• Top
    • Documentation
    • Books
    • Boolean-reasoning
    • Projects
    • Debugging
    • Community
    • Std
    • Proof-automation
    • Macro-libraries
    • ACL2
    • Interfacing-tools
    • Hardware-verification
    • Software-verification
      • Kestrel-books
        • Crypto-hdwallet
        • Apt
        • Error-checking
        • Fty-extensions
        • Isar
        • Kestrel-utilities
        • Set
        • C
          • Syntax-for-tools
          • Atc
          • Transformation-tools
          • Language
            • Abstract-syntax
            • Integer-ranges
            • Implementation-environments
              • Integer-format-templates
                • Integer-format
                • Uinteger-sinteger-bit-roles-wfp
                • Sinteger-format
                • Uinteger-format
                • Sinteger-format->min
                • Integer-format-inc-sign-tcnpnt
                • Sinteger-bit-role
                • Sinteger-bit-roles-wfp
                  • Uinteger-bit-role
                  • Uinteger-bit-roles-wfp
                  • Uinteger+sinteger-format
                  • Sinteger-bit-roles-value-count
                  • Uinteger-bit-roles-value-count
                  • Sinteger-bit-roles-inc-n-and-sign
                  • Uinteger-bit-roles-inc-n
                  • Sinteger-format-inc-sign-tcnpnt
                  • Sinteger-bit-roles-inc-n
                  • Uinteger-bit-roles-exponents
                  • Sinteger-bit-roles-exponents
                  • Sinteger-format->max
                  • Integer-format->bit-size
                  • Uinteger-format->max
                  • Sinteger-bit-roles-sign-count
                  • Integer-format->signed-min
                  • Uinteger-format-inc-npnt
                  • Integer-format->unsigned-max
                  • Integer-format->signed-max
                  • Uinteger-bit-role-list
                  • Sinteger-bit-role-list
                  • Uinteger-sinteger-bit-roles-wfp-of-inc-n-and-sign
                • Ienv
                • Integer-formats
                • Ienv-ushort-rangep
                • Ienv-ulong-rangep
                • Ienv-ullong-rangep
                • Ienv-uint-rangep
                • Ienv-uchar-rangep
                • Ienv-sshort-rangep
                • Ienv-slong-rangep
                • Ienv-sllong-rangep
                • Ienv-sint-rangep
                • Ienv-schar-rangep
                • Ienv-char-rangep
                • Ienv->schar-min
                • Ienv->schar-max
                • Ienv->char-size
                • Ienv->char-min
                • Ienv->char-max
                • Ienv->uchar-max
                • Ienv->short-bit-size
                • Ienv->long-bit-size
                • Ienv->llong-bit-size
                • Ienv->int-bit-size
                • Ienv->short-byte-size
                • Ienv->long-byte-size
                • Ienv->llong-byte-size
                • Ienv->int-byte-size
                • Versions
                • Ienv->ushort-max
                • Ienv->ullong-max
                • Ienv->sshort-min
                • Ienv->sllong-min
                • Ienv->sllong-max
                • Ienv->bool-byte-size
                • Ienv->bool-bit-size
                • Ienv->ulong-max
                • Ienv->uint-max
                • Ienv->sshort-max
                • Ienv->slong-min
                • Ienv->slong-max
                • Ienv->sint-min
                • Ienv->sint-max
                • Schar-formats
                • Char-formats
                • Uchar-formats
                • Signed-formats
                • Bool-formats
              • Dynamic-semantics
              • Static-semantics
              • Grammar
              • Types
              • Integer-formats-definitions
              • Computation-states
              • Portable-ascii-identifiers
              • Values
              • Integer-operations
              • Object-designators
              • Operations
              • Errors
              • Tag-environments
              • Function-environments
              • Character-sets
              • Flexible-array-member-removal
              • Arithmetic-operations
              • Pointer-operations
              • Real-operations
              • Array-operations
              • Scalar-operations
              • Structure-operations
            • Representation
            • Insertion-sort
            • Pack
          • Soft
          • Bv
          • Imp-language
          • Ethereum
          • Event-macros
          • Java
          • Riscv
          • Bitcoin
          • Zcash
          • Yul
          • ACL2-programming-language
          • Prime-fields
          • Json
          • Syntheto
          • File-io-light
          • Cryptography
          • Number-theory
          • Axe
          • Lists-light
          • Builtins
          • Solidity
          • Helpers
          • Htclient
          • Typed-lists-light
          • Arithmetic-light
        • X86isa
        • Axe
        • Execloader
      • Math
      • Testing-utilities
    • Integer-format-templates

    Sinteger-bit-roles-wfp

    Check if a list of roles of signed integer bits is well-formed.

    Signature
    (sinteger-bit-roles-wfp roles) → yes/no
    Arguments
    roles — Guard (sinteger-bit-role-listp roles).
    Returns
    yes/no — Type (booleanp yes/no).

    According to [C17:6.2.6.2/2], there must be exactly one value bit for each exponent in a range from 0 to M-1 for some M. We express that by saying that, after collecting the exponents and sorting them, we must have the list (0 1 ... M-1), where M is the number of collected exponents. Note that this prohibits duplicates. We also require M to be non-zero, although this is not explicated in [C17].

    [C17:6.2.6.2/2] also says that there must be exactly one sign bit, i.e. the number of sign bits must be 1.

    Definitions and Theorems

    Function: sinteger-bit-roles-wfp

    (defun sinteger-bit-roles-wfp (roles)
      (declare (xargs :guard (sinteger-bit-role-listp roles)))
      (b* ((exponents (sinteger-bit-roles-exponents roles))
           (m (len exponents))
           ((when (= m 0)) nil)
           (sorted-exponents (insertion-sort exponents))
           ((unless (equal sorted-exponents
                           (integers-from-to 0 (1- m))))
            nil)
           ((unless (= (sinteger-bit-roles-sign-count roles)
                       1))
            nil))
        t))

    Theorem: booleanp-of-sinteger-bit-roles-wfp

    (defthm booleanp-of-sinteger-bit-roles-wfp
      (b* ((yes/no (sinteger-bit-roles-wfp roles)))
        (booleanp yes/no))
      :rule-classes :rewrite)

    Theorem: posp-of-sinteger-bit-roles-value-count-when-wfp

    (defthm posp-of-sinteger-bit-roles-value-count-when-wfp
      (implies (sinteger-bit-roles-wfp roles)
               (posp (sinteger-bit-roles-value-count roles)))
      :rule-classes (:rewrite :type-prescription))

    Theorem: len-gt-1-when-sinteger-bit-roles-wfp

    (defthm len-gt-1-when-sinteger-bit-roles-wfp
      (implies (sinteger-bit-roles-wfp roles)
               (> (len roles) 1)))

    Theorem: sinteger-bit-roles-wfp-of-sinteger-bit-role-list-fix-roles

    (defthm sinteger-bit-roles-wfp-of-sinteger-bit-role-list-fix-roles
      (equal (sinteger-bit-roles-wfp (sinteger-bit-role-list-fix roles))
             (sinteger-bit-roles-wfp roles)))

    Theorem: sinteger-bit-roles-wfp-sinteger-bit-role-list-equiv-congruence-on-roles

    (defthm
     sinteger-bit-roles-wfp-sinteger-bit-role-list-equiv-congruence-on-roles
     (implies (sinteger-bit-role-list-equiv roles roles-equiv)
              (equal (sinteger-bit-roles-wfp roles)
                     (sinteger-bit-roles-wfp roles-equiv)))
     :rule-classes :congruence)