Library mcertikos.mm.PTBitGenSpec

***********************************************************************
*                                                                     *
*            The CertiKOS Certified Kit Operating System              *
*                                                                     *
*                   The FLINT Group, Yale University                  *
*                                                                     *
*  Copyright The FLINT Group, Yale University.  All rights reserved.  *
*  This file is distributed under the terms of the Yale University    *
*  Non-Commercial License Agreement.                                  *
*                                                                     *
*********************************************************************** 


This file provide the contextual refinement proof between MBoot layer and MALInit layer
Require Import Coqlib.
Require Import Errors.
Require Import AST.
Require Import Integers.
Require Import Floats.
Require Import Op.
Require Import Asm.
Require Import Events.
Require Import Globalenvs.
Require Import Smallstep.
Require Import Values.
Require Import Memory.
Require Import Maps.
Require Import AuxLemma.
Require Import FlatMemory.
Require Import AuxStateDataType.
Require Import Constant.
Require Import GlobIdent.
Require Import RealParams.
Require Import AsmImplLemma.
Require Import GenSem.
Require Import PrimSemantics.
Require Import MPTInit.
Require Import AbstractDataType.

Require Import liblayers.logic.PTreeModules.
Require Import liblayers.logic.LayerLogicImpl.
Require Import liblayers.compcertx.Stencil.
Require Import liblayers.compcertx.MakeProgram.
Require Import liblayers.compat.CompatLayers.
Require Import liblayers.compat.CompatGenSem.
Require Import compcert.cfrontend.Ctypes.

Local Open Scope string_scope.
Local Open Scope error_monad_scope.
Local Open Scope Z_scope.

Definition of the refinement relation

Section PTBITGEN_DEFINE.

  Context `{real_params: RealParams}.

  Notation LDATA := RData.

  Notation LDATAOps := (cdata LDATA).

Hypotheses that the implementations satisfy the specifications

  Inductive isused_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps) :=
    isused_spec_low_intro s (WB: _Prop) (m´0: mwd LDATAOps) b0 n v:
      find_symbol s PTP_LOC = Some b0
      Mem.load Mint32 m´0 b0 ((Int.unsigned n) × 4) = Some (Vint v) →
      0 (Int.unsigned n) < num_proc
      kernel_mode (snd m´0) →
      isused_spec_low_step s WB (Vint n :: nil) m´0 (Vint v) m´0.

  Inductive setbit_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps) :=
    setbit_spec_low_intro s (WB: _Prop) (m´0 m0: mwd LDATAOps) b0 n v:
      find_symbol s PTP_LOC = Some b0
      Mem.store Mint32 m´0 b0 (Int.unsigned n × 4) (Vint v) = Some m0
      0 (Int.unsigned n) < num_proc
      kernel_mode (snd m´0) →
      setbit_spec_low_step s WB (Vint n :: Vint v :: nil) m´0 Vundef m0.

  Section WITHMEM.

    Context `{Hstencil: Stencil}.
    Context `{Hmem: Mem.MemoryModel}.
    Context `{Hmwd: UseMemWithData mem}.

    Definition isused_spec_low: compatsem LDATAOps :=
      csem isused_spec_low_step (type_of_list_type (Tint32::nil)) Tint32.

    Definition setbit_spec_low: compatsem LDATAOps :=
      csem setbit_spec_low_step (type_of_list_type (Tint32::Tint32::nil)) Tvoid.

    Definition MSpec : compatlayer LDATAOps :=
      is_used isused_spec_low
               set_bit setbit_spec_low.

    Definition MVar : compatlayer LDATAOps :=
      PTP_LOC mkglobvar (Tarray Tint32 (num_proc × 4) (mk_attr false None))
              (Init_space (num_proc × 4) :: nil) false false.

  End WITHMEM.

End PTBITGEN_DEFINE.