 (n' + 1) + vari env ≡⟨ cong ( λ z → z + vari env ) +1≡suc ⟩
|
|
79 (suc n' ) + vari env ≡⟨⟩
|
|
80 varn env + vari env ≡⟨ proof ⟩
|
14
|
81 c10
|
11
|
82 ∎
|
6
|
83
|
16
|
84 -- Condition to Invaliant
|
87
|
85 conversion1 : {l : Level} {t : Set l } → (env : Env) → {c10 : ℕ } → ((vari env) ≡ 0) /\ ((varn env) ≡ c10)
|
|
86 → (Code : (env1 : Env) → (varn env1 + vari env1 ≡ c10) → t) → t
|
|
87 conversion1 env {c10} p1 next = next env proof4 where
|
14
|
88 proof4 : varn env + vari env ≡ c10
|
87
|
89 proof4 = let open ≡-Reasoning in begin
|
|
90 varn env + vari env ≡⟨ cong ( λ n → n + vari env ) (pi2 p1 ) ⟩
|
|
91 c10 + vari env ≡⟨ cong ( λ n → c10 + n ) (pi1 p1 ) ⟩
|
|
92 c10 + 0 ≡⟨ +-sym {c10} {0} ⟩
|
14
|
93 c10
|
6
|
94 ∎
|
4
|
95
|
87
|
96 open import Data.Unit hiding ( _≟_ ; _≤?_ ; _≤_)
|
9
|
97
|
86
|
98 whileTestSpec1 : (c10 : ℕ) → (e1 : Env ) → vari e1 ≡ c10 → ⊤
|
|
99 whileTestSpec1 _ _ x = tt
|
17
|
100
|
86
|
101 proofGears : {c10 : ℕ } → ⊤
|
|
102 proofGears {c10} = whileTest' {_} {_} {c10} (λ n p1 → conversion1 n p1 (λ n1 p2 → whileLoop' n1 p2 (λ n2 p3 → whileTestSpec1 c10 n2 p3 )))
|
17
|
103
|
87
|
104 -- ↓PreCondition(Invaliant)
|
|
105 whileLoopSeg : {l : Level} {t : Set l} → {c10 : ℕ } → (env : Env) → ((varn env) + (vari env) ≡ c10)
|
88
|
106 → (next : (e1 : Env )→ varn e1 + vari e1 ≡ c10 → varn e1 < varn env → t)
|
87
|
107 → (exit : (e1 : Env )→ vari e1 ≡ c10 → t) → t
|
|
108 whileLoopSeg env proof next exit with ( suc zero ≤? (varn env) )
|
|
109 whileLoopSeg {_} {_} {c10} env proof next exit | no p = exit env ( begin
|
|
110 vari env ≡⟨ refl ⟩
|
|
111 0 + vari env ≡⟨ cong (λ k → k + vari env) (sym (lemma1 p )) ⟩
|
|
112 varn env + vari env ≡⟨ proof ⟩
|
|
113 c10 ∎ ) where open ≡-Reasoning
|
88
|
114 whileLoopSeg {_} {_} {c10} env proof next exit | yes p = next env1 (proof3 p ) proof4 where
|
87
|
115 env1 = record {varn = (varn env) - 1 ; vari = (vari env) + 1}
|
|
116 1<0 : 1 ≤ zero → ⊥
|
|
117 1<0 ()
|
88
|
118 proof4 : varn env1 < varn env
|
|
119 proof4 = {!!}
|
87
|
120 proof3 : (suc zero ≤ (varn env)) → varn env1 + vari env1 ≡ c10
|
|
121 proof3 (s≤s lt) with varn env
|
|
122 proof3 (s≤s z≤n) | zero = ⊥-elim (1<0 p)
|
|
123 proof3 (s≤s (z≤n {n'}) ) | suc n = let open ≡-Reasoning in begin
|
|
124 n' + (vari env + 1) ≡⟨ cong ( λ z → n' + z ) ( +-sym {vari env} {1} ) ⟩
|
|
125 n' + (1 + vari env ) ≡⟨ sym ( +-assoc (n') 1 (vari env) ) ⟩
|
|
126 (n' + 1) + vari env ≡⟨ cong ( λ z → z + vari env ) +1≡suc ⟩
|
|
127 (suc n' ) + vari env ≡⟨⟩
|
|
128 varn env + vari env ≡⟨ proof ⟩
|
|
129 c10
|
|
130 ∎
|
17
|
131
|
88
|
132 open import Relation.Binary.Definitions
|
|
133
|
|
134 nat-≤> : { x y : ℕ } → x ≤ y → y < x → ⊥
|
|
135 nat-≤> (s≤s x<y) (s≤s y<x) = nat-≤> x<y y<x
|
|
136
|
87
|
137 TerminatingLoop : {l : Level} {t : Set l} {c10 : ℕ } → (i : ℕ) → (env : Env) → i ≡ varn env
|
|
138 → varn env + vari env ≡ c10
|
|
139 → (exit : (e1 : Env )→ vari e1 ≡ c10 → t) → t
|
88
|
140 TerminatingLoop {_} {t} {c10} i env refl p exit with <-cmp 0 i
|
|
141 ... | tri≈ ¬a b ¬c = whileLoopSeg {_} {t} {c10} env p (λ e1 eq lt → ⊥-elim (lemma3 e1 b lt) ) exit where
|
|
142 lemma3 : (e1 : Env) → 0 ≡ varn env → varn e1 < varn env → ⊥
|
|
143 lemma3 e refl ()
|
|
144 ... | tri< a ¬b ¬c = whileLoopSeg {_} {t} {c10} env p (TerminatingLoop1 i) exit where
|
|
145 TerminatingLoop1 : (j : ℕ) → (e1 : Env) → varn e1 + vari e1 ≡ c10 → varn e1 < varn env → t
|
|
146 TerminatingLoop1 zero e1 eq lt = whileLoopSeg {_} {t} {c10} env p {!!} exit
|
|
147 TerminatingLoop1 (suc j) e1 eq lt with <-cmp j (varn e1)
|
|
148 ... | tri< (s≤s a) ¬b ¬c = TerminatingLoop1 j e1 {!!} {!!}
|
|
149 ... | tri≈ ¬a b ¬c = whileLoopSeg {_} {t} {c10} e1 {!!} lemma4 exit where
|
|
150 lemma4 : (e2 : Env) → varn e2 + vari e2 ≡ c10 → varn e2 < varn e1 → t
|
|
151 lemma4 e2 eq lt = TerminatingLoop1 j {!!} {!!} {!!}
|
|
152 ... | tri> ¬a ¬b c = ⊥-elim ( nat-≤> lt {!!} )
|
|
153
|
|
154
|