您是不是要找: TLA+ proofs

Verifying Safety Properties with the TLA +  Proof System

K Chaudhuri, D Doligez, L Lamport, S Merz - Automated Reasoning: 5th …, 2010 - Springer
TLA + proof system, is a platform for the development and mechanical verification of TLA +
proofs… The TLA + language supports a hierarchical, non-linear proof development process …

[PDF][PDF] Proofs and Proof Certification in the TLA+ Proof System.

S Merz - PxTP, 2012 - ceur-ws.org
… provers to produce proofs that can be checked by Isabelle/TLA+, our most trusted back-end,
and this is currently implemented for the Zenon back-end. I will review our experiences with …

A TLA+ proof system

KC Chaudhuri, D Doligez, L Lamport… - arXiv preprint arXiv …, 2008 - arxiv.org
… Because temporal reasoning is such a small part of TLA proofs, we have deferred its
implementation. The PM now handles only action formulas. We have enough experience …

Verifying hyperproperties with TLA

L Lamport, FB Schneider - 2021 IEEE 34th Computer Security …, 2021 - ieeexplore.ieee.org
… We obtained the TLA proof that Tiny satisfies GNI from its RTLA proof in Section IV-C by …
This same transformation from an RTLA proof to a TLA proof works for any RTLA proof that …

[PDF][PDF] The TLA+ Proof System

D Cousineau, S Merz - 2010 - pdfs.semanticscholar.org
… by initial condition and next-state relation Correctness expressed as TLA formula … ▶ each
step recursively has a proof proof tree ▶ proof step with higher level number starts subproof …

Mechanical verification of concurrent systems with TLA

U Engberg, P Grønning, L Lamport - … , CAV'92 Montreal, Canada, June 29 …, 1993 - Springer
… We therefore decided to write a TLA to LP translator, so specifications, theorems, and proof
… It is obviously easier to write a TLA proof in TLA than in an LP encoding of TLA. It was not …

Harnessing SMT solvers for TLA+ proofs

S Merz, H Vanzetto - Electronic Communications of the EASST, 2012 - eceasst.org
… Instead, we perform several rewriting steps to reduce the number of derived TLA+
operators that occur in a proof obligation, essentially applying the “obvious” instances of the …

[PDF][PDF] Prototypical Proof Manager for TLA

SMM Notti - Citeseer
… The specification language TLA+ [4] has recently been extended by notation to describe
formal, declarative proofs for theorems asserted in TLA+ modules. The proof language is …

Automatic Verification of TLA +  Proof Obligations with SMT Solvers

S Merz, H Vanzetto - International Conference on Logic for Programming …, 2012 - Springer
… By evaluating the performance of the backend over several existing TLA+ proofs we show
TLA+ expressions, which make up the vast majority of proof obligations that arise in TLA+ …

Proof automation and type synthesis for set theory in the context of TLA+

H Vanzetto - 2014 - inria.hal.science
… This thesis presents effective techniques for discharging TLA + proof obligations to automated
… improve the automation capabilities of the proof development performed with the TLA
您是不是要找: TLA+ proofs