

@1630

10 years 
campbell 
Remainder of freshness in Clight to Cminor pass.



@1629

10 years 
campbell 
Sort out most of the fresh names stuff in Clight to Cminor.



@1628

10 years 
campbell 
Show that the universe generated by Clight/fresh.ma is good.



@1627

10 years 
campbell 
Add some notions of freshness, and start using them for temporary …



@1626

10 years 
campbell 
Add extra type safety in front end. NB: critical freshness parts …



@1625

10 years 
mulligan 
before christmas



@1624

10 years 
mulligan 
commit for claudio



@1623

10 years 
mulligan 
strange matita issue



@1622

10 years 
mulligan 
to avoid conflicts, bug in typechecker?



@1621

10 years 
mulligan 
to prevent conflicts



@1620

10 years 
sacerdot 
One of the mutual cases of the open proof is practically finished.



@1619

10 years 
sacerdot 
Major advancement.



@1618

10 years 
campbell 
Minor updates due to recent changes.



@1617

10 years 
campbell 
Note stuff to do on structured traces.



@1616

10 years 
sacerdot 
Partially ported to new Matita syntax.
Because of some changes in …



@1615

10 years 
sacerdot 
Policy now depends on Assembly and not the other way around.



@1614

10 years 
boender 
 split policy from assembly



@1613

10 years 
sacerdot 
Coercion moved to Matita standard lib.



@1612

10 years 
sacerdot 
All library ported to new Matita lib (finally).



@1611

10 years 
sacerdot 
All of Cminor now compiles with the latest lib of Matita.



@1610

10 years 
sacerdot 
Ported to new lib.



@1609

10 years 
boender 
 added alias to ASM/BitVectorTrie
 removed double include from …



@1608

10 years 
sacerdot 
Porting to new library still in progress.



@1607

10 years 
sacerdot 
Porting to new library.



@1606

10 years 
sacerdot 
Porting to last library of Matita.



@1605

10 years 
sacerdot 
Porting to last standard library of Matita.



@1604

10 years 
mulligan 
for jaap



@1603

10 years 
sacerdot 
More proofs ported to new lib.



@1602

10 years 
mulligan 
giving up on fetch proofs for time being



@1601

10 years 
sacerdot 
Files ported to new version of the standard library.



@1600

10 years 
sacerdot 
utilities and ASM ported to the new standard library



@1599

10 years 
sacerdot 
Start of merging of stuff into the standard library of Matita.



@1598

10 years 
mulligan 
changes over the last couple of days



@1597

10 years 
mulligan 
fixed fetch for jaap



@1596

10 years 
campbell 
RTLabs structured traces: sort out passing of termination proofs around.



@1595

10 years 
campbell 
We don't need an explicit termination count when building traces.



@1594

10 years 
campbell 
Rework handling of termination information in RTLabs structured traces …



@1593

10 years 
boender 
 cleaned up Assembly, moved some definitions elsewhere



@1592

10 years 
boender 
 updated definitions to work with programs of maximum 2^{16 instructions}



@1591

10 years 
mulligan 
work from today



@1588

10 years 
sacerdot 
All goals generated by Russell for execute_1* are now closed, mostly …



@1587

10 years 
mulligan 
changes from today, including removing indexing of problematic …



@1586

10 years 
campbell 
RTLabs structured traces: cost labels after jumps.



@1583

10 years 
campbell 
More on RTLabs structured traces.
Fixed mistake in structure trace …



@1582

10 years 
mulligan 
more added to the proof of execute_1_preinstruction  ~260 cases now …



@1581

10 years 
mulligan 
Dangling de Bruijn pointer when trying to propagate russell to set_arg_1



@1579

10 years 
mulligan 
Finished proof with simpler statement, making everything a lot nicer



@1578

10 years 
boender 
 proof of termination of policy completed (needs some cleanup work …



@1577

10 years 
mulligan 
A lot more cases added to the proof at the bottom of …



@1576

10 years 
mulligan 
big changes to proofs, just two small cases remain and a few …



@1575

10 years 
mulligan 
Changes to specifications on execute functions



@1574

10 years 
campbell 
A little more progress on traces on RTLabs.



@1573

10 years 
mulligan 
more complicated than it appears :(



@1571

10 years 
mulligan 
small changes



@1570

10 years 
sacerdot 
Dependent type crazyness.



@1567

10 years 
mulligan 
more work on big proof, 2.5 cases left



@1566

10 years 
campbell 
Pacify changes to destruct tactic.



@1565

10 years 
campbell 
Note that RTLabs ought to classify branches as "jumps" (in the …



@1564

10 years 
sacerdot 
Commit where we use a dependently typed version of bigops.
I am now …



@1563

10 years 
campbell 
A little progress on constructing RTLabs structured traces.



@1562

10 years 
mulligan 
new version of assembly, fixed conflict in positivemap.ma, changed …



@1561

10 years 
sacerdot 
More dependent types to accomodate the statement.



@1560

10 years 
sacerdot 
Complete reimplementation that:
1) assumes no code before the first …



@1559

10 years 
campbell 
Add a notion of flat traces with evidence for RTLabs.



@1558

10 years 
sacerdot 
Snapshot before moving things to ASMCosts.ma.



@1557

10 years 
sacerdot 
Byte => costlabel



@1556

10 years 
mulligan 
submitting to avoid conflicts



@1555

10 years 
boender 
 changes to assembly
 added lookup to PositiveMap?
 lightly changed …



@1554

10 years 
sacerdot 
Major progress in the proof.



@1553

10 years 
boender 
 added lookup_opt_lookup lemma



@1552

10 years 
campbell 
Update RTLabs structured trace definition.



@1551

10 years 
campbell 
Functions to translate between backend and frontend values.



@1550

10 years 
sacerdot 
Repaired after use of Russell for execute_1.



@1549

10 years 
mulligan 
removed cruft from costsproof.ma file so claudio can work in parallel



@1548

10 years 
sacerdot 
…



@1547

10 years 
sacerdot 
Invariant on cost of one execution step strengthened.



@1545

10 years 
campbell 
Use pointer record in frontend.



@1544

10 years 
sacerdot 
StructuredTraces? inhabited for object code.



@1541

10 years 
mulligan 
interpret.ma now compiles



@1540

10 years 
mulligan 
changes to proof in interrupt.ma



@1538

10 years 
mulligan 
changes to execute_1_0 proof



@1537

10 years 
campbell 
A preliminary definition of the abstract status record for RTLabs.



@1536

10 years 
campbell 
Use predicates throughout the structured traces.



@1535

10 years 
campbell 
Make RTLabs semantics use knowledge that the next instruction always …



@1534

10 years 
mulligan 
committing my changes to interpret to prevent any further conflicts



@1533

10 years 
sacerdot 
Proof of execute_1 with Russell completed (up to some daemon used before).



@1532

10 years 
campbell 
Remove jump classification from structured traces.



@1531

10 years 
campbell 
A notion of abstract structured traces.



@1530

10 years 
campbell 
Update due to Russell changes.



@1529

10 years 
campbell 
Update RTLabs to RTL with unary operation types.



@1528

10 years 
campbell 
Update most of Assembly.ma with new syntax and identifier maps.
Change …



@1527

10 years 
sacerdot 
More on Russell.



@1526

10 years 
sacerdot 
Using Russell to prove some properties.



@1524

10 years 
boender 
 adapted files to new Matita syntax



@1523

10 years 
campbell 
Separate out positive and Z definitions from extralib.ma.
Minor syntax …



@1522

10 years 
mulligan 
changes to preamble and lin to asm pass, resolved conflict in interpret



@1521

10 years 
sacerdot 
Syntax change in Matita: change what where => change where what.



@1520

10 years 
campbell 
Generate cost labels with correct type.



@1519

10 years 
campbell 
More syntax updates.



@1518

10 years 
campbell 
Update to new syntax.


