Nuprl Lemma : pv11_p1_commander_state_from_p2bs

Cmd:ValueAllType. ∀f:pv11_p1_headers_type{i:l}(Cmd). ∀es:EO+(Message(f)). ∀start,e,e0:E. ∀accpts,ldrs:bag(Id).
ldrs_uid:Id ─→ ℤ. ∀reps:bag(Id). ∀b:pv11_p1_Ballot_Num(). ∀s:ℤ. ∀c:Cmd. ∀waitfor:bag(Id). ∀i,l:Id.
  (start ≤loc 
   Inj(Id;ℤ;ldrs_uid)
   pv11_p1_message-constraint{paxos-v11-part1.esh:o}(Cmd; accpts; ldrs; ldrs_uid; reps; f; es)
   pv11_p1_p2a'send(Cmd;f) i <l, b, s, c> ∈ pv11_p1_main(Cmd;accpts;ldrs;ldrs_uid;reps;f)(e0)
   (waitfor pv11_p1_CommanderStateFun(Cmd;accpts;f;b;s;es.start;e) ∈ bag(Id))
   (↓∃L:E List
        ((waitfor [i∈accpts|¬bi ∈b map(λe.loc(e);L))] ∈ bag(Id))
        ∧ (∀e':E
             ((e' ∈ L)
              ((e' < e)
                ∧ loc(e') ↓∈ accpts
                ∧ (b (fst(pv11_p1_AcceptorStateFun(Cmd;ldrs_uid;f;es;e'))) ∈ pv11_p1_Ballot_Num())
                ∧ (<b, s, c> ∈ snd(pv11_p1_AcceptorStateFun(Cmd;ldrs_uid;f;es;e')))))))))


Proof




Definitions occuring in Statement :  pv11_p1_p2a'send: pv11_p1_p2a'send(Cmd;f) pv11_p1_message-constraint: pv11_p1_message-constraint{paxos-v11-part1.esh:o}(Cmd; accpts; ldrs; ldrs_uid; reps; mf; es) pv11_p1_main: pv11_p1_main(Cmd;accpts;ldrs;ldrs_uid;reps;mf) pv11_p1_CommanderStateFun: pv11_p1_CommanderStateFun(Cmd;accpts;mf;x;zzs;es;e) pv11_p1_AcceptorStateFun: pv11_p1_AcceptorStateFun(Cmd;ldrs_uid;mf;es;e) pv11_p1_headers_type: pv11_p1_headers_type{i:l}(Cmd) pv11_p1_Ballot_Num: pv11_p1_Ballot_Num() msg-interface: Interface Message: Message(f) classrel: v ∈ X(e) eo-forward: eo.e event-ordering+: EO+(Info) es-le: e ≤loc e'  es-causl: (e < e') es-loc: loc(e) es-E: E id-deq: IdDeq Id: Id deq-member: x ∈b L) l_member: (x ∈ l) map: map(f;as) list: List inject: Inj(A;B;f) vatype: ValueAllType bnot: ¬bb pi1: fst(t) pi2: snd(t) all: x:A. B[x] exists: x:A. B[x] squash: T implies:  Q and: P ∧ Q apply: a lambda: λx.A[x] function: x:A ─→ B[x] pair: <a, b> product: x:A × B[x] int: equal: t ∈ T bag-member: x ↓∈ bs bag-filter: [x∈b|p[x]] bag: bag(T)
Definitions :  assert: b ifthenelse: if then else fi  deq-member: x ∈b L) reduce: reduce(f;k;as) pv11_p1_headers_no_inputs: pv11_p1_headers_no_inputs() cons: [a b] bor: p ∨bq list-deq: list-deq(eq) band: p ∧b q atom-deq: AtomDeq eq_atom: =a y btrue: tt bfalse: ff nil: [] it: null: null(as) true: True member: t ∈ T
Lemmas :  int_seg_wf length_wf name_wf pv11_p1_headers_wf l_all_iff l_member_wf equal_wf pv11_p1_headers_fun_wf cons_wf_listp nil_wf listp_wf cons_member cons_wf equal-wf-base iff_weakening_equal list_wf pv11_p1_CommanderStateFun_wf eo-forward_wf member-eo-forward-E es-loc_wf classrel_wf msg-interface_wf pv11_p1_main_wf pv11_p1_p2a'send_wf pv11_p1_message-constraint_wf inject_wf es-le_wf pv11_p1_Ballot_Num_wf bag_wf Id_wf es-E_wf event-ordering+_subtype event-ordering+_wf Message_wf subtype_rel_dep_function vatype_wf pv11_p1_headers_type_wf set_wf valueall-type_wf es-causl-swellfnd nat_properties less_than_transitivity1 less_than_irreflexivity ge_wf less_than_wf int_seg_subtype-nat decidable__le subtract_wf false_wf not-ge-2 less-iff-le condition-implies-le minus-one-mul zero-add minus-add minus-minus add-associates add-swap add-commutes add_functionality_wrt_le add-zero le-add-cancel decidable__equal_int subtype_rel-int_seg le_weakening int_seg_properties le_wf nat_wf zero-le-nat lelt_wf es-causl_wf pv11_p1_commander_state_fun_eq squash_wf exists_wf bag-filter_wf bnot_wf deq-member_wf id-deq_wf map_wf subtype_rel_bag assert_wf all_wf bag-member_wf pv11_p1_AcceptorStateFun_wf eo-forward-member-eclass event-ordering+_cumulative member-eclass_wf pv11_p1_p2b'base_wf bool_wf eqtt_to_assert es-first_wf2 member-base-class eo-forward-base-classfun-res-sq subtype_rel_weakening ext-eq_weakening classfun-res-base subtype_base_sq list_subtype_base atom_subtype_base subtype_rel_wf eqff_to_assert bool_cases_sqequal bool_subtype_base assert-bnot decidable__lt not-equal-2 le-add-cancel-alt not-le-2 sq_stable__le add-mul-special zero-mul pair-eta es-info-body_wf subtype_rel_product top_wf subtype_top subtype_rel_transitivity es-info-type_wf pv11_p1_eq_bnums-assert assert_of_eq_int pv11_p1_eq_bnums_wf eq_int_wf neg_assert_of_eq_int decidable__assert bag-deq-member_wf assert-bag-deq-member pi1_wf_top assert-deq-member pv11_p1_headers_no_inputs_wf es-info-mk-msg es-info-auth_wf make-msg-interface_wf mk-msg_wf pv11_p1-p2b int_subtype_base pv11_p1-p2a pv11_p1_A4_C1_funC pv11_p1_acc_rcv_p2a2 member_singleton map_cons_lemma map_nil_lemma deq_member_cons_lemma deq_member_nil_lemma bag-filter-equal bor_wf bfalse_wf assert_functionality_wrt_uiff true_wf bor_ff_simp deq_wf and_wf pair_eta_rw pi2_wf bag-filter-trivial btrue_wf assert_of_tt bag-remove-trivial null_nil_lemma member-implies-null-eq-bfalse btrue_neq_bfalse event_ordering_wf eo-forward-trivial es-le-first assert_elim ifthenelse_wf eo-forward-first es-le-self eq_id_wf assert-eq-id assert-es-eq-E-2 eo-forward-loc es-pred_wf es-pred-locl eo-forward-locl es-causl_weakening es-le-pred eo-forward-pred equal-eo-forward-E eo-forward-E-subtype pv11_p1_on_p2b_wf bag-remove_wf bag-filter-filter iff_transitivity not_wf or_wf iff_weakening_uiff assert_of_bnot assert_of_bor assert_of_band es-causl_transitivity1 es-causle_weakening_eq es-causle_wf es-causl_transitivity2 es-causle_weakening_locl es-le_weakening

Latex:
\mforall{}Cmd:ValueAllType.  \mforall{}f:pv11\_p1\_headers\_type\{i:l\}(Cmd).  \mforall{}es:EO+(Message(f)).  \mforall{}start,e,e0:E.
\mforall{}accpts,ldrs:bag(Id).  \mforall{}ldrs$_{uid}$:Id  {}\mrightarrow{}  \mBbbZ{}.  \mforall{}reps:bag(Id).  \mforall{}b:pv11\_p1\_Ballot\_Nu\000Cm().  \mforall{}s:\mBbbZ{}.  \mforall{}c:Cmd.
\mforall{}waitfor:bag(Id).  \mforall{}i,l:Id.
    (start  \mleq{}loc  e 
    {}\mRightarrow{}  Inj(Id;\mBbbZ{};ldrs$_{uid}$)
    {}\mRightarrow{}  pv11\_p1\_message-constraint\{paxos-v11-part1.esh:o\}(Cmd;  accpts;  ldrs;  ldrs$_{uid\mbackslash{}ff7\000Cd$;  reps;  f;  es)
    {}\mRightarrow{}  pv11\_p1\_p2a'send(Cmd;f)  i  <l,  b,  s,  c>  \mmember{}  pv11\_p1\_main(Cmd;accpts;ldrs;ldrs$_{uid\mbackslash{}ff\000C7d$;reps;f)(e0)
    {}\mRightarrow{}  (waitfor  =  pv11\_p1\_CommanderStateFun(Cmd;accpts;f;b;s;es.start;e))
    {}\mRightarrow{}  (\mdownarrow{}\mexists{}L:E  List
                ((waitfor  =  [i\mmember{}accpts|\mneg{}\msubb{}i  \mmember{}\msubb{}  map(\mlambda{}e.loc(e);L))])
                \mwedge{}  (\mforall{}e':E
                          ((e'  \mmember{}  L)
                          {}\mRightarrow{}  ((e'  <  e)
                                \mwedge{}  loc(e')  \mdownarrow{}\mmember{}  accpts
                                \mwedge{}  (b  =  (fst(pv11\_p1\_AcceptorStateFun(Cmd;ldrs$_{uid}$;f;es;e')))\000C)
                                \mwedge{}  (<b,  s,  c>  \mmember{}  snd(pv11\_p1\_AcceptorStateFun(Cmd;ldrs$_{uid}$;f;e\000Cs;e')))))))))



Date html generated: 2015_07_23-PM-04_59_07
Last ObjectModification: 2015_02_04-AM-08_05_38

Home Index