Revision Log Mode:


Copied or renamed
Diff Rev Age Author Log Message
(edit) @2020   8 years mulligan CJNE case complete, DJNZ case almost complete
(edit) @2019   8 years campbell Split out special induction principle for Clight from soundness file. …
(edit) @2018   8 years mulligan CJNE case a complete mess.
(edit) @2017   8 years mulligan Large swathes of proof of main lemma added.
(edit) @2016   8 years garnier Slight change in simplification strategy to better match the semantics
(edit) @2015   8 years mulligan Changes following a conversation with Jaap: as it stands computation …
(edit) @2014   8 years mulligan Fixed problem in James' email message.
(edit) @2013   8 years Ian Stark Put in HiPEAC 2013
(edit) @2012   8 years Ian Stark Added proposed papers to D6.2
(edit) @2011   8 years garnier Minor cleanup.
(edit) @2010   8 years campbell Make globalenvs use proper maps.
(edit) @2009   8 years garnier Proof of simulation completed for singe-step executions.
(edit) @2008   8 years boender - substantial closing of holes in proof
(edit) @2007   8 years Ian Stark Potential workshop invitees
(edit) @2006   8 years boender - added alias for bitvector zero - changed extralib bounded …
(edit) @2005   8 years boender - minor changes to make things compile with a clean checkout
(edit) @2004   8 years campbell Minor edits from discussion.
(edit) @2003   8 years campbell Some discussion of correctness statements.
(edit) @2002   8 years Ian Stark Supplement to D6.2
(edit) @2001   8 years campbell Get the compiler to output more.
(edit) @2000   8 years campbell Fix g.e. glitch in label simulation.
(edit) @1999   8 years campbell Make back-end use the main global envs.
(edit) @1998   8 years sacerdot Version number bumped.
(edit) @1997   8 years mulligan Changed titles of reports to match correct deliverable title
(edit) @1996   8 years campbell Work on correctness from yesterday.
(edit) @1995   8 years campbell Overall compiler definition; bits and pieces to make everything happy(ish).
(edit) @1994   8 years campbell Remove redundant allocation definition in Globalenvs.
(edit) @1993   8 years campbell Make front-end memory model only depend on the general definitions by …
(edit) @1992   8 years mckinna Ayache?
(edit) @1991   8 years campbell Put the front end transformations together and make an example use it.
(edit) @1990   8 years mckinna the LUSTRE paper has not yet appeared what about the Ayache/Frama?-C …
(edit) @1989   8 years mckinna Notes of 2012-05-24 of the UEdin/UniBo meeting to discuss publication …
(edit) @1988   8 years campbell Abstraction of the memory contents in the memory models is no longer …
(edit) @1987   8 years campbell Move BEValues to common to reflect their use in the memory model for …
(edit) @1986   8 years campbell Get rid of unused abstraction of Globalenvs.
(edit) @1985   8 years mulligan A single `false' case for unconditional jumps completed.
(edit) @1984   8 years mulligan Most proof obligations closed in main_lemma apart from those of the …
(edit) @1983   8 years mulligan Changes to simplify the simpler cases of the main_lemma.
(edit) @1982   8 years amadio add 2.1 Survey
(edit) @1981   8 years amadio update 5.1
(edit) @1980   8 years amadio update 5.1
(edit) @1979   8 years sacerdot Very very very tricky lemma closed. A dreadful mix of JM equality …
(edit) @1978   8 years sacerdot Two more cases completed.
(edit) @1977   8 years sacerdot Unblocked: let ... as hides two different terms, one that uses Leibniz …
(edit) @1976   8 years tranquil * monads: just changed some defs, which had to be propagated in some …
(edit) @1975   8 years mulligan Work from today on closing main_thm.
(edit) @1974   8 years garnier Progress on the cast simplification proof.
(edit) @1973   8 years boender - removed superfluous match - displaced 'cases daemon'
(edit) @1972   8 years mulligan Simple lemma with strangely complex proof complete.
(edit) @1971   8 years sacerdot 1. we need to prove \sigma (execute_preinstruction …
(edit) @1970   8 years garnier Work-in-progress: correction proof for the cast removal on expressions.
(edit) @1969   8 years sacerdot Some more progress, but now we must prove something on a Russell …
(edit) @1968   8 years campbell Update D4.3's title, memory model details, and some typographical …
(edit) @1967   8 years sacerdot Mov case completed.
(edit) @1966   8 years mulligan Progress made on main_thm proof: trying to find a pattern to use …
(edit) @1965   8 years boender - further completed proof, changed jump_expansion' to reflect new type …
(edit) @1964   8 years tranquil introduced as_label_of_cost and adapted accordingly. Equality of cost …
(edit) @1963   8 years sacerdot More progress in restoring the original proof.
(edit) @1962   8 years sacerdot More examples are now indexed.
(edit) @1961   8 years sacerdot No more interaction required.
(edit) @1960   8 years campbell Update RTLabs structured traces to make minor changes in definitions.
(edit) @1959   8 years mulligan Commented out diverging application of demodulation and closed goals …
(edit) @1958   8 years mulligan Marked divergence in StatusProofs?.ma
(edit) @1957   8 years mulligan Stitching proofs back together after slight change in statement of …
(edit) @1956   8 years boender - finished proof of lemma (where auto does strange things again)
(edit) @1955   8 years mulligan Completed proof of snd_assembly_1_pseudoinstruction_ok, modulo some …
(edit) @1954   8 years campbell Initial state is in the labelling simulation (modulo global envs results).
(edit) @1953   8 years mulligan Commit to avoid conflicts.
(edit) @1952   8 years sacerdot AssemblyProof? splitted.
(edit) @1951   8 years sacerdot Bug with overloaded names in the context.
(edit) @1950   8 years boender - advances in policy
(edit) @1949   8 years tranquil * lemma trace rel to eq flatten trace * some more properties of …
(edit) @1948   8 years mulligan Weakened statements of ASM/ and ASM/, so …
(edit) @1947   8 years sacerdot Failure of automation/demod investigated a little bit.
(edit) @1946   8 years sacerdot \snd half_add => add everywhere
(edit) @1945   8 years sacerdot All proof statements repaired.
(edit) @1944   8 years sacerdot common/StructuredTraces no longer depends on ASM/AbstractStatus (again)
(edit) @1943   8 years boender - changed 'labels okay' part of create_label_cost_map
(edit) @1942   8 years mulligan Work on showing the equivalence of two methods of looking up from the maps.
(edit) @1941   8 years mulligan Changes to the AssemblyProof? with a few more (large) axioms closed.
(edit) @1940   8 years boender - committed new version of final invariant
(edit) @1939   8 years mulligan Changes to get things to compile and to avoid the dependency …
(edit) @1938   8 years sacerdot Definitions moved to the right places, now everything compiles again.
(edit) @1937   8 years boender - filled in some of the gaps in the proof of Policy - reverted …
(edit) @1936   8 years mulligan Some holes filled in AssemblyProof?.ma.
(edit) @1935   8 years mulligan Generalized some lemma in ASM/ to work on abstract …
(edit) @1934   8 years boender - various & sundry moves of lemmas to better places - integrated …
(edit) @1933   8 years boender - slight revamp
(edit) @1932   8 years boender - added some more dependent types (we love 'em)
(edit) @1931   8 years boender - added latest bvt alias - temporary "cases daemon" commit of new …
(edit) @1930   8 years campbell Tidy up labelling simulation stuff a bit.
(edit) @1929   8 years mulligan Simplified proof by removing most of the invariants on the statements …
(edit) @1928   8 years mulligan Moved code from in ASM/ASMCosts*.ma and ASM/ that should …
(edit) @1927   8 years mulligan Reduced complexity of good_program predicate, ported to new notion of …
(edit) @1926   8 years tranquil * added as_label to abstract status, with as_costed defined with it. …
(edit) @1925   8 years boender - re-added jump_lenggh
(edit) @1924   8 years mulligan Added comment
(edit) @1923   8 years mulligan Small change, closing daemon that went under the RADAR
(edit) @1922   8 years campbell Main labelling simulation proof complete.
(edit) @1921   8 years mulligan Horror proof mostly finished (compiles all way until end of CostsProof?.ma).
Note: See TracRevisionLog for help on using the revision log.