电子式里程表英文资料Word文件下载.docx

上传人:b****6 文档编号:22050032 上传时间:2023-02-02 格式:DOCX 页数:20 大小:66.79KB
下载 相关 举报
电子式里程表英文资料Word文件下载.docx_第1页
第1页 / 共20页
电子式里程表英文资料Word文件下载.docx_第2页
第2页 / 共20页
电子式里程表英文资料Word文件下载.docx_第3页
第3页 / 共20页
电子式里程表英文资料Word文件下载.docx_第4页
第4页 / 共20页
电子式里程表英文资料Word文件下载.docx_第5页
第5页 / 共20页
点击查看更多>>
下载资源
资源描述

电子式里程表英文资料Word文件下载.docx

《电子式里程表英文资料Word文件下载.docx》由会员分享,可在线阅读,更多相关《电子式里程表英文资料Word文件下载.docx(20页珍藏版)》请在冰豆网上搜索。

电子式里程表英文资料Word文件下载.docx

1Introduction...............................................................1

2Requirements..............................................................1

3CurrentAutomationinInteractiveProvers.......................................4

4Techniques...............................................................5

4.1ProofSearch...........................................................6

4.1.1LogicalSystem.....................................................6

4.1.2IntroRules.........................................................6

4.2Equality...............................................................8

4.2.1Rewriting..........................................................8

4.2.2ConditionalSimplification............................................9

4.2.3Completion.......................................................10

4.2.4DynamicCompletion....................................................11

4.2.5EquationalUnification...................................................12

5InterfaceandIntegration......................................................12

6Assessment...............................................................13

6.1Assessmentwrt.Requirements...............................................13

6.2Completeness.............................................................14

6.3Efficiency.............................................................14

6.4InPractice.............................................................15

7Alternative................................................................16

8Conclusion................................................................19

1Introduction

Automationcanbekeytosuccessfulmechanisation.Insomesituations,mechanisationisfeasiblewithoutautomation.Indeed,inhighlyabstractmathematicalareas,mostmechanisedreasoningconsistsoftheuserspellingoutcomplicatedargumentswhicharefarbeyondthosewhichcancurrentlybetackledbyautomation.Inthissetting,automation,ifitisusedatall,isdirectedateasilysolvable,tightlydefinedsubproblems.AtypicalexampleofsuchamechanisationisourformalisationofRamsey'

sTheorem[Rid04].Ontheotherhand,automationcanbefruitfullyappliedinverificationstyleproofs,wherethereasoningisrelativelyrestricted,butthesheerlevelofdetailmakesanon-automatedmechanisationinfeasible.

ManymanyearshavebeenspentdevelopingfullyautomaticsystemssuchasVampire[VR]andOtter[McC].Itwouldbefoolishtoimaginethatwecouldcompetewithsuchsystems.Theirperformanceiswaybeyondthatofsystemscurrentlyimplementedininteractivetheoremprovers.Projectsareunderway[MP04]tolinksuchsystemstointeractivetheoremprovers.Thisisextremelyvaluablework:

ifoneknowsthatafirstorderstatementisprovable,thenoneshouldprobablyexpectthatthemachinecanprovideaproof.

Inthissection,weoutlinesometechniqueswehaveappliedinvariouscasestudies.Naturallywedonotseektosolvetheproblemofautomatedreasoningonceandforall.Ratherwefocusontheproblemsthattypicallyariseinthecasestudieswehavebeeninvolvedwith.Westartbyoutliningthefunctionalitywerequireoftheautomatedengine.Wethendescribethetechniquesweapplied,andhowtheywereintegrated.Weevaluatetheresultingenginequalitativelyintermsofourrequirements,andquantitativelywithrespecttoasizablecasestudy.Fewofthesetechniquesarenovel,rather,weseektocombineexistingtechniquesinasuitablefashion.

TheseproceduresweredevelopedintheHOLLighttheoremprover,whichwefoundtobeanexcellentvehicleforprototypingdifferentapproaches.

2Requirements

Whatdowerequireofourautomation?

Letusdistinguishbetweenautomationforfullyautomaticuse,andautomationforinteractiveuse,therequirementsforeachbeingconsiderablydifferent.

Perhapsunexpectedly,failureoftheautomatedproofengineisthenorm,isthesensethatwheninteractivelydevelopingcomplexproofswespendmostofourtimeonobligationsthatare"

almost"

provable.Thuswewouldliketheprovertogiveusexcellentfeedbackastowhyobligationscouldnotbedischarged.[Sym98]

Thisquoteemphasizesanimportantdifferencebetweenautomaticandinteractiveproof.Inautomaticproof,onetypicallyknowsthatthegoalisprovable(oratleast,suspectsverystrongly,andispreparedtowaitaconsiderableamountoftimebeforeterminatingaproofsearch).Indeed,automaticproversarejudgedonhowmanyprovablegoalstheycanactuallyprove.Ininteractiveproof,"

wespendmostofourtimeonobligationsthatarealmostprovable"

.Thisisthedifferencebetweeninteractiveandautomaticproof.Ifwespendmostofthetimetryingtoprovegoalsthataresimplynotprovable,thencompletenessoftheproofsearchbecomeslessimportant.Thisisnottosaythatitlosesimportancealtogether:

ifasystemlackscompleteness,thenitwillfailtoprovesomeprovablegoals.Itisvitallyimportanttoknowwhatsortofgoalsoneisgivingupon,inorderthatonecanunderstandwhatitmeanswhenaproverfailstoproveagoal.Suchknowledgeisalsousefulwhencombiningsystems:

inordertounderstandthebehaviourofthesystemasawholeone

shouldfirstunderstandthebehaviouroftheparts.

Whatpropertiesmightbepreferred,inaninteractivesetting,overcompleteness?

Forus,themostimportantaspectofautomationissimplicity.Bythiswedonotmeanimplementationsimplicity(howmanylinesdidittaketoimplementthesystem?

etc.),butconceptualsimplicity.Forinstance,simplificationisusedubiquitouslyininteractivetheoremproving.Ifthesetofrewriterulesisnotconfluent,thentounderstandthebehaviourofthesimplifier,onehastounderstandtheorderinwhichtherulesareapplied.Needlesstosay,thisisanextremelycomplexthingtounderstand,andproofswhichdependonthesepropertiesarepresumablyextremelyfragile.Conceptualsimplicityforasimplifieriscloselyboundupwithconfluenceandterminationofthesimpset.Conceptualsimplicityisimportantifauseristounderstandthesystem.Ifasystemisconceptuallysimple,itwillhopefullybesimpletouse.

Inaninteractivesetting,weexpectautomationtofail.Inordertomakeprogress,wemustunderstandwhyaproofattemptfails:

theprovermustprovidefeedback.Resolutionbasedsystemscanprovidefeedback,buttheyaredestructive(inthesensethatthegoalisconvertedintoanormalformbeforetheproofattemptstarts,destroyingtheoriginallogicalstructure),sothatthefeedbackcanbedifficulttounderstand(thepointwheretheprooffailsmaylookverydifferenttotheoriginalgoal).Abetterapproachistoconducttheproofinawaythatisascloseaspossibletohowahumanmightconducttheproof.Werequiretheproofsystemtobenaturalinsomesense.Inthiscase,ifaproofattemptfails,thefailingbranchcanoftenbereturneddirectlytotheuserforinspection.

Feedbackisrelatedtovisibility.Oftenauserwishestoinspectafailedproof,butonlyaprooftraceisavailable,whichcancauseaconceptualmismatch:

theuserisfocusedonsequents,whereasthetracemaybeofadifferentnaturealtogether.Iftherearemanyunprovedbranches,thenausermightnotinspectthemall,butmightwishtostepthroughtheproof.Automaticmethods,suchasJohnHarrison'

simplementationofmodelelimination[Har96],oftensearchforaproofinatreemakinguseofglobalinformationaboutnodesvisitedpreviously.Ifthisglobalinformationisnotpresentinthesequenttheuserhasaccessto,itwillbedifficulttostepthroughtheautomaticproofbysimplyinvokingtheautomaticproverastepatatime:

theautomaticproverwillnotmakethesamedecisionsitmadewhenconductingthesearchusingglobalinformationbecauseitonlyhasaccesstothelocalsequent.

Manymethodscurrentlyemployedbyinteractivetheoremprovers,suchasIsabelle'

sblast,leavethegoalunchangediftheyfailtoproveit.Naturalmethodsofproofsearchexpecttomakeatleastsomeprogressinallsituations,sothattheycanassistevenifthegoalisnotprovable.Forinstance,safesteps(suchas∧Einmanysystems)shouldbeperformed,simplificationstepsappliedandsoon.

Automationshouldalsobestable.Inlargeproofs,onefrequentlymixesinteractiveandautomaticproof.Ifthegoalsreturnedbyautomationareapttochangeradicallywithslightvariationsinthegoal,thenthedependentinteractiveproofscanberendereduseless,an

展开阅读全文
相关资源
猜你喜欢
相关搜索

当前位置:首页 > 人文社科 > 法律资料

copyright@ 2008-2022 冰豆网网站版权所有

经营许可证编号:鄂ICP备2022015515号-1