Using TLC to Check Inductive Invariance

Using TLC to Check Inductive Invariance
复制标题

使用 TLC 检查电感不变性

DOI:
--
复制
发表时间:
2018
期刊:
影响因子:
--
通讯作者:
L. Lamport
L. Lamport
中科院分区:
--
文献类型:
--
作者:
L. Lamport

文献摘要

被引文献

相似文献

假设我们有一个包含初始谓词 Init 和下一状态谓词 Next 的规范,因此其所有变量的元组变量的规范为 Init ∧2[Next ]vars。1 假设我们要证明公式 I 是规范的不变量,这意味着 I 在规范的所有可达状态上都为真。我们通过找到满足这些条件的公式 Inv 来证明 I 是不变量:
Suppose we have a specification with initial predicate Init and next-state predicate Next , so its specification is Init ∧2[Next ]vars for the tuple vars of all its variables.1 Suppose we want to prove that a formula I is an invariant of the spec, which means that I is true on all reachable states of the spec. We prove that I is an invariant by finding a formula Inv that satisfies these conditions: