src/Pure/Isar/proof.ML
author wenzelm
Fri, 12 Dec 2008 22:13:13 +0100
changeset 29090 bbfac5fd8d78
parent 28981 c9cf71e161b9
child 29346 fe6843aa4f5f
permissions -rw-r--r--
global_qed: refrain from ProofContext.auto_bind_facts, to avoid
polluting the final result context with bindings involving loose
free variables;
     1 (*  Title:      Pure/Isar/proof.ML
     2     Author:     Markus Wenzel, TU Muenchen
     3 
     4 The Isar/VM proof language interpreter: maintains a structured flow of
     5 context elements, goals, refinements, and facts.
     6 *)
     7 
     8 signature PROOF =
     9 sig
    10   type context = Context.proof
    11   type method = Method.method
    12   type state
    13   val init: context -> state
    14   val level: state -> int
    15   val assert_bottom: bool -> state -> state
    16   val context_of: state -> context
    17   val theory_of: state -> theory
    18   val map_context: (context -> context) -> state -> state
    19   val map_contexts: (context -> context) -> state -> state
    20   val add_binds_i: (indexname * term option) list -> state -> state
    21   val put_thms: bool -> string * thm list option -> state -> state
    22   val the_facts: state -> thm list
    23   val the_fact: state -> thm
    24   val put_facts: thm list option -> state -> state
    25   val assert_forward: state -> state
    26   val assert_chain: state -> state
    27   val assert_forward_or_chain: state -> state
    28   val assert_backward: state -> state
    29   val assert_no_chain: state -> state
    30   val enter_forward: state -> state
    31   val goal_message: (unit -> Pretty.T) -> state -> state
    32   val get_goal: state -> context * (thm list * thm)
    33   val schematic_goal: state -> bool
    34   val show_main_goal: bool ref
    35   val verbose: bool ref
    36   val pretty_state: int -> state -> Pretty.T list
    37   val pretty_goals: bool -> state -> Pretty.T list
    38   val refine: Method.text -> state -> state Seq.seq
    39   val refine_end: Method.text -> state -> state Seq.seq
    40   val refine_insert: thm list -> state -> state
    41   val goal_tac: thm -> int -> tactic
    42   val refine_goals: (context -> thm -> unit) -> context -> thm list -> state -> state Seq.seq
    43   val match_bind: (string list * string) list -> state -> state
    44   val match_bind_i: (term list * term) list -> state -> state
    45   val let_bind: (string list * string) list -> state -> state
    46   val let_bind_i: (term list * term) list -> state -> state
    47   val fix: (Binding.T * string option * mixfix) list -> state -> state
    48   val fix_i: (Binding.T * typ option * mixfix) list -> state -> state
    49   val assm: Assumption.export ->
    50     (Attrib.binding * (string * string list) list) list -> state -> state
    51   val assm_i: Assumption.export ->
    52     ((Binding.T * attribute list) * (term * term list) list) list -> state -> state
    53   val assume: (Attrib.binding * (string * string list) list) list -> state -> state
    54   val assume_i: ((Binding.T * attribute list) * (term * term list) list) list ->
    55     state -> state
    56   val presume: (Attrib.binding * (string * string list) list) list -> state -> state
    57   val presume_i: ((Binding.T * attribute list) * (term * term list) list) list ->
    58     state -> state
    59   val def: (Attrib.binding * ((Binding.T * mixfix) * (string * string list))) list ->
    60     state -> state
    61   val def_i: ((Binding.T * attribute list) *
    62     ((Binding.T * mixfix) * (term * term list))) list -> state -> state
    63   val chain: state -> state
    64   val chain_facts: thm list -> state -> state
    65   val get_thmss: state -> (Facts.ref * Attrib.src list) list -> thm list
    66   val note_thmss: (Attrib.binding * (Facts.ref * Attrib.src list) list) list -> state -> state
    67   val note_thmss_i: ((Binding.T * attribute list) *
    68     (thm list * attribute list) list) list -> state -> state
    69   val from_thmss: ((Facts.ref * Attrib.src list) list) list -> state -> state
    70   val from_thmss_i: ((thm list * attribute list) list) list -> state -> state
    71   val with_thmss: ((Facts.ref * Attrib.src list) list) list -> state -> state
    72   val with_thmss_i: ((thm list * attribute list) list) list -> state -> state
    73   val using: ((Facts.ref * Attrib.src list) list) list -> state -> state
    74   val using_i: ((thm list * attribute list) list) list -> state -> state
    75   val unfolding: ((Facts.ref * Attrib.src list) list) list -> state -> state
    76   val unfolding_i: ((thm list * attribute list) list) list -> state -> state
    77   val invoke_case: string * string option list * Attrib.src list -> state -> state
    78   val invoke_case_i: string * string option list * attribute list -> state -> state
    79   val begin_block: state -> state
    80   val next_block: state -> state
    81   val end_block: state -> state
    82   val proof: Method.text option -> state -> state Seq.seq
    83   val defer: int option -> state -> state Seq.seq
    84   val prefer: int -> state -> state Seq.seq
    85   val apply: Method.text -> state -> state Seq.seq
    86   val apply_end: Method.text -> state -> state Seq.seq
    87   val local_goal: (context -> ((string * string) * (string * thm list) list) -> unit) ->
    88     (theory -> 'a -> attribute) ->
    89     (context * 'b list -> context * (term list list * (context -> context))) ->
    90     string -> Method.text option -> (thm list list -> state -> state Seq.seq) ->
    91     ((Binding.T * 'a list) * 'b) list -> state -> state
    92   val local_qed: Method.text option * bool -> state -> state Seq.seq
    93   val theorem: Method.text option -> (thm list list -> context -> context) ->
    94     (string * string list) list list -> context -> state
    95   val theorem_i: Method.text option -> (thm list list -> context -> context) ->
    96     (term * term list) list list -> context -> state
    97   val global_qed: Method.text option * bool -> state -> context
    98   val local_terminal_proof: Method.text * Method.text option -> state -> state Seq.seq
    99   val local_default_proof: state -> state Seq.seq
   100   val local_immediate_proof: state -> state Seq.seq
   101   val local_done_proof: state -> state Seq.seq
   102   val local_skip_proof: bool -> state -> state Seq.seq
   103   val global_terminal_proof: Method.text * Method.text option -> state -> context
   104   val global_default_proof: state -> context
   105   val global_immediate_proof: state -> context
   106   val global_done_proof: state -> context
   107   val global_skip_proof: bool -> state -> context
   108   val have: Method.text option -> (thm list list -> state -> state Seq.seq) ->
   109     (Attrib.binding * (string * string list) list) list -> bool -> state -> state
   110   val have_i: Method.text option -> (thm list list -> state -> state Seq.seq) ->
   111     ((Binding.T * attribute list) * (term * term list) list) list -> bool -> state -> state
   112   val show: Method.text option -> (thm list list -> state -> state Seq.seq) ->
   113     (Attrib.binding * (string * string list) list) list -> bool -> state -> state
   114   val show_i: Method.text option -> (thm list list -> state -> state Seq.seq) ->
   115     ((Binding.T * attribute list) * (term * term list) list) list -> bool -> state -> state
   116   val is_relevant: state -> bool
   117   val future_proof: (state -> ('a * context) future) -> state -> 'a future * context
   118 end;
   119 
   120 structure Proof: PROOF =
   121 struct
   122 
   123 type context = Context.proof;
   124 type method = Method.method;
   125 
   126 
   127 (** proof state **)
   128 
   129 (* datatype state *)
   130 
   131 datatype mode = Forward | Chain | Backward;
   132 
   133 datatype state =
   134   State of node Stack.T
   135 and node =
   136   Node of
   137    {context: context,
   138     facts: thm list option,
   139     mode: mode,
   140     goal: goal option}
   141 and goal =
   142   Goal of
   143    {statement: (string * Position.T) * term list list * cterm,
   144       (*goal kind and statement (starting with vars), initial proposition*)
   145     messages: (unit -> Pretty.T) list,    (*persistent messages (hints etc.)*)
   146     using: thm list,                      (*goal facts*)
   147     goal: thm,                            (*subgoals ==> statement*)
   148     before_qed: Method.text option,
   149     after_qed:
   150       (thm list list -> state -> state Seq.seq) *
   151       (thm list list -> context -> context)};
   152 
   153 fun make_goal (statement, messages, using, goal, before_qed, after_qed) =
   154   Goal {statement = statement, messages = messages, using = using, goal = goal,
   155     before_qed = before_qed, after_qed = after_qed};
   156 
   157 fun make_node (context, facts, mode, goal) =
   158   Node {context = context, facts = facts, mode = mode, goal = goal};
   159 
   160 fun map_node f (Node {context, facts, mode, goal}) =
   161   make_node (f (context, facts, mode, goal));
   162 
   163 val init_context =
   164   ProofContext.set_stmt true #> ProofContext.reset_naming;
   165 
   166 fun init ctxt =
   167   State (Stack.init (make_node (init_context ctxt, NONE, Forward, NONE)));
   168 
   169 fun current (State st) = Stack.top st |> (fn Node node => node);
   170 fun map_current f (State st) = State (Stack.map_top (map_node f) st);
   171 fun map_all f (State st) = State (Stack.map_all (map_node f) st);
   172 
   173 
   174 
   175 (** basic proof state operations **)
   176 
   177 (* block structure *)
   178 
   179 fun open_block (State st) = State (Stack.push st);
   180 
   181 fun close_block (State st) = State (Stack.pop st)
   182   handle Empty => error "Unbalanced block parentheses";
   183 
   184 fun level (State st) = Stack.level st;
   185 
   186 fun assert_bottom b state =
   187   let val b' = (level state <= 2) in
   188     if b andalso not b' then error "Not at bottom of proof!"
   189     else if not b andalso b' then error "Already at bottom of proof!"
   190     else state
   191   end;
   192 
   193 
   194 (* context *)
   195 
   196 val context_of = #context o current;
   197 val theory_of = ProofContext.theory_of o context_of;
   198 
   199 fun map_context f =
   200   map_current (fn (ctxt, facts, mode, goal) => (f ctxt, facts, mode, goal));
   201 
   202 fun map_context_result f state =
   203   f (context_of state) ||> (fn ctxt => map_context (K ctxt) state);
   204 
   205 fun map_contexts f = map_all (fn (ctxt, facts, mode, goal) => (f ctxt, facts, mode, goal));
   206 
   207 val add_binds_i = map_context o ProofContext.add_binds_i;
   208 val put_thms = map_context oo ProofContext.put_thms;
   209 
   210 
   211 (* facts *)
   212 
   213 val get_facts = #facts o current;
   214 
   215 fun the_facts state =
   216   (case get_facts state of SOME facts => facts
   217   | NONE => error "No current facts available");
   218 
   219 fun the_fact state =
   220   (case the_facts state of [thm] => thm
   221   | _ => error "Single theorem expected");
   222 
   223 fun put_facts facts =
   224   map_current (fn (ctxt, _, mode, goal) => (ctxt, facts, mode, goal)) #>
   225   put_thms true (AutoBind.thisN, facts);
   226 
   227 fun these_factss more_facts (named_factss, state) =
   228   (named_factss, state |> put_facts (SOME (maps snd named_factss @ more_facts)));
   229 
   230 fun export_facts inner outer =
   231   (case get_facts inner of
   232     NONE => put_facts NONE outer
   233   | SOME thms =>
   234       thms
   235       |> ProofContext.export (context_of inner) (context_of outer)
   236       |> (fn ths => put_facts (SOME ths) outer));
   237 
   238 
   239 (* mode *)
   240 
   241 val get_mode = #mode o current;
   242 fun put_mode mode = map_current (fn (ctxt, facts, _, goal) => (ctxt, facts, mode, goal));
   243 
   244 val mode_name = (fn Forward => "state" | Chain => "chain" | Backward => "prove");
   245 
   246 fun assert_mode pred state =
   247   let val mode = get_mode state in
   248     if pred mode then state
   249     else error ("Illegal application of proof command in " ^ quote (mode_name mode) ^ " mode")
   250   end;
   251 
   252 val assert_forward = assert_mode (fn mode => mode = Forward);
   253 val assert_chain = assert_mode (fn mode => mode = Chain);
   254 val assert_forward_or_chain = assert_mode (fn mode => mode = Forward orelse mode = Chain);
   255 val assert_backward = assert_mode (fn mode => mode = Backward);
   256 val assert_no_chain = assert_mode (fn mode => mode <> Chain);
   257 
   258 val enter_forward = put_mode Forward;
   259 val enter_chain = put_mode Chain;
   260 val enter_backward = put_mode Backward;
   261 
   262 
   263 (* current goal *)
   264 
   265 fun current_goal state =
   266   (case current state of
   267     {context, goal = SOME (Goal goal), ...} => (context, goal)
   268   | _ => error "No current goal!");
   269 
   270 fun assert_current_goal g state =
   271   let val g' = can current_goal state in
   272     if g andalso not g' then error "No goal in this block!"
   273     else if not g andalso g' then error "Goal present in this block!"
   274     else state
   275   end;
   276 
   277 fun put_goal goal = map_current (fn (ctxt, using, mode, _) => (ctxt, using, mode, goal));
   278 
   279 val before_qed = #before_qed o #2 o current_goal;
   280 
   281 
   282 (* nested goal *)
   283 
   284 fun map_goal f g (State (Node {context, facts, mode, goal = SOME goal}, nodes)) =
   285       let
   286         val Goal {statement, messages, using, goal, before_qed, after_qed} = goal;
   287         val goal' = make_goal (g (statement, messages, using, goal, before_qed, after_qed));
   288       in State (make_node (f context, facts, mode, SOME goal'), nodes) end
   289   | map_goal f g (State (nd, node :: nodes)) =
   290       let val State (node', nodes') = map_goal f g (State (node, nodes))
   291       in map_context f (State (nd, node' :: nodes')) end
   292   | map_goal _ _ state = state;
   293 
   294 fun set_goal goal = map_goal I (fn (statement, _, using, _, before_qed, after_qed) =>
   295   (statement, [], using, goal, before_qed, after_qed));
   296 
   297 fun goal_message msg = map_goal I (fn (statement, messages, using, goal, before_qed, after_qed) =>
   298   (statement, msg :: messages, using, goal, before_qed, after_qed));
   299 
   300 fun using_facts using = map_goal I (fn (statement, _, _, goal, before_qed, after_qed) =>
   301   (statement, [], using, goal, before_qed, after_qed));
   302 
   303 local
   304   fun find i state =
   305     (case try current_goal state of
   306       SOME (ctxt, goal) => (ctxt, (i, goal))
   307     | NONE => find (i + 1) (close_block state handle ERROR _ => error "No goal present"));
   308 in val find_goal = find 0 end;
   309 
   310 fun get_goal state =
   311   let val (ctxt, (_, {using, goal, ...})) = find_goal state
   312   in (ctxt, (using, goal)) end;
   313 
   314 fun schematic_goal state =
   315   let val (_, (_, {statement = (_, _, prop), ...})) = find_goal state in
   316     Term.exists_subterm Term.is_Var (Thm.term_of prop) orelse
   317     Term.exists_type (Term.exists_subtype Term.is_TVar) (Thm.term_of prop)
   318   end;
   319 
   320 
   321 
   322 (** pretty_state **)
   323 
   324 val show_main_goal = ref false;
   325 val verbose = ProofContext.verbose;
   326 
   327 val pretty_goals_local = Display.pretty_goals_aux o Syntax.pp;
   328 
   329 fun pretty_facts _ _ NONE = []
   330   | pretty_facts s ctxt (SOME ths) =
   331       [Pretty.big_list (s ^ "this:") (map (ProofContext.pretty_thm ctxt) ths), Pretty.str ""];
   332 
   333 fun pretty_state nr state =
   334   let
   335     val {context, facts, mode, goal = _} = current state;
   336 
   337     fun levels_up 0 = ""
   338       | levels_up 1 = "1 level up"
   339       | levels_up i = string_of_int i ^ " levels up";
   340 
   341     fun subgoals 0 = ""
   342       | subgoals 1 = "1 subgoal"
   343       | subgoals n = string_of_int n ^ " subgoals";
   344 
   345     fun description strs =
   346       (case filter_out (fn s => s = "") strs of [] => ""
   347       | strs' => enclose " (" ")" (commas strs'));
   348 
   349     fun prt_goal (SOME (ctxt, (i,
   350             {statement = ((_, pos), _, _), messages, using, goal, before_qed, after_qed}))) =
   351           pretty_facts "using " ctxt
   352             (if mode <> Backward orelse null using then NONE else SOME using) @
   353           [Pretty.str ("goal" ^
   354             description [levels_up (i div 2), subgoals (Thm.nprems_of goal)] ^ ":")] @
   355           pretty_goals_local ctxt Markup.subgoal
   356             (true, ! show_main_goal) (! Display.goals_limit) goal @
   357           (map (fn msg => Position.setmp_thread_data pos msg ()) (rev messages))
   358       | prt_goal NONE = [];
   359 
   360     val prt_ctxt =
   361       if ! verbose orelse mode = Forward then ProofContext.pretty_context context
   362       else if mode = Backward then ProofContext.pretty_ctxt context
   363       else [];
   364   in
   365     [Pretty.str ("proof (" ^ mode_name mode ^ "): step " ^ string_of_int nr ^
   366       (if ! verbose then ", depth " ^ string_of_int (level state div 2 - 1) else "")),
   367       Pretty.str ""] @
   368     (if null prt_ctxt then [] else prt_ctxt @ [Pretty.str ""]) @
   369     (if ! verbose orelse mode = Forward then
   370        pretty_facts "" context facts @ prt_goal (try find_goal state)
   371      else if mode = Chain then pretty_facts "picking " context facts
   372      else prt_goal (try find_goal state))
   373   end;
   374 
   375 fun pretty_goals main state =
   376   let val (ctxt, (_, goal)) = get_goal state
   377   in pretty_goals_local ctxt Markup.none (false, main) (! Display.goals_limit) goal end;
   378 
   379 
   380 
   381 (** proof steps **)
   382 
   383 (* refine via method *)
   384 
   385 local
   386 
   387 fun goalN i = "goal" ^ string_of_int i;
   388 fun goals st = map goalN (1 upto Thm.nprems_of st);
   389 
   390 fun no_goal_cases st = map (rpair NONE) (goals st);
   391 
   392 fun goal_cases st =
   393   RuleCases.make_common true (Thm.theory_of_thm st, Thm.prop_of st) (map (rpair []) (goals st));
   394 
   395 fun apply_method current_context pos meth state =
   396   let
   397     val (goal_ctxt, (_, {statement, messages = _, using, goal, before_qed, after_qed})) =
   398       find_goal state;
   399     val ctxt = if current_context then context_of state else goal_ctxt;
   400   in
   401     Method.apply pos meth ctxt using goal |> Seq.map (fn (meth_cases, goal') =>
   402       state
   403       |> map_goal
   404           (ProofContext.add_cases false (no_goal_cases goal @ goal_cases goal') #>
   405            ProofContext.add_cases true meth_cases)
   406           (K (statement, [], using, goal', before_qed, after_qed)))
   407   end;
   408 
   409 fun select_goals n meth state =
   410   state
   411   |> (#2 o #2 o get_goal)
   412   |> ALLGOALS Goal.conjunction_tac
   413   |> Seq.maps (fn goal =>
   414     state
   415     |> Seq.lift set_goal (Goal.extract 1 n goal |> Seq.maps (Goal.conjunction_tac 1))
   416     |> Seq.maps meth
   417     |> Seq.maps (fn state' => state'
   418       |> Seq.lift set_goal (Goal.retrofit 1 n (#2 (#2 (get_goal state'))) goal))
   419     |> Seq.maps (apply_method true Position.none (K Method.succeed)));
   420 
   421 fun apply_text cc text state =
   422   let
   423     val thy = theory_of state;
   424     val pos_of = #2 o Args.dest_src;
   425 
   426     fun eval (Method.Basic (m, pos)) = apply_method cc pos m
   427       | eval (Method.Source src) = apply_method cc (pos_of src) (Method.method thy src)
   428       | eval (Method.Source_i src) = apply_method cc (pos_of src) (Method.method_i thy src)
   429       | eval (Method.Then txts) = Seq.EVERY (map eval txts)
   430       | eval (Method.Orelse txts) = Seq.FIRST (map eval txts)
   431       | eval (Method.Try txt) = Seq.TRY (eval txt)
   432       | eval (Method.Repeat1 txt) = Seq.REPEAT1 (eval txt)
   433       | eval (Method.SelectGoals (n, txt)) = select_goals n (eval txt);
   434   in eval text state end;
   435 
   436 in
   437 
   438 val refine = apply_text true;
   439 val refine_end = apply_text false;
   440 
   441 fun refine_insert [] = I
   442   | refine_insert ths = Seq.hd o refine (Method.Basic (K (Method.insert ths), Position.none));
   443 
   444 end;
   445 
   446 
   447 (* refine via sub-proof *)
   448 
   449 fun goal_tac rule =
   450   Goal.norm_hhf_tac THEN' Tactic.rtac rule THEN_ALL_NEW
   451     (Goal.norm_hhf_tac THEN' (SUBGOAL (fn (goal, i) =>
   452       if can Logic.unprotect (Logic.strip_assums_concl goal) then
   453         Tactic.etac Drule.protectI i
   454       else all_tac)));
   455 
   456 fun refine_goals print_rule inner raw_rules state =
   457   let
   458     val (outer, (_, goal)) = get_goal state;
   459     fun refine rule st = (print_rule outer rule; FINDGOAL (goal_tac rule) st);
   460   in
   461     raw_rules
   462     |> ProofContext.goal_export inner outer
   463     |> (fn rules => Seq.lift set_goal (EVERY (map refine rules) goal) state)
   464   end;
   465 
   466 
   467 (* conclude_goal *)
   468 
   469 fun conclude_goal ctxt goal propss =
   470   let
   471     val thy = ProofContext.theory_of ctxt;
   472     val string_of_term = Syntax.string_of_term ctxt;
   473     val string_of_thm = ProofContext.string_of_thm ctxt;
   474 
   475     val ngoals = Thm.nprems_of goal;
   476     val _ = ngoals = 0 orelse error (Pretty.string_of (Pretty.chunks
   477       (pretty_goals_local ctxt Markup.none (true, ! show_main_goal) (! Display.goals_limit) goal @
   478         [Pretty.str (string_of_int ngoals ^ " unsolved goal(s)!")])));
   479 
   480     val extra_hyps = Assumption.extra_hyps ctxt goal;
   481     val _ = null extra_hyps orelse
   482       error ("Additional hypotheses:\n" ^ cat_lines (map string_of_term extra_hyps));
   483 
   484     fun lost_structure () = error ("Lost goal structure:\n" ^ string_of_thm goal);
   485 
   486     val th = Goal.conclude
   487       (if length (flat propss) > 1 then Thm.norm_proof goal else goal)
   488       handle THM _ => lost_structure ();
   489     val goal_propss = filter_out null propss;
   490     val results =
   491       Conjunction.elim_balanced (length goal_propss) th
   492       |> map2 Conjunction.elim_balanced (map length goal_propss)
   493       handle THM _ => lost_structure ();
   494     val _ = Unify.matches_list thy (flat goal_propss) (map Thm.prop_of (flat results)) orelse
   495       error ("Proved a different theorem:\n" ^ string_of_thm th);
   496     val _ = Thm.check_shyps (Variable.sorts_of ctxt) th;
   497 
   498     fun recover_result ([] :: pss) thss = [] :: recover_result pss thss
   499       | recover_result (_ :: pss) (ths :: thss) = ths :: recover_result pss thss
   500       | recover_result [] [] = []
   501       | recover_result _ _ = lost_structure ();
   502   in recover_result propss results end;
   503 
   504 
   505 
   506 (*** structured proof commands ***)
   507 
   508 (** context elements **)
   509 
   510 (* bindings *)
   511 
   512 local
   513 
   514 fun gen_bind bind args state =
   515   state
   516   |> assert_forward
   517   |> map_context (bind args #> snd)
   518   |> put_facts NONE;
   519 
   520 in
   521 
   522 val match_bind = gen_bind (ProofContext.match_bind false);
   523 val match_bind_i = gen_bind (ProofContext.match_bind_i false);
   524 val let_bind = gen_bind (ProofContext.match_bind true);
   525 val let_bind_i = gen_bind (ProofContext.match_bind_i true);
   526 
   527 end;
   528 
   529 
   530 (* fix *)
   531 
   532 local
   533 
   534 fun gen_fix add_fixes args =
   535   assert_forward
   536   #> map_context (snd o add_fixes args)
   537   #> put_facts NONE;
   538 
   539 in
   540 
   541 val fix = gen_fix ProofContext.add_fixes;
   542 val fix_i = gen_fix ProofContext.add_fixes_i;
   543 
   544 end;
   545 
   546 
   547 (* assume etc. *)
   548 
   549 local
   550 
   551 fun gen_assume asm prep_att exp args state =
   552   state
   553   |> assert_forward
   554   |> map_context_result (asm exp (Attrib.map_specs (prep_att (theory_of state)) args))
   555   |> these_factss [] |> #2;
   556 
   557 in
   558 
   559 val assm      = gen_assume ProofContext.add_assms Attrib.attribute;
   560 val assm_i    = gen_assume ProofContext.add_assms_i (K I);
   561 val assume    = assm Assumption.assume_export;
   562 val assume_i  = assm_i Assumption.assume_export;
   563 val presume   = assm Assumption.presume_export;
   564 val presume_i = assm_i Assumption.presume_export;
   565 
   566 end;
   567 
   568 
   569 (* def *)
   570 
   571 local
   572 
   573 fun gen_def prep_att prep_vars prep_binds args state =
   574   let
   575     val _ = assert_forward state;
   576     val thy = theory_of state;
   577     val ctxt = context_of state;
   578 
   579     val (raw_name_atts, (raw_vars, raw_rhss)) = args |> split_list ||> split_list;
   580     val name_atts = map (apsnd (map (prep_att thy))) raw_name_atts;
   581   in
   582     state
   583     |> map_context_result (prep_vars (map (fn (x, mx) => (x, NONE, mx)) raw_vars))
   584     |>> map (fn (x, _, mx) => (x, mx))
   585     |-> (fn vars =>
   586       map_context_result (prep_binds false (map swap raw_rhss))
   587       #-> (fn rhss => map_context_result (LocalDefs.add_defs (vars ~~ (name_atts ~~ rhss)))))
   588     |-> (put_facts o SOME o map (#2 o #2))
   589   end;
   590 
   591 in
   592 
   593 val def = gen_def Attrib.attribute ProofContext.read_vars ProofContext.match_bind;
   594 val def_i = gen_def (K I) ProofContext.cert_vars ProofContext.match_bind_i;
   595 
   596 end;
   597 
   598 
   599 
   600 (** facts **)
   601 
   602 (* chain *)
   603 
   604 fun clean_facts ctxt =
   605   put_facts (SOME (filter_out Thm.is_dummy (the_facts ctxt))) ctxt;
   606 
   607 val chain =
   608   assert_forward
   609   #> clean_facts
   610   #> enter_chain;
   611 
   612 fun chain_facts facts =
   613   put_facts (SOME facts)
   614   #> chain;
   615 
   616 
   617 (* note etc. *)
   618 
   619 fun no_binding args = map (pair (Binding.empty, [])) args;
   620 
   621 local
   622 
   623 fun gen_thmss note_ctxt more_facts opt_chain opt_result prep_atts args state =
   624   state
   625   |> assert_forward
   626   |> map_context_result (note_ctxt (Attrib.map_facts (prep_atts (theory_of state)) args))
   627   |> these_factss (more_facts state)
   628   ||> opt_chain
   629   |> opt_result;
   630 
   631 in
   632 
   633 val note_thmss = gen_thmss (ProofContext.note_thmss "") (K []) I #2 Attrib.attribute;
   634 val note_thmss_i = gen_thmss (ProofContext.note_thmss_i "") (K []) I #2 (K I);
   635 
   636 val from_thmss =
   637   gen_thmss (ProofContext.note_thmss "") (K []) chain #2 Attrib.attribute o no_binding;
   638 val from_thmss_i = gen_thmss (ProofContext.note_thmss_i "") (K []) chain #2 (K I) o no_binding;
   639 
   640 val with_thmss =
   641   gen_thmss (ProofContext.note_thmss "") the_facts chain #2 Attrib.attribute o no_binding;
   642 val with_thmss_i = gen_thmss (ProofContext.note_thmss_i "") the_facts chain #2 (K I) o no_binding;
   643 
   644 val local_results =
   645   gen_thmss (ProofContext.note_thmss_i "") (K []) I I (K I) o map (apsnd Thm.simple_fact);
   646 
   647 fun get_thmss state srcs = the_facts (note_thmss [((Binding.empty, []), srcs)] state);
   648 
   649 end;
   650 
   651 
   652 (* using/unfolding *)
   653 
   654 local
   655 
   656 fun gen_using f g note prep_atts args state =
   657   state
   658   |> assert_backward
   659   |> map_context_result
   660     (note "" (Attrib.map_facts (prep_atts (theory_of state)) (no_binding args)))
   661   |> (fn (named_facts, state') =>
   662     state' |> map_goal I (fn (statement, _, using, goal, before_qed, after_qed) =>
   663       let
   664         val ctxt = context_of state';
   665         val ths = maps snd named_facts;
   666       in (statement, [], f ctxt ths using, g ctxt ths goal, before_qed, after_qed) end));
   667 
   668 fun append_using _ ths using = using @ filter_out Thm.is_dummy ths;
   669 fun unfold_using ctxt ths = map (LocalDefs.unfold ctxt ths);
   670 val unfold_goals = LocalDefs.unfold_goals;
   671 
   672 in
   673 
   674 val using = gen_using append_using (K (K I)) ProofContext.note_thmss Attrib.attribute;
   675 val using_i = gen_using append_using (K (K I)) ProofContext.note_thmss_i (K I);
   676 val unfolding = gen_using unfold_using unfold_goals ProofContext.note_thmss Attrib.attribute;
   677 val unfolding_i = gen_using unfold_using unfold_goals ProofContext.note_thmss_i (K I);
   678 
   679 end;
   680 
   681 
   682 (* case *)
   683 
   684 local
   685 
   686 fun gen_invoke_case prep_att (name, xs, raw_atts) state =
   687   let
   688     val atts = map (prep_att (theory_of state)) raw_atts;
   689     val (asms, state') = state |> map_context_result (fn ctxt =>
   690       ctxt |> ProofContext.apply_case (ProofContext.get_case ctxt name xs));
   691     val assumptions = asms |> map (fn (a, ts) => ((Binding.name a, atts), map (rpair []) ts));
   692   in
   693     state'
   694     |> map_context (ProofContext.qualified_names #> ProofContext.no_base_names)
   695     |> assume_i assumptions
   696     |> add_binds_i AutoBind.no_facts
   697     |> map_context (ProofContext.restore_naming (context_of state))
   698     |> `the_facts |-> (fn thms => note_thmss_i [((Binding.name name, []), [(thms, [])])])
   699   end;
   700 
   701 in
   702 
   703 val invoke_case = gen_invoke_case Attrib.attribute;
   704 val invoke_case_i = gen_invoke_case (K I);
   705 
   706 end;
   707 
   708 
   709 
   710 (** proof structure **)
   711 
   712 (* blocks *)
   713 
   714 val begin_block =
   715   assert_forward
   716   #> open_block
   717   #> put_goal NONE
   718   #> open_block;
   719 
   720 val next_block =
   721   assert_forward
   722   #> close_block
   723   #> open_block
   724   #> put_goal NONE
   725   #> put_facts NONE;
   726 
   727 fun end_block state =
   728   state
   729   |> assert_forward
   730   |> close_block
   731   |> assert_current_goal false
   732   |> close_block
   733   |> export_facts state;
   734 
   735 
   736 (* sub-proofs *)
   737 
   738 fun proof opt_text =
   739   assert_backward
   740   #> refine (the_default Method.default_text opt_text)
   741   #> Seq.map (using_facts [] #> enter_forward);
   742 
   743 fun end_proof bot txt state =
   744   state
   745   |> assert_forward
   746   |> assert_bottom bot
   747   |> close_block
   748   |> assert_current_goal true
   749   |> using_facts []
   750   |> `before_qed |-> (refine o the_default Method.succeed_text)
   751   |> Seq.maps (refine (Method.finish_text txt (Position.thread_data ())));
   752 
   753 
   754 (* unstructured refinement *)
   755 
   756 fun defer i = assert_no_chain #> refine (Method.Basic (K (Method.defer i), Position.none));
   757 fun prefer i = assert_no_chain #> refine (Method.Basic (K (Method.prefer i), Position.none));
   758 
   759 fun apply text = assert_backward #> refine text #> Seq.map (using_facts []);
   760 fun apply_end text = assert_forward #> refine_end text;
   761 
   762 
   763 
   764 (** goals **)
   765 
   766 (* generic goals *)
   767 
   768 local
   769 
   770 fun implicit_vars dest add props =
   771   let
   772     val (explicit_vars, props') = take_prefix (can dest) props |>> map dest;
   773     val vars = rev (subtract (op =) explicit_vars (fold add props []));
   774     val _ =
   775       if null vars then ()
   776       else warning ("Goal statement contains unbound schematic variable(s): " ^
   777         commas_quote (map (Term.string_of_vname o fst) vars));
   778   in (rev vars, props') end;
   779 
   780 fun refine_terms n =
   781   refine (Method.Basic (K (Method.RAW_METHOD
   782     (K (HEADGOAL (PRECISE_CONJUNCTS n
   783       (HEADGOAL (CONJUNCTS (ALLGOALS (rtac Drule.termI)))))))), Position.none))
   784   #> Seq.hd;
   785 
   786 in
   787 
   788 fun generic_goal prepp kind before_qed after_qed raw_propp state =
   789   let
   790     val thy = theory_of state;
   791     val cert = Thm.cterm_of thy;
   792     val chaining = can assert_chain state;
   793     val pos = Position.thread_data ();
   794 
   795     val ((propss, after_ctxt), goal_state) =
   796       state
   797       |> assert_forward_or_chain
   798       |> enter_forward
   799       |> open_block
   800       |> map_context_result (fn ctxt => swap (prepp (ctxt, raw_propp)));
   801     val props = flat propss;
   802 
   803     val (_, props') =
   804       implicit_vars (dest_TVar o Logic.dest_type o Logic.dest_term) Term.add_tvars props;
   805     val (vars, _) = implicit_vars (dest_Var o Logic.dest_term) Term.add_vars props';
   806 
   807     val propss' = map (Logic.mk_term o Var) vars :: propss;
   808     val goal_propss = filter_out null propss';
   809     val goal = cert (Logic.mk_conjunction_balanced (map Logic.mk_conjunction_balanced goal_propss))
   810       |> Thm.weaken_sorts (Variable.sorts_of (context_of goal_state));
   811     val statement = ((kind, pos), propss', goal);
   812     val after_qed' = after_qed |>> (fn after_local =>
   813       fn results => map_context after_ctxt #> after_local results);
   814   in
   815     goal_state
   816     |> map_context (init_context #> Variable.set_body true)
   817     |> put_goal (SOME (make_goal (statement, [], [], Goal.init goal, before_qed, after_qed')))
   818     |> map_context (ProofContext.auto_bind_goal props)
   819     |> chaining ? (`the_facts #-> using_facts)
   820     |> put_facts NONE
   821     |> open_block
   822     |> put_goal NONE
   823     |> enter_backward
   824     |> not (null vars) ? refine_terms (length goal_propss)
   825     |> null props ? (refine (Method.Basic (Method.assumption, Position.none)) #> Seq.hd)
   826   end;
   827 
   828 fun generic_qed after_ctxt state =
   829   let
   830     val (goal_ctxt, {statement, goal, after_qed, ...}) = current_goal state;
   831     val outer_state = state |> close_block;
   832     val outer_ctxt = context_of outer_state;
   833 
   834     val ((_, pos), stmt, _) = statement;
   835     val props =
   836       flat (tl stmt)
   837       |> Variable.exportT_terms goal_ctxt outer_ctxt;
   838     val results =
   839       tl (conclude_goal goal_ctxt goal stmt)
   840       |> burrow (ProofContext.export goal_ctxt outer_ctxt);
   841 
   842     val (after_local, after_global) = after_qed;
   843     fun after_local' x y = Position.setmp_thread_data_seq pos (fn () => after_local x y) ();
   844     fun after_global' x y = Position.setmp_thread_data pos (fn () => after_global x y) ();
   845   in
   846     outer_state
   847     |> map_context (after_ctxt props)
   848     |> pair ((after_local', after_global'), results)
   849   end;
   850 
   851 end;
   852 
   853 
   854 (* local goals *)
   855 
   856 fun local_goal print_results prep_att prepp kind before_qed after_qed stmt state =
   857   let
   858     val thy = theory_of state;
   859     val ((names, attss), propp) =
   860       Attrib.map_specs (prep_att thy) stmt |> split_list |>> split_list;
   861 
   862     fun after_qed' results =
   863       local_results ((names ~~ attss) ~~ results)
   864       #-> (fn res => tap (fn st => print_results (context_of st) ((kind, ""), res) : unit))
   865       #> after_qed results;
   866   in
   867     state
   868     |> generic_goal prepp kind before_qed (after_qed', K I) propp
   869     |> tap (Variable.warn_extra_tfrees (context_of state) o context_of)
   870   end;
   871 
   872 fun local_qed txt =
   873   end_proof false txt #>
   874   Seq.maps (generic_qed ProofContext.auto_bind_facts #->
   875     (fn ((after_qed, _), results) => after_qed results));
   876 
   877 
   878 (* global goals *)
   879 
   880 fun global_goal prepp before_qed after_qed propp ctxt =
   881   init ctxt
   882   |> generic_goal (prepp #> ProofContext.auto_fixes) ""
   883     before_qed (K Seq.single, after_qed) propp;
   884 
   885 val theorem = global_goal ProofContext.bind_propp_schematic;
   886 val theorem_i = global_goal ProofContext.bind_propp_schematic_i;
   887 
   888 fun check_result msg sq =
   889   (case Seq.pull sq of
   890     NONE => error msg
   891   | SOME (s', sq') => Seq.cons s' sq');
   892 
   893 fun global_qeds txt =
   894   end_proof true txt
   895   #> Seq.map (generic_qed (K I) #> (fn (((_, after_qed), results), state) =>
   896     after_qed results (context_of state)))
   897   |> Seq.DETERM;   (*backtracking may destroy theory!*)
   898 
   899 fun global_qed txt =
   900   global_qeds txt
   901   #> check_result "Failed to finish proof"
   902   #> Seq.hd;
   903 
   904 
   905 (* concluding steps *)
   906 
   907 fun local_terminal_proof (text, opt_text) =
   908   proof (SOME text) #> Seq.maps (local_qed (opt_text, true));
   909 
   910 val local_default_proof = local_terminal_proof (Method.default_text, NONE);
   911 val local_immediate_proof = local_terminal_proof (Method.this_text, NONE);
   912 val local_done_proof = proof (SOME Method.done_text) #> Seq.maps (local_qed (NONE, false));
   913 fun local_skip_proof int = local_terminal_proof (Method.sorry_text int, NONE);
   914 
   915 fun global_term_proof immed (text, opt_text) =
   916   proof (SOME text)
   917   #> check_result "Terminal proof method failed"
   918   #> Seq.maps (global_qeds (opt_text, immed))
   919   #> check_result "Failed to finish proof (after successful terminal method)"
   920   #> Seq.hd;
   921 
   922 val global_terminal_proof = global_term_proof true;
   923 val global_default_proof = global_terminal_proof (Method.default_text, NONE);
   924 val global_immediate_proof = global_terminal_proof (Method.this_text, NONE);
   925 val global_done_proof = global_term_proof false (Method.done_text, NONE);
   926 fun global_skip_proof int = global_terminal_proof (Method.sorry_text int, NONE);
   927 
   928 
   929 (* common goal statements *)
   930 
   931 local
   932 
   933 fun gen_have prep_att prepp before_qed after_qed stmt int =
   934   local_goal (ProofDisplay.print_results int) prep_att prepp "have" before_qed after_qed stmt;
   935 
   936 fun gen_show prep_att prepp before_qed after_qed stmt int state =
   937   let
   938     val testing = ref false;
   939     val rule = ref (NONE: thm option);
   940     fun fail_msg ctxt =
   941       "Local statement will fail to solve any pending goal" ::
   942       (case ! rule of NONE => [] | SOME th => [ProofDisplay.string_of_rule ctxt "Failed" th])
   943       |> cat_lines;
   944 
   945     fun print_results ctxt res =
   946       if ! testing then () else ProofDisplay.print_results int ctxt res;
   947     fun print_rule ctxt th =
   948       if ! testing then rule := SOME th
   949       else if int then priority (ProofDisplay.string_of_rule ctxt "Successful" th)
   950       else ();
   951     val test_proof =
   952       (Seq.pull oo local_skip_proof) true
   953       |> setmp_noncritical testing true
   954       |> Exn.capture;
   955 
   956     fun after_qed' results =
   957       refine_goals print_rule (context_of state) (flat results)
   958       #> Seq.maps (after_qed results);
   959   in
   960     state
   961     |> local_goal print_results prep_att prepp "show" before_qed after_qed' stmt
   962     |> int ? (fn goal_state =>
   963       (case test_proof goal_state of
   964         Exn.Result (SOME _) => goal_state
   965       | Exn.Result NONE => error (fail_msg (context_of goal_state))
   966       | Exn.Exn Exn.Interrupt => raise Exn.Interrupt
   967       | Exn.Exn exn => raise Exn.EXCEPTIONS ([exn, ERROR (fail_msg (context_of goal_state))])))
   968   end;
   969 
   970 in
   971 
   972 val have = gen_have Attrib.attribute ProofContext.bind_propp;
   973 val have_i = gen_have (K I) ProofContext.bind_propp_i;
   974 val show = gen_show Attrib.attribute ProofContext.bind_propp;
   975 val show_i = gen_show (K I) ProofContext.bind_propp_i;
   976 
   977 end;
   978 
   979 
   980 (* fork global proofs *)
   981 
   982 fun is_initial state =
   983   (case try find_goal state of
   984     NONE => false
   985   | SOME (_, (_, {statement = (_, _, prop), goal, ...})) => Thm.eq_thm_prop (Goal.init prop, goal));
   986 
   987 fun is_relevant state =
   988   can (assert_bottom false) state orelse
   989   can assert_forward state orelse
   990   not (is_initial state) orelse
   991   schematic_goal state;
   992 
   993 fun future_proof proof state =
   994   let
   995     val _ = is_relevant state andalso error "Cannot fork relevant proof";
   996 
   997     val (goal_ctxt, (_, goal)) = find_goal state;
   998     val {statement as (kind, propss, cprop), messages, using, goal, before_qed, after_qed} = goal;
   999     val prop = Thm.term_of cprop;
  1000     val cprop_protected = #2 (Thm.dest_implies (Thm.cprop_of goal));
  1001 
  1002     val statement' = (kind, [[], [Thm.term_of cprop_protected]], cprop_protected);
  1003     val goal' = Thm.adjust_maxidx_thm ~1 (Drule.protectI RS Goal.init cprop_protected);
  1004     fun after_qed' [[th]] = ProofContext.put_thms false (AutoBind.thisN, SOME [Goal.conclude th]);
  1005     val this_name = ProofContext.full_bname (ProofContext.reset_naming goal_ctxt) AutoBind.thisN;
  1006 
  1007     val result_ctxt =
  1008       state
  1009       |> map_contexts (Variable.auto_fixes prop)
  1010       |> map_goal I (K (statement', messages, using, goal', before_qed, (#1 after_qed, after_qed')))
  1011       |> proof;
  1012 
  1013     val thm = result_ctxt |> Future.map (fn (_, ctxt) =>
  1014       ProofContext.get_fact_single ctxt (Facts.named this_name));
  1015     val finished_goal = Goal.protect (Goal.future_result goal_ctxt thm prop);
  1016     val state' =
  1017       state
  1018       |> map_goal I (K (statement, messages, using, finished_goal, NONE, after_qed))
  1019       |> global_done_proof;
  1020   in (Future.map #1 result_ctxt, state') end;
  1021 
  1022 end;