Library mcertikos.devdrivers.IoApicGenSpec


This file provide the contextual refinement proof between DConsoleBufOp layer and DSerialIntro layer
Require Import Coqlib.
Require Import Errors.
Require Import AST.
Require Import Integers.
Require Import Floats.
Require Import Op.
Require Import Asm.
Require Import Events.
Require Import Globalenvs.
Require Import Smallstep.
Require Import Values.
Require Import Memory.
Require Import Maps.
Require Import AuxLemma.
Require Import FlatMemory.
Require Import AuxStateDataType.
Require Import Constant.
Require Import GlobIdent.
Require Import RealParams.
Require Import AsmImplLemma.
Require Import GenSem.

Require Import liblayers.logic.PTreeModules.
Require Import liblayers.logic.LayerLogicImpl.
Require Import liblayers.compcertx.Stencil.
Require Import liblayers.compcertx.MakeProgram.
Require Import liblayers.compat.CompatLayers.
Require Import liblayers.compat.CompatGenSem.
Require Import compcert.cfrontend.Ctypes.
Require Import Conventions.

Require Import DSerial.
Require Import ObjInterruptDriver.
Require Import AbstractDataType.
Require Import mCertiKOSType.

Local Open Scope string_scope.
Local Open Scope error_monad_scope.
Local Open Scope Z_scope.

Definition of the low level specification

Section SPECIFICATION.

  Context `{real_params: RealParams}.
  Context `{oracle_prop: MultiOracleProp}.

  Notation LDATA := RData.

  Notation LDATAOps := (cdata LDATA).

  Inductive ioapic_init_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps):=
  | ioapic_init_spec_low_intro s (WB: _Prop) m´0 labd labd´:
      ioapic_init_spec labd = Some labd´
      kernel_mode labd
      high_level_invariant labd
      ioapic_init_spec_low_step s WB nil (m´0, labd) Vundef (m´0, labd´).

  Inductive ioapic_enable_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps):=
  | ioapic_enable_spec_low_intro s (WB: _Prop) m´0 labd labd´ i l p t:
      ioapic_enable_spec (Int.unsigned i) (Int.unsigned l) (Int.unsigned p) (Int.unsigned t) labd = Some labd´
      kernel_mode labd
      high_level_invariant labd
      ioapic_enable_spec_low_step s WB (Vint i :: Vint l :: Vint p :: Vint t :: nil) (m´0, labd) Vundef (m´0, labd´).

  Inductive ioapic_mask_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps):=
  | ioapic_mask_spec_low_intro s (WB: _Prop) m´0 labd labd´ i:
      ioapic_mask_spec (Int.unsigned i) labd = Some labd´
      kernel_mode labd
      high_level_invariant labd
      ioapic_mask_spec_low_step s WB (Vint i :: nil) (m´0, labd) Vundef (m´0, labd´).

  Inductive ioapic_unmask_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps):=
  | ioapic_unmask_spec_low_intro s (WB: _Prop) m´0 labd labd´ i:
      ioapic_unmask_spec (Int.unsigned i) labd = Some labd´
      kernel_mode labd
      high_level_invariant labd
      ioapic_unmask_spec_low_step s WB (Vint i :: nil) (m´0, labd) Vundef (m´0, labd´).

  Section WITHMEM.

    Context `{Hstencil: Stencil}.
    Context `{Hmem: Mem.MemoryModelX}.
    Context `{Hmwd: UseMemWithData mem}.

    Definition ioapic_init_spec_low: compatsem LDATAOps :=
      csem ioapic_init_spec_low_step Tnil Tvoid.

    Definition ioapic_enable_spec_low: compatsem LDATAOps :=
      csem ioapic_enable_spec_low_step (type_of_list_type (Tint32 :: Tint32 :: Tint32 :: Tint32 :: nil)) Tvoid.

    Definition ioapic_mask_spec_low: compatsem LDATAOps :=
      csem ioapic_mask_spec_low_step (type_of_list_type (Tint32 :: nil)) Tvoid.

    Definition ioapic_unmask_spec_low: compatsem LDATAOps :=
      csem ioapic_unmask_spec_low_step (type_of_list_type (Tint32 :: nil)) Tvoid.

  End WITHMEM.

End SPECIFICATION.