author | Christian Urban <christian dot urban at kcl dot ac dot uk> |
Fri, 05 Jul 2013 17:19:17 +0100 | |
changeset 379 | 8c4b6fb43ebe |
parent 378 | a0bcf886b8ef |
child 381 | 99161cd17c0f |
permissions | -rw-r--r-- |
24 | 1 |
(*<*) |
2 |
theory Paper |
|
233 | 3 |
imports "../Closures2" "../Attic/Prefix_subtract" |
24 | 4 |
begin |
39
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
5 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
6 |
lemma nullable_iff: |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
7 |
shows "nullable r \<longleftrightarrow> [] \<in> lang r" |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
8 |
by (induct r) (auto simp add: conc_def split: if_splits) |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
9 |
|
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
10 |
lemma Deriv_deriv: |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
11 |
shows "Deriv c (lang r) = lang (deriv c r)" |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
12 |
by (induct r) (simp_all add: nullable_iff) |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
13 |
|
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
14 |
lemma Derivs_derivs: |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
15 |
shows "Derivs s (lang r) = lang (derivs s r)" |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
16 |
by (induct s arbitrary: r) (simp_all add: Deriv_deriv) |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
17 |
|
39
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
18 |
declare [[show_question_marks = false]] |
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
19 |
|
54 | 20 |
consts |
334
d47c2143ab8a
partially updated conference paper; slightly tuned journal paper
urbanc
parents:
259
diff
changeset
|
21 |
REL :: "(string \<times> string) set" |
66 | 22 |
UPLUS :: "'a set \<Rightarrow> 'a set \<Rightarrow> (nat \<times> 'a) set" |
54 | 23 |
|
70 | 24 |
abbreviation |
25 |
"EClass x R \<equiv> R `` {x}" |
|
54 | 26 |
|
92 | 27 |
abbreviation |
162
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
28 |
"Append_rexp2 r_itm r \<equiv> Append_rexp r r_itm" |
92 | 29 |
|
30 |
||
172 | 31 |
abbreviation |
32 |
"pow" (infixl "\<up>" 100) |
|
33 |
where |
|
34 |
"A \<up> n \<equiv> A ^^ n" |
|
35 |
||
36 |
syntax (latex output) |
|
37 |
"_Collect" :: "pttrn => bool => 'a set" ("(1{_ | _})") |
|
38 |
"_CollectIn" :: "pttrn => 'a set => bool => 'a set" ("(1{_ \<in> _ | _})") |
|
39 |
translations |
|
40 |
"_Collect p P" <= "{p. P}" |
|
41 |
"_Collect p P" <= "{p|xs. P}" |
|
42 |
"_CollectIn p A P" <= "{p : A. P}" |
|
43 |
||
242 | 44 |
syntax (latex output) |
45 |
"_UNION_le" :: "'a \<Rightarrow> 'a => 'b set => 'b set" ("(3\<Union>(00\<^bsub>_ \<le> _\<^esub>)/ _)" [0, 0, 10] 10) |
|
46 |
||
173 | 47 |
abbreviation "ZERO \<equiv> Zero" |
48 |
abbreviation "ONE \<equiv> One" |
|
49 |
abbreviation "ATOM \<equiv> Atom" |
|
50 |
abbreviation "PLUS \<equiv> Plus" |
|
51 |
abbreviation "TIMES \<equiv> Times" |
|
187 | 52 |
abbreviation "TIMESS \<equiv> Timess" |
172 | 53 |
abbreviation "STAR \<equiv> Star" |
239 | 54 |
abbreviation "ALLS \<equiv> Star Allreg" |
172 | 55 |
|
203 | 56 |
definition |
57 |
Delta :: "'a lang \<Rightarrow> 'a lang" |
|
58 |
where |
|
59 |
"Delta A = (if [] \<in> A then {[]} else {})" |
|
172 | 60 |
|
39
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
61 |
notation (latex output) |
181 | 62 |
str_eq ("\<approx>\<^bsub>_\<^esub>") and |
63 |
str_eq_applied ("_ \<approx>\<^bsub>_\<^esub> _") and |
|
172 | 64 |
conc (infixr "\<cdot>" 100) and |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
65 |
star ("_\<^bsup>\<star>\<^esup>" [101] 200) and |
50 | 66 |
pow ("_\<^bsup>_\<^esup>" [100, 100] 100) and |
58 | 67 |
Suc ("_+1" [100] 100) and |
54 | 68 |
quotient ("_ \<^raw:\ensuremath{\!\sslash\!}> _" [90, 90] 90) and |
66 | 69 |
REL ("\<approx>") and |
67 | 70 |
UPLUS ("_ \<^raw:\ensuremath{\uplus}> _" [90, 90] 90) and |
186 | 71 |
lang ("\<^raw:\ensuremath{\cal{L}}>" 101) and |
172 | 72 |
lang ("\<^raw:\ensuremath{\cal{L}}>'(_')" [0] 101) and |
174 | 73 |
lang_trm ("\<^raw:\ensuremath{\cal{L}}>'(_')" [0] 101) and |
75 | 74 |
Lam ("\<lambda>'(_')" [100] 100) and |
89 | 75 |
Trn ("'(_, _')" [100, 100] 100) and |
71 | 76 |
EClass ("\<lbrakk>_\<rbrakk>\<^bsub>_\<^esub>" [100, 100] 100) and |
88 | 77 |
transition ("_ \<^raw:\ensuremath{\stackrel{\text{>_\<^raw:}}{\Longmapsto}}> _" [100, 100, 100] 100) and |
92 | 78 |
Setalt ("\<^raw:\ensuremath{\bigplus}>_" [1000] 999) and |
162
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
79 |
Append_rexp2 ("_ \<^raw:\ensuremath{\triangleleft}> _" [100, 100] 100) and |
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
80 |
Append_rexp_rhs ("_ \<^raw:\ensuremath{\triangleleft}> _" [100, 100] 50) and |
172 | 81 |
|
233 | 82 |
uminus ("\<^raw:\ensuremath{\overline{\isa{>_\<^raw:}}}>" [100] 100) and |
183 | 83 |
tag_Plus ("+tag _ _" [100, 100] 100) and |
84 |
tag_Plus ("+tag _ _ _" [100, 100, 100] 100) and |
|
184 | 85 |
tag_Times ("\<times>tag _ _" [100, 100] 100) and |
86 |
tag_Times ("\<times>tag _ _ _" [100, 100, 100] 100) and |
|
87 |
tag_Star ("\<star>tag _" [100] 100) and |
|
88 |
tag_Star ("\<star>tag _ _" [100, 100] 100) and |
|
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
89 |
tag_eq ("\<^raw:$\threesim$>\<^bsub>_\<^esub>" [100] 100) and |
174 | 90 |
Delta ("\<Delta>'(_')") and |
180 | 91 |
nullable ("\<delta>'(_')") and |
186 | 92 |
Cons ("_ :: _" [100, 100] 100) and |
93 |
Rev ("Rev _" [1000] 100) and |
|
203 | 94 |
Deriv ("Der _ _" [1000, 1000] 100) and |
95 |
Derivs ("Ders") and |
|
186 | 96 |
ONE ("ONE" 999) and |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
97 |
ZERO ("ZERO" 999) and |
203 | 98 |
pderivs_lang ("pdersl") and |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
99 |
UNIV1 ("UNIV\<^isup>+") and |
203 | 100 |
Deriv_lang ("Dersl") and |
217 | 101 |
Derivss ("Derss") and |
203 | 102 |
deriv ("der") and |
103 |
derivs ("ders") and |
|
104 |
pderiv ("pder") and |
|
105 |
pderivs ("pders") and |
|
233 | 106 |
pderivs_set ("pderss") and |
240 | 107 |
SUBSEQ ("Sub") and |
108 |
SUPSEQ ("Sup") and |
|
239 | 109 |
UP ("'(_')\<up>") and |
110 |
ALLS ("ALL") |
|
203 | 111 |
|
112 |
||
113 |
lemmas Deriv_simps = Deriv_empty Deriv_epsilon Deriv_char Deriv_union |
|
114 |
||
115 |
definition |
|
116 |
Der :: "'a \<Rightarrow> 'a lang \<Rightarrow> 'a lang" |
|
117 |
where |
|
118 |
"Der c A \<equiv> {s. [c] @ s \<in> A}" |
|
119 |
||
120 |
definition |
|
121 |
Ders :: "'a list \<Rightarrow> 'a lang \<Rightarrow> 'a lang" |
|
122 |
where |
|
123 |
"Ders s A \<equiv> {s'. s @ s' \<in> A}" |
|
124 |
||
167 | 125 |
|
119 | 126 |
lemma meta_eq_app: |
127 |
shows "f \<equiv> \<lambda>x. g x \<Longrightarrow> f x \<equiv> g x" |
|
128 |
by auto |
|
129 |
||
181 | 130 |
lemma str_eq_def': |
131 |
shows "x \<approx>A y \<equiv> (\<forall>z. x @ z \<in> A \<longleftrightarrow> y @ z \<in> A)" |
|
132 |
unfolding str_eq_def by simp |
|
133 |
||
172 | 134 |
lemma conc_def': |
135 |
"A \<cdot> B = {s\<^isub>1 @ s\<^isub>2 | s\<^isub>1 s\<^isub>2. s\<^isub>1 \<in> A \<and> s\<^isub>2 \<in> B}" |
|
136 |
unfolding conc_def by simp |
|
137 |
||
138 |
lemma conc_Union_left: |
|
139 |
shows "B \<cdot> (\<Union>n. A \<up> n) = (\<Union>n. B \<cdot> (A \<up> n))" |
|
140 |
unfolding conc_def by auto |
|
141 |
||
142 |
lemma test: |
|
143 |
assumes X_in_eqs: "(X, rhs) \<in> Init (UNIV // \<approx>A)" |
|
144 |
shows "X = \<Union> (lang_trm ` rhs)" |
|
145 |
using assms l_eq_r_in_eqs by (simp) |
|
146 |
||
233 | 147 |
abbreviation |
148 |
notprec ("_ \<^raw:\mbox{$\not\preceq$}>_") |
|
149 |
where |
|
150 |
"notprec x y \<equiv> \<not>(x \<preceq> y)" |
|
151 |
||
152 |
abbreviation |
|
153 |
minimal_syn ("min\<^bsub>_\<^esub> _") |
|
154 |
where |
|
155 |
"minimal_syn A x \<equiv> minimal x A" |
|
156 |
||
172 | 157 |
|
167 | 158 |
(* THEOREMS *) |
159 |
||
160 |
notation (Rule output) |
|
161 |
"==>" ("\<^raw:\mbox{}\inferrule{\mbox{>_\<^raw:}}>\<^raw:{\mbox{>_\<^raw:}}>") |
|
162 |
||
163 |
syntax (Rule output) |
|
164 |
"_bigimpl" :: "asms \<Rightarrow> prop \<Rightarrow> prop" |
|
165 |
("\<^raw:\mbox{}\inferrule{>_\<^raw:}>\<^raw:{\mbox{>_\<^raw:}}>") |
|
166 |
||
167 |
"_asms" :: "prop \<Rightarrow> asms \<Rightarrow> asms" |
|
168 |
("\<^raw:\mbox{>_\<^raw:}\\>/ _") |
|
169 |
||
170 |
"_asm" :: "prop \<Rightarrow> asms" ("\<^raw:\mbox{>_\<^raw:}>") |
|
171 |
||
172 |
notation (Axiom output) |
|
173 |
"Trueprop" ("\<^raw:\mbox{}\inferrule{\mbox{}}{\mbox{>_\<^raw:}}>") |
|
174 |
||
175 |
notation (IfThen output) |
|
176 |
"==>" ("\<^raw:{\normalsize{}>If\<^raw:\,}> _/ \<^raw:{\normalsize \,>then\<^raw:\,}>/ _.") |
|
177 |
syntax (IfThen output) |
|
178 |
"_bigimpl" :: "asms \<Rightarrow> prop \<Rightarrow> prop" |
|
179 |
("\<^raw:{\normalsize{}>If\<^raw:\,}> _ /\<^raw:{\normalsize \,>then\<^raw:\,}>/ _.") |
|
180 |
"_asms" :: "prop \<Rightarrow> asms \<Rightarrow> asms" ("\<^raw:\mbox{>_\<^raw:}> /\<^raw:{\normalsize \,>and\<^raw:\,}>/ _") |
|
181 |
"_asm" :: "prop \<Rightarrow> asms" ("\<^raw:\mbox{>_\<^raw:}>") |
|
182 |
||
183 |
notation (IfThenNoBox output) |
|
184 |
"==>" ("\<^raw:{\normalsize{}>If\<^raw:\,}> _/ \<^raw:{\normalsize \,>then\<^raw:\,}>/ _.") |
|
185 |
syntax (IfThenNoBox output) |
|
186 |
"_bigimpl" :: "asms \<Rightarrow> prop \<Rightarrow> prop" |
|
187 |
("\<^raw:{\normalsize{}>If\<^raw:\,}> _ /\<^raw:{\normalsize \,>then\<^raw:\,}>/ _.") |
|
188 |
"_asms" :: "prop \<Rightarrow> asms \<Rightarrow> asms" ("_ /\<^raw:{\normalsize \,>and\<^raw:\,}>/ _") |
|
189 |
"_asm" :: "prop \<Rightarrow> asms" ("_") |
|
190 |
||
203 | 191 |
lemma pow_length: |
192 |
assumes a: "[] \<notin> A" |
|
193 |
and b: "s \<in> A \<up> Suc n" |
|
194 |
shows "n < length s" |
|
195 |
using b |
|
196 |
proof (induct n arbitrary: s) |
|
197 |
case 0 |
|
198 |
have "s \<in> A \<up> Suc 0" by fact |
|
199 |
with a have "s \<noteq> []" by auto |
|
200 |
then show "0 < length s" by auto |
|
201 |
next |
|
202 |
case (Suc n) |
|
203 |
have ih: "\<And>s. s \<in> A \<up> Suc n \<Longrightarrow> n < length s" by fact |
|
204 |
have "s \<in> A \<up> Suc (Suc n)" by fact |
|
205 |
then obtain s1 s2 where eq: "s = s1 @ s2" and *: "s1 \<in> A" and **: "s2 \<in> A \<up> Suc n" |
|
206 |
by (auto simp add: Seq_def) |
|
207 |
from ih ** have "n < length s2" by simp |
|
208 |
moreover have "0 < length s1" using * a by auto |
|
209 |
ultimately show "Suc n < length s" unfolding eq |
|
210 |
by (simp only: length_append) |
|
211 |
qed |
|
167 | 212 |
|
233 | 213 |
|
214 |
||
215 |
||
24 | 216 |
(*>*) |
217 |
||
70 | 218 |
|
24 | 219 |
section {* Introduction *} |
220 |
||
221 |
text {* |
|
167 | 222 |
\noindent |
58 | 223 |
Regular languages are an important and well-understood subject in Computer |
60 | 224 |
Science, with many beautiful theorems and many useful algorithms. There is a |
66 | 225 |
wide range of textbooks on this subject, many of which are aimed at students |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
226 |
and contain very detailed `pencil-and-paper' proofs |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
227 |
(e.g.~the textbooks by \citeN{HopcroftUllman69} and by \citeN{Kozen97}). |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
228 |
It seems natural to exercise theorem provers by |
187 | 229 |
formalising the theorems and by verifying formally the algorithms. |
230 |
||
231 |
A popular choice for a theorem prover would be one based on Higher-Order |
|
232 |
Logic (HOL), for example HOL4, HOLlight or Isabelle/HOL. For the development |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
233 |
presented in this paper we will use the Isabelle/HOL system. HOL is a predicate calculus |
175 | 234 |
that allows quantification over predicate variables. Its type system is |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
235 |
based on the Simple Theory of Types by \citeN{Church40}. Although many |
187 | 236 |
mathematical concepts can be conveniently expressed in HOL, there are some |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
237 |
limitations that hurt when attempting a simple-minded formalisation |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
238 |
of regular languages in it. |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
239 |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
240 |
The typical approach to |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
241 |
regular languages, taken for example by \citeN{HopcroftUllman69} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
242 |
and by \citeN{Kozen97}, is to introduce finite deterministic automata and then |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
243 |
define most notions in terms of them. For example, a regular language is |
201 | 244 |
normally defined as: |
59 | 245 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
246 |
\begin{definition}\label{baddef} |
175 | 247 |
A language @{text A} is \emph{regular}, provided there is a |
248 |
finite deterministic automaton that recognises all strings of @{text "A"}. |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
249 |
\end{definition} |
175 | 250 |
|
251 |
\noindent |
|
252 |
This approach has many benefits. Among them is the fact that it is easy to |
|
253 |
convince oneself that regular languages are closed under complementation: |
|
254 |
one just has to exchange the accepting and non-accepting states in the |
|
255 |
corresponding automaton to obtain an automaton for the complement language. |
|
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
256 |
The problem, however, lies with formalising such reasoning in a |
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
257 |
theorem prover. Automata are built up from states and transitions that are |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
258 |
commonly represented as graphs, matrices or functions, none of which, unfortunately, |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
259 |
can be defined as an inductive datatype. |
66 | 260 |
|
82 | 261 |
In case of graphs and matrices, this means we have to build our own |
262 |
reasoning infrastructure for them, as neither Isabelle/HOL nor HOL4 nor |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
263 |
HOLlight support them with libraries. Also, reasoning about graphs and |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
264 |
matrices can be a hassle in theorem provers, because |
172 | 265 |
we have to be able to combine automata. Consider for |
82 | 266 |
example the operation of sequencing two automata, say $A_1$ and $A_2$, by |
167 | 267 |
connecting the accepting states of $A_1$ to the initial state of $A_2$: |
172 | 268 |
|
60 | 269 |
\begin{center} |
66 | 270 |
\begin{tabular}{ccc} |
181 | 271 |
\begin{tikzpicture}[scale=1] |
66 | 272 |
%\draw[step=2mm] (-1,-1) grid (1,1); |
273 |
||
274 |
\draw[rounded corners=1mm, very thick] (-1.0,-0.3) rectangle (-0.2,0.3); |
|
275 |
\draw[rounded corners=1mm, very thick] ( 0.2,-0.3) rectangle ( 1.0,0.3); |
|
276 |
||
277 |
\node (A) at (-1.0,0.0) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
278 |
\node (B) at ( 0.2,0.0) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
279 |
||
280 |
\node (C) at (-0.2, 0.13) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
281 |
\node (D) at (-0.2,-0.13) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
282 |
||
283 |
\node (E) at (1.0, 0.2) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
284 |
\node (F) at (1.0,-0.0) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
285 |
\node (G) at (1.0,-0.2) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
286 |
||
181 | 287 |
\draw (-0.6,0.0) node {\small$A_1$}; |
288 |
\draw ( 0.6,0.0) node {\small$A_2$}; |
|
66 | 289 |
\end{tikzpicture} |
290 |
||
291 |
& |
|
292 |
||
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
293 |
\raisebox{2.1mm}{\bf\Large$\;\;\;\Rightarrow\,\;\;$} |
66 | 294 |
|
295 |
& |
|
296 |
||
181 | 297 |
\begin{tikzpicture}[scale=1] |
66 | 298 |
%\draw[step=2mm] (-1,-1) grid (1,1); |
299 |
||
300 |
\draw[rounded corners=1mm, very thick] (-1.0,-0.3) rectangle (-0.2,0.3); |
|
301 |
\draw[rounded corners=1mm, very thick] ( 0.2,-0.3) rectangle ( 1.0,0.3); |
|
302 |
||
303 |
\node (A) at (-1.0,0.0) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
304 |
\node (B) at ( 0.2,0.0) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
305 |
||
306 |
\node (C) at (-0.2, 0.13) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
307 |
\node (D) at (-0.2,-0.13) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
308 |
||
309 |
\node (E) at (1.0, 0.2) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
310 |
\node (F) at (1.0,-0.0) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
311 |
\node (G) at (1.0,-0.2) [circle, very thick, draw, fill=white, inner sep=0.4mm] {}; |
|
312 |
||
313 |
\draw (C) to [very thick, bend left=45] (B); |
|
314 |
\draw (D) to [very thick, bend right=45] (B); |
|
315 |
||
181 | 316 |
\draw (-0.6,0.0) node {\small$A_1$}; |
317 |
\draw ( 0.6,0.0) node {\small$A_2$}; |
|
66 | 318 |
\end{tikzpicture} |
319 |
||
320 |
\end{tabular} |
|
60 | 321 |
\end{center} |
322 |
||
323 |
\noindent |
|
178 | 324 |
On `paper' we can define the corresponding |
172 | 325 |
graph in terms of the disjoint |
88 | 326 |
union of the state nodes. Unfortunately in HOL, the standard definition for disjoint |
66 | 327 |
union, namely |
82 | 328 |
% |
329 |
\begin{equation}\label{disjointunion} |
|
172 | 330 |
@{text "A\<^isub>1 \<uplus> A\<^isub>2 \<equiv> {(1, x) | x \<in> A\<^isub>1} \<union> {(2, y) | y \<in> A\<^isub>2}"} |
82 | 331 |
\end{equation} |
60 | 332 |
|
61 | 333 |
\noindent |
173 | 334 |
changes the type---the disjoint union is not a set, but a set of |
335 |
pairs. Using this definition for disjoint union means we do not have a |
|
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
336 |
single type for the states of automata. As a result we will not be able to |
248 | 337 |
define a regular language as one for which there exists |
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
338 |
an automaton that recognises all its strings (Definition~\ref{baddef}). This |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
339 |
is because we cannot make a definition in HOL that is only polymorphic in |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
340 |
the state type, but not in the predicate for regularity; and there is no |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
341 |
type quantification available in HOL (unlike in Coq, for |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
342 |
example).\footnote{Slind already pointed out this problem in an email to the |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
343 |
HOL4 mailing list on 21st April 2005.} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
344 |
%$^,$\footnote{While in Coq one can avoid |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
345 |
%this particular problem, all other difficulties we point out below still apply.} |
196 | 346 |
|
198 | 347 |
An alternative, which provides us with a single type for states of automata, |
348 |
is to give every state node an identity, for example a natural number, and |
|
349 |
then be careful to rename these identities apart whenever connecting two |
|
350 |
automata. This results in clunky proofs establishing that properties are |
|
351 |
invariant under renaming. Similarly, connecting two automata represented as |
|
372
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
352 |
matrices results in messy constructions, which are not pleasant to |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
353 |
formally reason about. \citeN[Page 67]{Braibant12}, for example, writes that there are no |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
354 |
problems with reasoning about matrices, but that there is an |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
355 |
``intrinsic difficulty of working with rectangular matrices'' in some |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
356 |
parts of his formalisation of formal languages in Coq. |
66 | 357 |
|
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
358 |
Functions are much better supported in Isabelle/HOL, but they still lead to |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
359 |
similar problems as with graphs. Composing, for example, two |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
360 |
non-deterministic automata in parallel requires also the formalisation of |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
361 |
disjoint unions. \citeN{Nipkow98} dismisses for this the option of |
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
362 |
using identities, because it leads according to him to ``messy |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
363 |
proofs''. Since he does not need to define what regular languages are, |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
364 |
Nipkow opts for a variant of \eqref{disjointunion} using bit lists, but |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
365 |
writes\smallskip |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
366 |
|
82 | 367 |
|
368 |
\begin{quote} |
|
93 | 369 |
\it% |
370 |
\begin{tabular}{@ {}l@ {}p{0.88\textwidth}@ {}} |
|
101 | 371 |
`` & All lemmas appear obvious given a picture of the composition of automata\ldots |
372 |
Yet their proofs require a painful amount of detail.'' |
|
373 |
\end{tabular} |
|
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
374 |
\end{quote}\smallskip |
101 | 375 |
|
376 |
\noindent |
|
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
377 |
and\smallskip |
101 | 378 |
|
379 |
\begin{quote} |
|
380 |
\it% |
|
381 |
\begin{tabular}{@ {}l@ {}p{0.88\textwidth}@ {}} |
|
93 | 382 |
`` & If the reader finds the above treatment in terms of bit lists revoltingly |
101 | 383 |
concrete, I cannot disagree. A more abstract approach is clearly desirable.'' |
93 | 384 |
\end{tabular} |
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
385 |
\end{quote}\smallskip |
101 | 386 |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
387 |
%\noindent |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
388 |
%Moreover, it is not so clear how to conveniently impose a finiteness |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
389 |
%condition upon functions in order to represent \emph{finite} automata. The |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
390 |
%best is probably to resort to more advanced reasoning frameworks, such as |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
391 |
%\emph{locales} or \emph{type classes}, which are \emph{not} available in all |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
392 |
%HOL-based theorem provers. |
82 | 393 |
|
372
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
394 |
Because of these problems to do with representing automata, formalising |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
395 |
automata theory is surprisingly not as easy as one might think, despite the |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
396 |
sometimes very detailed, but informal, textbook proofs. \citeN{LammichTuerk12} |
374
01d223421ba0
slight changes
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
372
diff
changeset
|
397 |
formalised Hopcroft's algorithm using an automata library of 14 kloc in |
372
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
398 |
Isabelle/HOL. There they use matrices for representing automata. |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
399 |
Functions are used by \citeN{Nipkow98}, who establishes |
172 | 400 |
the link between regular expressions and automata in the context of |
372
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
401 |
lexing. \citeN{BerghoferReiter09} use functions as well for formalising automata |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
402 |
working over bit strings in the context of Presburger arithmetic. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
403 |
A larger formalisation of automata theory, including the Myhill-Nerode theorem, |
372
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
404 |
was carried out in Nuprl by \citeN{Constable00} which also uses functions. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
405 |
Other large formalisations of automata theory in Coq are by |
372
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
406 |
\citeN{Filliatre97} who essentially uses graphs and by \citeN{Almeidaetal10} |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
407 |
and \citeN{Braibant12}, who both use matrices. Many of these works, |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
408 |
like \citeN{Nipkow98} or \citeN{Braibant12}, mention intrinsic problems with |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
409 |
their representation of |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
410 |
automata which made them `fight' their respective theorem prover. |
162
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
411 |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
412 |
%Also, one might consider automata as just convenient `vehicles' for |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
413 |
%establishing properties about regular languages. However, paper proofs |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
414 |
%about automata often involve subtle side-conditions which are easily |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
415 |
%overlooked, but which make formal reasoning rather painful. For example |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
416 |
%Kozen's proof of the Myhill-Nerode Theorem requires that automata do not |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
417 |
%have inaccessible states \cite{Kozen97}. Another subtle side-condition is |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
418 |
%completeness of automata, that is automata need to have total transition |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
419 |
%functions and at most one `sink' state from which there is no connection to |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
420 |
%a final state (Brzozowski mentions this side-condition in the context of |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
421 |
%state complexity of automata \cite{Brzozowski10}, but it is also needed |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
422 |
%in the usual construction of the complement automaton). Such side-conditions mean |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
423 |
%that if we define a regular language as one for which there exists \emph{a} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
424 |
%finite automaton that recognises all its strings (see |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
425 |
%Definition~\ref{baddef}), then we need a lemma which ensures that another |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
426 |
%equivalent one can be found satisfying the side-condition, and also need to |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
427 |
%make sure our operations on automata preserve them. Unfortunately, such |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
428 |
%`little' and `obvious' lemmas make formalisations of automata theory |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
429 |
%hair-pulling experiences. |
175 | 430 |
|
82 | 431 |
In this paper, we will not attempt to formalise automata theory in |
173 | 432 |
Isabelle/HOL nor will we attempt to formalise automata proofs from the |
172 | 433 |
literature, but take a different approach to regular languages than is |
434 |
usually taken. Instead of defining a regular language as one where there |
|
178 | 435 |
exists an automaton that recognises all its strings, we define a |
82 | 436 |
regular language as: |
54 | 437 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
438 |
\begin{definition}\label{regular} |
186 | 439 |
A language @{text A} is \emph{regular}, provided there is a regular expression |
440 |
that matches all strings of @{text "A"}. |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
441 |
\end{definition} |
54 | 442 |
|
443 |
\noindent |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
444 |
We then want to `forget' automata completely and see how far we come |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
445 |
with formalising results from regular language theory. The reason |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
446 |
is that regular expressions, unlike graphs, matrices and |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
447 |
functions, can be defined as an inductive datatype and a reasoning |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
448 |
infrastructure for them (like induction and recursion) comes for |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
449 |
free in HOL. But this question whether formal language theory can be |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
450 |
done without automata crops up also in non-theorem prover |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
451 |
contexts. For example, Gasarch asked in the Computational Complexity |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
452 |
blog by \citeN{GasarchBlog} whether the complementation of |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
453 |
regular-expression languages can be proved without using |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
454 |
automata. He concluded |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
455 |
|
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
456 |
\begin{quote} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
457 |
``{\it \ldots it can't be done}'' |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
458 |
\end{quote} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
459 |
|
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
460 |
\noindent |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
461 |
and even pondered |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
462 |
|
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
463 |
\begin{quote} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
464 |
``{\it \ldots [b]ut is there a rigorous way to even state that?}'' |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
465 |
\end{quote} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
466 |
|
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
467 |
%Moreover, no side-conditions will be needed for regular expressions, |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
468 |
%like we need for automata. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
469 |
\noindent |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
470 |
We will give an answer to these questions in this paper. |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
471 |
|
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
472 |
The convenience of regular expressions has |
175 | 473 |
recently been exploited in HOL4 with a formalisation of regular expression |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
474 |
matching based on derivatives by \citeN{OwensSlind08}, and with an equivalence |
372
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
475 |
checker for regular expressions in Isabelle/HOL by \citeN{KraussNipkow11} |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
476 |
and in Matita by \citeN{Asperti12} and in Coq by \citeN{CoquandSiles12}. The |
175 | 477 |
main purpose of this paper is to show that a central result about regular |
248 | 478 |
languages---the Myhill-Nerode Theorem---can be recreated by only using |
175 | 479 |
regular expressions. This theorem gives necessary and sufficient conditions |
480 |
for when a language is regular. As a corollary of this theorem we can easily |
|
481 |
establish the usual closure properties, including complementation, for |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
482 |
regular languages. We use the Continuation Lemma, which is also a corollary |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
483 |
of the Myhill-Nerode Theorem, for establishing |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
484 |
the non-regularity of the language @{text "a\<^isup>nb\<^isup>n"}.\medskip |
61 | 485 |
|
174 | 486 |
\noindent |
175 | 487 |
{\bf Contributions:} There is an extensive literature on regular languages. |
248 | 488 |
To our best knowledge, our proof of the Myhill-Nerode Theorem is the first |
175 | 489 |
that is based on regular expressions, only. The part of this theorem stating |
490 |
that finitely many partitions imply regularity of the language is proved by |
|
181 | 491 |
an argument about solving equational systems. This argument appears to be |
175 | 492 |
folklore. For the other part, we give two proofs: one direct proof using |
493 |
certain tagging-functions, and another indirect proof using Antimirov's |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
494 |
partial derivatives (\citeyear{Antimirov95}). Again to our best knowledge, the |
245 | 495 |
tagging-functions have not been used before for establishing the Myhill-Nerode |
248 | 496 |
Theorem. Derivatives of regular expressions have been used recently quite |
190 | 497 |
widely in the literature; partial derivatives, in contrast, attract much |
187 | 498 |
less attention. However, partial derivatives are more suitable in the |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
499 |
context of the Myhill-Nerode Theorem, since it is easier to |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
500 |
formally establish their finiteness result. We are not aware of any proof that uses |
248 | 501 |
either of them for proving the Myhill-Nerode Theorem. |
24 | 502 |
*} |
503 |
||
50 | 504 |
section {* Preliminaries *} |
505 |
||
506 |
text {* |
|
172 | 507 |
\noindent |
67 | 508 |
Strings in Isabelle/HOL are lists of characters with the \emph{empty string} |
177 | 509 |
being represented by the empty list, written @{term "[]"}. We assume there |
510 |
are only finitely many different characters. \emph{Languages} are sets of |
|
511 |
strings. The language containing all strings is written in Isabelle/HOL as |
|
512 |
@{term "UNIV::string set"}. The concatenation of two languages is written |
|
513 |
@{term "A \<cdot> B"} and a language raised to the power @{text n} is written |
|
93 | 514 |
@{term "A \<up> n"}. They are defined as usual |
54 | 515 |
|
516 |
\begin{center} |
|
177 | 517 |
\begin{tabular}{l@ {\hspace{1mm}}c@ {\hspace{1mm}}l} |
518 |
@{thm (lhs) conc_def'[THEN eq_reflection, where A1="A" and B1="B"]} |
|
519 |
& @{text "\<equiv>"} & @{thm (rhs) conc_def'[THEN eq_reflection, where A1="A" and B1="B"]}\\ |
|
520 |
||
521 |
@{thm (lhs) lang_pow.simps(1)[THEN eq_reflection, where A1="A"]} |
|
522 |
& @{text "\<equiv>"} & @{thm (rhs) lang_pow.simps(1)[THEN eq_reflection, where A1="A"]}\\ |
|
523 |
||
524 |
@{thm (lhs) lang_pow.simps(2)[THEN eq_reflection, where A1="A" and n1="n"]} |
|
525 |
& @{text "\<equiv>"} & @{thm (rhs) lang_pow.simps(2)[THEN eq_reflection, where A1="A" and n1="n"]} |
|
526 |
\end{tabular} |
|
54 | 527 |
\end{center} |
528 |
||
529 |
\noindent |
|
113 | 530 |
where @{text "@"} is the list-append operation. The Kleene-star of a language @{text A} |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
531 |
is defined as the union over all powers, namely @{thm star_def[where A="A", THEN eq_reflection]}. |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
532 |
In the paper |
88 | 533 |
we will make use of the following properties of these constructions. |
58 | 534 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
535 |
\begin{proposition}\label{langprops}\mbox{}\\ |
187 | 536 |
\begin{tabular}{@ {}lp{10cm}} |
180 | 537 |
(i) & @{thm star_unfold_left} \\ |
92 | 538 |
(ii) & @{thm[mode=IfThen] pow_length}\\ |
172 | 539 |
(iii) & @{thm conc_Union_left} \\ |
187 | 540 |
(iv) & If @{thm (prem 1) star_decom} and @{thm (prem 2) star_decom} then |
541 |
there exists an @{text "x\<^isub>p"} and @{text "x\<^isub>s"} with @{text "x = x\<^isub>p @ x\<^isub>s"} |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
542 |
and \mbox{@{term "x\<^isub>p \<noteq> []"}} such that @{term "x\<^isub>p \<in> A"} and @{term "x\<^isub>s \<in> A\<star>"}. |
71 | 543 |
\end{tabular} |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
544 |
\end{proposition} |
71 | 545 |
|
546 |
\noindent |
|
100 | 547 |
In @{text "(ii)"} we use the notation @{term "length s"} for the length of a |
156 | 548 |
string; this property states that if \mbox{@{term "[] \<notin> A"}} then the lengths of |
190 | 549 |
the strings in @{term "A \<up> (Suc n)"} must be longer than @{text n}. |
550 |
Property @{text "(iv)"} states that a non-empty string in @{term "A\<star>"} can |
|
551 |
always be split up into a non-empty prefix belonging to @{text "A"} and the |
|
552 |
rest being in @{term "A\<star>"}. We omit |
|
100 | 553 |
the proofs for these properties, but invite the reader to consult our |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
554 |
formalisation.\footnote{Available under \citeN{myhillnerodeafp11} in the Archive of Formal Proofs at\\ |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
555 |
\url{http://afp.sourceforge.net/entries/Myhill-Nerode.shtml}.} |
71 | 556 |
|
181 | 557 |
The notation in Isabelle/HOL for the quotient of a language @{text A} |
558 |
according to an equivalence relation @{term REL} is @{term "A // REL"}. We |
|
559 |
will write @{text "\<lbrakk>x\<rbrakk>\<^isub>\<approx>"} for the equivalence class defined as |
|
560 |
\mbox{@{text "{y | y \<approx> x}"}}, and have @{text "x \<approx> y"} if and only if @{text |
|
561 |
"\<lbrakk>x\<rbrakk>\<^isub>\<approx> = \<lbrakk>y\<rbrakk>\<^isub>\<approx>"}. |
|
71 | 562 |
|
563 |
||
51 | 564 |
Central to our proof will be the solution of equational systems |
176 | 565 |
involving equivalence classes of languages. For this we will use Arden's Lemma |
198 | 566 |
(see for example \cite[Page 100]{Sakarovitch09}), |
167 | 567 |
which solves equations of the form @{term "X = A \<cdot> X \<union> B"} provided |
201 | 568 |
@{term "[] \<notin> A"}. However we will need the following `reversed' |
569 |
version of Arden's Lemma (`reversed' in the sense of changing the order of @{term "A \<cdot> X"} to |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
570 |
\mbox{@{term "X \<cdot> A"}}). |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
571 |
%\footnote{The details of the proof for the reversed Arden's Lemma |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
572 |
%are given in the Appendix.} |
50 | 573 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
574 |
\begin{lemma}[Reversed Arden's Lemma]\label{arden}\mbox{}\\ |
203 | 575 |
If @{thm (prem 1) reversed_Arden} then |
576 |
@{thm (lhs) reversed_Arden} if and only if |
|
577 |
@{thm (rhs) reversed_Arden}. |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
578 |
\end{lemma} |
50 | 579 |
|
67 | 580 |
\noindent |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
581 |
The proof of this reversed version of Arden's lemma follows the proof of the |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
582 |
original version. |
88 | 583 |
Regular expressions are defined as the inductive datatype |
67 | 584 |
|
585 |
\begin{center} |
|
176 | 586 |
\begin{tabular}{rcl} |
587 |
@{text r} & @{text "::="} & @{term ZERO}\\ |
|
177 | 588 |
& @{text"|"} & @{term One}\\ |
589 |
& @{text"|"} & @{term "Atom c"}\\ |
|
590 |
& @{text"|"} & @{term "Times r r"}\\ |
|
591 |
& @{text"|"} & @{term "Plus r r"}\\ |
|
592 |
& @{text"|"} & @{term "Star r"} |
|
176 | 593 |
\end{tabular} |
67 | 594 |
\end{center} |
595 |
||
596 |
\noindent |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
597 |
and the language matched by a regular expression is defined by recursion as |
67 | 598 |
|
599 |
\begin{center} |
|
176 | 600 |
\begin{tabular}{r@ {\hspace{2mm}}c@ {\hspace{2mm}}l} |
172 | 601 |
@{thm (lhs) lang.simps(1)} & @{text "\<equiv>"} & @{thm (rhs) lang.simps(1)}\\ |
602 |
@{thm (lhs) lang.simps(2)} & @{text "\<equiv>"} & @{thm (rhs) lang.simps(2)}\\ |
|
603 |
@{thm (lhs) lang.simps(3)[where a="c"]} & @{text "\<equiv>"} & @{thm (rhs) lang.simps(3)[where a="c"]}\\ |
|
604 |
@{thm (lhs) lang.simps(4)[where ?r="r\<^isub>1" and ?s="r\<^isub>2"]} & @{text "\<equiv>"} & |
|
605 |
@{thm (rhs) lang.simps(4)[where ?r="r\<^isub>1" and ?s="r\<^isub>2"]}\\ |
|
606 |
@{thm (lhs) lang.simps(5)[where ?r="r\<^isub>1" and ?s="r\<^isub>2"]} & @{text "\<equiv>"} & |
|
607 |
@{thm (rhs) lang.simps(5)[where ?r="r\<^isub>1" and ?s="r\<^isub>2"]}\\ |
|
608 |
@{thm (lhs) lang.simps(6)[where r="r"]} & @{text "\<equiv>"} & |
|
609 |
@{thm (rhs) lang.simps(6)[where r="r"]}\\ |
|
67 | 610 |
\end{tabular} |
611 |
\end{center} |
|
70 | 612 |
|
100 | 613 |
Given a finite set of regular expressions @{text rs}, we will make use of the operation of generating |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
614 |
a regular expression that matches the union of all languages of @{text rs}. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
615 |
This definition is not trivial in a theorem prover, because @{text rs} (being a set) is unordered, |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
616 |
but the regular expression needs an order. Since |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
617 |
we only need to know the |
132 | 618 |
existence |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
619 |
of such a regular expression, we can use Isabelle/HOL's @{const "fold_graph"} and Hilbert's |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
620 |
choice operator, written @{text "SOME"} in Isabelle/HOL, for defining @{term "\<Uplus>rs"}. |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
621 |
This operation, roughly speaking, folds @{const PLUS} over the |
173 | 622 |
set @{text rs} with @{const ZERO} for the empty set. We can prove that for a finite set @{text rs} |
110 | 623 |
% |
624 |
\begin{equation}\label{uplus} |
|
203 | 625 |
\mbox{@{thm (lhs) folds_plus_simp} @{text "= \<Union> (\<calL> ` rs)"}} |
110 | 626 |
\end{equation} |
88 | 627 |
|
628 |
\noindent |
|
90 | 629 |
holds, whereby @{text "\<calL> ` rs"} stands for the |
190 | 630 |
image of the set @{text rs} under function @{text "\<calL>"} defined as |
631 |
||
632 |
\begin{center} |
|
633 |
@{term "lang ` rs \<equiv> {lang r | r. r \<in> rs}"} |
|
634 |
\end{center} |
|
635 |
||
636 |
\noindent |
|
637 |
In what follows we shall use this convenient short-hand notation for images of sets |
|
638 |
also with other functions. |
|
50 | 639 |
*} |
39
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
640 |
|
133 | 641 |
section {* The Myhill-Nerode Theorem, First Part *} |
54 | 642 |
|
643 |
text {* |
|
177 | 644 |
\noindent |
248 | 645 |
The key definition in the Myhill-Nerode Theorem is the |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
646 |
\emph{Myhill-Nerode Relation}, which states that two |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
647 |
strings are related w.r.t.~a language, provided there is no distinguishing extension in this |
338
e7504bfdbd50
made the changes thes 2nd referee suggested and made it to compile again
urbanc
parents:
334
diff
changeset
|
648 |
language. This can be defined as a ternary relation. |
75 | 649 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
650 |
\begin{definition}[Myhill-Nerode Relation]\label{myhillneroderel} |
174 | 651 |
Given a language @{text A}, two strings @{text x} and |
123 | 652 |
@{text y} are Myhill-Nerode related provided |
117 | 653 |
\begin{center} |
181 | 654 |
@{thm str_eq_def'} |
117 | 655 |
\end{center} |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
656 |
\end{definition} |
70 | 657 |
|
71 | 658 |
\noindent |
75 | 659 |
It is easy to see that @{term "\<approx>A"} is an equivalence relation, which |
660 |
partitions the set of all strings, @{text "UNIV"}, into a set of disjoint |
|
108 | 661 |
equivalence classes. To illustrate this quotient construction, let us give a simple |
101 | 662 |
example: consider the regular language containing just |
92 | 663 |
the string @{text "[c]"}. The relation @{term "\<approx>({[c]})"} partitions @{text UNIV} |
101 | 664 |
into three equivalence classes @{text "X\<^isub>1"}, @{text "X\<^isub>2"} and @{text "X\<^isub>3"} |
90 | 665 |
as follows |
666 |
||
667 |
\begin{center} |
|
176 | 668 |
\begin{tabular}{l} |
669 |
@{text "X\<^isub>1 = {[]}"}\\ |
|
670 |
@{text "X\<^isub>2 = {[c]}"}\\ |
|
90 | 671 |
@{text "X\<^isub>3 = UNIV - {[], [c]}"} |
176 | 672 |
\end{tabular} |
90 | 673 |
\end{center} |
674 |
||
248 | 675 |
One direction of the Myhill-Nerode Theorem establishes |
93 | 676 |
that if there are finitely many equivalence classes, like in the example above, then |
677 |
the language is regular. In our setting we therefore have to show: |
|
75 | 678 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
679 |
\begin{theorem}\label{myhillnerodeone} |
96 | 680 |
@{thm[mode=IfThen] Myhill_Nerode1} |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
681 |
\end{theorem} |
71 | 682 |
|
75 | 683 |
\noindent |
90 | 684 |
To prove this theorem, we first define the set @{term "finals A"} as those equivalence |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
685 |
classes from \mbox{@{term "UNIV // \<approx>A"}} that contain strings of @{text A}, namely |
75 | 686 |
% |
71 | 687 |
\begin{equation} |
70 | 688 |
@{thm finals_def} |
71 | 689 |
\end{equation} |
690 |
||
691 |
\noindent |
|
132 | 692 |
In our running example, @{text "X\<^isub>2"} is the only |
693 |
equivalence class in @{term "finals {[c]}"}. |
|
174 | 694 |
It is straightforward to show that in general |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
695 |
% |
177 | 696 |
\begin{equation}\label{finalprops} |
174 | 697 |
@{thm lang_is_union_of_finals}\hspace{15mm} |
698 |
@{thm finals_in_partitions} |
|
177 | 699 |
\end{equation} |
174 | 700 |
|
701 |
\noindent |
|
702 |
hold. |
|
75 | 703 |
Therefore if we know that there exists a regular expression for every |
100 | 704 |
equivalence class in \mbox{@{term "finals A"}} (which by assumption must be |
93 | 705 |
a finite set), then we can use @{text "\<bigplus>"} to obtain a regular expression |
98 | 706 |
that matches every string in @{text A}. |
70 | 707 |
|
75 | 708 |
|
198 | 709 |
Our proof of Theorem~\ref{myhillnerodeone} relies on a method that can calculate a |
79 | 710 |
regular expression for \emph{every} equivalence class, not just the ones |
77 | 711 |
in @{term "finals A"}. We |
93 | 712 |
first define the notion of \emph{one-character-transition} between |
713 |
two equivalence classes |
|
75 | 714 |
% |
71 | 715 |
\begin{equation} |
716 |
@{thm transition_def} |
|
717 |
\end{equation} |
|
70 | 718 |
|
71 | 719 |
\noindent |
338
e7504bfdbd50
made the changes thes 2nd referee suggested and made it to compile again
urbanc
parents:
334
diff
changeset
|
720 |
which means that if we append the character @{text c} to the end of all |
92 | 721 |
strings in the equivalence class @{text Y}, we obtain a subset of |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
722 |
@{text X}. |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
723 |
%Note that we do not define formally an automaton here, |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
724 |
%we merely relate two sets |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
725 |
%(with the help of a character). |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
726 |
In our concrete example we have |
178 | 727 |
@{term "X\<^isub>1 \<Turnstile>c\<Rightarrow> X\<^isub>2"}, @{term "X\<^isub>1 \<Turnstile>d\<^isub>i\<Rightarrow> X\<^isub>3"} with @{text "d\<^isub>i"} being any |
728 |
other character than @{text c}, and @{term "X\<^isub>3 \<Turnstile>c\<^isub>j\<Rightarrow> X\<^isub>3"} for any |
|
194 | 729 |
character @{text "c\<^isub>j"}. |
75 | 730 |
|
156 | 731 |
Next we construct an \emph{initial equational system} that |
732 |
contains an equation for each equivalence class. We first give |
|
733 |
an informal description of this construction. Suppose we have |
|
75 | 734 |
the equivalence classes @{text "X\<^isub>1,\<dots>,X\<^isub>n"}, there must be one and only one that |
735 |
contains the empty string @{text "[]"} (since equivalence classes are disjoint). |
|
338
e7504bfdbd50
made the changes thes 2nd referee suggested and made it to compile again
urbanc
parents:
334
diff
changeset
|
736 |
Let us assume @{text "[] \<in> X\<^isub>1"}. We build the following initial equational system |
75 | 737 |
|
738 |
\begin{center} |
|
739 |
\begin{tabular}{rcl} |
|
173 | 740 |
@{text "X\<^isub>1"} & @{text "="} & @{text "(Y\<^isub>1\<^isub>1, ATOM c\<^isub>1\<^isub>1) + \<dots> + (Y\<^isub>1\<^isub>p, ATOM c\<^isub>1\<^isub>p) + \<lambda>(ONE)"} \\ |
741 |
@{text "X\<^isub>2"} & @{text "="} & @{text "(Y\<^isub>2\<^isub>1, ATOM c\<^isub>2\<^isub>1) + \<dots> + (Y\<^isub>2\<^isub>o, ATOM c\<^isub>2\<^isub>o)"} \\ |
|
75 | 742 |
& $\vdots$ \\ |
173 | 743 |
@{text "X\<^isub>n"} & @{text "="} & @{text "(Y\<^isub>n\<^isub>1, ATOM c\<^isub>n\<^isub>1) + \<dots> + (Y\<^isub>n\<^isub>q, ATOM c\<^isub>n\<^isub>q)"}\\ |
75 | 744 |
\end{tabular} |
745 |
\end{center} |
|
70 | 746 |
|
75 | 747 |
\noindent |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
748 |
where the terms @{text "(Y\<^isub>i\<^isub>j, ATOM c\<^isub>i\<^isub>j)"} are pairs consisting of an equivalence class and |
338
e7504bfdbd50
made the changes thes 2nd referee suggested and made it to compile again
urbanc
parents:
334
diff
changeset
|
749 |
a regular expression. In the initial equational system, they |
100 | 750 |
stand for all transitions @{term "Y\<^isub>i\<^isub>j \<Turnstile>c\<^isub>i\<^isub>j\<Rightarrow> |
159 | 751 |
X\<^isub>i"}. |
752 |
%The intuition behind the equational system is that every |
|
753 |
%equation @{text "X\<^isub>i = rhs\<^isub>i"} in this system |
|
754 |
%corresponds roughly to a state of an automaton whose name is @{text X\<^isub>i} and its predecessor states |
|
755 |
%are the @{text "Y\<^isub>i\<^isub>j"}; the @{text "c\<^isub>i\<^isub>j"} are the labels of the transitions from these |
|
756 |
%predecessor states to @{text X\<^isub>i}. |
|
757 |
There can only be |
|
173 | 758 |
finitely many terms of the form @{text "(Y\<^isub>i\<^isub>j, ATOM c\<^isub>i\<^isub>j)"} in a right-hand side |
156 | 759 |
since by assumption there are only finitely many |
159 | 760 |
equivalence classes and only finitely many characters. |
173 | 761 |
The term @{text "\<lambda>(ONE)"} in the first equation acts as a marker for the initial state, that |
159 | 762 |
is the equivalence class |
233 | 763 |
containing the empty string @{text "[]"}.\footnote{Note that we mark, roughly speaking, the |
115 | 764 |
single `initial' state in the equational system, which is different from |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
765 |
the method by \citeN{Brzozowski64}, where he marks the |
115 | 766 |
`terminal' states. We are forced to set up the equational system in our |
248 | 767 |
way, because the Myhill-Nerode Relation determines the `direction' of the |
123 | 768 |
transitions---the successor `state' of an equivalence class @{text Y} can |
769 |
be reached by adding a character to the end of @{text Y}. This is also the |
|
201 | 770 |
reason why we have to use our reversed version of Arden's Lemma.} |
177 | 771 |
In our running example we have the initial equational system |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
772 |
% |
177 | 773 |
\begin{equation}\label{exmpcs} |
774 |
\mbox{\begin{tabular}{l@ {\hspace{1mm}}c@ {\hspace{1mm}}l} |
|
775 |
@{term "X\<^isub>1"} & @{text "="} & @{text "\<lambda>(ONE)"}\\ |
|
776 |
@{term "X\<^isub>2"} & @{text "="} & @{text "(X\<^isub>1, ATOM c)"}\\ |
|
777 |
@{term "X\<^isub>3"} & @{text "="} & @{text "(X\<^isub>1, ATOM d\<^isub>1) + \<dots> + (X\<^isub>1, ATOM d\<^isub>n)"}\\ |
|
184 | 778 |
& & \mbox{}\hspace{10mm}@{text "+ (X\<^isub>3, ATOM c\<^isub>1) + \<dots> + (X\<^isub>3, ATOM c\<^isub>m)"} |
177 | 779 |
\end{tabular}} |
780 |
\end{equation} |
|
781 |
||
782 |
\noindent |
|
783 |
where @{text "d\<^isub>1\<dots>d\<^isub>n"} is the sequence of all characters |
|
181 | 784 |
but not containing @{text c}, and @{text "c\<^isub>1\<dots>c\<^isub>m"} is the sequence of all |
178 | 785 |
characters. |
177 | 786 |
|
100 | 787 |
Overloading the function @{text \<calL>} for the two kinds of terms in the |
92 | 788 |
equational system, we have |
75 | 789 |
|
790 |
\begin{center} |
|
92 | 791 |
@{text "\<calL>(Y, r) \<equiv>"} % |
172 | 792 |
@{thm (rhs) lang_trm.simps(2)[where X="Y" and r="r", THEN eq_reflection]}\hspace{10mm} |
793 |
@{thm lang_trm.simps(1)[where r="r", THEN eq_reflection]} |
|
75 | 794 |
\end{center} |
795 |
||
796 |
\noindent |
|
100 | 797 |
and we can prove for @{text "X\<^isub>2\<^isub>.\<^isub>.\<^isub>n"} that the following equations |
75 | 798 |
% |
799 |
\begin{equation}\label{inv1} |
|
173 | 800 |
@{text "X\<^isub>i = \<calL>(Y\<^isub>i\<^isub>1, ATOM c\<^isub>i\<^isub>1) \<union> \<dots> \<union> \<calL>(Y\<^isub>i\<^isub>q, ATOM c\<^isub>i\<^isub>q)"}. |
75 | 801 |
\end{equation} |
802 |
||
803 |
\noindent |
|
804 |
hold. Similarly for @{text "X\<^isub>1"} we can show the following equation |
|
805 |
% |
|
806 |
\begin{equation}\label{inv2} |
|
173 | 807 |
@{text "X\<^isub>1 = \<calL>(Y\<^isub>1\<^isub>1, ATOM c\<^isub>1\<^isub>1) \<union> \<dots> \<union> \<calL>(Y\<^isub>1\<^isub>p, ATOM c\<^isub>1\<^isub>p) \<union> \<calL>(\<lambda>(ONE))"}. |
75 | 808 |
\end{equation} |
809 |
||
810 |
\noindent |
|
160 | 811 |
holds. The reason for adding the @{text \<lambda>}-marker to our initial equational system is |
103 | 812 |
to obtain this equation: it only holds with the marker, since none of |
108 | 813 |
the other terms contain the empty string. The point of the initial equational system is |
814 |
that solving it means we will be able to extract a regular expression for every equivalence class. |
|
100 | 815 |
|
101 | 816 |
Our representation for the equations in Isabelle/HOL are pairs, |
108 | 817 |
where the first component is an equivalence class (a set of strings) |
818 |
and the second component |
|
101 | 819 |
is a set of terms. Given a set of equivalence |
100 | 820 |
classes @{text CS}, our initial equational system @{term "Init CS"} is thus |
101 | 821 |
formally defined as |
104 | 822 |
% |
823 |
\begin{equation}\label{initcs} |
|
824 |
\mbox{\begin{tabular}{rcl} |
|
100 | 825 |
@{thm (lhs) Init_rhs_def} & @{text "\<equiv>"} & |
826 |
@{text "if"}~@{term "[] \<in> X"}\\ |
|
173 | 827 |
& & @{text "then"}~@{term "{Trn Y (ATOM c) | Y c. Y \<in> CS \<and> Y \<Turnstile>c\<Rightarrow> X} \<union> {Lam ONE}"}\\ |
828 |
& & @{text "else"}~@{term "{Trn Y (ATOM c)| Y c. Y \<in> CS \<and> Y \<Turnstile>c\<Rightarrow> X}"}\\ |
|
100 | 829 |
@{thm (lhs) Init_def} & @{text "\<equiv>"} & @{thm (rhs) Init_def} |
104 | 830 |
\end{tabular}} |
831 |
\end{equation} |
|
100 | 832 |
|
833 |
\noindent |
|
834 |
Because we use sets of terms |
|
101 | 835 |
for representing the right-hand sides of equations, we can |
100 | 836 |
prove \eqref{inv1} and \eqref{inv2} more concisely as |
93 | 837 |
% |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
838 |
\begin{lemma}\label{inv} |
100 | 839 |
If @{thm (prem 1) test} then @{text "X = \<Union> \<calL> ` rhs"}. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
840 |
\end{lemma} |
77 | 841 |
|
93 | 842 |
\noindent |
198 | 843 |
Our proof of Theorem~\ref{myhillnerodeone} will proceed by transforming the |
100 | 844 |
initial equational system into one in \emph{solved form} maintaining the invariant |
198 | 845 |
in Lemma~\ref{inv}. From the solved form we will be able to read |
89 | 846 |
off the regular expressions. |
847 |
||
100 | 848 |
In order to transform an equational system into solved form, we have two |
89 | 849 |
operations: one that takes an equation of the form @{text "X = rhs"} and removes |
110 | 850 |
any recursive occurrences of @{text X} in the @{text rhs} using our variant of Arden's |
92 | 851 |
Lemma. The other operation takes an equation @{text "X = rhs"} |
89 | 852 |
and substitutes @{text X} throughout the rest of the equational system |
110 | 853 |
adjusting the remaining regular expressions appropriately. To define this adjustment |
108 | 854 |
we define the \emph{append-operation} taking a term and a regular expression as argument |
89 | 855 |
|
856 |
\begin{center} |
|
177 | 857 |
\begin{tabular}{r@ {\hspace{2mm}}c@ {\hspace{2mm}}l} |
858 |
@{thm (lhs) Append_rexp.simps(2)[where X="Y" and r="r\<^isub>1" and rexp="r\<^isub>2", THEN eq_reflection]} |
|
859 |
& @{text "\<equiv>"} & |
|
860 |
@{thm (rhs) Append_rexp.simps(2)[where X="Y" and r="r\<^isub>1" and rexp="r\<^isub>2", THEN eq_reflection]}\\ |
|
861 |
@{thm (lhs) Append_rexp.simps(1)[where r="r\<^isub>1" and rexp="r\<^isub>2", THEN eq_reflection]} |
|
862 |
& @{text "\<equiv>"} & |
|
863 |
@{thm (rhs) Append_rexp.simps(1)[where r="r\<^isub>1" and rexp="r\<^isub>2", THEN eq_reflection]} |
|
864 |
\end{tabular} |
|
89 | 865 |
\end{center} |
866 |
||
92 | 867 |
\noindent |
108 | 868 |
We lift this operation to entire right-hand sides of equations, written as |
162
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
869 |
@{thm (lhs) Append_rexp_rhs_def[where rexp="r"]}. With this we can define |
101 | 870 |
the \emph{arden-operation} for an equation of the form @{text "X = rhs"} as: |
110 | 871 |
% |
872 |
\begin{equation}\label{arden_def} |
|
873 |
\mbox{\begin{tabular}{rc@ {\hspace{2mm}}r@ {\hspace{1mm}}l} |
|
94 | 874 |
@{thm (lhs) Arden_def} & @{text "\<equiv>"}~~\mbox{} & \multicolumn{2}{@ {\hspace{-2mm}}l}{@{text "let"}}\\ |
875 |
& & @{text "rhs' ="} & @{term "rhs - {Trn X r | r. Trn X r \<in> rhs}"} \\ |
|
177 | 876 |
& & @{text "r' ="} & @{term "Star (\<Uplus> {r. Trn X r \<in> rhs})"}\\ |
877 |
& & \multicolumn{2}{@ {\hspace{-2mm}}l}{@{text "in"}~~@{term "Append_rexp_rhs rhs' r'"}}\\ |
|
110 | 878 |
\end{tabular}} |
879 |
\end{equation} |
|
93 | 880 |
|
881 |
\noindent |
|
101 | 882 |
In this definition, we first delete all terms of the form @{text "(X, r)"} from @{text rhs}; |
110 | 883 |
then we calculate the combined regular expressions for all @{text r} coming |
177 | 884 |
from the deleted @{text "(X, r)"}, and take the @{const Star} of it; |
178 | 885 |
finally we append this regular expression to @{text rhs'}. If we apply this |
886 |
operation to the right-hand side of @{text "X\<^isub>3"} in \eqref{exmpcs}, we obtain |
|
887 |
the equation: |
|
888 |
||
889 |
\begin{center} |
|
890 |
\begin{tabular}{l@ {\hspace{1mm}}c@ {\hspace{1mm}}l} |
|
891 |
@{term "X\<^isub>3"} & @{text "="} & |
|
184 | 892 |
@{text "(X\<^isub>1, TIMES (ATOM d\<^isub>1) (STAR \<^raw:\ensuremath{\bigplus}>{ATOM c\<^isub>1,\<dots>, ATOM c\<^isub>m})) + \<dots> "}\\ |
178 | 893 |
& & \mbox{}\hspace{13mm} |
184 | 894 |
@{text "\<dots> + (X\<^isub>1, TIMES (ATOM d\<^isub>n) (STAR \<^raw:\ensuremath{\bigplus}>{ATOM c\<^isub>1,\<dots>, ATOM c\<^isub>m}))"} |
178 | 895 |
\end{tabular} |
896 |
\end{center} |
|
897 |
||
898 |
||
899 |
\noindent |
|
201 | 900 |
That means we eliminated the recursive occurrence of @{text "X\<^isub>3"} on the |
178 | 901 |
right-hand side. Note we used the abbreviation |
184 | 902 |
@{text "\<^raw:\ensuremath{\bigplus}>{ATOM c\<^isub>1,\<dots>, ATOM c\<^isub>m}"} |
178 | 903 |
to stand for a regular expression that matches with every character. In |
183 | 904 |
our algorithm we are only interested in the existence of such a regular expression |
905 |
and do not specify it any further. |
|
178 | 906 |
|
907 |
It can be easily seen that the @{text "Arden"}-operation mimics Arden's |
|
908 |
Lemma on the level of equations. To ensure the non-emptiness condition of |
|
909 |
Arden's Lemma we say that a right-hand side is @{text ardenable} provided |
|
110 | 910 |
|
911 |
\begin{center} |
|
912 |
@{thm ardenable_def} |
|
913 |
\end{center} |
|
914 |
||
915 |
\noindent |
|
156 | 916 |
This allows us to prove a version of Arden's Lemma on the level of equations. |
110 | 917 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
918 |
\begin{lemma}\label{ardenable} |
113 | 919 |
Given an equation @{text "X = rhs"}. |
110 | 920 |
If @{text "X = \<Union>\<calL> ` rhs"}, |
179 | 921 |
@{thm (prem 2) Arden_preserves_soundness}, and |
922 |
@{thm (prem 3) Arden_preserves_soundness}, then |
|
135 | 923 |
@{text "X = \<Union>\<calL> ` (Arden X rhs)"}. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
924 |
\end{lemma} |
110 | 925 |
|
926 |
\noindent |
|
156 | 927 |
Our @{text ardenable} condition is slightly stronger than needed for applying Arden's Lemma, |
194 | 928 |
but we can still ensure that it holds throughout our algorithm of transforming equations |
338
e7504bfdbd50
made the changes thes 2nd referee suggested and made it to compile again
urbanc
parents:
334
diff
changeset
|
929 |
into solved form. |
e7504bfdbd50
made the changes thes 2nd referee suggested and made it to compile again
urbanc
parents:
334
diff
changeset
|
930 |
|
e7504bfdbd50
made the changes thes 2nd referee suggested and made it to compile again
urbanc
parents:
334
diff
changeset
|
931 |
The \emph{substitution-operation} takes an equation |
95 | 932 |
of the form @{text "X = xrhs"} and substitutes it into the right-hand side @{text rhs}. |
94 | 933 |
|
934 |
\begin{center} |
|
95 | 935 |
\begin{tabular}{rc@ {\hspace{2mm}}r@ {\hspace{1mm}}l} |
936 |
@{thm (lhs) Subst_def} & @{text "\<equiv>"}~~\mbox{} & \multicolumn{2}{@ {\hspace{-2mm}}l}{@{text "let"}}\\ |
|
937 |
& & @{text "rhs' ="} & @{term "rhs - {Trn X r | r. Trn X r \<in> rhs}"} \\ |
|
938 |
& & @{text "r' ="} & @{term "\<Uplus> {r. Trn X r \<in> rhs}"}\\ |
|
177 | 939 |
& & \multicolumn{2}{@ {\hspace{-2mm}}l}{@{text "in"}~~@{term "rhs' \<union> Append_rexp_rhs xrhs r'"}}\\ |
95 | 940 |
\end{tabular} |
94 | 941 |
\end{center} |
95 | 942 |
|
943 |
\noindent |
|
134 | 944 |
We again delete first all occurrences of @{text "(X, r)"} in @{text rhs}; we then calculate |
95 | 945 |
the regular expression corresponding to the deleted terms; finally we append this |
946 |
regular expression to @{text "xrhs"} and union it up with @{text rhs'}. When we use |
|
947 |
the substitution operation we will arrange it so that @{text "xrhs"} does not contain |
|
178 | 948 |
any occurrence of @{text X}. For example substituting the first equation in |
949 |
\eqref{exmpcs} into the right-hand side of the second, thus eliminating the equivalence |
|
950 |
class @{text "X\<^isub>1"}, gives us the equation |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
951 |
% |
178 | 952 |
\begin{equation}\label{exmpresult} |
953 |
\mbox{\begin{tabular}{l@ {\hspace{1mm}}c@ {\hspace{1mm}}l} |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
954 |
@{term "X\<^isub>2"} & @{text "="} & @{text "\<lambda>(TIMES ONE (ATOM c))"} |
178 | 955 |
\end{tabular}} |
956 |
\end{equation} |
|
96 | 957 |
|
134 | 958 |
With these two operations in place, we can define the operation that removes one equation |
100 | 959 |
from an equational systems @{text ES}. The operation @{const Subst_all} |
96 | 960 |
substitutes an equation @{text "X = xrhs"} throughout an equational system @{text ES}; |
100 | 961 |
@{const Remove} then completely removes such an equation from @{text ES} by substituting |
110 | 962 |
it to the rest of the equational system, but first eliminating all recursive occurrences |
96 | 963 |
of @{text X} by applying @{const Arden} to @{text "xrhs"}. |
964 |
||
965 |
\begin{center} |
|
966 |
\begin{tabular}{rcl} |
|
967 |
@{thm (lhs) Subst_all_def} & @{text "\<equiv>"} & @{thm (rhs) Subst_all_def}\\ |
|
968 |
@{thm (lhs) Remove_def} & @{text "\<equiv>"} & @{thm (rhs) Remove_def} |
|
969 |
\end{tabular} |
|
970 |
\end{center} |
|
100 | 971 |
|
972 |
\noindent |
|
110 | 973 |
Finally, we can define how an equational system should be solved. For this |
107 | 974 |
we will need to iterate the process of eliminating equations until only one equation |
154 | 975 |
will be left in the system. However, we do not just want to have any equation |
107 | 976 |
as being the last one, but the one involving the equivalence class for |
977 |
which we want to calculate the regular |
|
108 | 978 |
expression. Let us suppose this equivalence class is @{text X}. |
107 | 979 |
Since @{text X} is the one to be solved, in every iteration step we have to pick an |
108 | 980 |
equation to be eliminated that is different from @{text X}. In this way |
981 |
@{text X} is kept to the final step. The choice is implemented using Hilbert's choice |
|
107 | 982 |
operator, written @{text SOME} in the definition below. |
100 | 983 |
|
984 |
\begin{center} |
|
985 |
\begin{tabular}{rc@ {\hspace{4mm}}r@ {\hspace{1mm}}l} |
|
986 |
@{thm (lhs) Iter_def} & @{text "\<equiv>"}~~\mbox{} & \multicolumn{2}{@ {\hspace{-4mm}}l}{@{text "let"}}\\ |
|
987 |
& & @{text "(Y, yrhs) ="} & @{term "SOME (Y, yrhs). (Y, yrhs) \<in> ES \<and> X \<noteq> Y"} \\ |
|
988 |
& & \multicolumn{2}{@ {\hspace{-4mm}}l}{@{text "in"}~~@{term "Remove ES Y yrhs"}}\\ |
|
989 |
\end{tabular} |
|
990 |
\end{center} |
|
991 |
||
992 |
\noindent |
|
110 | 993 |
The last definition we need applies @{term Iter} over and over until a condition |
159 | 994 |
@{text Cond} is \emph{not} satisfied anymore. This condition states that there |
110 | 995 |
are more than one equation left in the equational system @{text ES}. To solve |
996 |
an equational system we use Isabelle/HOL's @{text while}-operator as follows: |
|
101 | 997 |
|
100 | 998 |
\begin{center} |
999 |
@{thm Solve_def} |
|
1000 |
\end{center} |
|
1001 |
||
101 | 1002 |
\noindent |
198 | 1003 |
We are not concerned here with the definition of this operator (see |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1004 |
\cite{BerghoferNipkow00} for example), but note that we |
198 | 1005 |
eliminate in each @{const Iter}-step a single equation, and therefore have a |
1006 |
well-founded termination order by taking the cardinality of the equational |
|
1007 |
system @{text ES}. This enables us to prove properties about our definition |
|
1008 |
of @{const Solve} when we `call' it with the equivalence class @{text X} and |
|
1009 |
the initial equational system @{term "Init (UNIV // \<approx>A)"} from |
|
108 | 1010 |
\eqref{initcs} using the principle: |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1011 |
% |
110 | 1012 |
\begin{equation}\label{whileprinciple} |
1013 |
\mbox{\begin{tabular}{l} |
|
103 | 1014 |
@{term "invariant (Init (UNIV // \<approx>A))"} \\ |
1015 |
@{term "\<forall>ES. invariant ES \<and> Cond ES \<longrightarrow> invariant (Iter X ES)"}\\ |
|
1016 |
@{term "\<forall>ES. invariant ES \<and> Cond ES \<longrightarrow> card (Iter X ES) < card ES"}\\ |
|
1017 |
@{term "\<forall>ES. invariant ES \<and> \<not> Cond ES \<longrightarrow> P ES"}\\ |
|
1018 |
\hline |
|
1019 |
\multicolumn{1}{c}{@{term "P (Solve X (Init (UNIV // \<approx>A)))"}} |
|
110 | 1020 |
\end{tabular}} |
1021 |
\end{equation} |
|
103 | 1022 |
|
1023 |
\noindent |
|
104 | 1024 |
This principle states that given an invariant (which we will specify below) |
1025 |
we can prove a property |
|
1026 |
@{text "P"} involving @{const Solve}. For this we have to discharge the following |
|
1027 |
proof obligations: first the |
|
113 | 1028 |
initial equational system satisfies the invariant; second the iteration |
154 | 1029 |
step @{text "Iter"} preserves the invariant as long as the condition @{term Cond} holds; |
113 | 1030 |
third @{text "Iter"} decreases the termination order, and fourth that |
104 | 1031 |
once the condition does not hold anymore then the property @{text P} must hold. |
103 | 1032 |
|
104 | 1033 |
The property @{term P} in our proof will state that @{term "Solve X (Init (UNIV // \<approx>A))"} |
108 | 1034 |
returns with a single equation @{text "X = xrhs"} for some @{text "xrhs"}, and |
104 | 1035 |
that this equational system still satisfies the invariant. In order to get |
1036 |
the proof through, the invariant is composed of the following six properties: |
|
103 | 1037 |
|
1038 |
\begin{center} |
|
104 | 1039 |
\begin{tabular}{@ {}rcl@ {\hspace{-13mm}}l @ {}} |
1040 |
@{text "invariant ES"} & @{text "\<equiv>"} & |
|
103 | 1041 |
@{term "finite ES"} & @{text "(finiteness)"}\\ |
1042 |
& @{text "\<and>"} & @{thm (rhs) finite_rhs_def} & @{text "(finiteness rhs)"}\\ |
|
104 | 1043 |
& @{text "\<and>"} & @{text "\<forall>(X, rhs)\<in>ES. X = \<Union>\<calL> ` rhs"} & @{text "(soundness)"}\\ |
162
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
1044 |
& @{text "\<and>"} & @{thm (rhs) distinctness_def}\\ |
104 | 1045 |
& & & @{text "(distinctness)"}\\ |
110 | 1046 |
& @{text "\<and>"} & @{thm (rhs) ardenable_all_def} & @{text "(ardenable)"}\\ |
162
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
1047 |
& @{text "\<and>"} & @{thm (rhs) validity_def} & @{text "(validity)"}\\ |
103 | 1048 |
\end{tabular} |
1049 |
\end{center} |
|
1050 |
||
104 | 1051 |
\noindent |
1052 |
The first two ensure that the equational system is always finite (number of equations |
|
160 | 1053 |
and number of terms in each equation); the third makes sure the `meaning' of the |
108 | 1054 |
equations is preserved under our transformations. The other properties are a bit more |
1055 |
technical, but are needed to get our proof through. Distinctness states that every |
|
154 | 1056 |
equation in the system is distinct. @{text Ardenable} ensures that we can always |
156 | 1057 |
apply the @{text Arden} operation. |
108 | 1058 |
The last property states that every @{text rhs} can only contain equivalence classes |
1059 |
for which there is an equation. Therefore @{text lhss} is just the set containing |
|
1060 |
the first components of an equational system, |
|
1061 |
while @{text "rhss"} collects all equivalence classes @{text X} in the terms of the |
|
123 | 1062 |
form @{term "Trn X r"}. That means formally @{thm (lhs) lhss_def}~@{text "\<equiv> {X | (X, rhs) \<in> ES}"} |
110 | 1063 |
and @{thm (lhs) rhss_def}~@{text "\<equiv> {X | (X, r) \<in> rhs}"}. |
108 | 1064 |
|
104 | 1065 |
|
110 | 1066 |
It is straightforward to prove that the initial equational system satisfies the |
105 | 1067 |
invariant. |
1068 |
||
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1069 |
\begin{lemma}\label{invzero} |
104 | 1070 |
@{thm[mode=IfThen] Init_ES_satisfies_invariant} |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1071 |
\end{lemma} |
104 | 1072 |
|
105 | 1073 |
\begin{proof} |
1074 |
Finiteness is given by the assumption and the way how we set up the |
|
198 | 1075 |
initial equational system. Soundness is proved in Lemma~\ref{inv}. Distinctness |
154 | 1076 |
follows from the fact that the equivalence classes are disjoint. The @{text ardenable} |
113 | 1077 |
property also follows from the setup of the initial equational system, as does |
174 | 1078 |
validity. |
105 | 1079 |
\end{proof} |
1080 |
||
113 | 1081 |
\noindent |
1082 |
Next we show that @{text Iter} preserves the invariant. |
|
1083 |
||
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1084 |
\begin{lemma}\label{iterone} If |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1085 |
@{thm (prem 1) iteration_step_invariant[where xrhs="rhs"]}, |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1086 |
@{thm (prem 2) iteration_step_invariant[where xrhs="rhs"]} and |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1087 |
@{thm (prem 3) iteration_step_invariant[where xrhs="rhs"]}, then |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1088 |
@{thm (concl) iteration_step_invariant[where xrhs="rhs"]}. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1089 |
\end{lemma} |
104 | 1090 |
|
107 | 1091 |
\begin{proof} |
156 | 1092 |
The argument boils down to choosing an equation @{text "Y = yrhs"} to be eliminated |
110 | 1093 |
and to show that @{term "Subst_all (ES - {(Y, yrhs)}) Y (Arden Y yrhs)"} |
1094 |
preserves the invariant. |
|
1095 |
We prove this as follows: |
|
1096 |
||
1097 |
\begin{center} |
|
177 | 1098 |
\begin{tabular}{@ {}l@ {}} |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1099 |
@{text "\<forall>ES."}~@{thm (prem 1) Subst_all_satisfies_invariant} implies |
110 | 1100 |
@{thm (concl) Subst_all_satisfies_invariant} |
177 | 1101 |
\end{tabular} |
110 | 1102 |
\end{center} |
1103 |
||
1104 |
\noindent |
|
156 | 1105 |
Finiteness is straightforward, as the @{const Subst} and @{const Arden} operations |
116 | 1106 |
keep the equational system finite. These operations also preserve soundness |
198 | 1107 |
and distinctness (we proved soundness for @{const Arden} in Lemma~\ref{ardenable}). |
154 | 1108 |
The property @{text ardenable} is clearly preserved because the append-operation |
110 | 1109 |
cannot make a regular expression to match the empty string. Validity is |
1110 |
given because @{const Arden} removes an equivalence class from @{text yrhs} |
|
1111 |
and then @{const Subst_all} removes @{text Y} from the equational system. |
|
132 | 1112 |
Having proved the implication above, we can instantiate @{text "ES"} with @{text "ES - {(Y, yrhs)}"} |
110 | 1113 |
which matches with our proof-obligation of @{const "Subst_all"}. Since |
132 | 1114 |
\mbox{@{term "ES = ES - {(Y, yrhs)} \<union> {(Y, yrhs)}"}}, we can use the assumption |
174 | 1115 |
to complete the proof. |
107 | 1116 |
\end{proof} |
1117 |
||
113 | 1118 |
\noindent |
1119 |
We also need the fact that @{text Iter} decreases the termination measure. |
|
1120 |
||
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1121 |
\begin{lemma}\label{itertwo} If |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1122 |
@{thm (prem 1) iteration_step_measure[simplified (no_asm), where xrhs="rhs"]}, |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1123 |
@{thm (prem 2) iteration_step_measure[simplified (no_asm), where xrhs="rhs"]} and |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1124 |
@{thm (prem 3) iteration_step_measure[simplified (no_asm), where xrhs="rhs"]}, then\\ |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1125 |
\mbox{@{thm (concl) iteration_step_measure[simplified (no_asm), where xrhs="rhs"]}}. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1126 |
\end{lemma} |
104 | 1127 |
|
105 | 1128 |
\begin{proof} |
1129 |
By assumption we know that @{text "ES"} is finite and has more than one element. |
|
1130 |
Therefore there must be an element @{term "(Y, yrhs) \<in> ES"} with |
|
110 | 1131 |
@{term "(Y, yrhs) \<noteq> (X, rhs)"}. Using the distinctness property we can infer |
105 | 1132 |
that @{term "Y \<noteq> X"}. We further know that @{text "Remove ES Y yrhs"} |
1133 |
removes the equation @{text "Y = yrhs"} from the system, and therefore |
|
174 | 1134 |
the cardinality of @{const Iter} strictly decreases. |
105 | 1135 |
\end{proof} |
1136 |
||
113 | 1137 |
\noindent |
134 | 1138 |
This brings us to our property we want to establish for @{text Solve}. |
113 | 1139 |
|
1140 |
||
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1141 |
\begin{lemma} |
104 | 1142 |
If @{thm (prem 1) Solve} and @{thm (prem 2) Solve} then there exists |
1143 |
a @{text rhs} such that @{term "Solve X (Init (UNIV // \<approx>A)) = {(X, rhs)}"} |
|
1144 |
and @{term "invariant {(X, rhs)}"}. |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1145 |
\end{lemma} |
104 | 1146 |
|
107 | 1147 |
\begin{proof} |
110 | 1148 |
In order to prove this lemma using \eqref{whileprinciple}, we have to use a slightly |
198 | 1149 |
stronger invariant since Lemma~\ref{iterone} and \ref{itertwo} have the precondition |
110 | 1150 |
that @{term "(X, rhs) \<in> ES"} for some @{text rhs}. This precondition is needed |
1151 |
in order to choose in the @{const Iter}-step an equation that is not \mbox{@{term "X = rhs"}}. |
|
113 | 1152 |
Therefore our invariant cannot be just @{term "invariant ES"}, but must be |
110 | 1153 |
@{term "invariant ES \<and> (\<exists>rhs. (X, rhs) \<in> ES)"}. By assumption |
198 | 1154 |
@{thm (prem 2) Solve} and Lemma~\ref{invzero}, the more general invariant holds for |
110 | 1155 |
the initial equational system. This is premise 1 of~\eqref{whileprinciple}. |
198 | 1156 |
Premise 2 is given by Lemma~\ref{iterone} and the fact that @{const Iter} might |
110 | 1157 |
modify the @{text rhs} in the equation @{term "X = rhs"}, but does not remove it. |
198 | 1158 |
Premise 3 of~\eqref{whileprinciple} is by Lemma~\ref{itertwo}. Now in premise 4 |
110 | 1159 |
we like to show that there exists a @{text rhs} such that @{term "ES = {(X, rhs)}"} |
1160 |
and that @{text "invariant {(X, rhs)}"} holds, provided the condition @{text "Cond"} |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1161 |
does not hold. By the stronger invariant we know there exists such a @{text "rhs"} |
110 | 1162 |
with @{term "(X, rhs) \<in> ES"}. Because @{text Cond} is not true, we know the cardinality |
123 | 1163 |
of @{text ES} is @{text 1}. This means @{text "ES"} must actually be the set @{text "{(X, rhs)}"}, |
110 | 1164 |
for which the invariant holds. This allows us to conclude that |
113 | 1165 |
@{term "Solve X (Init (UNIV // \<approx>A)) = {(X, rhs)}"} and @{term "invariant {(X, rhs)}"} hold, |
174 | 1166 |
as needed. |
107 | 1167 |
\end{proof} |
1168 |
||
106 | 1169 |
\noindent |
1170 |
With this lemma in place we can show that for every equivalence class in @{term "UNIV // \<approx>A"} |
|
1171 |
there exists a regular expression. |
|
1172 |
||
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1173 |
\begin{lemma}\label{every_eqcl_has_reg} |
105 | 1174 |
@{thm[mode=IfThen] every_eqcl_has_reg} |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1175 |
\end{lemma} |
105 | 1176 |
|
1177 |
\begin{proof} |
|
138 | 1178 |
By the preceding lemma, we know that there exists a @{text "rhs"} such |
105 | 1179 |
that @{term "Solve X (Init (UNIV // \<approx>A))"} returns the equation @{text "X = rhs"}, |
1180 |
and that the invariant holds for this equation. That means we |
|
1181 |
know @{text "X = \<Union>\<calL> ` rhs"}. We further know that |
|
109 | 1182 |
this is equal to \mbox{@{text "\<Union>\<calL> ` (Arden X rhs)"}} using the properties of the |
198 | 1183 |
invariant and Lemma~\ref{ardenable}. Using the validity property for the equation @{text "X = rhs"}, |
156 | 1184 |
we can infer that @{term "rhss rhs \<subseteq> {X}"} and because the @{text Arden} operation |
106 | 1185 |
removes that @{text X} from @{text rhs}, that @{term "rhss (Arden X rhs) = {}"}. |
113 | 1186 |
This means the right-hand side @{term "Arden X rhs"} can only consist of terms of the form @{term "Lam r"}. |
176 | 1187 |
So we can collect those (finitely many) regular expressions @{text rs} and have @{term "X = lang (\<Uplus>rs)"}. |
174 | 1188 |
With this we can conclude the proof. |
105 | 1189 |
\end{proof} |
1190 |
||
106 | 1191 |
\noindent |
198 | 1192 |
Lemma~\ref{every_eqcl_has_reg} allows us to finally give a proof for the first direction |
248 | 1193 |
of the Myhill-Nerode Theorem. |
105 | 1194 |
|
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
1195 |
\begin{proof}[of Theorem~\ref{myhillnerodeone}] |
198 | 1196 |
By Lemma~\ref{every_eqcl_has_reg} we know that there exists a regular expression for |
105 | 1197 |
every equivalence class in @{term "UNIV // \<approx>A"}. Since @{text "finals A"} is |
110 | 1198 |
a subset of @{term "UNIV // \<approx>A"}, we also know that for every equivalence class |
123 | 1199 |
in @{term "finals A"} there exists a regular expression. Moreover by assumption |
106 | 1200 |
we know that @{term "finals A"} must be finite, and therefore there must be a finite |
105 | 1201 |
set of regular expressions @{text "rs"} such that |
176 | 1202 |
@{term "\<Union>(finals A) = lang (\<Uplus>rs)"}. |
105 | 1203 |
Since the left-hand side is equal to @{text A}, we can use @{term "\<Uplus>rs"} |
174 | 1204 |
as the regular expression that is needed in the theorem. |
105 | 1205 |
\end{proof} |
233 | 1206 |
|
1207 |
\noindent |
|
245 | 1208 |
Note that our algorithm for solving equational systems provides also a method for |
1209 |
calculating a regular expression for the complement of a regular language: |
|
1210 |
if we combine all regular |
|
233 | 1211 |
expressions corresponding to equivalence classes not in @{term "finals A"}, |
245 | 1212 |
then we obtain a regular expression for the complement language @{term "- A"}. |
1213 |
This is similar to the usual construction of a `complement automaton'. |
|
54 | 1214 |
*} |
1215 |
||
100 | 1216 |
section {* Myhill-Nerode, Second Part *} |
39
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
1217 |
|
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
1218 |
text {* |
173 | 1219 |
\noindent |
181 | 1220 |
In this section we will give a proof for establishing the second |
248 | 1221 |
part of the Myhill-Nerode Theorem. It can be formulated in our setting as follows: |
39
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
1222 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1223 |
\begin{theorem}\label{myhillnerodetwo} |
135 | 1224 |
Given @{text "r"} is a regular expression, then @{thm Myhill_Nerode2}. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1225 |
\end{theorem} |
39
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
1226 |
|
116 | 1227 |
\noindent |
181 | 1228 |
The proof will be by induction on the structure of @{text r}. It turns out |
116 | 1229 |
the base cases are straightforward. |
1230 |
||
1231 |
||
375
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
1232 |
\begin{proof}[Base Cases] |
173 | 1233 |
The cases for @{const ZERO}, @{const ONE} and @{const ATOM} are routine, because |
149 | 1234 |
we can easily establish that |
39
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
1235 |
|
114 | 1236 |
\begin{center} |
1237 |
\begin{tabular}{l} |
|
172 | 1238 |
@{thm quot_zero_eq}\\ |
1239 |
@{thm quot_one_subset}\\ |
|
1240 |
@{thm quot_atom_subset} |
|
114 | 1241 |
\end{tabular} |
1242 |
\end{center} |
|
1243 |
||
116 | 1244 |
\noindent |
174 | 1245 |
hold, which shows that @{term "UNIV // \<approx>(lang r)"} must be finite. |
114 | 1246 |
\end{proof} |
109 | 1247 |
|
116 | 1248 |
\noindent |
183 | 1249 |
Much more interesting, however, are the inductive cases. They seem hard to be solved |
372
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
1250 |
directly. The reader is invited to try.\footnote{The induction hypothesis is not strong enough |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1251 |
to make any progress with the @{text TIMES} and @{text STAR} cases.} |
117 | 1252 |
|
181 | 1253 |
In order to see how our proof proceeds consider the following suggestive picture |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1254 |
given by \citeN{Constable00}: |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1255 |
% |
181 | 1256 |
\begin{equation}\label{pics} |
1257 |
\mbox{\begin{tabular}{c@ {\hspace{10mm}}c@ {\hspace{10mm}}c} |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1258 |
\begin{tikzpicture}[scale=0.95] |
180 | 1259 |
%Circle |
1260 |
\draw[thick] (0,0) circle (1.1); |
|
1261 |
\end{tikzpicture} |
|
1262 |
& |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1263 |
\begin{tikzpicture}[scale=0.95] |
180 | 1264 |
%Circle |
1265 |
\draw[thick] (0,0) circle (1.1); |
|
1266 |
%Main rays |
|
1267 |
\foreach \a in {0, 90,...,359} |
|
1268 |
\draw[very thick] (0, 0) -- (\a:1.1); |
|
1269 |
\foreach \a / \l in {45/1, 135/2, 225/3, 315/4} |
|
1270 |
\draw (\a: 0.65) node {$a_\l$}; |
|
1271 |
\end{tikzpicture} |
|
1272 |
& |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1273 |
\begin{tikzpicture}[scale=0.95] |
180 | 1274 |
%Circle |
1275 |
\draw[thick] (0,0) circle (1.1); |
|
1276 |
%Main rays |
|
1277 |
\foreach \a in {0, 45,...,359} |
|
1278 |
\draw[very thick] (0, 0) -- (\a:1.1); |
|
1279 |
\foreach \a / \l in {22.5/1.1, 67.5/1.2, 112.5/2.1, 157.5/2.2, 202.4/3.1, 247.5/3.2, 292.5/4.1, 337.5/4.2} |
|
1280 |
\draw (\a: 0.77) node {$a_{\l}$}; |
|
1281 |
\end{tikzpicture}\\ |
|
1282 |
@{term UNIV} & @{term "UNIV // (\<approx>(lang r))"} & @{term "UNIV // R"} |
|
181 | 1283 |
\end{tabular}} |
1284 |
\end{equation} |
|
179 | 1285 |
|
181 | 1286 |
\noindent |
190 | 1287 |
The relation @{term "\<approx>(lang r)"} partitions the set of all strings, @{term UNIV}, into some |
183 | 1288 |
equivalence classes. To show that there are only finitely many of them, it |
1289 |
suffices to show in each induction step that another relation, say @{text |
|
184 | 1290 |
R}, has finitely many equivalence classes and refines @{term "\<approx>(lang r)"}. |
1291 |
||
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1292 |
\begin{definition} |
245 | 1293 |
A relation @{text "R\<^isub>1"} \emph{refines} @{text "R\<^isub>2"} |
184 | 1294 |
provided @{text "R\<^isub>1 \<subseteq> R\<^isub>2"}. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1295 |
\end{definition} |
184 | 1296 |
|
1297 |
\noindent |
|
248 | 1298 |
For constructing @{text R}, we will rely on some \emph{tagging-functions} |
198 | 1299 |
defined over strings. Given the inductive hypothesis, it will be easy to |
1300 |
prove that the \emph{range} of these tagging-functions is finite. The range |
|
1301 |
of a function @{text f} is defined as |
|
183 | 1302 |
|
174 | 1303 |
\begin{center} |
1304 |
@{text "range f \<equiv> f ` UNIV"} |
|
1305 |
\end{center} |
|
1306 |
||
1307 |
\noindent |
|
181 | 1308 |
that means we take the image of @{text f} w.r.t.~all elements in the |
1309 |
domain. With this we will be able to infer that the tagging-functions, seen |
|
187 | 1310 |
as relations, give rise to finitely many equivalence classes. |
1311 |
Finally we will show that the tagging-relations are more refined than |
|
181 | 1312 |
@{term "\<approx>(lang r)"}, which implies that @{term "UNIV // \<approx>(lang r)"} must |
1313 |
also be finite. We formally define the notion of a \emph{tagging-relation} |
|
1314 |
as follows. |
|
1315 |
||
117 | 1316 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1317 |
\begin{definition}[Tagging-Relation] Given a tagging-function @{text tag}, then two strings @{text x} |
119 | 1318 |
and @{text y} are \emph{tag-related} provided |
117 | 1319 |
\begin{center} |
174 | 1320 |
@{text "x \<^raw:$\threesim$>\<^bsub>tag\<^esub> y \<equiv> tag x = tag y"}\;. |
117 | 1321 |
\end{center} |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1322 |
\end{definition} |
117 | 1323 |
|
145 | 1324 |
|
123 | 1325 |
In order to establish finiteness of a set @{text A}, we shall use the following powerful |
118 | 1326 |
principle from Isabelle/HOL's library. |
1327 |
% |
|
1328 |
\begin{equation}\label{finiteimageD} |
|
1329 |
@{thm[mode=IfThen] finite_imageD} |
|
1330 |
\end{equation} |
|
1331 |
||
1332 |
\noindent |
|
123 | 1333 |
It states that if an image of a set under an injective function @{text f} (injective over this set) |
131 | 1334 |
is finite, then the set @{text A} itself must be finite. We can use it to establish the following |
118 | 1335 |
two lemmas. |
1336 |
||
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1337 |
\begin{lemma}\label{finone} |
117 | 1338 |
@{thm[mode=IfThen] finite_eq_tag_rel} |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1339 |
\end{lemma} |
117 | 1340 |
|
1341 |
\begin{proof} |
|
119 | 1342 |
We set in \eqref{finiteimageD}, @{text f} to be @{text "X \<mapsto> tag ` X"}. We have |
123 | 1343 |
@{text "range f"} to be a subset of @{term "Pow (range tag)"}, which we know must be |
201 | 1344 |
finite by assumption. Now @{term "f ` (UNIV // =tag=)"} is a subset of @{text "range f"}, |
119 | 1345 |
and so also finite. Injectivity amounts to showing that @{text "X = Y"} under the |
1346 |
assumptions that @{text "X, Y \<in> "}~@{term "UNIV // =tag="} and @{text "f X = f Y"}. |
|
198 | 1347 |
From the assumptions we obtain \mbox{@{text "x \<in> X"}} and @{text "y \<in> Y"} with |
123 | 1348 |
@{text "tag x = tag y"}. Since @{text x} and @{text y} are tag-related, this in |
1349 |
turn means that the equivalence classes @{text X} |
|
198 | 1350 |
and @{text Y} must be equal. Therefore \eqref{finiteimageD} allows us to conclude |
1351 |
with @{thm (concl) finite_eq_tag_rel}. |
|
117 | 1352 |
\end{proof} |
1353 |
||
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1354 |
\begin{lemma}\label{fintwo} |
123 | 1355 |
Given two equivalence relations @{text "R\<^isub>1"} and @{text "R\<^isub>2"}, whereby |
118 | 1356 |
@{text "R\<^isub>1"} refines @{text "R\<^isub>2"}. |
1357 |
If @{thm (prem 1) refined_partition_finite[where ?R1.0="R\<^isub>1" and ?R2.0="R\<^isub>2"]} |
|
1358 |
then @{thm (concl) refined_partition_finite[where ?R1.0="R\<^isub>1" and ?R2.0="R\<^isub>2"]}. |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1359 |
\end{lemma} |
117 | 1360 |
|
1361 |
\begin{proof} |
|
123 | 1362 |
We prove this lemma again using \eqref{finiteimageD}. This time we set @{text f} to |
118 | 1363 |
be @{text "X \<mapsto>"}~@{term "{R\<^isub>1 `` {x} | x. x \<in> X}"}. It is easy to see that |
135 | 1364 |
@{term "finite (f ` (UNIV // R\<^isub>2))"} because it is a subset of @{term "Pow (UNIV // R\<^isub>1)"}, |
174 | 1365 |
which must be finite by assumption. What remains to be shown is that @{text f} is injective |
118 | 1366 |
on @{term "UNIV // R\<^isub>2"}. This is equivalent to showing that two equivalence |
1367 |
classes, say @{text "X"} and @{text Y}, in @{term "UNIV // R\<^isub>2"} are equal, provided |
|
1368 |
@{text "f X = f Y"}. For @{text "X = Y"} to be equal, we have to find two elements |
|
1369 |
@{text "x \<in> X"} and @{text "y \<in> Y"} such that they are @{text R\<^isub>2} related. |
|
135 | 1370 |
We know there exists a @{text "x \<in> X"} with \mbox{@{term "X = R\<^isub>2 `` {x}"}}. |
1371 |
From the latter fact we can infer that @{term "R\<^isub>1 ``{x} \<in> f X"} |
|
123 | 1372 |
and further @{term "R\<^isub>1 ``{x} \<in> f Y"}. This means we can obtain a @{text y} |
1373 |
such that @{term "R\<^isub>1 `` {x} = R\<^isub>1 `` {y}"} holds. Consequently @{text x} and @{text y} |
|
118 | 1374 |
are @{text "R\<^isub>1"}-related. Since by assumption @{text "R\<^isub>1"} refines @{text "R\<^isub>2"}, |
174 | 1375 |
they must also be @{text "R\<^isub>2"}-related, as we need to show. |
117 | 1376 |
\end{proof} |
1377 |
||
1378 |
\noindent |
|
198 | 1379 |
Chaining Lemma~\ref{finone} and \ref{fintwo} together, means in order to show |
181 | 1380 |
that @{term "UNIV // \<approx>(lang r)"} is finite, we have to construct a tagging-function whose |
174 | 1381 |
range can be shown to be finite and whose tagging-relation refines @{term "\<approx>(lang r)"}. |
183 | 1382 |
Let us attempt the @{const PLUS}-case first. We take as tagging-function |
1383 |
||
119 | 1384 |
\begin{center} |
181 | 1385 |
@{thm tag_Plus_def[where A="A" and B="B", THEN meta_eq_app]} |
119 | 1386 |
\end{center} |
117 | 1387 |
|
119 | 1388 |
\noindent |
183 | 1389 |
where @{text "A"} and @{text "B"} are some arbitrary languages. The reason for this choice |
184 | 1390 |
is that we need to establish that @{term "=(tag_Plus A B)="} refines @{term "\<approx>(A \<union> B)"}. |
1391 |
This amounts to showing @{term "x \<approx>A y"} or @{term "x \<approx>B y"} under the assumption |
|
1392 |
@{term "x"}~@{term "=(tag_Plus A B)="}~@{term y}. As we shall see, this definition will |
|
187 | 1393 |
provide us with just the right assumptions in order to get the proof through. |
183 | 1394 |
|
375
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
1395 |
\begin{proof}[@{const "PLUS"}-Case] |
183 | 1396 |
We can show in general, if @{term "finite (UNIV // \<approx>A)"} and @{term "finite |
1397 |
(UNIV // \<approx>B)"} then @{term "finite ((UNIV // \<approx>A) \<times> (UNIV // \<approx>B))"} |
|
1398 |
holds. The range of @{term "tag_Plus A B"} is a subset of this product |
|
1399 |
set---so finite. For the refinement proof-obligation, we know that @{term |
|
1400 |
"(\<approx>A `` {x}, \<approx>B `` {x}) = (\<approx>A `` {y}, \<approx>B `` {y})"} holds by assumption. Then |
|
184 | 1401 |
clearly either @{term "x \<approx>A y"} or @{term "x \<approx>B y"}, as we needed to |
183 | 1402 |
show. Finally we can discharge this case by setting @{text A} to @{term |
1403 |
"lang r\<^isub>1"} and @{text B} to @{term "lang r\<^isub>2"}. |
|
119 | 1404 |
\end{proof} |
1405 |
||
184 | 1406 |
\noindent |
1407 |
The @{const TIMES}-case is slightly more complicated. We first prove the |
|
187 | 1408 |
following lemma, which will aid the proof about refinement. |
184 | 1409 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1410 |
\begin{lemma}\label{refinement} |
184 | 1411 |
The relation @{text "\<^raw:$\threesim$>\<^bsub>tag\<^esub>"} refines @{term "\<approx>A"}, provided for |
190 | 1412 |
all strings @{text x}, @{text y} and @{text z} we have that \mbox{@{text "x \<^raw:$\threesim$>\<^bsub>tag\<^esub> y"}} |
184 | 1413 |
and @{term "x @ z \<in> A"} imply @{text "y @ z \<in> A"}. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1414 |
\end{lemma} |
184 | 1415 |
|
109 | 1416 |
|
121
1cf12a107b03
added directory with the small files and numbers of lines
urbanc
parents:
120
diff
changeset
|
1417 |
\noindent |
187 | 1418 |
We therefore can analyse how the strings @{text "x @ z"} are in the language |
1419 |
@{text A} and then construct an appropriate tagging-function to infer that |
|
190 | 1420 |
@{term "y @ z"} are also in @{text A}. For this we will use the notion of |
1421 |
the set of all possible \emph{partitions} of a string: |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1422 |
% |
184 | 1423 |
\begin{equation} |
1424 |
@{thm Partitions_def} |
|
1425 |
\end{equation} |
|
1426 |
||
187 | 1427 |
\noindent |
1428 |
If we know that @{text "(x\<^isub>p, x\<^isub>s) \<in> Partitions x"}, we will |
|
1429 |
refer to @{text "x\<^isub>p"} as the \emph{prefix} of the string @{text x}, |
|
190 | 1430 |
and respectively to @{text "x\<^isub>s"} as the \emph{suffix}. |
187 | 1431 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1432 |
*} |
187 | 1433 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1434 |
text {* |
198 | 1435 |
Now assuming @{term "x @ z \<in> A \<cdot> B"}, there are only two possible ways of how to `split' |
167 | 1436 |
this string to be in @{term "A \<cdot> B"}: |
132 | 1437 |
% |
125 | 1438 |
\begin{center} |
181 | 1439 |
\begin{tabular}{c} |
184 | 1440 |
\scalebox{1}{ |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
1441 |
\begin{tikzpicture}[scale=0.8,fill=gray!20] |
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1442 |
\node[draw,minimum height=3.8ex, fill] (x) { $\hspace{4.8em}@{text x}\hspace{4.8em}$ }; |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1443 |
\node[draw,minimum height=3.8ex, right=-0.03em of x, fill] (za) { $\hspace{0.6em}@{text "z\<^isub>p"}\hspace{0.6em}$ }; |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1444 |
\node[draw,minimum height=3.8ex, right=-0.03em of za, fill] (zza) { $\hspace{2.6em}@{text "z\<^isub>s"}\hspace{2.6em}$ }; |
184 | 1445 |
|
1446 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1447 |
(x.north west) -- ($(za.north west)+(0em,0em)$) |
|
1448 |
node[midway, above=0.5em]{@{text x}}; |
|
1449 |
||
1450 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1451 |
($(za.north west)+(0em,0ex)$) -- ($(zza.north east)+(0em,0ex)$) |
|
1452 |
node[midway, above=0.5em]{@{text z}}; |
|
1453 |
||
1454 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1455 |
($(x.north west)+(0em,3ex)$) -- ($(zza.north east)+(0em,3ex)$) |
|
1456 |
node[midway, above=0.8em]{@{term "x @ z \<in> A \<cdot> B"}}; |
|
1457 |
||
1458 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1459 |
($(za.south east)+(0em,0ex)$) -- ($(x.south west)+(0em,0ex)$) |
|
1460 |
node[midway, below=0.5em]{@{text "x @ z\<^isub>p \<in> A"}}; |
|
1461 |
||
1462 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1463 |
($(zza.south east)+(0em,0ex)$) -- ($(za.south east)+(0em,0ex)$) |
|
1464 |
node[midway, below=0.5em]{@{text "z\<^isub>s \<in> B"}}; |
|
1465 |
\end{tikzpicture}} |
|
1466 |
\\[2mm] |
|
1467 |
\scalebox{1}{ |
|
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
1468 |
\begin{tikzpicture}[scale=0.8,fill=gray!20] |
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1469 |
\node[draw,minimum height=3.8ex, fill] (xa) { $\hspace{3em}@{text "x\<^isub>p"}\hspace{3em}$ }; |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1470 |
\node[draw,minimum height=3.8ex, right=-0.03em of xa, fill] (xxa) { $\hspace{0.2em}@{text "x\<^isub>s"}\hspace{0.2em}$ }; |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1471 |
\node[draw,minimum height=3.8ex, right=-0.03em of xxa, fill] (z) { $\hspace{5em}@{text z}\hspace{5em}$ }; |
125 | 1472 |
|
1473 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1474 |
(xa.north west) -- ($(xxa.north east)+(0em,0em)$) |
|
128 | 1475 |
node[midway, above=0.5em]{@{text x}}; |
125 | 1476 |
|
1477 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1478 |
(z.north west) -- ($(z.north east)+(0em,0em)$) |
|
128 | 1479 |
node[midway, above=0.5em]{@{text z}}; |
125 | 1480 |
|
1481 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1482 |
($(xa.north west)+(0em,3ex)$) -- ($(z.north east)+(0em,3ex)$) |
|
167 | 1483 |
node[midway, above=0.8em]{@{term "x @ z \<in> A \<cdot> B"}}; |
125 | 1484 |
|
1485 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1486 |
($(z.south east)+(0em,0ex)$) -- ($(xxa.south west)+(0em,0ex)$) |
|
184 | 1487 |
node[midway, below=0.5em]{@{term "x\<^isub>s @ z \<in> B"}}; |
125 | 1488 |
|
1489 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1490 |
($(xa.south east)+(0em,0ex)$) -- ($(xa.south west)+(0em,0ex)$) |
|
184 | 1491 |
node[midway, below=0.5em]{@{term "x\<^isub>p \<in> A"}}; |
125 | 1492 |
\end{tikzpicture}} |
159 | 1493 |
\end{tabular} |
125 | 1494 |
\end{center} |
132 | 1495 |
% |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1496 |
|
125 | 1497 |
\noindent |
184 | 1498 |
Either @{text x} and a prefix of @{text "z"} is in @{text A} and the rest in @{text B} |
1499 |
(first picture) or there is a prefix of @{text x} in @{text A} and the rest is in @{text B} |
|
1500 |
(second picture). In both cases we have to show that @{term "y @ z \<in> A \<cdot> B"}. The first case |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1501 |
we will only go through if we know that @{term "x \<approx>A y"} holds @{text "("}@{text "*"}@{text ")"}. |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1502 |
Because then |
184 | 1503 |
we can infer from @{term "x @ z\<^isub>p \<in> A"} that @{term "y @ z\<^isub>p \<in> A"} holds for all @{text "z\<^isub>p"}. |
187 | 1504 |
In the second case we only know that @{text "x\<^isub>p"} and @{text "x\<^isub>s"} is one possible partition |
1505 |
of the string @{text x}. We have to know that both @{text "x\<^isub>p"} and the |
|
185 | 1506 |
corresponding partition @{text "y\<^isub>p"} are in @{text "A"}, and that @{text "x\<^isub>s"} is `@{text B}-related' |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1507 |
to @{text "y\<^isub>s"} @{text "("}@{text "**"}@{text ")"}. From the latter fact we can infer that @{text "y\<^isub>s @ z \<in> B"}. |
187 | 1508 |
This will solve the second case. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1509 |
Taking the two requirements, @{text "("}@{text "*"}@{text ")"} and @{text "(**)"}, together we define the |
187 | 1510 |
tagging-function in the @{const Times}-case as: |
184 | 1511 |
|
121
1cf12a107b03
added directory with the small files and numbers of lines
urbanc
parents:
120
diff
changeset
|
1512 |
\begin{center} |
184 | 1513 |
@{thm (lhs) tag_Times_def[where ?A="A" and ?B="B"]}~@{text "\<equiv>"}~ |
185 | 1514 |
@{text "(\<lbrakk>x\<rbrakk>\<^bsub>\<approx>A\<^esub>, {\<lbrakk>x\<^isub>s\<rbrakk>\<^bsub>\<approx>B\<^esub> | x\<^isub>p \<in> A \<and> (x\<^isub>p, x\<^isub>s) \<in> Partitions x})"} |
121
1cf12a107b03
added directory with the small files and numbers of lines
urbanc
parents:
120
diff
changeset
|
1515 |
\end{center} |
125 | 1516 |
|
1517 |
\noindent |
|
198 | 1518 |
Note that we have to make the assumption for all suffixes @{text "x\<^isub>s"}, since we do |
187 | 1519 |
not know anything about how the string @{term x} is partitioned. |
1520 |
With this definition in place, let us prove the @{const "Times"}-case. |
|
184 | 1521 |
|
375
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
1522 |
\begin{proof}[@{const TIMES}-Case] |
127 | 1523 |
If @{term "finite (UNIV // \<approx>A)"} and @{term "finite (UNIV // \<approx>B)"} |
1524 |
then @{term "finite ((UNIV // \<approx>A) \<times> (Pow (UNIV // \<approx>B)))"} holds. The range of |
|
181 | 1525 |
@{term "tag_Times A B"} is a subset of this product set, and therefore finite. |
187 | 1526 |
For the refinement of @{term "\<approx>(A \<cdot> B)"} and @{text "\<^raw:$\threesim$>\<^bsub>\<times>tag A B\<^esub>"}, |
1527 |
we have by Lemma \ref{refinement} |
|
184 | 1528 |
|
127 | 1529 |
\begin{center} |
184 | 1530 |
@{term "tag_Times A B x = tag_Times A B y"} |
127 | 1531 |
\end{center} |
184 | 1532 |
|
127 | 1533 |
\noindent |
187 | 1534 |
and @{term "x @ z \<in> A \<cdot> B"}, and have to establish @{term "y @ z \<in> A \<cdot> |
1535 |
B"}. As shown in the pictures above, there are two cases to be |
|
1536 |
considered. First, there exists a @{text "z\<^isub>p"} and @{text |
|
1537 |
"z\<^isub>s"} such that @{term "x @ z\<^isub>p \<in> A"} and @{text "z\<^isub>s |
|
1538 |
\<in> B"}. By the assumption about @{term "tag_Times A B"} we have @{term "\<approx>A |
|
1539 |
`` {x} = \<approx>A `` {y}"} and thus @{term "x \<approx>A y"}. Hence by the Myhill-Nerode |
|
248 | 1540 |
Relation @{term "y @ z\<^isub>p \<in> A"} holds. Using @{text "z\<^isub>s \<in> B"}, |
187 | 1541 |
we can conclude in this case with @{term "y @ z \<in> A \<cdot> B"} (recall @{text |
1542 |
"z\<^isub>p @ z\<^isub>s = z"}). |
|
184 | 1543 |
|
185 | 1544 |
Second there exists a partition @{text "x\<^isub>p"} and @{text "x\<^isub>s"} with |
184 | 1545 |
@{text "x\<^isub>p \<in> A"} and @{text "x\<^isub>s @ z \<in> B"}. We therefore have |
1546 |
||
127 | 1547 |
\begin{center} |
185 | 1548 |
@{text "\<lbrakk>x\<^isub>s\<rbrakk>\<^bsub>\<approx>B\<^esub> \<in> {\<lbrakk>x\<^isub>s\<rbrakk>\<^bsub>\<approx>B\<^esub> | x\<^isub>p \<in> A \<and> (x\<^isub>p, x\<^isub>s) \<in> Partitions x}"} |
127 | 1549 |
\end{center} |
184 | 1550 |
|
127 | 1551 |
\noindent |
181 | 1552 |
and by the assumption about @{term "tag_Times A B"} also |
184 | 1553 |
|
127 | 1554 |
\begin{center} |
185 | 1555 |
@{text "\<lbrakk>x\<^isub>s\<rbrakk>\<^bsub>\<approx>B\<^esub> \<in> {\<lbrakk>y\<^isub>s\<rbrakk>\<^bsub>\<approx>B\<^esub> | y\<^isub>p \<in> A \<and> (y\<^isub>p, y\<^isub>s) \<in> Partitions y}"} |
127 | 1556 |
\end{center} |
128 | 1557 |
|
1558 |
\noindent |
|
185 | 1559 |
This means there must be a partition @{text "y\<^isub>p"} and @{text "y\<^isub>s"} |
1560 |
such that @{term "y\<^isub>p \<in> A"} and @{term "\<approx>B `` {x\<^isub>s} = \<approx>B `` |
|
248 | 1561 |
{y\<^isub>s}"}. Unfolding the Myhill-Nerode Relation and together with the |
187 | 1562 |
facts that @{text "x\<^isub>p \<in> A"} and \mbox{@{text "x\<^isub>s @ z \<in> B"}}, we |
185 | 1563 |
obtain @{term "y\<^isub>p \<in> A"} and @{text "y\<^isub>s @ z \<in> B"}, as needed in |
184 | 1564 |
this case. We again can complete the @{const TIMES}-case by setting @{text |
1565 |
A} to @{term "lang r\<^isub>1"} and @{text B} to @{term "lang r\<^isub>2"}. |
|
1566 |
\end{proof} |
|
1567 |
||
1568 |
\noindent |
|
1569 |
The case for @{const Star} is similar to @{const TIMES}, but poses a few |
|
187 | 1570 |
extra challenges. To deal with them, we define first the notion of a \emph{string |
184 | 1571 |
prefix} and a \emph{strict string prefix}: |
1572 |
||
128 | 1573 |
\begin{center} |
184 | 1574 |
\begin{tabular}{l} |
1575 |
@{text "x \<le> y \<equiv> \<exists>z. y = x @ z"}\\ |
|
1576 |
@{text "x < y \<equiv> x \<le> y \<and> x \<noteq> y"} |
|
1577 |
\end{tabular} |
|
1578 |
\end{center} |
|
1579 |
||
187 | 1580 |
When analysing the case of @{text "x @ z"} being an element in @{term "A\<star>"} |
184 | 1581 |
and @{text x} is not the empty string, we have the following picture: |
1582 |
||
1583 |
\begin{center} |
|
1584 |
\scalebox{1}{ |
|
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
1585 |
\begin{tikzpicture}[scale=0.8,fill=gray!20] |
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1586 |
\node[draw,minimum height=3.8ex, fill] (xa) { $\hspace{4em}@{text "x\<^bsub>pmax\<^esub>"}\hspace{4em}$ }; |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1587 |
\node[draw,minimum height=3.8ex, right=-0.03em of xa, fill] (xxa) { $\hspace{0.5em}@{text "x\<^bsub>s\<^esub>"}\hspace{0.5em}$ }; |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1588 |
\node[draw,minimum height=3.8ex, right=-0.03em of xxa, fill] (za) { $\hspace{2em}@{text "z\<^isub>a"}\hspace{2em}$ }; |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1589 |
\node[draw,minimum height=3.8ex, right=-0.03em of za, fill] (zb) { $\hspace{7em}@{text "z\<^isub>b"}\hspace{7em}$ }; |
128 | 1590 |
|
1591 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1592 |
(xa.north west) -- ($(xxa.north east)+(0em,0em)$) |
|
1593 |
node[midway, above=0.5em]{@{text x}}; |
|
1594 |
||
1595 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1596 |
(za.north west) -- ($(zb.north east)+(0em,0em)$) |
|
1597 |
node[midway, above=0.5em]{@{text z}}; |
|
1598 |
||
1599 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1600 |
($(xa.north west)+(0em,3ex)$) -- ($(zb.north east)+(0em,3ex)$) |
|
1601 |
node[midway, above=0.8em]{@{term "x @ z \<in> A\<star>"}}; |
|
1602 |
||
1603 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1604 |
($(za.south east)+(0em,0ex)$) -- ($(xxa.south west)+(0em,0ex)$) |
|
185 | 1605 |
node[midway, below=0.5em]{@{term "x\<^isub>s @ z\<^isub>a \<in> A"}}; |
128 | 1606 |
|
1607 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1608 |
($(xa.south east)+(0em,0ex)$) -- ($(xa.south west)+(0em,0ex)$) |
|
185 | 1609 |
node[midway, below=0.5em]{@{text "x\<^bsub>pmax\<^esub> \<in> A\<^isup>\<star>"}}; |
128 | 1610 |
|
1611 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1612 |
($(zb.south east)+(0em,0ex)$) -- ($(zb.south west)+(0em,0ex)$) |
|
136 | 1613 |
node[midway, below=0.5em]{@{term "z\<^isub>b \<in> A\<star>"}}; |
128 | 1614 |
|
1615 |
\draw[decoration={brace,transform={yscale=3}},decorate] |
|
1616 |
($(zb.south east)+(0em,-4ex)$) -- ($(xxa.south west)+(0em,-4ex)$) |
|
184 | 1617 |
node[midway, below=0.5em]{@{term "x\<^isub>s @ z \<in> A\<star>"}}; |
128 | 1618 |
\end{tikzpicture}} |
1619 |
\end{center} |
|
132 | 1620 |
% |
128 | 1621 |
\noindent |
184 | 1622 |
We can find a strict prefix @{text "x\<^isub>p"} of @{text x} such that @{term "x\<^isub>p \<in> A\<star>"}, |
1623 |
@{text "x\<^isub>p < x"} and the rest @{term "x\<^isub>s @ z \<in> A\<star>"}. For example the empty string |
|
187 | 1624 |
@{text "[]"} would do (recall @{term "x \<noteq> []"}). |
135 | 1625 |
There are potentially many such prefixes, but there can only be finitely many of them (the |
128 | 1626 |
string @{text x} is finite). Let us therefore choose the longest one and call it |
184 | 1627 |
@{text "x\<^bsub>pmax\<^esub>"}. Now for the rest of the string @{text "x\<^isub>s @ z"} we |
198 | 1628 |
know it is in @{term "A\<star>"} and cannot be the empty string. By Property~\ref{langprops}@{text "(iv)"}, |
185 | 1629 |
we can separate |
187 | 1630 |
this string into two parts, say @{text "a"} and @{text "b"}, such that @{text "a \<noteq> []"}, @{text "a \<in> A"} |
184 | 1631 |
and @{term "b \<in> A\<star>"}. Now @{text a} must be strictly longer than @{text "x\<^isub>s"}, |
1632 |
otherwise @{text "x\<^bsub>pmax\<^esub>"} is not the longest prefix. That means @{text a} |
|
128 | 1633 |
`overlaps' with @{text z}, splitting it into two components @{text "z\<^isub>a"} and |
184 | 1634 |
@{text "z\<^isub>b"}. For this we know that @{text "x\<^isub>s @ z\<^isub>a \<in> A"} and |
135 | 1635 |
@{term "z\<^isub>b \<in> A\<star>"}. To cut a story short, we have divided @{term "x @ z \<in> A\<star>"} |
128 | 1636 |
such that we have a string @{text a} with @{text "a \<in> A"} that lies just on the |
184 | 1637 |
`border' of @{text x} and @{text z}. This string is @{text "x\<^isub>s @ z\<^isub>a"}. |
1638 |
||
135 | 1639 |
In order to show that @{term "x @ z \<in> A\<star>"} implies @{term "y @ z \<in> A\<star>"}, we use |
128 | 1640 |
the following tagging-function: |
132 | 1641 |
% |
121
1cf12a107b03
added directory with the small files and numbers of lines
urbanc
parents:
120
diff
changeset
|
1642 |
\begin{center} |
185 | 1643 |
@{thm (lhs) tag_Star_def[where ?A="A", THEN meta_eq_app]}~@{text "\<equiv>"}~ |
338
e7504bfdbd50
made the changes thes 2nd referee suggested and made it to compile again
urbanc
parents:
334
diff
changeset
|
1644 |
@{text "{\<lbrakk>x\<^isub>s\<rbrakk>\<^bsub>\<approx>A\<^esub> | x\<^isub>p < x \<and> x\<^isub>p \<in> A\<^isup>\<star> \<and> (x\<^isub>p, x\<^isub>s) \<in> Partitions x}"} |
121
1cf12a107b03
added directory with the small files and numbers of lines
urbanc
parents:
120
diff
changeset
|
1645 |
\end{center} |
128 | 1646 |
|
375
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
1647 |
\begin{proof}[@{const Star}-Case] |
130 | 1648 |
If @{term "finite (UNIV // \<approx>A)"} |
1649 |
then @{term "finite (Pow (UNIV // \<approx>A))"} holds. The range of |
|
181 | 1650 |
@{term "tag_Star A"} is a subset of this set, and therefore finite. |
185 | 1651 |
Again we have to show under the assumption @{term "x"}~@{term "=(tag_Star A)="}~@{term y} |
1652 |
that @{term "x @ z \<in> A\<star>"} implies @{term "y @ z \<in> A\<star>"}. |
|
1653 |
||
130 | 1654 |
We first need to consider the case that @{text x} is the empty string. |
187 | 1655 |
From the assumption about strict prefixes in @{text "\<^raw:$\threesim$>\<^bsub>\<star>tag A\<^esub>"}, we |
1656 |
can infer @{text y} is the empty string and |
|
1657 |
then clearly have @{term "y @ z \<in> A\<star>"}. In case @{text x} is not the empty |
|
134 | 1658 |
string, we can divide the string @{text "x @ z"} as shown in the picture |
185 | 1659 |
above. By the tagging-function and the facts @{text "x\<^bsub>pmax\<^esub> \<in> A\<^isup>\<star>"} and @{text "x\<^bsub>pmax\<^esub> < x"}, |
1660 |
we have |
|
1661 |
||
130 | 1662 |
\begin{center} |
185 | 1663 |
@{text "\<lbrakk>x\<^isub>s\<rbrakk>\<^bsub>\<approx>A\<^esub> \<in> {\<lbrakk>x\<^isub>s\<rbrakk>\<^bsub>\<approx>A\<^esub> | x\<^bsub>pmax\<^esub> < x \<and> x\<^bsub>pmax\<^esub> \<in> A\<^isup>\<star> \<and> (x\<^bsub>pmax\<^esub>, x\<^isub>s) \<in> Partitions x}"} |
130 | 1664 |
\end{center} |
185 | 1665 |
|
130 | 1666 |
\noindent |
1667 |
which by assumption is equal to |
|
185 | 1668 |
|
130 | 1669 |
\begin{center} |
185 | 1670 |
@{text "\<lbrakk>x\<^isub>s\<rbrakk>\<^bsub>\<approx>A\<^esub> \<in> {\<lbrakk>y\<^isub>s\<rbrakk>\<^bsub>\<approx>A\<^esub> | y\<^bsub>p\<^esub> < y \<and> y\<^bsub>p\<^esub> \<in> A\<^isup>\<star> \<and> (y\<^bsub>p\<^esub>, y\<^isub>s) \<in> Partitions y}"} |
130 | 1671 |
\end{center} |
185 | 1672 |
|
130 | 1673 |
\noindent |
190 | 1674 |
From this we know there exist a partition @{text "y\<^isub>p"} and @{text |
185 | 1675 |
"y\<^isub>s"} with @{term "y\<^isub>p \<in> A\<star>"} and also @{term "x\<^isub>s \<approx>A |
248 | 1676 |
y\<^isub>s"}. Unfolding the Myhill-Nerode Relation we know @{term |
185 | 1677 |
"y\<^isub>s @ z\<^isub>a \<in> A"}. We also know that @{term "z\<^isub>b \<in> A\<star>"}. |
1678 |
Therefore @{term "y\<^isub>p @ (y\<^isub>s @ z\<^isub>a) @ z\<^isub>b \<in> |
|
190 | 1679 |
A\<star>"}, which means @{term "y @ z \<in> A\<star>"}. The last step is to set |
187 | 1680 |
@{text "A"} to @{term "lang r"} and thus complete the proof. |
121
1cf12a107b03
added directory with the small files and numbers of lines
urbanc
parents:
120
diff
changeset
|
1681 |
\end{proof} |
39
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
1682 |
*} |
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
1683 |
|
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
1684 |
section {* Second Part proved using Partial Derivatives *} |
162
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
1685 |
|
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
1686 |
text {* |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
1687 |
\label{derivatives} |
173 | 1688 |
\noindent |
1689 |
As we have seen in the previous section, in order to establish |
|
248 | 1690 |
the second direction of the Myhill-Nerode Theorem, it is sufficient to find |
174 | 1691 |
a more refined relation than @{term "\<approx>(lang r)"} for which we can |
1692 |
show that there are only finitely many equivalence classes. So far we |
|
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1693 |
showed this directly by induction on @{text "r"} using tagging-functions. |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1694 |
However, there is also an indirect method to come up with such a refined |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1695 |
relation by using derivatives of regular expressions introduced by \citeN{Brzozowski64}. |
187 | 1696 |
|
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1697 |
Assume the following two definitions for the \emph{left-quotient} of a language, |
203 | 1698 |
which we write as @{term "Deriv c A"} and @{term "Derivs s A"} where @{text c} |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1699 |
is a character and @{text s} a string, respectively: |
174 | 1700 |
|
1701 |
\begin{center} |
|
1702 |
\begin{tabular}{r@ {\hspace{1mm}}c@ {\hspace{2mm}}l} |
|
1703 |
@{thm (lhs) Der_def} & @{text "\<equiv>"} & @{thm (rhs) Der_def}\\ |
|
1704 |
@{thm (lhs) Ders_def} & @{text "\<equiv>"} & @{thm (rhs) Ders_def}\\ |
|
1705 |
\end{tabular} |
|
1706 |
\end{center} |
|
1707 |
||
1708 |
\noindent |
|
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1709 |
In order to aid readability, we shall make use of the following abbreviation |
187 | 1710 |
|
1711 |
\begin{center} |
|
203 | 1712 |
@{abbrev "Derivss s As"} |
187 | 1713 |
\end{center} |
1714 |
||
1715 |
\noindent |
|
190 | 1716 |
where we apply the left-quotient to a set of languages and then combine the results. |
248 | 1717 |
Clearly we have the following equivalence between the Myhill-Nerode Relation |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1718 |
(Definition~\ref{myhillneroderel}) and left-quotients |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1719 |
% |
174 | 1720 |
\begin{equation}\label{mhders} |
203 | 1721 |
@{term "x \<approx>A y"} \hspace{4mm}\text{if and only if}\hspace{4mm} @{term "Derivs x A = Derivs y A"} |
174 | 1722 |
\end{equation} |
1723 |
||
1724 |
\noindent |
|
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1725 |
It is also straightforward to establish the following properties of left-quotients |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1726 |
% |
186 | 1727 |
\begin{equation} |
1728 |
\mbox{\begin{tabular}{l@ {\hspace{1mm}}c@ {\hspace{2mm}}l} |
|
203 | 1729 |
@{thm (lhs) Deriv_simps(1)} & $=$ & @{thm (rhs) Deriv_simps(1)}\\ |
1730 |
@{thm (lhs) Deriv_simps(2)} & $=$ & @{thm (rhs) Deriv_simps(2)}\\ |
|
1731 |
@{thm (lhs) Deriv_simps(3)} & $=$ & @{thm (rhs) Deriv_simps(3)}\\ |
|
1732 |
@{thm (lhs) Deriv_simps(4)} & $=$ & @{thm (rhs) Deriv_simps(4)}\\ |
|
174 | 1733 |
@{thm (lhs) Der_conc} & $=$ & @{thm (rhs) Der_conc}\\ |
203 | 1734 |
@{thm (lhs) Deriv_star} & $=$ & @{thm (rhs) Deriv_star}\\ |
1735 |
@{thm (lhs) Derivs_simps(1)} & $=$ & @{thm (rhs) Derivs_simps(1)}\\ |
|
1736 |
@{thm (lhs) Derivs_simps(2)} & $=$ & @{thm (rhs) Derivs_simps(2)}\\ |
|
1737 |
%@{thm (lhs) Derivs_simps(3)[where ?s1.0="s\<^isub>1" and ?s2.0="s\<^isub>2"]} & $=$ |
|
1738 |
% & @{thm (rhs) Derivs_simps(3)[where ?s1.0="s\<^isub>1" and ?s2.0="s\<^isub>2"]}\\ |
|
186 | 1739 |
\end{tabular}} |
1740 |
\end{equation} |
|
174 | 1741 |
|
1742 |
\noindent |
|
245 | 1743 |
Note that in the last equation we use the list-cons operator written |
199 | 1744 |
\mbox{@{text "_ :: _"}}. The only interesting case is the case of @{term "A\<star>"} |
198 | 1745 |
where we use Property~\ref{langprops}@{text "(i)"} in order to infer that |
203 | 1746 |
@{term "Deriv c (A\<star>) = Deriv c (A \<cdot> A\<star>)"}. We can then complete the proof by |
245 | 1747 |
using the fifth equation and noting that @{term "Deriv c (A\<star>) \<subseteq> (Deriv |
1748 |
c A) \<cdot> A\<star>"} provided @{text "[] \<in> A"}. |
|
198 | 1749 |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1750 |
\citeN{Brzozowski64} observed that the left-quotients for languages of |
198 | 1751 |
regular expressions can be calculated directly using the notion of |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1752 |
\emph{derivatives of a regular expression}. We define |
198 | 1753 |
this notion in Isabelle/HOL as follows: |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1754 |
% |
174 | 1755 |
\begin{center} |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
1756 |
\begin{longtable}{@ {}l@ {\hspace{1mm}}c@ {\hspace{1.5mm}}l@ {}} |
203 | 1757 |
@{thm (lhs) deriv.simps(1)} & @{text "\<equiv>"} & @{thm (rhs) deriv.simps(1)}\\ |
1758 |
@{thm (lhs) deriv.simps(2)} & @{text "\<equiv>"} & @{thm (rhs) deriv.simps(2)}\\ |
|
1759 |
@{thm (lhs) deriv.simps(3)[where c'="d"]} & @{text "\<equiv>"} & @{thm (rhs) deriv.simps(3)[where c'="d"]}\\ |
|
1760 |
@{thm (lhs) deriv.simps(4)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]} |
|
1761 |
& @{text "\<equiv>"} & @{thm (rhs) deriv.simps(4)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]}\\ |
|
1762 |
@{thm (lhs) deriv.simps(5)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]} |
|
177 | 1763 |
& @{text "\<equiv>"} & @{text "if"}~@{term "nullable r\<^isub>1"}~@{text "then"}~% |
203 | 1764 |
@{term "Plus (Times (deriv c r\<^isub>1) r\<^isub>2) (deriv c r\<^isub>2)"}\\ |
177 | 1765 |
& & \phantom{@{text "if"}~@{term "nullable r\<^isub>1"}~}@{text "else"}~% |
203 | 1766 |
@{term "Times (deriv c r\<^isub>1) r\<^isub>2"}\\ |
1767 |
@{thm (lhs) deriv.simps(6)} & @{text "\<equiv>"} & @{thm (rhs) deriv.simps(6)}\smallskip\\ |
|
1768 |
@{thm (lhs) derivs.simps(1)} & @{text "\<equiv>"} & @{thm (rhs) derivs.simps(1)}\\ |
|
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
1769 |
@{thm (lhs) derivs.simps(2)} & @{text "\<equiv>"} & @{thm (rhs) derivs.simps(2)} |
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
1770 |
\end{longtable} |
174 | 1771 |
\end{center} |
1772 |
||
1773 |
\noindent |
|
198 | 1774 |
The last two clauses extend derivatives from characters to strings. The |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1775 |
boolean function @{term "nullable r"} needed in the @{const Times}-case tests |
197 | 1776 |
whether a regular expression can recognise the empty string. It can be defined as |
1777 |
follows. |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1778 |
% |
174 | 1779 |
\begin{center} |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1780 |
\begin{longtable}{@ {}l@ {\hspace{1mm}}c@ {\hspace{1.5mm}}l@ {}} |
174 | 1781 |
@{thm (lhs) nullable.simps(1)} & @{text "\<equiv>"} & @{thm (rhs) nullable.simps(1)}\\ |
1782 |
@{thm (lhs) nullable.simps(2)} & @{text "\<equiv>"} & @{thm (rhs) nullable.simps(2)}\\ |
|
1783 |
@{thm (lhs) nullable.simps(3)} & @{text "\<equiv>"} & @{thm (rhs) nullable.simps(3)}\\ |
|
1784 |
@{thm (lhs) nullable.simps(4)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]} |
|
1785 |
& @{text "\<equiv>"} & @{thm (rhs) nullable.simps(4)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]}\\ |
|
1786 |
@{thm (lhs) nullable.simps(5)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]} |
|
1787 |
& @{text "\<equiv>"} & @{thm (rhs) nullable.simps(5)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]}\\ |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1788 |
@{thm (lhs) nullable.simps(6)} & @{text "\<equiv>"} & @{thm (rhs) nullable.simps(6)} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1789 |
\end{longtable} |
174 | 1790 |
\end{center} |
1791 |
||
1792 |
\noindent |
|
190 | 1793 |
By induction on the regular expression @{text r}, respectively on the string @{text s}, |
197 | 1794 |
one can easily show that left-quotients and derivatives of regular expressions |
198 | 1795 |
relate as follows (see for example~\cite{Sakarovitch09}): |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1796 |
% |
174 | 1797 |
\begin{equation}\label{Dersders} |
186 | 1798 |
\mbox{\begin{tabular}{c} |
203 | 1799 |
@{thm Deriv_deriv}\\ |
1800 |
@{thm Derivs_derivs} |
|
174 | 1801 |
\end{tabular}} |
1802 |
\end{equation} |
|
1803 |
||
1804 |
\noindent |
|
248 | 1805 |
The importance of this fact in the context of the Myhill-Nerode Theorem is that |
187 | 1806 |
we can use \eqref{mhders} and \eqref{Dersders} in order to |
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1807 |
establish that |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1808 |
|
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1809 |
\begin{center} |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1810 |
@{term "x \<approx>(lang r) y"} \hspace{4mm}if and only if\hspace{4mm} |
203 | 1811 |
@{term "lang (derivs x r) = lang (derivs y r)"}. |
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1812 |
\end{center} |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1813 |
|
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1814 |
\noindent |
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1815 |
holds and hence |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1816 |
% |
186 | 1817 |
\begin{equation} |
203 | 1818 |
@{term "x \<approx>(lang r) y"}\hspace{4mm}\mbox{provided}\hspace{4mm}@{term "derivs x r = derivs y r"} |
186 | 1819 |
\end{equation} |
174 | 1820 |
|
1821 |
||
1822 |
\noindent |
|
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1823 |
This means the right-hand side (seen as a relation) refines the Myhill-Nerode |
248 | 1824 |
Relation. Consequently, we can use @{text |
197 | 1825 |
"\<^raw:$\threesim$>\<^bsub>(\<lambda>x. ders x r)\<^esub>"} as a |
1826 |
tagging-relation. However, in order to be useful for the second part of the |
|
248 | 1827 |
Myhill-Nerode Theorem, we have to be able to establish that for the |
197 | 1828 |
corresponding language there are only finitely many derivatives---thus |
1829 |
ensuring that there are only finitely many equivalence |
|
1830 |
classes. Unfortunately, this is not true in general. Sakarovitch gives an |
|
1831 |
example where a regular expression has infinitely many derivatives |
|
218 | 1832 |
w.r.t.~the language @{text "(ab)\<^isup>\<star> \<union> (ab)\<^isup>\<star>a"}, which is formally |
1833 |
written in our notation as \mbox{@{text "{[a,b]}\<^isup>\<star> \<union> ({[a,b]}\<^isup>\<star> \<cdot> {[a]})"}} |
|
198 | 1834 |
(see \cite[Page~141]{Sakarovitch09}). |
197 | 1835 |
|
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1836 |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1837 |
What \citeN{Brzozowski64} established is that for every language there |
199 | 1838 |
\emph{are} only finitely `dissimilar' derivatives for a regular |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1839 |
expression. Two regular expressions are said to be \emph{similar} provided |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1840 |
they can be identified using the using the @{text "ACI"}-identities: |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1841 |
% |
187 | 1842 |
\begin{equation}\label{ACI} |
1843 |
\mbox{\begin{tabular}{cl} |
|
186 | 1844 |
(@{text A}) & @{term "Plus (Plus r\<^isub>1 r\<^isub>2) r\<^isub>3"} $\equiv$ @{term "Plus r\<^isub>1 (Plus r\<^isub>2 r\<^isub>3)"}\\ |
1845 |
(@{text C}) & @{term "Plus r\<^isub>1 r\<^isub>2"} $\equiv$ @{term "Plus r\<^isub>2 r\<^isub>1"}\\ |
|
1846 |
(@{text I}) & @{term "Plus r r"} $\equiv$ @{term "r"}\\ |
|
187 | 1847 |
\end{tabular}} |
1848 |
\end{equation} |
|
174 | 1849 |
|
1850 |
\noindent |
|
187 | 1851 |
Carrying this idea through, we must not consider the set of all derivatives, |
199 | 1852 |
but the one modulo @{text "ACI"}. In principle, this can be done formally, |
190 | 1853 |
but it is very painful in a theorem prover (since there is no |
194 | 1854 |
direct characterisation of the set of dissimilar derivatives). |
187 | 1855 |
|
174 | 1856 |
|
186 | 1857 |
Fortunately, there is a much simpler approach using \emph{partial |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1858 |
derivatives}. They were introduced by \citeN{Antimirov95} and can be defined |
186 | 1859 |
in Isabelle/HOL as follows: |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1860 |
% |
175 | 1861 |
\begin{center} |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1862 |
\begin{longtable}{@ {}l@ {\hspace{1mm}}c@ {\hspace{1.5mm}}l@ {}} |
203 | 1863 |
@{thm (lhs) pderiv.simps(1)} & @{text "\<equiv>"} & @{thm (rhs) pderiv.simps(1)}\\ |
1864 |
@{thm (lhs) pderiv.simps(2)} & @{text "\<equiv>"} & @{thm (rhs) pderiv.simps(2)}\\ |
|
1865 |
@{thm (lhs) pderiv.simps(3)[where c'="d"]} & @{text "\<equiv>"} & @{thm (rhs) pderiv.simps(3)[where c'="d"]}\\ |
|
1866 |
@{thm (lhs) pderiv.simps(4)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]} |
|
1867 |
& @{text "\<equiv>"} & @{thm (rhs) pderiv.simps(4)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]}\\ |
|
1868 |
@{thm (lhs) pderiv.simps(5)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]} |
|
177 | 1869 |
& @{text "\<equiv>"} & @{text "if"}~@{term "nullable r\<^isub>1"}~@{text "then"}~% |
203 | 1870 |
@{term "(Timess (pderiv c r\<^isub>1) r\<^isub>2) \<union> (pderiv c r\<^isub>2)"}\\ |
177 | 1871 |
& & \phantom{@{text "if"}~@{term "nullable r\<^isub>1"}~}@{text "else"}~% |
203 | 1872 |
@{term "Timess (pderiv c r\<^isub>1) r\<^isub>2"}\\ |
1873 |
@{thm (lhs) pderiv.simps(6)} & @{text "\<equiv>"} & @{thm (rhs) pderiv.simps(6)}\smallskip\\ |
|
1874 |
@{thm (lhs) pderivs.simps(1)} & @{text "\<equiv>"} & @{thm (rhs) pderivs.simps(1)}\\ |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1875 |
@{thm (lhs) pderivs.simps(2)} & @{text "\<equiv>"} & @{text "\<Union> (pders s) ` (pder c r)"} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1876 |
\end{longtable} |
175 | 1877 |
\end{center} |
173 | 1878 |
|
186 | 1879 |
\noindent |
187 | 1880 |
Again the last two clauses extend partial derivatives from characters to strings. |
1881 |
Unlike `simple' derivatives, the functions for partial derivatives return sets of regular |
|
1882 |
expressions. In the @{const Times} and @{const Star} cases we therefore use the |
|
1883 |
auxiliary definition |
|
186 | 1884 |
|
1885 |
\begin{center} |
|
1886 |
@{text "TIMESS rs r \<equiv> {TIMES r' r | r' \<in> rs}"} |
|
1887 |
\end{center} |
|
1888 |
||
1889 |
\noindent |
|
187 | 1890 |
in order to `sequence' a regular expression with a set of regular |
1891 |
expressions. Note that in the last clause we first build the set of partial |
|
1892 |
derivatives w.r.t~the character @{text c}, then build the image of this set under the |
|
203 | 1893 |
function @{term "pderivs s"} and finally `union up' all resulting sets. It will be |
190 | 1894 |
convenient to introduce for this the following abbreviation |
187 | 1895 |
|
1896 |
\begin{center} |
|
203 | 1897 |
@{abbrev "pderivs_set s rs"} |
187 | 1898 |
\end{center} |
1899 |
||
1900 |
\noindent |
|
203 | 1901 |
which simplifies the last clause of @{const "pderivs"} to |
187 | 1902 |
|
1903 |
\begin{center} |
|
1904 |
\begin{tabular}{@ {}l@ {\hspace{1mm}}c@ {\hspace{1.5mm}}l@ {}} |
|
203 | 1905 |
@{thm (lhs) pderivs.simps(2)} & @{text "\<equiv>"} & @{thm (rhs) pderivs.simps(2)}\\ |
187 | 1906 |
\end{tabular} |
1907 |
\end{center} |
|
1908 |
||
1909 |
Partial derivatives can be seen as having the @{text "ACI"}-identities already built in: |
|
1910 |
taking the partial derivatives of the |
|
1911 |
regular expressions in \eqref{ACI} gives us in each case |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1912 |
equal sets. \citeN{Antimirov95} showed a similar result to |
198 | 1913 |
\eqref{Dersders} for partial derivatives, namely |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1914 |
% |
190 | 1915 |
\begin{equation}\label{Derspders} |
187 | 1916 |
\mbox{\begin{tabular}{lc} |
203 | 1917 |
@{text "(i)"} & @{thm Deriv_pderiv}\\ |
1918 |
@{text "(ii)"} & @{thm Derivs_pderivs} |
|
186 | 1919 |
\end{tabular}} |
187 | 1920 |
\end{equation} |
1921 |
||
1922 |
\begin{proof} |
|
1923 |
The first fact is by a simple induction on @{text r}. For the second we slightly |
|
1924 |
modify Antimirov's proof by performing an induction on @{text s} where we |
|
194 | 1925 |
generalise over all @{text r}. That means in the @{text "cons"}-case the |
187 | 1926 |
induction hypothesis is |
1927 |
||
1928 |
\begin{center} |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1929 |
@{text "(IH)"}\hspace{3mm}@{term "\<forall>r. Derivs s (lang r) = \<Union> (lang ` (pderivs s r))"} |
187 | 1930 |
\end{center} |
186 | 1931 |
|
1932 |
\noindent |
|
187 | 1933 |
With this we can establish |
1934 |
||
1935 |
\begin{center} |
|
1936 |
\begin{tabular}{r@ {\hspace{1.5mm}}c@ {\hspace{1.5mm}}ll} |
|
203 | 1937 |
@{term "Derivs (c # s) (lang r)"} |
1938 |
& @{text "="} & @{term "Derivs s (Deriv c (lang r))"} & by def.\\ |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1939 |
& @{text "="} & @{term "Derivs s (\<Union> (lang ` (pderiv c r)))"} & by @{text "("}\ref{Derspders}@{text ".i)"}\\ |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1940 |
& @{text "="} & @{term "\<Union> ((Derivs s) ` (lang ` (pderiv c r)))"} & by def.~of @{text "Ders"}\\ |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1941 |
& @{text "="} & @{term "\<Union> (lang ` (\<Union> (pderivs s ` (pderiv c r))))"} & by IH\\ |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1942 |
& @{text "="} & @{term "\<Union> (lang ` (pderivs (c # s) r))"} & by def.\\ |
187 | 1943 |
\end{tabular} |
1944 |
\end{center} |
|
1945 |
||
1946 |
\noindent |
|
190 | 1947 |
Note that in order to apply the induction hypothesis in the fourth equation, we |
1948 |
need the generalisation over all regular expressions @{text r}. The case for |
|
1949 |
the empty string is routine and omitted. |
|
187 | 1950 |
\end{proof} |
1951 |
||
190 | 1952 |
\noindent |
1953 |
Taking \eqref{Dersders} and \eqref{Derspders} together gives the relationship |
|
1954 |
between languages of derivatives and partial derivatives |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1955 |
% |
190 | 1956 |
\begin{equation} |
1957 |
\mbox{\begin{tabular}{lc} |
|
203 | 1958 |
@{text "(i)"} & @{thm deriv_pderiv[symmetric]}\\ |
1959 |
@{text "(ii)"} & @{thm derivs_pderivs[symmetric]} |
|
190 | 1960 |
\end{tabular}} |
1961 |
\end{equation} |
|
1962 |
||
1963 |
\noindent |
|
1964 |
These two properties confirm the observation made earlier |
|
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1965 |
that by using sets, partial derivatives have the @{text "ACI"}-identities |
190 | 1966 |
of derivatives already built in. |
1967 |
||
245 | 1968 |
Antimirov also proved that for every language and every regular expression |
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1969 |
there are only finitely many partial derivatives, whereby the set of partial |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1970 |
derivatives of @{text r} w.r.t.~a language @{text A} is defined as |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1971 |
% |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1972 |
\begin{equation}\label{Pdersdef} |
203 | 1973 |
@{thm pderivs_lang_def} |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1974 |
\end{equation} |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1975 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1976 |
\begin{theorem}[\cite{Antimirov95}]\label{antimirov} |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1977 |
For every language @{text A} and every regular expression @{text r}, |
203 | 1978 |
\mbox{@{thm finite_pderivs_lang}}. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
1979 |
\end{theorem} |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1980 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1981 |
\noindent |
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
1982 |
Antimirov's proof first establishes this theorem for the language @{term UNIV1}, |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1983 |
which is the set of all non-empty strings. For this he proves: |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
1984 |
% |
198 | 1985 |
\begin{equation}\label{pdersunivone} |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1986 |
\mbox{\begin{tabular}{l} |
203 | 1987 |
@{thm pderivs_lang_Zero}\\ |
1988 |
@{thm pderivs_lang_One}\\ |
|
1989 |
@{thm pderivs_lang_Atom}\\ |
|
1990 |
@{thm pderivs_lang_Plus[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]}\\ |
|
1991 |
@{thm pderivs_lang_Times[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]}\\ |
|
1992 |
@{thm pderivs_lang_Star}\\ |
|
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1993 |
\end{tabular}} |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1994 |
\end{equation} |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1995 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1996 |
\noindent |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1997 |
from which one can deduce by induction on @{text r} that |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1998 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
1999 |
\begin{center} |
203 | 2000 |
@{thm finite_pderivs_lang_UNIV1} |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2001 |
\end{center} |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2002 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2003 |
\noindent |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2004 |
holds. Now Antimirov's theorem follows because |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2005 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2006 |
\begin{center} |
203 | 2007 |
@{thm pderivs_lang_UNIV}\\ |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2008 |
\end{center} |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2009 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2010 |
\noindent |
203 | 2011 |
and for all languages @{text "A"}, @{term "pderivs_lang A r"} is a subset of |
2012 |
@{term "pderivs_lang UNIV r"}. Since we follow Antimirov's proof quite |
|
199 | 2013 |
closely in our formalisation (only the last two cases of |
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
2014 |
\eqref{pdersunivone} involve some non-routine induction arguments), we omit |
199 | 2015 |
the details. |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2016 |
|
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
2017 |
Let us now return to our proof for the second direction in the Myhill-Nerode |
248 | 2018 |
Theorem. The point of the above calculations is to use |
201 | 2019 |
@{text "\<^raw:$\threesim$>\<^bsub>(\<lambda>x. pders x r)\<^esub>"} as tagging-relation. |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2020 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2021 |
|
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2022 |
\begin{proof}[of Theorem~\ref{myhillnerodetwo} (second version)] |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2023 |
Using \eqref{mhders} |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2024 |
and \eqref{Derspders} we can easily infer that |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2025 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2026 |
\begin{center} |
203 | 2027 |
@{term "x \<approx>(lang r) y"}\hspace{4mm}\mbox{provided}\hspace{4mm}@{term "pderivs x r = pderivs y r"} |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2028 |
\end{center} |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2029 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2030 |
\noindent |
201 | 2031 |
which means the tagging-relation @{text "\<^raw:$\threesim$>\<^bsub>(\<lambda>x. pders x r)\<^esub>"} refines @{term "\<approx>(lang r)"}. |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2032 |
So we know by Lemma~\ref{fintwo}, \mbox{@{term "finite (UNIV // (\<approx>(lang r)))"}} |
203 | 2033 |
holds if @{term "finite (UNIV // (=(\<lambda>x. pderivs x r)=))"}. In order to establish |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2034 |
the latter, we can use Lemma~\ref{finone} and show that the range of the |
203 | 2035 |
tagging-function \mbox{@{term "\<lambda>x. pderivs x r"}} is finite. For this recall Definition |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2036 |
\ref{Pdersdef}, which gives us that |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2037 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2038 |
\begin{center} |
203 | 2039 |
@{thm pderivs_lang_def[where A="UNIV", simplified]} |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2040 |
\end{center} |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2041 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2042 |
\noindent |
203 | 2043 |
Now the range of @{term "\<lambda>x. pderivs x r"} is a subset of @{term "Pow (pderivs_lang UNIV r)"}, |
200
204856ef5573
added an example for non-regularity and continuation lemma (the example does not yet work)
urbanc
parents:
199
diff
changeset
|
2044 |
which we know is finite by Theorem~\ref{antimirov}. Consequently there |
245 | 2045 |
are only finitely many equivalence classes of @{text "\<^raw:$\threesim$>\<^bsub>(\<lambda>x. pders x r)\<^esub>"}. |
2046 |
This relation refines @{term "\<approx>(lang r)"}, and therefore we can again conclude the |
|
248 | 2047 |
second part of the Myhill-Nerode Theorem. |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2048 |
\end{proof} |
162
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
2049 |
*} |
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
2050 |
|
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2051 |
section {* Closure Properties of Regular Languages *} |
39
a59473f0229d
tuned a little bit the section about finite partitions
urbanc
parents:
37
diff
changeset
|
2052 |
|
186 | 2053 |
text {* |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2054 |
\label{closure} |
187 | 2055 |
\noindent |
196 | 2056 |
The beauty of regular languages is that they are closed under many set |
2057 |
operations. Closure under union, concatenation and Kleene-star are trivial |
|
2058 |
to establish given our definition of regularity (recall Definition~\ref{regular}). |
|
240 | 2059 |
More interesting in our setting is the closure under complement, because it seems difficult |
196 | 2060 |
to construct a regular expression for the complement language by direct |
2061 |
means. However the existence of such a regular expression can now be easily |
|
248 | 2062 |
proved using both parts of the Myhill-Nerode Theorem, since |
196 | 2063 |
|
186 | 2064 |
\begin{center} |
2065 |
@{term "s\<^isub>1 \<approx>A s\<^isub>2"} if and only if @{term "s\<^isub>1 \<approx>(-A) s\<^isub>2"} |
|
2066 |
\end{center} |
|
2067 |
||
2068 |
\noindent |
|
2069 |
holds for any strings @{text "s\<^isub>1"} and @{text |
|
2070 |
"s\<^isub>2"}. Therefore @{text A} and the complement language @{term "-A"} |
|
196 | 2071 |
give rise to the same partitions. So if one is finite, the other is too, and |
233 | 2072 |
vice versa. As noted earlier, our algorithm for solving equational systems |
250 | 2073 |
actually calculates a regular expression for the complement language. |
2074 |
Calculating such a regular expression via |
|
196 | 2075 |
automata using the standard method would be quite involved. It includes the |
2076 |
steps: regular expression @{text "\<Rightarrow>"} non-deterministic automaton @{text |
|
2077 |
"\<Rightarrow>"} deterministic automaton @{text "\<Rightarrow>"} complement automaton @{text "\<Rightarrow>"} |
|
2078 |
regular expression. Clearly not something you want to formalise in a theorem |
|
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2079 |
prover if it is cumbersome to reason about automata. |
186 | 2080 |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2081 |
%Once closure under complement is established, closure under intersection |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2082 |
%and set difference is also easy, because |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2083 |
% |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2084 |
%\begin{center} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2085 |
%\begin{tabular}{c} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2086 |
%@{term "A \<inter> B = - (- A \<union> - B)"}\\ |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2087 |
%@{term "A - B = - (- A \<union> B)"} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2088 |
%\end{tabular} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2089 |
%\end{center} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2090 |
% |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2091 |
%\noindent |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2092 |
%Since all finite languages are regular, then by closure under complement also |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2093 |
%all co-finite languages. |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2094 |
% |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2095 |
%Closure of regular languages under reversal, that is |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2096 |
% |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2097 |
%\begin{center} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2098 |
%@{text "A\<^bsup>-1\<^esup> \<equiv> {s\<^bsup>-1\<^esup> | s \<in> A}"} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2099 |
%\end{center} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2100 |
% |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2101 |
%\noindent |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2102 |
%can be shown with the help of the following operation defined recursively over |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2103 |
%regular expressions |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2104 |
% |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2105 |
%\begin{center} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2106 |
%\begin{tabular}{r@ {\hspace{1mm}}c@ {\hspace{1mm}}l} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2107 |
%@{thm (lhs) Rev.simps(1)} & @{text "\<equiv>"} & @{thm (rhs) Rev.simps(1)}\\ |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2108 |
%@{thm (lhs) Rev.simps(2)} & @{text "\<equiv>"} & @{thm (rhs) Rev.simps(2)}\\ |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2109 |
%@{thm (lhs) Rev.simps(3)} & @{text "\<equiv>"} & @{thm (rhs) Rev.simps(3)}\\ |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2110 |
%@{thm (lhs) Rev.simps(4)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]} & @{text "\<equiv>"} & |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2111 |
% @{thm (rhs) Rev.simps(4)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]}\\ |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2112 |
%@{thm (lhs) Rev.simps(5)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]} & @{text "\<equiv>"} & |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2113 |
% @{thm (rhs) Rev.simps(5)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]}\\ |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2114 |
%@{thm (lhs) Rev.simps(6)} & @{text "\<equiv>"} & @{thm (rhs) Rev.simps(6)}\\ |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2115 |
%\end{tabular} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2116 |
%\end{center} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2117 |
% |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2118 |
%\noindent |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2119 |
%For this operation we can show |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2120 |
% |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2121 |
%\begin{center} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2122 |
%@{text "(\<calL>(r))\<^bsup>-1\<^esup>"}~@{text "="}~@{thm (rhs) rev_lang} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2123 |
%\end{center} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2124 |
% |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2125 |
%\noindent |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2126 |
%from which closure under reversal of regular languages follows. |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2127 |
|
196 | 2128 |
A perhaps surprising fact is that regular languages are closed under any |
2129 |
left-quotient. Define |
|
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2130 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2131 |
\begin{center} |
203 | 2132 |
@{abbrev "Deriv_lang B A"} |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2133 |
\end{center} |
186 | 2134 |
|
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2135 |
\noindent |
196 | 2136 |
and assume @{text B} is any language and @{text A} is regular, then @{term |
203 | 2137 |
"Deriv_lang B A"} is regular. To see this consider the following argument |
372
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
2138 |
using partial derivatives (which we used in Section~\ref{derivatives}): From @{text A} |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
2139 |
being regular we know there exists |
196 | 2140 |
a regular expression @{text r} such that @{term "A = lang r"}. We also know |
203 | 2141 |
that @{term "pderivs_lang B r"} is finite for every language @{text B} and |
196 | 2142 |
regular expression @{text r} (recall Theorem~\ref{antimirov}). By definition |
245 | 2143 |
and \eqref{Derspders} we have |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2144 |
% |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2145 |
\begin{equation}\label{eqq} |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2146 |
@{term "Deriv_lang B (lang r) = (\<Union> (lang ` (pderivs_lang B r)))"} |
193
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2147 |
\end{equation} |
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2148 |
|
2a5ac68db24b
finished section about derivatives and closure properties
urbanc
parents:
190
diff
changeset
|
2149 |
\noindent |
203 | 2150 |
Since there are only finitely many regular expressions in @{term "pderivs_lang |
198 | 2151 |
B r"}, we know by \eqref{uplus} that there exists a regular expression so that |
203 | 2152 |
the right-hand side of \eqref{eqq} is equal to the language \mbox{@{term "lang (\<Uplus>(pderivs_lang B |
2153 |
r))"}}. Thus the regular expression @{term "\<Uplus>(pderivs_lang B r)"} verifies that |
|
2154 |
@{term "Deriv_lang B A"} is regular. |
|
233 | 2155 |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2156 |
Even more surprising is the fact given first by \citeN{Haines69} stating |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2157 |
that for \emph{every} language @{text A}, the language |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2158 |
consisting of all (scattered) substrings of @{text A} is regular (see also |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2159 |
\cite{Shallit08,Gasarch09}). |
258 | 2160 |
A \emph{(scattered) substring} can be obtained |
233 | 2161 |
by striking out zero or more characters from a string. This can be defined |
237 | 2162 |
inductively in Isabelle/HOL by the following three rules: |
233 | 2163 |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2164 |
%\begin{center} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2165 |
%@ {thm[mode=Axiom] emb0[where bs="x"]}\hspace{10mm} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2166 |
%@ {thm[mode=Rule] emb1[where as="x" and b="c" and bs="y"]}\hspace{10mm} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2167 |
%@ {thm[mode=Rule] emb2[where as="x" and a="c" and bs="y"]} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2168 |
%\end{center} |
233 | 2169 |
\begin{center} |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2170 |
@{thm[mode=Axiom] emb0}\hspace{10mm} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2171 |
@{thm[mode=Rule] emb1}\hspace{10mm} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2172 |
@{thm[mode=Rule] emb2} |
233 | 2173 |
\end{center} |
2174 |
||
2175 |
\noindent |
|
245 | 2176 |
It is straightforward to prove that @{text "\<preceq>"} is a partial order. Now define the |
237 | 2177 |
\emph{language of substrings} and \emph{superstrings} of a language @{text A} |
2178 |
respectively as |
|
233 | 2179 |
|
2180 |
\begin{center} |
|
2181 |
\begin{tabular}{l} |
|
2182 |
@{thm SUBSEQ_def}\\ |
|
2183 |
@{thm SUPSEQ_def} |
|
2184 |
\end{tabular} |
|
2185 |
\end{center} |
|
2186 |
||
2187 |
\noindent |
|
2188 |
We like to establish |
|
2189 |
||
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2190 |
\begin{theorem}[\cite{Haines69}]\label{subseqreg} |
245 | 2191 |
For every language @{text A}, the languages @{text "(i)"} @{term "SUBSEQ A"} and |
2192 |
@{text "(ii)"} @{term "SUPSEQ A"} |
|
233 | 2193 |
are regular. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2194 |
\end{theorem} |
233 | 2195 |
|
2196 |
\noindent |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2197 |
Our proof follows the one given by \citeN[Pages 92--95]{Shallit08}, except that we use |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2198 |
Higman's Lemma, which is already proved in the Isabelle/HOL library by |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2199 |
Sternagel. |
256 | 2200 |
Higman's Lemma allows us to infer that every language @{text A} of antichains, satisfying |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2201 |
% |
233 | 2202 |
\begin{equation}\label{higman} |
2203 |
@{text "\<forall>x, y \<in> A."}~@{term "x \<noteq> y \<longrightarrow> \<not>(x \<preceq> y) \<and> \<not>(y \<preceq> x)"} |
|
2204 |
\end{equation} |
|
2205 |
||
2206 |
\noindent |
|
2207 |
is finite. |
|
2208 |
||
247 | 2209 |
The first step in our proof of Theorem~\ref{subseqreg} is to establish the |
245 | 2210 |
following simple properties for @{term SUPSEQ} |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2211 |
% |
233 | 2212 |
\begin{equation}\label{supseqprops} |
2213 |
\mbox{\begin{tabular}{l@ {\hspace{1mm}}c@ {\hspace{1mm}}l} |
|
2214 |
@{thm (lhs) SUPSEQ_simps(1)} & @{text "\<equiv>"} & @{thm (rhs) SUPSEQ_simps(1)}\\ |
|
2215 |
@{thm (lhs) SUPSEQ_simps(2)} & @{text "\<equiv>"} & @{thm (rhs) SUPSEQ_simps(2)}\\ |
|
2216 |
@{thm (lhs) SUPSEQ_atom} & @{text "\<equiv>"} & @{thm (rhs) SUPSEQ_atom}\\ |
|
2217 |
@{thm (lhs) SUPSEQ_union} & @{text "\<equiv>"} & @{thm (rhs) SUPSEQ_union}\\ |
|
2218 |
@{thm (lhs) SUPSEQ_conc} & @{text "\<equiv>"} & @{thm (rhs) SUPSEQ_conc}\\ |
|
2219 |
@{thm (lhs) SUPSEQ_star} & @{text "\<equiv>"} & @{thm (rhs) SUPSEQ_star} |
|
2220 |
\end{tabular}} |
|
2221 |
\end{equation} |
|
2222 |
||
2223 |
\noindent |
|
2224 |
whereby the last equation follows from the fact that @{term "A\<star>"} contains the |
|
2225 |
empty string. With these properties at our disposal we can establish the lemma |
|
2226 |
||
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2227 |
\begin{lemma} |
237 | 2228 |
If @{text A} is regular, then also @{term "SUPSEQ A"}. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2229 |
\end{lemma} |
233 | 2230 |
|
2231 |
\begin{proof} |
|
239 | 2232 |
Since our alphabet is finite, we have a regular expression, written @{text ALL}, that |
240 | 2233 |
matches every string. Using this regular expression we can inductively define |
239 | 2234 |
the operation @{text "r\<up>"} |
233 | 2235 |
|
2236 |
\begin{center} |
|
2237 |
\begin{tabular}{l@ {\hspace{1mm}}c@ {\hspace{1mm}}l} |
|
2238 |
@{thm (lhs) UP.simps(1)} & @{text "\<equiv>"} & @{thm (rhs) UP.simps(1)}\\ |
|
2239 |
@{thm (lhs) UP.simps(2)} & @{text "\<equiv>"} & @{thm (rhs) UP.simps(2)}\\ |
|
239 | 2240 |
@{thm (lhs) UP.simps(3)} & @{text "\<equiv>"} & @{thm (rhs) UP.simps(3)}\\ |
233 | 2241 |
@{thm (lhs) UP.simps(4)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]} & |
2242 |
@{text "\<equiv>"} & @{thm (rhs) UP.simps(4)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]}\\ |
|
2243 |
@{thm (lhs) UP.simps(5)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]} & |
|
2244 |
@{text "\<equiv>"} & @{thm (rhs) UP.simps(5)[where ?r1.0="r\<^isub>1" and ?r2.0="r\<^isub>2"]}\\ |
|
2245 |
@{thm (lhs) UP.simps(6)} & @{text "\<equiv>"} & @{thm (rhs) UP.simps(6)} |
|
2246 |
\end{tabular} |
|
2247 |
\end{center} |
|
2248 |
||
2249 |
\noindent |
|
239 | 2250 |
and use \eqref{supseqprops} to establish that @{thm lang_UP} holds. This shows |
251 | 2251 |
that @{term "SUPSEQ A"} is regular, provided @{text A} is. |
233 | 2252 |
\end{proof} |
2253 |
||
2254 |
\noindent |
|
247 | 2255 |
Now we can prove the main lemma w.r.t.~@{const "SUPSEQ"}, namely |
233 | 2256 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2257 |
\begin{lemma}\label{mset} |
233 | 2258 |
For every language @{text A}, there exists a finite language @{text M} such that |
2259 |
\begin{center} |
|
2260 |
\mbox{@{term "SUPSEQ M = SUPSEQ A"}}\;. |
|
2261 |
\end{center} |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2262 |
\end{lemma} |
233 | 2263 |
|
2264 |
\begin{proof} |
|
2265 |
For @{text M} we take the set of all minimal elements of @{text A}. An element @{text x} |
|
237 | 2266 |
is said to be \emph{minimal} in @{text A} provided |
233 | 2267 |
|
2268 |
\begin{center} |
|
2269 |
@{thm minimal_def} |
|
2270 |
\end{center} |
|
2271 |
||
2272 |
\noindent |
|
239 | 2273 |
By Higman's Lemma \eqref{higman} we know |
237 | 2274 |
that @{term "M \<equiv> {x \<in> A. minimal x A}"} is finite, since every minimal element is incomparable, |
233 | 2275 |
except with itself. |
2276 |
It is also straightforward to show that @{term "SUPSEQ M \<subseteq> SUPSEQ A"}. For |
|
240 | 2277 |
the other direction we have @{term "x \<in> SUPSEQ A"}. From this we obtain |
245 | 2278 |
a @{text y} such that @{term "y \<in> A"} and @{term "y \<preceq> x"}. Since we have that |
233 | 2279 |
the relation \mbox{@{term "{(y, x). y \<preceq> x \<and> x \<noteq> y}"}} is well-founded, there must |
2280 |
be a minimal element @{text "z"} such that @{term "z \<in> A"} and @{term "z \<preceq> y"}, |
|
2281 |
and hence by transitivity also \mbox{@{term "z \<preceq> x"}} (here we deviate from the argument |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2282 |
given by \citeN{Shallit08}, because Isabelle/HOL provides already an extensive infrastructure |
233 | 2283 |
for reasoning about well-foundedness). Since @{term "z"} is |
237 | 2284 |
minimal and an element in @{term A}, we also know that @{term z} is in @{term M}. |
240 | 2285 |
From this together with \mbox{@{term "z \<preceq> x"}}, we can infer that @{term x} is in |
237 | 2286 |
@{term "SUPSEQ M"}, as required. |
233 | 2287 |
\end{proof} |
2288 |
||
2289 |
\noindent |
|
247 | 2290 |
This lemma allows us to establish the second part of Theorem~\ref{subseqreg}. |
233 | 2291 |
|
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2292 |
\begin{proof}[of the Second Part of Theorem~\ref{subseqreg}] |
233 | 2293 |
Given any language @{text A}, by Lemma~\ref{mset} we know there exists |
2294 |
a finite, and thus regular, language @{text M}. We further have @{term "SUPSEQ M = SUPSEQ A"}, |
|
2295 |
which establishes the second part. |
|
2296 |
\end{proof} |
|
2297 |
||
2298 |
\noindent |
|
247 | 2299 |
In order to establish the first part of this theorem, we use the |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2300 |
property proved by \citeN{Shallit08}, namely that |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2301 |
% |
233 | 2302 |
\begin{equation}\label{compl} |
2303 |
@{thm SUBSEQ_complement} |
|
2304 |
\end{equation} |
|
2305 |
||
237 | 2306 |
\noindent |
247 | 2307 |
holds. Now the first part of Theorem~\ref{subseqreg} is a simple consequence of the second part. |
237 | 2308 |
|
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2309 |
\begin{proof}[of the First Part of Theorem~\ref{subseqreg}] |
247 | 2310 |
By the second part, we know the right-hand side of \eqref{compl} |
237 | 2311 |
is regular, which means @{term "- SUBSEQ A"} is regular. But since |
372
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
2312 |
we established already that regularity is preserved under complement (using Myhill-Nerode), |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
2313 |
also @{term "SUBSEQ A"} must be regular. |
233 | 2314 |
\end{proof} |
240 | 2315 |
|
248 | 2316 |
Finally we like to show that the Myhill-Nerode Theorem is also convenient for establishing |
245 | 2317 |
the non-regularity of languages. For this we use the following version of the Continuation |
240 | 2318 |
Lemma (see for example~\cite{Rosenberg06}). |
2319 |
||
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2320 |
\begin{lemma}[Continuation Lemma] |
257 | 2321 |
If a language @{text A} is regular and a set of strings @{text B} is infinite, |
240 | 2322 |
then there exist two distinct strings @{text x} and @{text y} in @{text B} |
2323 |
such that @{term "x \<approx>A y"}. |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2324 |
\end{lemma} |
240 | 2325 |
|
2326 |
\noindent |
|
248 | 2327 |
This lemma can be easily deduced from the Myhill-Nerode Theorem and the Pigeonhole |
240 | 2328 |
Principle: Since @{text A} is regular, there can be only finitely many |
245 | 2329 |
equivalence classes. Hence an infinite set must contain |
240 | 2330 |
at least two strings that are in the same equivalence class, that is |
248 | 2331 |
they need to be related by the Myhill-Nerode Relation. |
240 | 2332 |
|
2333 |
Using this lemma, it is straightforward to establish that the language |
|
245 | 2334 |
\mbox{@{text "A \<equiv> \<Union>\<^isub>n a\<^sup>n @ b\<^sup>n"}} is not regular (@{text "a\<^sup>n"} stands |
2335 |
for the strings consisting of @{text n} times the character a; similarly for |
|
247 | 2336 |
@{text "b\<^isup>n"}). For this consider the infinite set @{text "B \<equiv> \<Union>\<^isub>n a\<^sup>n"}. |
240 | 2337 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2338 |
\begin{lemma} |
247 | 2339 |
No two distinct strings in set @{text "B"} are Myhill-Nerode related by language @{text A}. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2340 |
\end{lemma} |
240 | 2341 |
|
2342 |
\begin{proof} |
|
252 | 2343 |
After unfolding the definition of @{text "B"}, we need to establish that given @{term "i \<noteq> j"}, |
2344 |
the strings @{text "a\<^sup>i"} and @{text "a\<^sup>j"} are not Myhill-Nerode related by @{text "A"}. |
|
375
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2345 |
That means we have to show that @{text "\<forall>z. a\<^sup>i @ z \<in> A = a\<^sup>j @ z \<in> A"} leads to |
252 | 2346 |
a contradiction. Let us take @{text "b\<^sup>i"} for @{text "z"}. Then we know @{text "a\<^sup>i @ b\<^sup>i \<in> A"}. |
2347 |
But since @{term "i \<noteq> j"}, @{text "a\<^sup>j @ b\<^sup>i \<notin> A"}. Therefore @{text "a\<^sup>i"} and @{text "a\<^sup>j"} |
|
254
c21aaf7723a0
added paper that recently appeared about rexps and pegs
urbanc
parents:
253
diff
changeset
|
2348 |
cannot be Myhill-Nerode related by @{text "A"}, and we are done. |
240 | 2349 |
\end{proof} |
2350 |
||
2351 |
\noindent |
|
252 | 2352 |
To conclude the proof of non-regularity for the language @{text A}, the |
248 | 2353 |
Continuation Lemma and the lemma above lead to a contradiction assuming |
2354 |
@{text A} is regular. Therefore the language @{text A} is not regular, as we |
|
2355 |
wanted to show. |
|
186 | 2356 |
*} |
2357 |
||
117 | 2358 |
|
240 | 2359 |
|
54 | 2360 |
section {* Conclusion and Related Work *} |
2361 |
||
92 | 2362 |
text {* |
186 | 2363 |
\noindent |
112 | 2364 |
In this paper we took the view that a regular language is one where there |
115 | 2365 |
exists a regular expression that matches all of its strings. Regular |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2366 |
expressions can conveniently be defined as a datatype in theorem |
145 | 2367 |
provers. For us it was therefore interesting to find out how far we can push |
375
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2368 |
this point of view. But this question whether formal language theory can |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2369 |
be done without automata crops up also in non-theorem prover contexts. For |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2370 |
example, Gasarch asked in the Computational Complexity blog by \citeN{GasarchBlog} |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2371 |
whether the complementation of |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2372 |
regular-expression languages can be proved without using automata. He concluded |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2373 |
|
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2374 |
\begin{quote} |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2375 |
{\it \ldots it can't be done} |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2376 |
\end{quote} |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2377 |
|
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2378 |
\noindent |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2379 |
and even pondered |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2380 |
|
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2381 |
\begin{quote} |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2382 |
{\it \ldots [b]ut is there a rigorous way to even state that?} |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2383 |
\end{quote} |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2384 |
|
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2385 |
\noindent |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2386 |
We have established in Isabelle/HOL both directions |
248 | 2387 |
of the Myhill-Nerode Theorem. |
132 | 2388 |
% |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2389 |
\begin{theorem}[Myhill-Nerode Theorem]\mbox{}\\ |
132 | 2390 |
A language @{text A} is regular if and only if @{thm (rhs) Myhill_Nerode}. |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2391 |
\end{theorem} |
186 | 2392 |
|
132 | 2393 |
\noindent |
186 | 2394 |
Having formalised this theorem means we pushed our point of view quite |
2395 |
far. Using this theorem we can obviously prove when a language is \emph{not} |
|
2396 |
regular---by establishing that it has infinitely many equivalence classes |
|
248 | 2397 |
generated by the Myhill-Nerode Relation (this is usually the purpose of the |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2398 |
Pumping Lemma). We can also use it to establish the standard |
375
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2399 |
textbook results about closure properties of regular languages. The case of |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2400 |
closure under complement follows easily from the Myhill-Nerode Theorem. |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2401 |
So our answer to Gasarch is ``{\it it can be done!''} |
196 | 2402 |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2403 |
%Our insistence on regular expressions for proving the Myhill-Nerode Theorem |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2404 |
%arose from the problem of defining formally the regularity of a language. |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2405 |
%In order to guarantee consistency, |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2406 |
%formalisations in HOL can only extend the logic with definitions that introduce a new concept in |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2407 |
%terms of already existing notions. A convenient definition for automata |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2408 |
%(based on graphs) uses a polymorphic type for the state nodes. This allows |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2409 |
%us to use the standard operation for disjoint union whenever we need to compose two |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2410 |
%automata. Unfortunately, we cannot use such a polymorphic definition |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2411 |
%in HOL as part of the definition for regularity of a language (a predicate |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2412 |
%over sets of strings). Consider for example the following attempt: |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2413 |
% |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2414 |
%\begin{center} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2415 |
%@{text "is_regular A \<equiv> \<exists>M(\<alpha>). is_dfa (M) \<and> \<calL>(M) = A"} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2416 |
%\end{center} |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2417 |
% |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2418 |
%\noindent |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2419 |
%In this definifion, the definiens is polymorphic in the type of the automata |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2420 |
%@{text "M"} (indicated by dependency on the type-variable @{text "\<alpha>"}), but the definiendum |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2421 |
%@{text "is_regular"} is not. Such definitions are excluded from HOL, because |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2422 |
%they can lead easily to inconsistencies (see \cite{PittsHOL4} for a simple |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2423 |
%example). Also HOL does not contain type-quantifiers which would allow us to |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2424 |
%get rid of the polymorphism by quantifying over the type-variable |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2425 |
%@{text "\<alpha>"}. Therefore when defining regularity in terms of automata, the |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2426 |
%natural way out in HOL is to resort to state nodes with an identity, for |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2427 |
%example a natural number. Unfortunatly, the consequence is that we have to |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2428 |
%be careful when combining two automata so that there is no clash between two |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2429 |
%such states. This makes formalisations quite fiddly and rather |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2430 |
%unpleasant. Regular expressions proved much more convenient for reasoning in |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2431 |
%HOL since they can be defined as inductive datatype and a reasoning |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2432 |
%infrastructure comes for free. The definition of regularity in terms of |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2433 |
%regular expressions poses no problem at all for HOL. We showed in this |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2434 |
%paper that they can be used for establishing the central result in regular |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2435 |
%language theory---the Myhill-Nerode Theorem. |
196 | 2436 |
|
2437 |
While regular expressions are convenient, they have some limitations. One is |
|
375
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2438 |
that there are some regular expressions for which the smallest regular |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2439 |
expression for the complement language has a doubly-exponential blowup in size |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2440 |
as shown by \citeN{Gelade12}. |
44c4450152e3
adapted to JAR
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
374
diff
changeset
|
2441 |
Another is |
196 | 2442 |
that there seems to be no method of calculating a minimal regular expression |
2443 |
(for example in terms of length) for a regular language, like there is for |
|
2444 |
automata. On the other hand, efficient regular expression matching, without |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2445 |
using automata, poses no problem as shown by \citeN{OwensReppyTuron09}. For an |
196 | 2446 |
implementation of a simple regular expression matcher, whose correctness has |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2447 |
been formally established, we refer the reader to |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2448 |
\citeN{OwensSlind08}. In our opinion, their formalisation is considerably |
245 | 2449 |
slicker than for example the approach to regular expression matching taken |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2450 |
by \citeN{Harper99} and by \citeN{Yi06}. |
116 | 2451 |
|
196 | 2452 |
Our proof of the first direction is very much inspired by \emph{Brzozowski's |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2453 |
algebraic method} \citeyear{Brzozowski64} used to convert a finite automaton to a regular expression. |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2454 |
The close connection can be seen by considering the |
196 | 2455 |
equivalence classes as the states of the minimal automaton for the regular |
201 | 2456 |
language. However there are some subtle differences. Because our equivalence |
248 | 2457 |
classes (or correspondingly states) arise from the Myhill-Nerode Relation, the most natural |
196 | 2458 |
choice is to characterise each state with the set of strings starting from |
2459 |
the initial state leading up to that state. Usually, however, the states are |
|
2460 |
characterised as the strings starting from that state leading to the |
|
2461 |
terminal states. The first choice has consequences about how the initial |
|
2462 |
equational system is set up. We have the $\lambda$-term on our `initial |
|
2463 |
state', while Brzozowski has it on the terminal states. This means we also |
|
2464 |
need to reverse the direction of Arden's Lemma. We have not found anything |
|
249 | 2465 |
in the `pencil-and-paper-reasoning' literature about our way of proving the |
2466 |
first direction of the Myhill-Nerode Theorem, but it appears to be folklore. |
|
112 | 2467 |
|
196 | 2468 |
We presented two proofs for the second direction of the Myhill-Nerode |
248 | 2469 |
Theorem. One direct proof using tagging-functions and another using partial |
198 | 2470 |
derivatives. This part of our work is where our method using regular |
2471 |
expressions shines, because we can completely side-step the standard |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2472 |
argument (for example used by \citeN{Kozen97}) where automata need to be composed. However, it is |
198 | 2473 |
also the direction where we had to spend most of the `conceptual' time, as |
2474 |
our first proof based on tagging-functions is new for establishing the |
|
248 | 2475 |
Myhill-Nerode Theorem. All standard proofs of this direction proceed by |
198 | 2476 |
arguments over automata. |
196 | 2477 |
|
198 | 2478 |
The indirect proof for the second direction arose from our interest in |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2479 |
Brzozowski's derivatives for regular expression matching. While \citeN{Brzozowski64} |
245 | 2480 |
already established that there are only |
196 | 2481 |
finitely many dissimilar derivatives for every regular expression, this |
199 | 2482 |
result is not as straightforward to formalise in a theorem prover as one |
2483 |
might wish. The reason is that the set of dissimilar derivatives is not |
|
2484 |
defined inductively, but in terms of an ACI-equivalence relation. This |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2485 |
difficulty prevented for example \citeN{KraussNipkow11} to prove termination of |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2486 |
their equivalence checker for regular expressions. Their checker is based on Brzozowski's derivatives |
199 | 2487 |
and for their argument the lack of a formal proof of termination is not |
2488 |
crucial (it merely lets them ``sleep better'' \cite{KraussNipkow11}). We |
|
2489 |
expect that their development simplifies by using partial derivatives, |
|
245 | 2490 |
instead of derivatives, and that the termination of the algorithm can be |
2491 |
formally established (the main ingredient is |
|
199 | 2492 |
Theorem~\ref{antimirov}). However, since partial derivatives use sets of |
2493 |
regular expressions, one needs to carefully analyse whether the resulting |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2494 |
algorithm is still executable. Given the infrastructure for |
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2495 |
executable sets introduced by \citeN{Haftmann09} in Isabelle/HOL, it should. |
199 | 2496 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2497 |
We started out by claiming that in a theorem prover it is easier to |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2498 |
reason about regular expressions than about automata. Here are some |
378
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2499 |
numbers: Our formalisation of the Myhill-Nerode Theorem consists of |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2500 |
780 lines of Isabelle/Isar code for the first direction and 460 for |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2501 |
the second (the one based on tagging-functions), plus around 300 |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2502 |
lines of standard material about regular languages. The |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2503 |
formalisation of derivatives and partial derivatives shown in |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2504 |
Section~\ref{derivatives} consists of 390 lines of code. The |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2505 |
closure properties in Section~\ref{closure} (except |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2506 |
Theorem~\ref{subseqreg}) can be established in 100 lines of |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2507 |
code. The Continuation Lemma and the non-regularity of @{text "a\<^sup>n |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2508 |
b\<^sup>n"} require 70 lines of code. The algorithm for solving equational |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2509 |
systems, which we used in the first direction, is conceptually |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2510 |
relatively simple. Still the use of sets over which the algorithm |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2511 |
operates means it is not as easy to formalise as one might |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2512 |
wish. However, it seems sets cannot be avoided since the `input' of |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2513 |
the algorithm consists of equivalence classes and we cannot see how |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2514 |
to reformulate the theory so that we can use lists or |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2515 |
matrices. Lists would be much easier to reason about, since we can |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2516 |
define functions over them by recursion. For sets we have to use |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2517 |
set-comprehensions, which is slightly unwieldy. Matrices would allow |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2518 |
us to use the slick formalisation by \citeN{Nipkow11} of the |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2519 |
Gauss-Jordan algorithm. |
172 | 2520 |
|
378
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2521 |
% OLD |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2522 |
%While our formalisation might appear large, it should be seen in the |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2523 |
%context of the work done by \citeN{Constable00} who formalised the |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2524 |
%Myhill-Nerode Theorem in Nuprl using automata. They write that their |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2525 |
%four-member team would need something on the magnitude of 18 months |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2526 |
%for their formalisation of the first eleven chapters of the textbook |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2527 |
%by \citeN{HopcroftUllman69}, which includes the Myhill-Nerode |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2528 |
%theorem. It is hard to gauge the size of a formalisation in Nurpl, |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2529 |
%but from what is shown in the Nuprl Math Library about their |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2530 |
%development it seems \emph{substantially} larger than ours. We |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2531 |
%attribute this to our use of regular expressions, which meant we did |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2532 |
%not need to `fight' the theorem prover. |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2533 |
|
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2534 |
%%% NEW |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2535 |
While our formalisation might appear large, it should be seen in the |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2536 |
context of the work done by \citeN{Constable00} who formalised the |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2537 |
Myhill-Nerode Theorem in Nuprl using automata. They choose to formalise the |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2538 |
this theorem, because it gives them state minimization of automata |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2539 |
as a corollary. It is hard to gauge the size of a formalisation in Nurpl, |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2540 |
but from what is shown in the Nuprl Math Library about this |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2541 |
development it seems \emph{substantially} larger than ours. We |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2542 |
attribute this to our use of regular expressions, which meant we did |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2543 |
not need to `fight' the theorem prover. |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2544 |
% |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2545 |
Recently, |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2546 |
\citeN{LammichTuerk12} formalised Hopcroft's algorithm in |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2547 |
Isabelle/HOL (in 7000 lines of code) using an automata library of |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2548 |
27000 lines of code. Also, \citeN{Filliatre97} reports that his |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2549 |
formalisation in Coq of automata theory and Kleene's theorem is |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2550 |
``rather big''. \citeN{Almeidaetal10} reported about another |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2551 |
formalisation of regular languages in Coq. Their main result is the |
218 | 2552 |
correctness of Mirkin's construction of an automaton from a regular |
378
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2553 |
expression using partial derivatives. This took approximately 10600 |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2554 |
lines of code. \citeN{Braibant12} formalised a large part of |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2555 |
regular language theory and Kleene algebras in Coq. While he is |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2556 |
mainly interested in implementing decision procedures for Kleene |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2557 |
algebras, his library includes a proof of the Myhill-Nerode |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2558 |
theorem. He reckons that our ``development is more concise'' than |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2559 |
his one based on matrices \cite[Page 67]{Braibant12}. He writes |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2560 |
that there is no conceptual problems with formally reasoning about |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2561 |
matrices for automata, but notes ``intrinsic difficult[ies]'' when |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2562 |
working with matrices in Coq, which is the sort of `fighting' one |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2563 |
would encounter also in other theorem provers. |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2564 |
In terms of time, the estimate for our formalisation is that we |
198 | 2565 |
needed approximately 3 months and this included the time to find our proof |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2566 |
arguments. Unlike \citeN{Constable00}, who were able to follow the Myhill-Nerode |
378
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2567 |
proof by \citeN{HopcroftUllman69}, we had to find our own arguments. |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2568 |
So for us the formalisation was not the bottleneck. The conclusion we draw |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2569 |
from all these comparisons is that if one is interested in formalising |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2570 |
results from regular language theory, not results from automata theory, |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2571 |
then regular expressions are easier to work with formally. |
a0bcf886b8ef
deleted utm-work from the repository
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
377
diff
changeset
|
2572 |
The code of |
372
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
2573 |
our formalisation \cite{myhillnerodeafp11} can be found in the Archive of Formal Proofs at |
2c56b20032a7
made changes and updates to the journal paper
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
350
diff
changeset
|
2574 |
\mbox{\url{http://afp.sourceforge.net/entries/Myhill-Nerode.shtml}}.\smallskip |
162
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
2575 |
|
e93760534354
added directory for journal version; took uptodate version of the theory files
urbanc
parents:
160
diff
changeset
|
2576 |
\noindent |
173 | 2577 |
{\bf Acknowledgements:} |
242 | 2578 |
We are grateful for the comments we received from Larry Paulson. Tobias |
247 | 2579 |
Nipkow made us aware of the properties in Theorem~\ref{subseqreg} and Tjark |
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2580 |
Weber helped us with proving them. Christian Sternagel provided us with a |
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2581 |
version of Higman's Lemma that applies to arbitrary, but finite alphabets. |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2582 |
|
350
8ce9a432680b
made changes for another journal submission of the MN-paper
urbanc
parents:
348
diff
changeset
|
2583 |
\bibliographystyle{acmtrans} |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2584 |
\bibliography{root} |
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2585 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2586 |
%\newpage |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2587 |
%\begin{appendix} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2588 |
%\section{Appendix$^\star$} |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2589 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2590 |
%\renewcommand{\thefootnote}{\mbox{$\star$}} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2591 |
%\footnotetext{If the reviewers deem more suitable, the authors are |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2592 |
%prepared to drop material or move it to an electronic appendix.} |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2593 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2594 |
%\begin{proof}[of Lemma~\ref{arden}] |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2595 |
%For the right-to-left direction we assume @{thm (rhs) reversed_Arden} and show |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2596 |
%that @{thm (lhs) reversed_Arden} holds. From Property~\ref{langprops}@{text "(i)"} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2597 |
%we have @{term "A\<star> = A \<cdot> A\<star> \<union> {[]}"}, |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2598 |
%which is equal to @{term "A\<star> = A\<star> \<cdot> A \<union> {[]}"}. Adding @{text B} to both |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2599 |
%sides gives @{term "B \<cdot> A\<star> = B \<cdot> (A\<star> \<cdot> A \<union> {[]})"}, whose right-hand side |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2600 |
%is equal to @{term "(B \<cdot> A\<star>) \<cdot> A \<union> B"}. Applying the assumed equation |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2601 |
%completes this direction. |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2602 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2603 |
%For the other direction we assume @{thm (lhs) reversed_Arden}. By a simple induction |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2604 |
%on @{text n}, we can establish the property |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2605 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2606 |
%\begin{center} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2607 |
%@{text "("}@{text "*"}@{text ")"}\hspace{5mm} @{thm (concl) reversed_arden_helper} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2608 |
%\end{center} |
348
bea94f1e6771
made changes for another journal submission of the MH-paper
urbanc
parents:
338
diff
changeset
|
2609 |
|
379
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2610 |
%\noindent |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2611 |
%Using this property we can show that @{term "B \<cdot> (A \<up> n) \<subseteq> X"} holds for |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2612 |
%all @{text n}. From this we can infer @{term "B \<cdot> A\<star> \<subseteq> X"} using the definition |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2613 |
%of @{text "\<star>"}. |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2614 |
%For the inclusion in the other direction we assume a string @{text s} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2615 |
%with length @{text k} is an element in @{text X}. Since @{thm (prem 1) reversed_Arden} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2616 |
%we know by Property~\ref{langprops}@{text "(ii)"} that |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2617 |
%@{term "s \<notin> X \<cdot> (A \<up> Suc k)"} since its length is only @{text k} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2618 |
%(the strings in @{term "X \<cdot> (A \<up> Suc k)"} are all longer). |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2619 |
%From @{text "("}@{text "*"}@{text ")"} it follows then that |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2620 |
%@{term s} must be an element in @{term "(\<Union>m\<le>k. B \<cdot> (A \<up> m))"}. This in turn |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2621 |
%implies that @{term s} is in @{term "(\<Union>n. B \<cdot> (A \<up> n))"}. Using Property~\ref{langprops}@{text "(iii)"} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2622 |
%this is equal to @{term "B \<cdot> A\<star>"}, as we needed to show. |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2623 |
%\end{proof} |
8c4b6fb43ebe
polished more and updated to new isabelle
Christian Urban <christian dot urban at kcl dot ac dot uk>
parents:
378
diff
changeset
|
2624 |
% \end{appendix} |
92 | 2625 |
*} |
2626 |
||
2627 |
||
24 | 2628 |
(*<*) |
2629 |
end |
|
2630 |
(*>*) |