Library mcertikos.virt.intel.EPTOpGenSpec

***********************************************************************
*                                                                     *
*            The CertiKOS Certified Kit Operating System              *
*                                                                     *
*                   The FLINT Group, Yale University                  *
*                                                                     *
*  Copyright The FLINT Group, Yale University.  All rights reserved.  *
*  This file is distributed under the terms of the Yale University    *
*  Non-Commercial License Agreement.                                  *
*                                                                     *
*********************************************************************** 


This file provide the contextual refinement proof between MBoot layer and MALInit layer
Require Import Coqlib.
Require Import Errors.
Require Import AST.
Require Import Integers.
Require Import Floats.
Require Import Op.
Require Import Asm.
Require Import Events.
Require Import Globalenvs.
Require Import Smallstep.
Require Import Values.
Require Import Memory.
Require Import Maps.
Require Import AuxLemma.
Require Import FlatMemory.
Require Import AuxStateDataType.
Require Import Constant.
Require Import GlobIdent.
Require Import RealParams.
Require Import AsmImplLemma.
Require Import GenSem.

Require Import liblayers.logic.PTreeModules.
Require Import liblayers.logic.LayerLogicImpl.
Require Import liblayers.compcertx.Stencil.
Require Import liblayers.compcertx.MakeProgram.
Require Import liblayers.compat.CompatLayers.
Require Import liblayers.compat.CompatGenSem.
Require Import compcert.cfrontend.Ctypes.
Require Import Conventions.
Require Import VEPTIntro.
Require Import AbstractDataType.
Require Import mCertiKOSType.

Local Open Scope string_scope.
Local Open Scope error_monad_scope.
Local Open Scope Z_scope.

Definition of the low level specification

Section SPECIFICATION.

  Context `{real_params: RealParams}.

  Notation LDATA := RData.

  Notation LDATAOps := (cdata LDATA).

  Inductive ept_init_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps):=
  | ept_init_spec_low_intro s (WB: _Prop) m´0 labd labd´ mbi_adr:
      ept_init_spec (Int.unsigned mbi_adr) labd = Some labd´
      kernel_mode labd
      high_level_invariant labd
      ept_init_spec_low_step s WB (Vint mbi_adr :: nil) (m´0, labd) Vundef (m´0, labd´).

  Inductive ept_get_page_entry_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps):=
  | ept_get_page_entry_spec_low_intro s (WB: _Prop) m´0 labd gpa hpa:
      ept_get_page_entry_spec (Int.unsigned gpa) labd = Some (Int.unsigned hpa) →
      kernel_mode labd
      high_level_invariant labd
      ept_get_page_entry_spec_low_step s WB (Vint gpa :: nil) (m´0, labd) (Vint hpa) (m´0, labd).

  Inductive ept_set_page_entry_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps):=
  | ept_set_page_entry_spec_low_intro s (WB: _Prop) m´0 labd labd´ gpa hpa:
      ept_set_page_entry_spec (Int.unsigned gpa) (Int.unsigned hpa) labd = Some labd´
      kernel_mode labd
      high_level_invariant labd
      ept_set_page_entry_spec_low_step s WB (Vint gpa :: Vint hpa :: nil) (m´0, labd) Vundef (m´0, labd´).

  Inductive ept_add_mapping_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps):=
  | ept_add_mapping_spec_low_intro s (WB: _Prop) m´0 labd labd´ gpa hpa memtype res:
      ept_add_mapping_spec (Int.unsigned gpa) (Int.unsigned hpa)
                           (Int.unsigned memtype) labd = Some (labd´, Int.unsigned res)
      kernel_mode labd
      high_level_invariant labd
      ept_add_mapping_spec_low_step s WB (Vint gpa :: Vint hpa :: Vint memtype :: nil) (m´0, labd) (Vint res) (m´0, labd´).

  Inductive ept_invalidate_mappings_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sprimcall_sem (mem := mwd LDATAOps):=
  | ept_invalidate_mappings_spec_low_intro s m´0 rs b:
      find_symbol s ept_invalidate_mappings = Some b
      rs PC = Vptr b Int.zero
      asm_invariant (mem := mwd LDATAOps) s rs m´0
      kernel_mode (snd m´0) →
      let rs´ := (undef_regs (CR ZF :: CR CF :: CR PF :: CR SF :: CR OF
                                 :: IR EDX :: RA :: nil)
                             (undef_regs (List.map preg_of destroyed_at_call) rs)) in
      ept_invalidate_mappings_spec_low_step s rs m´0 (rs´#PC <- (rs#RA)#EAX <- Vzero) m´0.

  Section WITHMEM.

    Context `{Hstencil: Stencil}.
    Context `{Hmem: Mem.MemoryModel}.
    Context `{Hmwd: UseMemWithData mem}.

    Definition ept_init_spec_low: compatsem LDATAOps :=
      csem ept_init_spec_low_step (type_of_list_type (Tint32::nil)) Tvoid.

    Definition ept_get_page_entry_spec_low: compatsem LDATAOps :=
      csem ept_get_page_entry_spec_low_step (type_of_list_type (Tint32::nil)) Tint32.

    Definition ept_set_page_entry_spec_low: compatsem LDATAOps :=
      csem ept_set_page_entry_spec_low_step (type_of_list_type (Tint32::Tint32::nil)) Tvoid.

    Definition ept_add_mapping_spec_low: compatsem LDATAOps :=
      csem ept_add_mapping_spec_low_step (type_of_list_type (Tint32::Tint32::Tint32::nil)) Tint32.

    Definition ept_invalidate_mappings_spec_low: compatsem LDATAOps :=
      asmsem_withsig ept_invalidate_mappings ept_invalidate_mappings_spec_low_step
                     (mksignature nil (Some AST.Tint) cc_default).

  End WITHMEM.

End SPECIFICATION.