Tutorial/Tutorial5.thy
branchNominal2-Isabelle2013
changeset 3208 da575186d492
parent 3206 fb201e383f1b
child 3209 2fb0bc0dcbf1
equal deleted inserted replaced
3206:fb201e383f1b 3208:da575186d492
     1 
       
     2 theory Tutorial5
       
     3 imports Tutorial4
       
     4 begin
       
     5 
       
     6 section {* Type-Preservation and Progress Lemma*}
       
     7 
       
     8 text {*
       
     9   The point of this tutorial is to prove the
       
    10   type-preservation and progress lemma. Since
       
    11   we now know that \<Down>, \<longrightarrow>cbv* and the machine
       
    12   correspond to each other, we only need to
       
    13   prove this property for one of them. We chose
       
    14   \<longrightarrow>cbv.
       
    15 
       
    16   First we need to establish two elimination
       
    17   properties and two auxiliary lemmas about contexts.
       
    18 *}
       
    19 
       
    20 
       
    21 lemma valid_elim:
       
    22   assumes a: "valid ((x, T) # \<Gamma>)"
       
    23   shows "atom x \<sharp> \<Gamma> \<and> valid \<Gamma>"
       
    24 using a by (cases) (auto)
       
    25 
       
    26 lemma valid_insert:
       
    27   assumes a: "valid (\<Delta> @ [(x, T)] @ \<Gamma>)"
       
    28   shows "valid (\<Delta> @ \<Gamma>)" 
       
    29 using a
       
    30 by (induct \<Delta>)
       
    31    (auto simp add: fresh_append fresh_Cons dest!: valid_elim)
       
    32 
       
    33 lemma fresh_list: 
       
    34   shows "atom y \<sharp> xs = (\<forall>x \<in> set xs. atom y \<sharp> x)"
       
    35 by (induct xs) (simp_all add: fresh_Nil fresh_Cons)
       
    36 
       
    37 lemma context_unique:
       
    38   assumes a1: "valid \<Gamma>"
       
    39   and     a2: "(x, T) \<in> set \<Gamma>"
       
    40   and     a3: "(x, U) \<in> set \<Gamma>"
       
    41   shows "T = U" 
       
    42 using a1 a2 a3
       
    43 by (induct) (auto simp add: fresh_list fresh_Pair fresh_at_base)
       
    44 
       
    45 
       
    46 section {* EXERCISE 16 *}
       
    47 
       
    48 text {*
       
    49   Next we want to show the type substitution lemma. Unfortunately,
       
    50   we have to prove a slightly more general version of it, where
       
    51   the variable being substituted occurs somewhere inside the 
       
    52   context.
       
    53 *}
       
    54 
       
    55 lemma type_substitution_aux:
       
    56   assumes a: "\<Delta> @ [(x, T')] @ \<Gamma> \<turnstile> e : T"
       
    57   and     b: "\<Gamma> \<turnstile> e' : T'"
       
    58   shows "\<Delta> @ \<Gamma> \<turnstile> e[x ::= e'] : T" 
       
    59 using a b 
       
    60 proof (nominal_induct \<Gamma>'\<equiv>"\<Delta> @ [(x, T')] @ \<Gamma>" e T avoiding: x e' \<Delta> rule: typing.strong_induct)
       
    61   case (t_Var y T x e' \<Delta>)
       
    62   have a1: "valid (\<Delta> @ [(x, T')] @ \<Gamma>)" by fact
       
    63   have a2: "(y,T) \<in> set (\<Delta> @ [(x, T')] @ \<Gamma>)" by fact 
       
    64   have a3: "\<Gamma> \<turnstile> e' : T'" by fact
       
    65   
       
    66   from a1 have a4: "valid (\<Delta> @ \<Gamma>)" by (rule valid_insert)
       
    67   { assume eq: "x = y"
       
    68     
       
    69     have "\<Delta> @ \<Gamma> \<turnstile> Var y[x ::= e'] : T" sorry
       
    70   }
       
    71   moreover
       
    72   { assume ineq: "x \<noteq> y"
       
    73     from a2 have "(y, T) \<in> set (\<Delta> @ \<Gamma>)" using ineq by simp
       
    74     then have "\<Delta> @ \<Gamma> \<turnstile> Var y[x ::= e'] : T" using ineq a4 by auto
       
    75   }
       
    76   ultimately show "\<Delta> @ \<Gamma> \<turnstile> Var y[x::=e'] : T" by blast
       
    77 next
       
    78   case (t_Lam y T1 t T2 x e' \<Delta>)
       
    79   have a1: "atom y \<sharp> e'" by fact
       
    80   have a2: "atom y \<sharp> \<Delta> @ [(x, T')] @ \<Gamma>" by fact
       
    81   have a3: "\<Gamma> \<turnstile> e' : T'" by fact 
       
    82   have ih: "\<Gamma> \<turnstile> e' : T' \<Longrightarrow> ((y, T1) # \<Delta>) @ \<Gamma> \<turnstile> t [x ::= e'] : T2" 
       
    83     using t_Lam(6)[of "(y, T1) # \<Delta>"] by auto 
       
    84   
       
    85 
       
    86   show "\<Delta> @ \<Gamma> \<turnstile> (Lam [y]. t)[x ::= e'] : T1 \<rightarrow> T2" sorry
       
    87 next
       
    88   case (t_App t1 T1 T2 t2 x e' \<Delta>)
       
    89   have ih1: "\<Gamma> \<turnstile> e' : T' \<Longrightarrow> \<Delta> @ \<Gamma> \<turnstile> t1 [x ::= e'] : T1 \<rightarrow> T2" using t_App(2) by auto 
       
    90   have ih2: "\<Gamma> \<turnstile> e' : T' \<Longrightarrow> \<Delta> @ \<Gamma> \<turnstile> t2 [x ::= e'] : T1" using t_App(4) by auto 
       
    91   have a: "\<Gamma> \<turnstile> e' : T'" by fact
       
    92 
       
    93   show "\<Delta> @ \<Gamma> \<turnstile> App t1 t2 [x ::= e'] : T2" sorry
       
    94 qed 
       
    95 
       
    96 text {*
       
    97   From this we can derive the usual version of the substitution
       
    98   lemma.
       
    99 *}
       
   100 
       
   101 corollary type_substitution:
       
   102   assumes a: "(x, T') # \<Gamma> \<turnstile> e : T"
       
   103   and     b: "\<Gamma> \<turnstile> e' : T'"
       
   104   shows "\<Gamma> \<turnstile> e[x ::= e'] : T"
       
   105 using a b type_substitution_aux[of "[]"]
       
   106 by auto
       
   107 
       
   108 
       
   109 section {* Type Preservation *}
       
   110 
       
   111 text {*
       
   112   Finally we are in a position to establish the type preservation
       
   113   property. We just need the following two inversion rules for
       
   114   particualr typing instances.
       
   115 *}
       
   116 
       
   117 lemma t_App_elim:
       
   118   assumes a: "\<Gamma> \<turnstile> App t1 t2 : T"
       
   119   obtains T' where "\<Gamma> \<turnstile> t1 : T' \<rightarrow> T" "\<Gamma> \<turnstile> t2 : T'"
       
   120 using a
       
   121 by (cases) (auto simp add: lam.eq_iff lam.distinct)
       
   122 
       
   123 text {* we have not yet generated strong elimination rules *}
       
   124 lemma t_Lam_elim:
       
   125   assumes ty: "\<Gamma> \<turnstile> Lam [x].t : T" 
       
   126   and     fc: "atom x \<sharp> \<Gamma>" 
       
   127   obtains T1 T2 where "T = T1 \<rightarrow> T2" "(x, T1) # \<Gamma> \<turnstile> t : T2"
       
   128 using ty fc
       
   129 apply(cases)
       
   130 using [[simproc del: alpha_lst]]
       
   131 apply(auto simp add: lam.eq_iff lam.distinct ty.eq_iff)
       
   132 apply(auto simp add: Abs1_eq_iff)
       
   133 apply(rotate_tac 3)
       
   134 apply(drule_tac p="(x \<leftrightarrow> xa)" in permute_boolI)
       
   135 apply(perm_simp)
       
   136 apply(auto simp add: flip_fresh_fresh ty_fresh)
       
   137 done
       
   138 
       
   139 
       
   140 section {* EXERCISE 17 *}
       
   141 
       
   142 text {*
       
   143   Fill in the gaps in the t_Lam case. You will need
       
   144   the type substitution lemma proved above. 
       
   145 *}
       
   146 
       
   147 theorem cbv_type_preservation:
       
   148   assumes a: "t \<longrightarrow>cbv t'"
       
   149   and     b: "\<Gamma> \<turnstile> t : T" 
       
   150   shows "\<Gamma> \<turnstile> t' : T"
       
   151 using a b
       
   152 proof (nominal_induct avoiding: \<Gamma> T rule: cbv.strong_induct)
       
   153   case (cbv1 v x t \<Gamma> T) 
       
   154   have fc: "atom x \<sharp> \<Gamma>" by fact
       
   155   have "\<Gamma> \<turnstile> App (Lam [x]. t) v : T" by fact
       
   156   then obtain T' where 
       
   157       *: "\<Gamma> \<turnstile> Lam [x]. t : T' \<rightarrow> T" and 
       
   158      **: "\<Gamma> \<turnstile> v : T'" by (rule t_App_elim)
       
   159   have "(x, T') # \<Gamma> \<turnstile> t : T" using * fc by (rule t_Lam_elim) (simp add: ty.eq_iff)
       
   160 
       
   161   show "\<Gamma> \<turnstile> t [x ::= v] : T " sorry
       
   162 qed (auto elim!: t_App_elim)
       
   163 
       
   164 text {*
       
   165   We can easily extend this to sequences of cbv* reductions.
       
   166 *}
       
   167 
       
   168 corollary cbvs_type_preservation:
       
   169   assumes a: "t \<longrightarrow>cbv* t'"
       
   170   and     b: "\<Gamma> \<turnstile> t : T" 
       
   171   shows "\<Gamma> \<turnstile> t' : T"
       
   172 using a b
       
   173 by (induct) (auto intro: cbv_type_preservation)
       
   174 
       
   175 text {* 
       
   176   The type-preservation property for the machine and 
       
   177   evaluation relation. 
       
   178 *}
       
   179 
       
   180 theorem machine_type_preservation:
       
   181   assumes a: "<t, []> \<mapsto>* <t', []>"
       
   182   and     b: "\<Gamma> \<turnstile> t : T" 
       
   183   shows "\<Gamma> \<turnstile> t' : T"
       
   184 proof -
       
   185   have "t \<longrightarrow>cbv* t'" using a machines_implies_cbvs by simp
       
   186   then show "\<Gamma> \<turnstile> t' : T" using b cbvs_type_preservation by simp
       
   187 qed
       
   188 
       
   189 theorem eval_type_preservation:
       
   190   assumes a: "t \<Down> t'"
       
   191   and     b: "\<Gamma> \<turnstile> t : T" 
       
   192   shows "\<Gamma> \<turnstile> t' : T"
       
   193 proof -
       
   194   have "<t, []> \<mapsto>* <t', []>" using a eval_implies_machines by simp
       
   195   then show "\<Gamma> \<turnstile> t' : T" using b machine_type_preservation by simp
       
   196 qed
       
   197 
       
   198 text {* The Progress Property *}
       
   199 
       
   200 lemma canonical_tArr:
       
   201   assumes a: "[] \<turnstile> t : T1 \<rightarrow> T2"
       
   202   and     b: "val t"
       
   203   obtains x t' where "t = Lam [x].t'"
       
   204 using b a by (induct) (auto) 
       
   205 
       
   206 theorem progress:
       
   207   assumes a: "[] \<turnstile> t : T"
       
   208   shows "(\<exists>t'. t \<longrightarrow>cbv t') \<or> (val t)"
       
   209 using a
       
   210 by (induct \<Gamma>\<equiv>"[]::ty_ctx" t T)
       
   211    (auto elim: canonical_tArr simp add: val.simps)
       
   212 
       
   213 text {*
       
   214   Done! Congratulations!
       
   215 *}
       
   216 
       
   217 end
       
   218