Library mcertikos.proc.CVOpGenSpec


This file provide the contextual refinement proof between MBoot layer and MALInit layer
Require Import Coqlib.
Require Import Errors.
Require Import AST.
Require Import Integers.
Require Import Floats.
Require Import Op.
Require Import Asm.
Require Import Events.
Require Import Globalenvs.
Require Import Smallstep.
Require Import Values.
Require Import Memory.
Require Import Maps.
Require Import AuxLemma.
Require Import FlatMemory.
Require Import AuxStateDataType.
Require Import Constant.
Require Import GlobIdent.
Require Import RealParams.
Require Import AsmImplLemma.
Require Import GenSem.
Require Import PrimSemantics.

Require Import liblayers.logic.PTreeModules.
Require Import liblayers.logic.LayerLogicImpl.
Require Import liblayers.compcertx.Stencil.
Require Import liblayers.compcertx.MakeProgram.
Require Import liblayers.compat.CompatLayers.
Require Import liblayers.compat.CompatGenSem.
Require Import compcert.cfrontend.Ctypes.
Require Import Conventions.

Require Import AbstractDataType.

Require Import PCVIntro.
Require Import ObjCV.

Local Open Scope string_scope.
Local Open Scope error_monad_scope.
Local Open Scope Z_scope.

Definition of the low level specification

Section SPECIFICATION.

  Context `{real_params: RealParams}.
  Context `{multi_oracle_prop: MultiOracleProp}.

  Notation LDATA := RData.

  Notation LDATAOps := (cdata LDATA).

  Inductive ipc_send_body_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps):=
  | ipc_send_body_spec_low_intro s (WB: _Prop) m´0 labd labd´ fromid vaddr rcount acount:
      ipc_send_body_spec (Int.unsigned fromid) (Int.unsigned vaddr)
                         (Int.unsigned rcount) labd = Some (labd´, Int.unsigned acount)
      0 Int.unsigned fromid < num_chan
      kernel_mode labd
      high_level_invariant labd
      ipc_send_body_spec_low_step s WB (Vint fromid :: Vint vaddr :: Vint rcount :: nil) (m´0, labd) (Vint acount) (m´0, labd´).

  Inductive ipc_receive_body_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps):=
  | ipc_receive_body_spec_low_intro s (WB: _Prop) m´0 labd labd´ chid vaddr scount acount:
      ipc_receive_body_spec (Int.unsigned chid) (Int.unsigned vaddr)
                            (Int.unsigned scount) labd = Some (labd´, Int.unsigned acount)
      0 Int.unsigned chid < num_chan
      kernel_mode labd
      high_level_invariant labd
      ipc_receive_body_spec_low_step s WB (Vint chid :: Vint vaddr :: Vint scount :: nil) (m´0, labd) (Vint acount) (m´0, labd´).

  Inductive fifobbq_pool_init_spec_low_step `{StencilOps} `{Mem.MemoryModelOps} `{UseMemWithData mem}:
    sextcall_sem (mem := mwd LDATAOps):=
  | proc_init_spec_low_intro s (WB: _Prop) m´0 labd labd´ mbi_adr:
      fifobbq_pool_init_spec (Int.unsigned mbi_adr) labd = Some labd´
      kernel_mode labd
      high_level_invariant labd
      fifobbq_pool_init_spec_low_step s WB (Vint mbi_adr :: nil) (m´0, labd) Vundef (m´0, labd´).


  Section WITHMEM.

    Context `{Hstencil: Stencil}.
    Context `{Hmem: Mem.MemoryModel}.
    Context `{Hmwd: UseMemWithData mem}.

    Definition ipc_send_body_spec_low: compatsem LDATAOps :=
      csem ipc_send_body_spec_low_step (type_of_list_type (Tint32::Tint32::Tint32::nil)) Tint32.

    Definition ipc_receive_body_spec_low: compatsem LDATAOps :=
      csem ipc_receive_body_spec_low_step (type_of_list_type (Tint32::Tint32::Tint32::nil)) Tint32.

    Definition fifobbq_pool_init_spec_low: compatsem LDATAOps :=
      csem fifobbq_pool_init_spec_low_step (type_of_list_type (Tint32::nil)) Tvoid.


  End WITHMEM.

End SPECIFICATION.