(edit) @2324   9 years tranquil semantics of blocks: function to produce trace from execution of …
(edit) @2323   9 years campbell Some correctness proof comments.
(edit) @2322   9 years campbell Today's correctness groupthink.
(edit) @2321   9 years campbell Add toolstick branch of the prototype.
(edit) @2320   9 years campbell Update compiler and correctness with labelling changes.
(edit) @2319   9 years campbell Generate per-program cost labels rather than per-function ones, and …
(edit) @2318   9 years boender - now it compiles
(edit) @2317   9 years boender - small changes to make things compile
(edit) @2316   9 years boender - committed temporary version: true version has to wait until I …
(edit) @2315   9 years campbell Add some more commentary.
(edit) @2314   9 years campbell Move generic definitions from recent commit to appropriate places.
(edit) @2313   9 years campbell RTLabs cost checker correct.
(edit) @2312   9 years garnier Memory injections, to be revised
(edit) @2311   9 years garnier Some more cleaning of switchRemoval …
(edit) @2310   9 years garnier Moved a lemma from switchRemoval to positive.
(edit) @2309   9 years garnier Removed the superfluous xorb definition and move some basic properties …
(edit) @2308   9 years campbell More proof (and corrections) on cost checking.
(edit) @2307   9 years campbell Half the proofs for sound cost labelling check.
(edit) @2306   9 years campbell An insertion sort for testing purposes.
(edit) @2305   9 years campbell RTLabs cost spec checking function implemented (lacks proof, or much …
(edit) @2304   9 years garnier Strengthened proof of associativity of bitvector addition. Some more …
(edit) @2303   9 years campbell Some preliminary checking of cost labelling properties in RTLabs.
(edit) @2302   9 years garnier Finally proved associativity of addition on bitvectors. Rejoice.
(edit) @2301   9 years mulligan Trying to get the big proof working again
(edit) @2300   9 years campbell Cut out some dead ends and add some comments to the last commit.
(edit) @2299   9 years campbell Soundly labelled RTLabs structured traces are "unrepeating".
(edit) @2298   9 years garnier WIP: converting switch removal from Z to bitvectors. Does not compile, …
(edit) @2297   9 years campbell Nicer form of steps until cost label bound in RTLabs.
(edit) @2296   9 years campbell Tidy up some ill-placed definitions.
(edit) @2295   9 years campbell Start on showing unrepeating property of RTLabs structured traces: …
(edit) @2294   9 years campbell Make RTLabs cost spec deterministic.
(edit) @2293   9 years campbell Add instruction pointer for call states in RTLabs.
(edit) @2292   9 years campbell More RTLabs invariants.
(edit) @2291   9 years campbell Disable switch removal in for now.
(edit) @2290   9 years campbell Remove jump tables from RTLabs -> RTL.
(edit) @2289   9 years campbell Update alias
(edit) @2288   9 years campbell Remove jumptables from RTLabs. :(
(edit) @2287   9 years campbell RTLabs typing for loads and stores.
(edit) @2286   9 years tranquil Big update! * merge of all _paolo variants * reorganised some depends …
(edit) @2285   9 years sacerdot 1. duplicated code erased 2. POP case finished up to lemmas on …
(edit) @2284   9 years sacerdot PUSH finished
(edit) @2283   9 years mulligan Work from today.
(edit) @2282   9 years sacerdot PUSH case almost finished
(edit) @2281   9 years sacerdot
(edit) @2280   9 years sacerdot Proof repaired.
(edit) @2279   9 years sacerdot 1. Bug fixed in the semantics of PUSH (no indirection performed) 2. …
(edit) @2278   9 years mulligan Half of JC case complete
(edit) @2277   9 years tranquil * replaced incorrect use of subvector_with
(edit) @2276   9 years sacerdot
(edit) @2275   9 years tranquil * moved around some code ( does not depend on ByteValues?.ma …
(edit) @2274   9 years sacerdot Dead code commented out and code out of place moved to
(edit) @2273   9 years sacerdot 1. lemmas moved from all files to 2. most of the lemmas in …
(edit) @2272   9 years mulligan Changed proof strategy for main lemma after noticed that the current …
(edit) @2271   9 years garnier Proof of correction for the semantics of expressions under memory …
(edit) @2270   9 years mulligan Bug spotted and fixed in write_at_stack_pointer
(edit) @2269   9 years sacerdot Proof completely repaired up to …
(edit) @2268   9 years mulligan Bug spotted in instruction_size (lookup_datalabels cannot just be a …
(edit) @2267   9 years sacerdot Call is now proved using the new strategy.
(edit) @2266   9 years sacerdot All daemons closed in Jmp case.
(edit) @2265   9 years sacerdot Commented out code removed.
(edit) @2264   9 years sacerdot 1) Major change: we now always use the efficient way of resolving …
(edit) @2263   9 years garnier Finished proving semantics preservation under memory injections for …
(edit) @2262   9 years mulligan Changes from today.
(edit) @2261   9 years mulligan Resolved conflict
(edit) @2260   9 years sacerdot Now we use the efficient lookup_address.
(edit) @2259   9 years mulligan For Claudio
(edit) @2258   9 years sacerdot 1. lemma generalized 2. automation replaced with expansion to make …
(edit) @2257   9 years mulligan Daemon in SETB case closed.
(edit) @2256   9 years mulligan MOV and MOVX cases complete
(edit) @2255   9 years garnier Had to modify the definition of memory injections to prove that …
(edit) @2254   9 years campbell Fix up invariants in Cminor semantics.
(edit) @2253   9 years campbell Cminor to RTLabs is now a total function.
(edit) @2252   9 years campbell Use the return statement invariant. Restructure the invariants for …
(edit) @2251   9 years campbell Add new invariant to Cminor that return typs should be respected.
(edit) @2250   9 years campbell Tidy up Clight to Cminor pass a bit.
(edit) @2249   9 years campbell Tweak Cminor invariant to be slightly more readable/extendable.
(edit) @2248   9 years sacerdot Final changes. All daemons removed, but the real one (open goal).
(edit) @2247   9 years mulligan Work on the MOV instruction from today and bug fixes in set_arg_1.
(edit) @2246   9 years sacerdot Final technical lemma streamlined. Maybe it can be streamlined even more.
(edit) @2245   9 years sacerdot Temporary commit to have a backtracking point. Yes, I know this breaks …
(edit) @2244   9 years sacerdot Technical lemma used.
(edit) @2243   9 years sacerdot One more lemma streamlined, one to go + one to be completed.
(edit) @2242   9 years sacerdot jump_expansion_step3 streamlined
(edit) @2241   9 years boender - merged changes by Claudio
(edit) @2240   9 years sacerdot All "interesting" technical lemmas singled out, proofs to be uncommented.
(edit) @2239   9 years sacerdot One more lemma polished.
(edit) @2238   9 years sacerdot Taken out lemma integrated.
(edit) @2237   9 years sacerdot Even shorter version.
(edit) @2236   9 years sacerdot One subproof made shorter.
(edit) @2235   9 years sacerdot Towards smaller proofs.
(edit) @2234   9 years garnier Progress on proving semantics preservation under memory injections.
(edit) @2233   9 years tranquil * completed update of ERTL semantics * some minor changes in joint …
(edit) @2232   9 years campbell Remove unused block structure in Cminor.
(edit) @2231   9 years garnier Various tiny lemmas used in at least two files in the fornt-end.
(edit) @2230   9 years sacerdot Glue proof maximally simplified or sort of.
(edit) @2229   9 years sacerdot More cleaning up, ready for more aggressive factorization.
(edit) @2228   9 years sacerdot Further proof reduction.
(edit) @2227   9 years garnier * New version of the switch removal algorithm, described at the top of …
(edit) @2226   9 years campbell Whole program proof.
(edit) @2225   9 years sacerdot Minor and major improvements everywhere, shortened proofs.
