why3session.xml 156 KB
Newer Older
1
<?xml version="1.0" encoding="UTF-8"?>
MARCHE Claude's avatar
MARCHE Claude committed
2
<!DOCTYPE why3session PUBLIC "-//Why3//proof session v2//EN" "http://why3.lri.fr/why3session.dtd">
3
<why3session shape_version="2">
4
5
6
7
8
9
10
 <prover
  id="0"
  name="Alt-Ergo"
  version="0.94"/>
 <prover
  id="1"
  name="CVC3"
11
  version="2.4.1"/>
12
13
14
 <prover
  id="2"
  name="Coq"
15
  version="8.3pl4"/>
16
17
18
 <file
  name="../vstte12_ring_buffer.mlw"
  verified="true"
Andrei Paskevich's avatar
Andrei Paskevich committed
19
  expanded="true">
20
  <theory
Andrei Paskevich's avatar
Andrei Paskevich committed
21
   name="RingBuffer"
22
   locfile="../vstte12_ring_buffer.mlw"
23
   loclnum="10" loccnumb="7" loccnume="17"
24
25
26
27
   verified="true"
   expanded="true">
   <goal
    name="WP_parameter create"
28
    locfile="../vstte12_ring_buffer.mlw"
29
    loclnum="42" loccnumb="6" loccnume="12"
30
    expl="VC for create"
31
    sum="74205bb4fdb683ee24fa9b7fbd8d2e20"
32
33
    proved="true"
    expanded="true"
34
    shape="ainfix =V0V0Aainfix =anthV2aNilaSomeagetaconstV1ainfix -ainfix +c0V2V0Iainfix &lt;=c0ainfix -ainfix +c0V2V0Aainfix =anthV2aNilaSomeagetaconstV1ainfix +c0V2Iainfix &lt;ainfix +c0V2V0Iainfix &lt;V2c0Aainfix &lt;=c0V2FAainfix =c0alengthaNilAainfix &lt;=c0V0Aainfix &lt;=c0c0Aainfix &lt;c0V0Aainfix &lt;=c0c0Aainfix &gt;=V0c0Iainfix &gt;V0c0F">
35
    <label
36
     name="expl:VC for create"/>
37
38
39
    <proof
     prover="0"
     timelimit="10"
40
     memlimit="0"
41
42
     obsolete="false"
     archived="false">
43
     <result status="valid" time="0.01"/>
44
45
46
47
    </proof>
   </goal>
   <goal
    name="WP_parameter length"
48
    locfile="../vstte12_ring_buffer.mlw"
49
    loclnum="47" loccnumb="6" loccnume="12"
50
    expl="VC for length"
51
    sum="9a506fecc6e353fdac22771bcdf263c8"
52
53
    proved="true"
    expanded="true"
54
    shape="ainfix =V3V3Iainfix =anthV5V1aSomeagetV2ainfix -ainfix +V4V5V0Iainfix &lt;=c0ainfix -ainfix +V4V5V0Aainfix =anthV5V1aSomeagetV2ainfix +V4V5Iainfix &lt;ainfix +V4V5V0Iainfix &lt;V5V3Aainfix &lt;=c0V5FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
55
    <label
56
     name="expl:VC for length"/>
57
58
59
    <proof
     prover="0"
     timelimit="10"
60
     memlimit="0"
61
62
     obsolete="false"
     archived="false">
63
     <result status="valid" time="0.02"/>
64
65
66
67
    </proof>
   </goal>
   <goal
    name="WP_parameter clear"
68
    locfile="../vstte12_ring_buffer.mlw"
69
    loclnum="51" loccnumb="6" loccnume="11"
70
    expl="VC for clear"
71
    sum="d70c0988c6d4fbcd8159fa57b698f81b"
72
73
    proved="true"
    expanded="true"
74
    shape="ainfix =V5aNilAainfix =V6c0Aainfix =anthV7V5aSomeagetV2ainfix -ainfix +V4V7V0Iainfix &lt;=c0ainfix -ainfix +V4V7V0Aainfix =anthV7V5aSomeagetV2ainfix +V4V7Iainfix &lt;ainfix +V4V7V0Iainfix &lt;V7V6Aainfix &lt;=c0V7FAainfix =V6alengthV5Aainfix &lt;=V6V0Aainfix &lt;=c0V6Aainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6c0FIainfix =V5aNilFIainfix =anthV8V1aSomeagetV2ainfix -ainfix +V4V8V0Iainfix &lt;=c0ainfix -ainfix +V4V8V0Aainfix =anthV8V1aSomeagetV2ainfix +V4V8Iainfix &lt;ainfix +V4V8V0Iainfix &lt;V8V3Aainfix &lt;=c0V8FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
75
    <label
76
     name="expl:VC for clear"/>
77
78
79
    <proof
     prover="0"
     timelimit="10"
80
     memlimit="0"
81
82
     obsolete="false"
     archived="false">
83
     <result status="valid" time="0.01"/>
84
85
86
87
    </proof>
   </goal>
   <goal
    name="WP_parameter push"
88
    locfile="../vstte12_ring_buffer.mlw"
89
    loclnum="56" loccnumb="6" loccnume="10"
90
    expl="VC for push"
91
    sum="0038d805d13ad3ad0fc734f1529c65d9"
92
93
    proved="true"
    expanded="true"
94
    shape="ainfix =V6ainfix ++V2aConsV1aNilAainfix =V8ainfix +V4c1Aainfix =anthV9V6aSomeagetV7ainfix -ainfix +V5V9V0Iainfix &lt;=c0ainfix -ainfix +V5V9V0Aainfix =anthV9V6aSomeagetV7ainfix +V5V9Iainfix &lt;ainfix +V5V9V0Iainfix &lt;V9V8Aainfix &lt;=c0V9FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V5V0Aainfix &lt;=c0V5Iainfix =V8ainfix +V4c1FIainfix =V7asetV3iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V1FAainfix &lt;iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V0Aainfix &lt;=c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Iainfix =V6ainfix ++V2aConsV1aNilFIainfix &lt;V4V0Aainfix =anthV10V2aSomeagetV3ainfix -ainfix +V5V10V0Iainfix &lt;=c0ainfix -ainfix +V5V10V0Aainfix =anthV10V2aSomeagetV3ainfix +V5V10Iainfix &lt;ainfix +V5V10V0Iainfix &lt;V10V4Aainfix &lt;=c0V10FAainfix =V4alengthV2Aainfix &lt;=V4V0Aainfix &lt;=c0V4Aainfix &lt;V5V0Aainfix &lt;=c0V5FF">
95
    <label
96
     name="expl:VC for push"/>
97
98
99
100
101
102
    <transf
     name="split_goal"
     proved="true"
     expanded="true">
     <goal
      name="WP_parameter push.1"
103
      locfile="../vstte12_ring_buffer.mlw"
104
      loclnum="56" loccnumb="6" loccnume="10"
105
      expl="1. precondition"
106
      sum="c978f73cec0b73686e77bf3d43a0eb73"
107
108
      proved="true"
      expanded="true"
109
      shape="ainfix &lt;iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V0Aainfix &lt;=c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Iainfix =V6ainfix ++V2aConsV1aNilFIainfix &lt;V4V0Aainfix =anthV7V2aSomeagetV3ainfix -ainfix +V5V7V0Iainfix &lt;=c0ainfix -ainfix +V5V7V0Aainfix =anthV7V2aSomeagetV3ainfix +V5V7Iainfix &lt;ainfix +V5V7V0Iainfix &lt;V7V4Aainfix &lt;=c0V7FAainfix =V4alengthV2Aainfix &lt;=V4V0Aainfix &lt;=c0V4Aainfix &lt;V5V0Aainfix &lt;=c0V5FF">
110
      <label
111
       name="expl:VC for push"/>
112
113
114
      <proof
       prover="0"
       timelimit="10"
115
       memlimit="0"
116
117
       obsolete="false"
       archived="false">
118
       <result status="valid" time="0.01"/>
119
120
121
122
      </proof>
     </goal>
     <goal
      name="WP_parameter push.2"
123
      locfile="../vstte12_ring_buffer.mlw"
124
125
126
      loclnum="56" loccnumb="6" loccnume="10"
      expl="2. type invariant"
      sum="8ffa1efc946d5a928fa0b837177e0304"
127
128
      proved="true"
      expanded="true"
129
      shape="ainfix =anthV9V6aSomeagetV7ainfix -ainfix +V5V9V0Iainfix &lt;=c0ainfix -ainfix +V5V9V0Aainfix =anthV9V6aSomeagetV7ainfix +V5V9Iainfix &lt;ainfix +V5V9V0Iainfix &lt;V9V8Aainfix &lt;=c0V9FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V5V0Aainfix &lt;=c0V5Iainfix =V8ainfix +V4c1FIainfix =V7asetV3iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V1FIainfix &lt;iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V0Aainfix &lt;=c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Iainfix =V6ainfix ++V2aConsV1aNilFIainfix &lt;V4V0Aainfix =anthV10V2aSomeagetV3ainfix -ainfix +V5V10V0Iainfix &lt;=c0ainfix -ainfix +V5V10V0Aainfix =anthV10V2aSomeagetV3ainfix +V5V10Iainfix &lt;ainfix +V5V10V0Iainfix &lt;V10V4Aainfix &lt;=c0V10FAainfix =V4alengthV2Aainfix &lt;=V4V0Aainfix &lt;=c0V4Aainfix &lt;V5V0Aainfix &lt;=c0V5FF">
130
      <label
131
       name="expl:VC for push"/>
132
      <transf
133
       name="inline_goal"
134
135
136
       proved="true"
       expanded="true">
       <goal
137
        name="WP_parameter push.2.1"
138
        locfile="../vstte12_ring_buffer.mlw"
139
140
141
        loclnum="56" loccnumb="6" loccnume="10"
        expl="1. type invariant"
        sum="8c3d68988411fbc4544b1c63b0d7abb9"
142
143
        proved="true"
        expanded="true"
144
        shape="ainfix =anthV9V6aSomeagetV7ainfix -ainfix +V5V9V0Iainfix =c0ainfix -ainfix +V5V9V0Oainfix &lt;c0ainfix -ainfix +V5V9V0Aainfix =anthV9V6aSomeagetV7ainfix +V5V9Iainfix &lt;ainfix +V5V9V0Iainfix &lt;V9V8Aainfix =c0V9Oainfix &lt;c0V9FAainfix =V8alengthV6Aainfix =V8V0Oainfix &lt;V8V0Aainfix =c0V8Oainfix &lt;c0V8Aainfix &lt;V5V0Aainfix =c0V5Oainfix &lt;c0V5Iainfix =V8ainfix +V4c1FIainfix =V7asetV3iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V1FIainfix &lt;iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V0Aainfix =c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Oainfix &lt;c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Iainfix =V6ainfix ++V2aConsV1aNilFIainfix &lt;V4V0Aainfix =anthV10V2aSomeagetV3ainfix -ainfix +V5V10V0Iainfix =c0ainfix -ainfix +V5V10V0Oainfix &lt;c0ainfix -ainfix +V5V10V0Aainfix =anthV10V2aSomeagetV3ainfix +V5V10Iainfix &lt;ainfix +V5V10V0Iainfix &lt;V10V4Aainfix =c0V10Oainfix &lt;c0V10FAainfix =V4alengthV2Aainfix =V4V0Oainfix &lt;V4V0Aainfix =c0V4Oainfix &lt;c0V4Aainfix &lt;V5V0Aainfix =c0V5Oainfix &lt;c0V5FF">
145
        <label
146
         name="expl:VC for push"/>
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
        <transf
         name="split_goal"
         proved="true"
         expanded="true">
         <goal
          name="WP_parameter push.2.1.1"
          locfile="../vstte12_ring_buffer.mlw"
          loclnum="56" loccnumb="6" loccnume="10"
          expl="1."
          sum="ad4165f476ececc018b1118c124d8a16"
          proved="true"
          expanded="true"
          shape="ainfix =c0V5Oainfix &lt;c0V5Iainfix =V8ainfix +V4c1FIainfix =V7asetV3iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V1FIainfix &lt;iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V0Aainfix =c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Oainfix &lt;c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Iainfix =V6ainfix ++V2aConsV1aNilFIainfix &lt;V4V0Aainfix =anthV9V2aSomeagetV3ainfix -ainfix +V5V9V0Iainfix =c0ainfix -ainfix +V5V9V0Oainfix &lt;c0ainfix -ainfix +V5V9V0Aainfix =anthV9V2aSomeagetV3ainfix +V5V9Iainfix &lt;ainfix +V5V9V0Iainfix &lt;V9V4Aainfix =c0V9Oainfix &lt;c0V9FAainfix =V4alengthV2Aainfix =V4V0Oainfix &lt;V4V0Aainfix =c0V4Oainfix &lt;c0V4Aainfix &lt;V5V0Aainfix =c0V5Oainfix &lt;c0V5FF">
          <label
           name="expl:VC for push"/>
          <proof
           prover="0"
           timelimit="5"
           memlimit="1000"
           obsolete="false"
           archived="false">
           <result status="valid" time="0.02"/>
          </proof>
         </goal>
         <goal
          name="WP_parameter push.2.1.2"
          locfile="../vstte12_ring_buffer.mlw"
          loclnum="56" loccnumb="6" loccnume="10"
          expl="2."
          sum="f5f93c6c512bb2a4182982570637c8ba"
          proved="true"
          expanded="true"
          shape="ainfix &lt;V5V0Iainfix =V8ainfix +V4c1FIainfix =V7asetV3iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V1FIainfix &lt;iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V0Aainfix =c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Oainfix &lt;c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Iainfix =V6ainfix ++V2aConsV1aNilFIainfix &lt;V4V0Aainfix =anthV9V2aSomeagetV3ainfix -ainfix +V5V9V0Iainfix =c0ainfix -ainfix +V5V9V0Oainfix &lt;c0ainfix -ainfix +V5V9V0Aainfix =anthV9V2aSomeagetV3ainfix +V5V9Iainfix &lt;ainfix +V5V9V0Iainfix &lt;V9V4Aainfix =c0V9Oainfix &lt;c0V9FAainfix =V4alengthV2Aainfix =V4V0Oainfix &lt;V4V0Aainfix =c0V4Oainfix &lt;c0V4Aainfix &lt;V5V0Aainfix =c0V5Oainfix &lt;c0V5FF">
          <label
           name="expl:VC for push"/>
          <proof
           prover="0"
           timelimit="5"
           memlimit="1000"
           obsolete="false"
           archived="false">
           <result status="valid" time="0.02"/>
          </proof>
         </goal>
         <goal
          name="WP_parameter push.2.1.3"
          locfile="../vstte12_ring_buffer.mlw"
          loclnum="56" loccnumb="6" loccnume="10"
          expl="3."
          sum="c116a507ece5caa1f5d6d85a9a4104d2"
          proved="true"
          expanded="true"
          shape="ainfix =c0V8Oainfix &lt;c0V8Iainfix =V8ainfix +V4c1FIainfix =V7asetV3iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V1FIainfix &lt;iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V0Aainfix =c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Oainfix &lt;c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Iainfix =V6ainfix ++V2aConsV1aNilFIainfix &lt;V4V0Aainfix =anthV9V2aSomeagetV3ainfix -ainfix +V5V9V0Iainfix =c0ainfix -ainfix +V5V9V0Oainfix &lt;c0ainfix -ainfix +V5V9V0Aainfix =anthV9V2aSomeagetV3ainfix +V5V9Iainfix &lt;ainfix +V5V9V0Iainfix &lt;V9V4Aainfix =c0V9Oainfix &lt;c0V9FAainfix =V4alengthV2Aainfix =V4V0Oainfix &lt;V4V0Aainfix =c0V4Oainfix &lt;c0V4Aainfix &lt;V5V0Aainfix =c0V5Oainfix &lt;c0V5FF">
          <label
           name="expl:VC for push"/>
          <proof
           prover="0"
           timelimit="5"
           memlimit="1000"
           obsolete="false"
           archived="false">
           <result status="valid" time="0.02"/>
          </proof>
         </goal>
         <goal
          name="WP_parameter push.2.1.4"
          locfile="../vstte12_ring_buffer.mlw"
          loclnum="56" loccnumb="6" loccnume="10"
          expl="4."
          sum="4c9a2e2ec0363b973d760dca698bd3ee"
          proved="true"
          expanded="true"
          shape="ainfix =V8V0Oainfix &lt;V8V0Iainfix =V8ainfix +V4c1FIainfix =V7asetV3iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V1FIainfix &lt;iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V0Aainfix =c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Oainfix &lt;c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Iainfix =V6ainfix ++V2aConsV1aNilFIainfix &lt;V4V0Aainfix =anthV9V2aSomeagetV3ainfix -ainfix +V5V9V0Iainfix =c0ainfix -ainfix +V5V9V0Oainfix &lt;c0ainfix -ainfix +V5V9V0Aainfix =anthV9V2aSomeagetV3ainfix +V5V9Iainfix &lt;ainfix +V5V9V0Iainfix &lt;V9V4Aainfix =c0V9Oainfix &lt;c0V9FAainfix =V4alengthV2Aainfix =V4V0Oainfix &lt;V4V0Aainfix =c0V4Oainfix &lt;c0V4Aainfix &lt;V5V0Aainfix =c0V5Oainfix &lt;c0V5FF">
          <label
           name="expl:VC for push"/>
          <proof
           prover="0"
           timelimit="10"
           memlimit="0"
           obsolete="false"
           archived="false">
           <result status="valid" time="0.01"/>
          </proof>
         </goal>
         <goal
          name="WP_parameter push.2.1.5"
          locfile="../vstte12_ring_buffer.mlw"
          loclnum="56" loccnumb="6" loccnume="10"
          expl="5."
          sum="8d5f54fc940bf2e2886f1f4e98a34b2d"
          proved="true"
          expanded="true"
          shape="ainfix =V8alengthV6Iainfix =V8ainfix +V4c1FIainfix =V7asetV3iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V1FIainfix &lt;iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V0Aainfix =c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Oainfix &lt;c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Iainfix =V6ainfix ++V2aConsV1aNilFIainfix &lt;V4V0Aainfix =anthV9V2aSomeagetV3ainfix -ainfix +V5V9V0Iainfix =c0ainfix -ainfix +V5V9V0Oainfix &lt;c0ainfix -ainfix +V5V9V0Aainfix =anthV9V2aSomeagetV3ainfix +V5V9Iainfix &lt;ainfix +V5V9V0Iainfix &lt;V9V4Aainfix =c0V9Oainfix &lt;c0V9FAainfix =V4alengthV2Aainfix =V4V0Oainfix &lt;V4V0Aainfix =c0V4Oainfix &lt;c0V4Aainfix &lt;V5V0Aainfix =c0V5Oainfix &lt;c0V5FF">
          <label
           name="expl:VC for push"/>
          <proof
           prover="0"
           timelimit="10"
           memlimit="0"
           obsolete="false"
           archived="false">
           <result status="valid" time="0.03"/>
          </proof>
         </goal>
         <goal
          name="WP_parameter push.2.1.6"
          locfile="../vstte12_ring_buffer.mlw"
          loclnum="56" loccnumb="6" loccnume="10"
          expl="6."
          sum="fbe9f06f23784edfbf61ffefbaf160a9"
          proved="true"
          expanded="true"
          shape="ainfix =anthV9V6aSomeagetV7ainfix +V5V9Iainfix &lt;ainfix +V5V9V0Iainfix &lt;V9V8Aainfix =c0V9Oainfix &lt;c0V9FIainfix =V8ainfix +V4c1FIainfix =V7asetV3iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V1FIainfix &lt;iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V0Aainfix =c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Oainfix &lt;c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Iainfix =V6ainfix ++V2aConsV1aNilFIainfix &lt;V4V0Aainfix =anthV10V2aSomeagetV3ainfix -ainfix +V5V10V0Iainfix =c0ainfix -ainfix +V5V10V0Oainfix &lt;c0ainfix -ainfix +V5V10V0Aainfix =anthV10V2aSomeagetV3ainfix +V5V10Iainfix &lt;ainfix +V5V10V0Iainfix &lt;V10V4Aainfix =c0V10Oainfix &lt;c0V10FAainfix =V4alengthV2Aainfix =V4V0Oainfix &lt;V4V0Aainfix =c0V4Oainfix &lt;c0V4Aainfix &lt;V5V0Aainfix =c0V5Oainfix &lt;c0V5FF">
          <label
           name="expl:VC for push"/>
          <proof
           prover="0"
           timelimit="5"
           memlimit="1000"
           obsolete="false"
           archived="false">
           <result status="valid" time="0.16"/>
          </proof>
         </goal>
         <goal
          name="WP_parameter push.2.1.7"
          locfile="../vstte12_ring_buffer.mlw"
          loclnum="56" loccnumb="6" loccnume="10"
          expl="7."
          sum="12006659e604f2d18054b5bb66e582c9"
          proved="true"
          expanded="true"
          shape="ainfix =anthV9V6aSomeagetV7ainfix -ainfix +V5V9V0Iainfix =c0ainfix -ainfix +V5V9V0Oainfix &lt;c0ainfix -ainfix +V5V9V0Iainfix &lt;V9V8Aainfix =c0V9Oainfix &lt;c0V9FIainfix =V8ainfix +V4c1FIainfix =V7asetV3iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V1FIainfix &lt;iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V0Aainfix =c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Oainfix &lt;c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Iainfix =V6ainfix ++V2aConsV1aNilFIainfix &lt;V4V0Aainfix =anthV10V2aSomeagetV3ainfix -ainfix +V5V10V0Iainfix =c0ainfix -ainfix +V5V10V0Oainfix &lt;c0ainfix -ainfix +V5V10V0Aainfix =anthV10V2aSomeagetV3ainfix +V5V10Iainfix &lt;ainfix +V5V10V0Iainfix &lt;V10V4Aainfix =c0V10Oainfix &lt;c0V10FAainfix =V4alengthV2Aainfix =V4V0Oainfix &lt;V4V0Aainfix =c0V4Oainfix &lt;c0V4Aainfix &lt;V5V0Aainfix =c0V5Oainfix &lt;c0V5FF">
          <label
           name="expl:VC for push"/>
          <proof
           prover="0"
           timelimit="10"
           memlimit="1000"
           obsolete="false"
           archived="false">
           <result status="valid" time="0.08"/>
          </proof>
         </goal>
        </transf>
292
293
294
       </goal>
      </transf>
     </goal>
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
     <goal
      name="WP_parameter push.3"
      locfile="../vstte12_ring_buffer.mlw"
      loclnum="56" loccnumb="6" loccnume="10"
      expl="3. postcondition"
      sum="696361f150215c6df4903686601fac05"
      proved="true"
      expanded="true"
      shape="ainfix =V6ainfix ++V2aConsV1aNilAainfix =V8ainfix +V4c1Iainfix =anthV9V6aSomeagetV7ainfix -ainfix +V5V9V0Iainfix &lt;=c0ainfix -ainfix +V5V9V0Aainfix =anthV9V6aSomeagetV7ainfix +V5V9Iainfix &lt;ainfix +V5V9V0Iainfix &lt;V9V8Aainfix &lt;=c0V9FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V5V0Aainfix &lt;=c0V5Iainfix =V8ainfix +V4c1FIainfix =V7asetV3iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V1FIainfix &lt;iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4V0Aainfix &lt;=c0iainfix &gt;=ainfix +V5V4V0ainfix -ainfix +V5V4V0ainfix +V5V4Iainfix =V6ainfix ++V2aConsV1aNilFIainfix &lt;V4V0Aainfix =anthV10V2aSomeagetV3ainfix -ainfix +V5V10V0Iainfix &lt;=c0ainfix -ainfix +V5V10V0Aainfix =anthV10V2aSomeagetV3ainfix +V5V10Iainfix &lt;ainfix +V5V10V0Iainfix &lt;V10V4Aainfix &lt;=c0V10FAainfix =V4alengthV2Aainfix &lt;=V4V0Aainfix &lt;=c0V4Aainfix &lt;V5V0Aainfix &lt;=c0V5FF">
      <label
       name="expl:VC for push"/>
      <proof
       prover="0"
       timelimit="5"
       memlimit="1000"
       obsolete="false"
       archived="false">
       <result status="valid" time="0.01"/>
      </proof>
     </goal>
315
316
317
318
    </transf>
   </goal>
   <goal
    name="WP_parameter head"
319
    locfile="../vstte12_ring_buffer.mlw"
320
    loclnum="66" loccnumb="6" loccnume="10"
321
    expl="VC for head"
322
    sum="573362df6e1476cb14b20acdfdab8031"
323
324
    proved="true"
    expanded="true"
325
    shape="CV1aNilfaConsVwainfix =agetV2V4V5Aainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix &gt;V3c0Aainfix =anthV6V1aSomeagetV2ainfix -ainfix +V4V6V0Iainfix &lt;=c0ainfix -ainfix +V4V6V0Aainfix =anthV6V1aSomeagetV2ainfix +V4V6Iainfix &lt;ainfix +V4V6V0Iainfix &lt;V6V3Aainfix &lt;=c0V6FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
326
    <label
327
     name="expl:VC for head"/>
328
329
330
331
332
333
    <transf
     name="split_goal"
     proved="true"
     expanded="true">
     <goal
      name="WP_parameter head.1"
334
      locfile="../vstte12_ring_buffer.mlw"
335
      loclnum="66" loccnumb="6" loccnume="10"
336
      expl="1. precondition"
337
      sum="a9bf9a0b5298d7f9f087ec971089c5ec"
338
339
      proved="true"
      expanded="true"
340
      shape="ainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix &gt;V3c0Aainfix =anthV5V1aSomeagetV2ainfix -ainfix +V4V5V0Iainfix &lt;=c0ainfix -ainfix +V4V5V0Aainfix =anthV5V1aSomeagetV2ainfix +V4V5Iainfix &lt;ainfix +V4V5V0Iainfix &lt;V5V3Aainfix &lt;=c0V5FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
341
      <label
342
       name="expl:VC for head"/>
343
344
345
      <proof
       prover="0"
       timelimit="10"
346
       memlimit="0"
347
348
       obsolete="false"
       archived="false">
349
       <result status="valid" time="0.02"/>
350
351
352
353
      </proof>
     </goal>
     <goal
      name="WP_parameter head.2"
354
      locfile="../vstte12_ring_buffer.mlw"
355
      loclnum="66" loccnumb="6" loccnume="10"
356
      expl="2. postcondition"
357
      sum="4a0045483615f456bac792de933b567e"
358
359
      proved="true"
      expanded="true"
360
      shape="CV1aNilfaConsVwainfix =agetV2V4V5Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix &gt;V3c0Aainfix =anthV6V1aSomeagetV2ainfix -ainfix +V4V6V0Iainfix &lt;=c0ainfix -ainfix +V4V6V0Aainfix =anthV6V1aSomeagetV2ainfix +V4V6Iainfix &lt;ainfix +V4V6V0Iainfix &lt;V6V3Aainfix &lt;=c0V6FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
361
      <label
362
       name="expl:VC for head"/>
363
      <proof
364
365
366
367
       prover="2"
       timelimit="5"
       memlimit="1000"
       edited="vstte12_ring_buffer_2_RingBuffer_WP_parameter_head_1.v"
368
369
       obsolete="false"
       archived="false">
370
       <result status="valid" time="0.66"/>
371
372
373
374
375
376
      </proof>
     </goal>
    </transf>
   </goal>
   <goal
    name="WP_parameter pop"
377
    locfile="../vstte12_ring_buffer.mlw"
378
    loclnum="71" loccnumb="6" loccnume="9"
379
    expl="VC for pop"
380
    sum="71d2ef3e1b16f7266037842df55d6b76"
381
382
    proved="true"
    expanded="true"
383
    shape="CV1aNilfaConswViainfix =V9V0CV1aNilfaConsVVainfix =V6V12Aainfix =V7V11Aainfix =V8ainfix -V3c1Aainfix =anthV13V6aSomeagetV2ainfix -ainfix +V10V13V0Iainfix &lt;=c0ainfix -ainfix +V10V13V0Aainfix =anthV13V6aSomeagetV2ainfix +V10V13Iainfix &lt;ainfix +V10V13V0Iainfix &lt;V13V8Aainfix &lt;=c0V13FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V10V0Aainfix &lt;=c0V10Iainfix =V10c0FCV1aNilfaConsVVainfix =V6V15Aainfix =V7V14Aainfix =V8ainfix -V3c1Aainfix =anthV16V6aSomeagetV2ainfix -ainfix +V9V16V0Iainfix &lt;=c0ainfix -ainfix +V9V16V0Aainfix =anthV16V6aSomeagetV2ainfix +V9V16Iainfix &lt;ainfix +V9V16V0Iainfix &lt;V16V8Aainfix &lt;=c0V16FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V9V0Aainfix &lt;=c0V9Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Aainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV17V1aSomeagetV2ainfix -ainfix +V4V17V0Iainfix &lt;=c0ainfix -ainfix +V4V17V0Aainfix =anthV17V1aSomeagetV2ainfix +V4V17Iainfix &lt;ainfix +V4V17V0Iainfix &lt;V17V3Aainfix &lt;=c0V17FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
384
    <label
385
     name="expl:VC for pop"/>
386
387
388
389
390
391
    <transf
     name="split_goal"
     proved="true"
     expanded="true">
     <goal
      name="WP_parameter pop.1"
392
      locfile="../vstte12_ring_buffer.mlw"
393
394
395
      loclnum="71" loccnumb="6" loccnume="9"
      expl="1."
      sum="c81139d7c3b8d9723d5306e4d8efcc3f"
396
397
      proved="true"
      expanded="true"
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
      shape="CV1aNilfaConswVtIainfix &gt;V3c0Aainfix =anthV6V1aSomeagetV2ainfix -ainfix +V4V6V0Iainfix &lt;=c0ainfix -ainfix +V4V6V0Aainfix =anthV6V1aSomeagetV2ainfix +V4V6Iainfix &lt;ainfix +V4V6V0Iainfix &lt;V6V3Aainfix &lt;=c0V6FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
      <label
       name="expl:VC for pop"/>
      <proof
       prover="0"
       timelimit="10"
       memlimit="0"
       obsolete="false"
       archived="false">
       <result status="valid" time="0.00"/>
      </proof>
     </goal>
     <goal
      name="WP_parameter pop.2"
      locfile="../vstte12_ring_buffer.mlw"
      loclnum="71" loccnumb="6" loccnume="9"
      expl="2. precondition"
      sum="cd432328d1bcbd9605d02b60f775c060"
      proved="true"
      expanded="true"
      shape="CV1aNiltaConswVainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV7V1aSomeagetV2ainfix -ainfix +V4V7V0Iainfix &lt;=c0ainfix -ainfix +V4V7V0Aainfix =anthV7V1aSomeagetV2ainfix +V4V7Iainfix &lt;ainfix +V4V7V0Iainfix &lt;V7V3Aainfix &lt;=c0V7FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
419
      <label
420
       name="expl:VC for pop"/>
421
422
423
      <proof
       prover="0"
       timelimit="10"
424
       memlimit="0"
425
426
       obsolete="false"
       archived="false">
Andrei Paskevich's avatar
Andrei Paskevich committed
427
       <result status="valid" time="0.02"/>
428
429
430
      </proof>
     </goal>
     <goal
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
563
564
565
566
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
589
590
591
592
593
594
595
596
597
598
599
600
601
602
603
604
605
606
607
608
609
610
611
612
613
614
615
616
617
618
619
620
621
622
623
624
625
626
627
628
629
630
631
632
633
634
635
636
637
638
639
640
641
642
643
644
645
646
647
648
649
650
651
652
653
654
655
656
657
658
659
660
661
662
663
664
665
666
667
668
669
670
671
672
673
674
675
676
677
678
679
680
681
682
683
684
685
686
687
688
689
690
691
692
693
694
695
696
697
698
699
700
701
702
      name="WP_parameter pop.3"
      locfile="../vstte12_ring_buffer.mlw"
      loclnum="71" loccnumb="6" loccnume="9"
      expl="3. type invariant"
      sum="cc87500c05c5c6f6b03a641ab3009673"
      proved="true"
      expanded="true"
      shape="CV1aNiltaConswVainfix =anthV11V6aSomeagetV2ainfix -ainfix +V10V11V0Iainfix &lt;=c0ainfix -ainfix +V10V11V0Aainfix =anthV11V6aSomeagetV2ainfix +V10V11Iainfix &lt;ainfix +V10V11V0Iainfix &lt;V11V8Aainfix &lt;=c0V11FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V10V0Aainfix &lt;=c0V10Iainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV12V1aSomeagetV2ainfix -ainfix +V4V12V0Iainfix &lt;=c0ainfix -ainfix +V4V12V0Aainfix =anthV12V1aSomeagetV2ainfix +V4V12Iainfix &lt;ainfix +V4V12V0Iainfix &lt;V12V3Aainfix &lt;=c0V12FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
      <label
       name="expl:VC for pop"/>
      <transf
       name="split_goal"
       proved="true"
       expanded="true">
       <goal
        name="WP_parameter pop.3.1"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="1."
        sum="25e041ff05040d41b921de8db424690e"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVainfix &lt;=c0V10Iainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV11V1aSomeagetV2ainfix -ainfix +V4V11V0Iainfix &lt;=c0ainfix -ainfix +V4V11V0Aainfix =anthV11V1aSomeagetV2ainfix +V4V11Iainfix &lt;ainfix +V4V11V0Iainfix &lt;V11V3Aainfix &lt;=c0V11FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="0"
         timelimit="10"
         memlimit="0"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.01"/>
        </proof>
       </goal>
       <goal
        name="WP_parameter pop.3.2"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="2."
        sum="11415e3dba60f6d94a0a11b469e9a9a1"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVainfix &lt;V10V0Iainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV11V1aSomeagetV2ainfix -ainfix +V4V11V0Iainfix &lt;=c0ainfix -ainfix +V4V11V0Aainfix =anthV11V1aSomeagetV2ainfix +V4V11Iainfix &lt;ainfix +V4V11V0Iainfix &lt;V11V3Aainfix &lt;=c0V11FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="0"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.02"/>
        </proof>
       </goal>
       <goal
        name="WP_parameter pop.3.3"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="3."
        sum="68c94c5251bf2e114765dbac8dc3935e"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVainfix &lt;=c0V8Iainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV11V1aSomeagetV2ainfix -ainfix +V4V11V0Iainfix &lt;=c0ainfix -ainfix +V4V11V0Aainfix =anthV11V1aSomeagetV2ainfix +V4V11Iainfix &lt;ainfix +V4V11V0Iainfix &lt;V11V3Aainfix &lt;=c0V11FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="0"
         timelimit="10"
         memlimit="0"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.01"/>
        </proof>
       </goal>
       <goal
        name="WP_parameter pop.3.4"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="4."
        sum="6843882b252d33309f83f5ab423ae332"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVainfix &lt;=V8V0Iainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV11V1aSomeagetV2ainfix -ainfix +V4V11V0Iainfix &lt;=c0ainfix -ainfix +V4V11V0Aainfix =anthV11V1aSomeagetV2ainfix +V4V11Iainfix &lt;ainfix +V4V11V0Iainfix &lt;V11V3Aainfix &lt;=c0V11FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="0"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.02"/>
        </proof>
        <proof
         prover="1"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.02"/>
        </proof>
       </goal>
       <goal
        name="WP_parameter pop.3.5"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="5."
        sum="961e9e1ddc225bcc6188845497aa3314"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVainfix =V8alengthV6Iainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV11V1aSomeagetV2ainfix -ainfix +V4V11V0Iainfix &lt;=c0ainfix -ainfix +V4V11V0Aainfix =anthV11V1aSomeagetV2ainfix +V4V11Iainfix &lt;ainfix +V4V11V0Iainfix &lt;V11V3Aainfix &lt;=c0V11FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="0"
         timelimit="10"
         memlimit="0"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.01"/>
        </proof>
       </goal>
       <goal
        name="WP_parameter pop.3.6"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="6."
        sum="df2650193097452d57d8699a25790f7e"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVainfix =anthV11V6aSomeagetV2ainfix +V10V11Iainfix &lt;ainfix +V10V11V0Iainfix &lt;V11V8Aainfix &lt;=c0V11FIainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV12V1aSomeagetV2ainfix -ainfix +V4V12V0Iainfix &lt;=c0ainfix -ainfix +V4V12V0Aainfix =anthV12V1aSomeagetV2ainfix +V4V12Iainfix &lt;ainfix +V4V12V0Iainfix &lt;V12V3Aainfix &lt;=c0V12FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="0"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="unknown" time="0.07"/>
        </proof>
        <proof
         prover="1"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.21"/>
        </proof>
       </goal>
       <goal
        name="WP_parameter pop.3.7"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="7."
        sum="a094745b072e95b3f73bbf8a5dccc06b"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVainfix =anthV11V6aSomeagetV2ainfix -ainfix +V10V11V0Iainfix &lt;=c0ainfix -ainfix +V10V11V0Iainfix &lt;V11V8Aainfix &lt;=c0V11FIainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV12V1aSomeagetV2ainfix -ainfix +V4V12V0Iainfix &lt;=c0ainfix -ainfix +V4V12V0Aainfix =anthV12V1aSomeagetV2ainfix +V4V12Iainfix &lt;ainfix +V4V12V0Iainfix &lt;V12V3Aainfix &lt;=c0V12FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="0"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.02"/>
        </proof>
       </goal>
      </transf>
     </goal>
     <goal
      name="WP_parameter pop.4"
      locfile="../vstte12_ring_buffer.mlw"
      loclnum="71" loccnumb="6" loccnume="9"
      expl="4. postcondition"
      sum="fa58220cd976459d77e7a84386b2d47e"
      proved="true"
      expanded="true"
      shape="CV1aNiltaConswVCV1aNilfaConsVVainfix =V6V12Aainfix =V7V11Aainfix =V8ainfix -V3c1Iainfix =anthV13V6aSomeagetV2ainfix -ainfix +V10V13V0Iainfix &lt;=c0ainfix -ainfix +V10V13V0Aainfix =anthV13V6aSomeagetV2ainfix +V10V13Iainfix &lt;ainfix +V10V13V0Iainfix &lt;V13V8Aainfix &lt;=c0V13FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V10V0Aainfix &lt;=c0V10Iainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV14V1aSomeagetV2ainfix -ainfix +V4V14V0Iainfix &lt;=c0ainfix -ainfix +V4V14V0Aainfix =anthV14V1aSomeagetV2ainfix +V4V14Iainfix &lt;ainfix +V4V14V0Iainfix &lt;V14V3Aainfix &lt;=c0V14FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
      <label
       name="expl:VC for pop"/>
      <transf
       name="split_goal_wp"
       proved="true"
       expanded="true">
       <goal
        name="WP_parameter pop.4.1"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="1."
        sum="228c7d257ce6a10accb6d9f597b06b7f"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVainfix =V8ainfix -V3c1Iainfix =anthV11V6aSomeagetV2ainfix -ainfix +V10V11V0Iainfix &lt;=c0ainfix -ainfix +V10V11V0Aainfix =anthV11V6aSomeagetV2ainfix +V10V11Iainfix &lt;ainfix +V10V11V0Iainfix &lt;V11V8Aainfix &lt;=c0V11FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V10V0Aainfix &lt;=c0V10Iainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV12V1aSomeagetV2ainfix -ainfix +V4V12V0Iainfix &lt;=c0ainfix -ainfix +V4V12V0Aainfix =anthV12V1aSomeagetV2ainfix +V4V12Iainfix &lt;ainfix +V4V12V0Iainfix &lt;V12V3Aainfix &lt;=c0V12FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="0"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.01"/>
        </proof>
       </goal>
       <goal
        name="WP_parameter pop.4.2"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="2."
        sum="f5fbec59574bf84906652c5a9b58f362"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVCV1aNilfaConsVVtIainfix =anthV13V6aSomeagetV2ainfix -ainfix +V10V13V0Iainfix &lt;=c0ainfix -ainfix +V10V13V0Aainfix =anthV13V6aSomeagetV2ainfix +V10V13Iainfix &lt;ainfix +V10V13V0Iainfix &lt;V13V8Aainfix &lt;=c0V13FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V10V0Aainfix &lt;=c0V10Iainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV14V1aSomeagetV2ainfix -ainfix +V4V14V0Iainfix &lt;=c0ainfix -ainfix +V4V14V0Aainfix =anthV14V1aSomeagetV2ainfix +V4V14Iainfix &lt;ainfix +V4V14V0Iainfix &lt;V14V3Aainfix &lt;=c0V14FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="0"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.01"/>
        </proof>
       </goal>
       <goal
        name="WP_parameter pop.4.3"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="3."
        sum="9c7f27b9c9d860f82d4cdc130d4e557f"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVCV1aNiltaConsVVainfix =V7V11Iainfix =anthV13V6aSomeagetV2ainfix -ainfix +V10V13V0Iainfix &lt;=c0ainfix -ainfix +V10V13V0Aainfix =anthV13V6aSomeagetV2ainfix +V10V13Iainfix &lt;ainfix +V10V13V0Iainfix &lt;V13V8Aainfix &lt;=c0V13FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V10V0Aainfix &lt;=c0V10Iainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV14V1aSomeagetV2ainfix -ainfix +V4V14V0Iainfix &lt;=c0ainfix -ainfix +V4V14V0Aainfix =anthV14V1aSomeagetV2ainfix +V4V14Iainfix &lt;ainfix +V4V14V0Iainfix &lt;V14V3Aainfix &lt;=c0V14FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="2"
         timelimit="5"
         memlimit="1000"
         edited="vstte12_ring_buffer_2_RingBuffer_WP_parameter_pop_4.v"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.68"/>
        </proof>
       </goal>
       <goal
        name="WP_parameter pop.4.4"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="4."
        sum="042d66beb6198b3c67602c22f5e0b5e5"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVCV1aNiltaConsVVainfix =V6V12Iainfix =anthV13V6aSomeagetV2ainfix -ainfix +V10V13V0Iainfix &lt;=c0ainfix -ainfix +V10V13V0Aainfix =anthV13V6aSomeagetV2ainfix +V10V13Iainfix &lt;ainfix +V10V13V0Iainfix &lt;V13V8Aainfix &lt;=c0V13FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V10V0Aainfix &lt;=c0V10Iainfix =V10c0FIainfix =V9V0Iainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV14V1aSomeagetV2ainfix -ainfix +V4V14V0Iainfix &lt;=c0ainfix -ainfix +V4V14V0Aainfix =anthV14V1aSomeagetV2ainfix +V4V14Iainfix &lt;ainfix +V4V14V0Iainfix &lt;V14V3Aainfix &lt;=c0V14FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="0"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.00"/>
        </proof>
       </goal>
      </transf>
     </goal>
     <goal
      name="WP_parameter pop.5"
703
      locfile="../vstte12_ring_buffer.mlw"
704
705
706
      loclnum="71" loccnumb="6" loccnume="9"
      expl="5. type invariant"
      sum="0b094b8a8bcceac5a01a739fc59272b7"
707
708
      proved="true"
      expanded="true"
709
      shape="CV1aNiltaConswVainfix =anthV10V6aSomeagetV2ainfix -ainfix +V9V10V0Iainfix &lt;=c0ainfix -ainfix +V9V10V0Aainfix =anthV10V6aSomeagetV2ainfix +V9V10Iainfix &lt;ainfix +V9V10V0Iainfix &lt;V10V8Aainfix &lt;=c0V10FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V9V0Aainfix &lt;=c0V9Iainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV11V1aSomeagetV2ainfix -ainfix +V4V11V0Iainfix &lt;=c0ainfix -ainfix +V4V11V0Aainfix =anthV11V1aSomeagetV2ainfix +V4V11Iainfix &lt;ainfix +V4V11V0Iainfix &lt;V11V3Aainfix &lt;=c0V11FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
710
      <label
711
       name="expl:VC for pop"/>
712
713
714
715
716
      <transf
       name="split_goal"
       proved="true"
       expanded="true">
       <goal
717
        name="WP_parameter pop.5.1"
718
        locfile="../vstte12_ring_buffer.mlw"
719
        loclnum="71" loccnumb="6" loccnume="9"
720
        expl="1."
721
        sum="47397c91e458a36bcfe11dca20e4ead0"
722
723
        proved="true"
        expanded="true"
724
        shape="CV1aNiltaConswVainfix &lt;=c0V9Iainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV10V1aSomeagetV2ainfix -ainfix +V4V10V0Iainfix &lt;=c0ainfix -ainfix +V4V10V0Aainfix =anthV10V1aSomeagetV2ainfix +V4V10Iainfix &lt;ainfix +V4V10V0Iainfix &lt;V10V3Aainfix &lt;=c0V10FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
725
        <label
726
         name="expl:VC for pop"/>
727
728
729
        <proof
         prover="0"
         timelimit="10"
730
         memlimit="0"
731
732
         obsolete="false"
         archived="false">
733
         <result status="valid" time="0.01"/>
734
735
736
        </proof>
       </goal>
       <goal
737
        name="WP_parameter pop.5.2"
738
        locfile="../vstte12_ring_buffer.mlw"
739
        loclnum="71" loccnumb="6" loccnume="9"
740
        expl="2."
741
        sum="f74ffd1e27cd8d4925744afbe7ca224f"
742
743
        proved="true"
        expanded="true"
744
        shape="CV1aNiltaConswVainfix &lt;V9V0Iainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV10V1aSomeagetV2ainfix -ainfix +V4V10V0Iainfix &lt;=c0ainfix -ainfix +V4V10V0Aainfix =anthV10V1aSomeagetV2ainfix +V4V10Iainfix &lt;ainfix +V4V10V0Iainfix &lt;V10V3Aainfix &lt;=c0V10FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
745
        <label
746
         name="expl:VC for pop"/>
747
748
        <proof
         prover="0"
749
750
         timelimit="5"
         memlimit="1000"
751
752
         obsolete="false"
         archived="false">
753
         <result status="valid" time="0.01"/>
754
755
756
        </proof>
       </goal>
       <goal
757
        name="WP_parameter pop.5.3"
758
        locfile="../vstte12_ring_buffer.mlw"
759
        loclnum="71" loccnumb="6" loccnume="9"
760
        expl="3."
761
        sum="23d4dfbac280a2bee240389285e71587"
762
763
        proved="true"
        expanded="true"
764
        shape="CV1aNiltaConswVainfix &lt;=c0V8Iainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV10V1aSomeagetV2ainfix -ainfix +V4V10V0Iainfix &lt;=c0ainfix -ainfix +V4V10V0Aainfix =anthV10V1aSomeagetV2ainfix +V4V10Iainfix &lt;ainfix +V4V10V0Iainfix &lt;V10V3Aainfix &lt;=c0V10FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
765
        <label
766
         name="expl:VC for pop"/>
767
        <proof
768
         prover="0"
769
         timelimit="10"
770
         memlimit="0"
771
772
         obsolete="false"
         archived="false">
773
         <result status="valid" time="0.02"/>
774
775
776
        </proof>
       </goal>
       <goal
777
        name="WP_parameter pop.5.4"
778
        locfile="../vstte12_ring_buffer.mlw"
779
        loclnum="71" loccnumb="6" loccnume="9"
780
        expl="4."
781
        sum="397ac403812f10f45052bc81b84810cf"
782
783
        proved="true"
        expanded="true"
784
        shape="CV1aNiltaConswVainfix &lt;=V8V0Iainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV10V1aSomeagetV2ainfix -ainfix +V4V10V0Iainfix &lt;=c0ainfix -ainfix +V4V10V0Aainfix =anthV10V1aSomeagetV2ainfix +V4V10Iainfix &lt;ainfix +V4V10V0Iainfix &lt;V10V3Aainfix &lt;=c0V10FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
785
        <label
786
         name="expl:VC for pop"/>
787
788
789
790
791
792
793
794
        <proof
         prover="0"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="valid" time="0.01"/>
        </proof>
795
796
        <proof
         prover="1"
797
798
         timelimit="5"
         memlimit="1000"
799
800
         obsolete="false"
         archived="false">
801
         <result status="valid" time="0.02"/>
802
803
804
        </proof>
       </goal>
       <goal
805
        name="WP_parameter pop.5.5"
806
        locfile="../vstte12_ring_buffer.mlw"
807
        loclnum="71" loccnumb="6" loccnume="9"
808
        expl="5."
809
        sum="a5d5a8c39fde06ac8172454417403baf"
810
811
        proved="true"
        expanded="true"
812
        shape="CV1aNiltaConswVainfix =V8alengthV6Iainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV10V1aSomeagetV2ainfix -ainfix +V4V10V0Iainfix &lt;=c0ainfix -ainfix +V4V10V0Aainfix =anthV10V1aSomeagetV2ainfix +V4V10Iainfix &lt;ainfix +V4V10V0Iainfix &lt;V10V3Aainfix &lt;=c0V10FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
813
        <label
814
         name="expl:VC for pop"/>
815
        <proof
816
         prover="0"
817
         timelimit="10"
818
         memlimit="0"
819
820
         obsolete="false"
         archived="false">
821
822
823
824
825
826
827
828
829
830
831
832
833
834
835
836
837
838
839
840
841
842
843
844
845
846
847
848
849
850
851
852
853
854
855
856
857
858
859
860
861
862
863
864
865
866
867
868
869
870
871
872
873
874
875
876
877
         <result status="valid" time="0.01"/>
        </proof>
       </goal>
       <goal
        name="WP_parameter pop.5.6"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="6."
        sum="8316ad9609aca03610c34c37d07f2153"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVainfix =anthV10V6aSomeagetV2ainfix +V9V10Iainfix &lt;ainfix +V9V10V0Iainfix &lt;V10V8Aainfix &lt;=c0V10FIainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV11V1aSomeagetV2ainfix -ainfix +V4V11V0Iainfix &lt;=c0ainfix -ainfix +V4V11V0Aainfix =anthV11V1aSomeagetV2ainfix +V4V11Iainfix &lt;ainfix +V4V11V0Iainfix &lt;V11V3Aainfix &lt;=c0V11FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="0"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="unknown" time="0.08"/>
        </proof>
        <proof
         prover="1"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="valid" time="3.76"/>
        </proof>
       </goal>
       <goal
        name="WP_parameter pop.5.7"
        locfile="../vstte12_ring_buffer.mlw"
        loclnum="71" loccnumb="6" loccnume="9"
        expl="7."
        sum="e3358cdc11e25f984cd2b288b0ca1e88"
        proved="true"
        expanded="true"
        shape="CV1aNiltaConswVainfix =anthV10V6aSomeagetV2ainfix -ainfix +V9V10V0Iainfix &lt;=c0ainfix -ainfix +V9V10V0Iainfix &lt;V10V8Aainfix &lt;=c0V10FIainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV11V1aSomeagetV2ainfix -ainfix +V4V11V0Iainfix &lt;=c0ainfix -ainfix +V4V11V0Aainfix =anthV11V1aSomeagetV2ainfix +V4V11Iainfix &lt;ainfix +V4V11V0Iainfix &lt;V11V3Aainfix &lt;=c0V11FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
        <label
         name="expl:VC for pop"/>
        <proof
         prover="0"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="unknown" time="0.06"/>
        </proof>
        <proof
         prover="1"
         timelimit="5"
         memlimit="1000"
         obsolete="false"
         archived="false">
         <result status="valid" time="1.18"/>
878
879
880
881
882
        </proof>
       </goal>
      </transf>
     </goal>
     <goal
883
      name="WP_parameter pop.6"
884
      locfile="../vstte12_ring_buffer.mlw"
885
886
887
      loclnum="71" loccnumb="6" loccnume="9"
      expl="6. postcondition"
      sum="f30d53ab504ddfb5fa101f6cf39c812c"
888
889
      proved="true"
      expanded="true"
890
      shape="CV1aNiltaConswVCV1aNilfaConsVVainfix =V6V11Aainfix =V7V10Aainfix =V8ainfix -V3c1Iainfix =anthV12V6aSomeagetV2ainfix -ainfix +V9V12V0Iainfix &lt;=c0ainfix -ainfix +V9V12V0Aainfix =anthV12V6aSomeagetV2ainfix +V9V12Iainfix &lt;ainfix +V9V12V0Iainfix &lt;V12V8Aainfix &lt;=c0V12FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V9V0Aainfix &lt;=c0V9Iainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV13V1aSomeagetV2ainfix -ainfix +V4V13V0Iainfix &lt;=c0ainfix -ainfix +V4V13V0Aainfix =anthV13V1aSomeagetV2ainfix +V4V13Iainfix &lt;ainfix +V4V13V0Iainfix &lt;V13V3Aainfix &lt;=c0V13FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
891
      <label
892
       name="expl:VC for pop"/>
893
      <transf
894
       name="split_goal_wp"
895
896
897
       proved="true"
       expanded="true">
       <goal
898
        name="WP_parameter pop.6.1"
899
        locfile="../vstte12_ring_buffer.mlw"
900
        loclnum="71" loccnumb="6" loccnume="9"
901
        expl="1."
902
        sum="bf8af423133bd8db1e1676388b05b9e9"
903
904
        proved="true"
        expanded="true"
905
        shape="CV1aNiltaConswVainfix =V8ainfix -V3c1Iainfix =anthV10V6aSomeagetV2ainfix -ainfix +V9V10V0Iainfix &lt;=c0ainfix -ainfix +V9V10V0Aainfix =anthV10V6aSomeagetV2ainfix +V9V10Iainfix &lt;ainfix +V9V10V0Iainfix &lt;V10V8Aainfix &lt;=c0V10FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V9V0Aainfix &lt;=c0V9Iainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV11V1aSomeagetV2ainfix -ainfix +V4V11V0Iainfix &lt;=c0ainfix -ainfix +V4V11V0Aainfix =anthV11V1aSomeagetV2ainfix +V4V11Iainfix &lt;ainfix +V4V11V0Iainfix &lt;V11V3Aainfix &lt;=c0V11FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
906
        <label
907
         name="expl:VC for pop"/>
908
909
        <proof
         prover="0"
910
911
         timelimit="5"
         memlimit="1000"
912
913
         obsolete="false"
         archived="false">
914
         <result status="valid" time="0.01"/>
915
916
917
        </proof>
       </goal>
       <goal
918
        name="WP_parameter pop.6.2"
919
        locfile="../vstte12_ring_buffer.mlw"
920
        loclnum="71" loccnumb="6" loccnume="9"
921
        expl="2."
922
        sum="aae1383e1f0757cca598418091c05150"
923
924
        proved="true"
        expanded="true"
925
        shape="CV1aNiltaConswVCV1aNilfaConsVVtIainfix =anthV12V6aSomeagetV2ainfix -ainfix +V9V12V0Iainfix &lt;=c0ainfix -ainfix +V9V12V0Aainfix =anthV12V6aSomeagetV2ainfix +V9V12Iainfix &lt;ainfix +V9V12V0Iainfix &lt;V12V8Aainfix &lt;=c0V12FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V9V0Aainfix &lt;=c0V9Iainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV13V1aSomeagetV2ainfix -ainfix +V4V13V0Iainfix &lt;=c0ainfix -ainfix +V4V13V0Aainfix =anthV13V1aSomeagetV2ainfix +V4V13Iainfix &lt;ainfix +V4V13V0Iainfix &lt;V13V3Aainfix &lt;=c0V13FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
926
        <label
927
         name="expl:VC for pop"/>
928
929
        <proof
         prover="0"
930
931
         timelimit="5"
         memlimit="1000"
932
933
         obsolete="false"
         archived="false">
934
         <result status="valid" time="0.01"/>
935
936
937
        </proof>
       </goal>
       <goal
938
        name="WP_parameter pop.6.3"
939
        locfile="../vstte12_ring_buffer.mlw"
940
        loclnum="71" loccnumb="6" loccnume="9"
941
        expl="3."
942
        sum="22ea9d54ca60d921885e904e63f713bd"
943
944
        proved="true"
        expanded="true"
945
        shape="CV1aNiltaConswVCV1aNiltaConsVVainfix =V7V10Iainfix =anthV12V6aSomeagetV2ainfix -ainfix +V9V12V0Iainfix &lt;=c0ainfix -ainfix +V9V12V0Aainfix =anthV12V6aSomeagetV2ainfix +V9V12Iainfix &lt;ainfix +V9V12V0Iainfix &lt;V12V8Aainfix &lt;=c0V12FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V9V0Aainfix &lt;=c0V9Iainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV13V1aSomeagetV2ainfix -ainfix +V4V13V0Iainfix &lt;=c0ainfix -ainfix +V4V13V0Aainfix =anthV13V1aSomeagetV2ainfix +V4V13Iainfix &lt;ainfix +V4V13V0Iainfix &lt;V13V3Aainfix &lt;=c0V13FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
946
        <label
947
         name="expl:VC for pop"/>
948
        <proof
949
950
951
952
         prover="2"
         timelimit="5"
         memlimit="1000"
         edited="vstte12_ring_buffer_2_RingBuffer_WP_parameter_pop_3.v"
953
954
         obsolete="false"
         archived="false">
955
         <result status="valid" time="0.72"/>
956
957
958
        </proof>
       </goal>
       <goal
959
        name="WP_parameter pop.6.4"
960
        locfile="../vstte12_ring_buffer.mlw"
961
        loclnum="71" loccnumb="6" loccnume="9"
962
        expl="4."
963
        sum="70331d57b3d057110f0d0f51c25038d9"
964
965
        proved="true"
        expanded="true"
966
        shape="CV1aNiltaConswVCV1aNiltaConsVVainfix =V6V11Iainfix =anthV12V6aSomeagetV2ainfix -ainfix +V9V12V0Iainfix &lt;=c0ainfix -ainfix +V9V12V0Aainfix =anthV12V6aSomeagetV2ainfix +V9V12Iainfix &lt;ainfix +V9V12V0Iainfix &lt;V12V8Aainfix &lt;=c0V12FAainfix =V8alengthV6Aainfix &lt;=V8V0Aainfix &lt;=c0V8Aainfix &lt;V9V0Aainfix &lt;=c0V9Iainfix =V9V0NIainfix =V9ainfix +V4c1FIainfix =V8ainfix -V3c1FLagetV2V4Iainfix &lt;V4V0Aainfix &lt;=c0V4Iainfix =V6V5FIainfix &gt;V3c0Aainfix =anthV13V1aSomeagetV2ainfix -ainfix +V4V13V0Iainfix &lt;=c0ainfix -ainfix +V4V13V0Aainfix =anthV13V1aSomeagetV2ainfix +V4V13Iainfix &lt;ainfix +V4V13V0Iainfix &lt;V13V3Aainfix &lt;=c0V13FAainfix =V3alengthV1Aainfix &lt;=V3V0Aainfix &lt;=c0V3Aainfix &lt;V4V0Aainfix &lt;=c0V4FF">
967
        <label
968
         name="expl:VC for pop"/>
969
        <proof
970
971
972
         prover="0"
         timelimit="5"
         memlimit="1000"
973
974
         obsolete="false"
         archived="false">
975
         <result status="valid" time="0.02"/>
976
977
978
979
980
981
982
983
        </proof>
       </goal>
      </transf>
     </goal>
    </transf>
   </goal>
  </theory>
  <theory
Andrei Paskevich's avatar
Andrei Paskevich committed
984
   name="Harness"
985
   locfile="../vstte12_ring_buffer.mlw"
986
   loclnum="86" loccnumb="7" loccnume="14"
987
988
989
990
   verified="true"
   expanded="true">
   <goal
    name="WP_parameter harness"
991
    locfile="../vstte12_ring_buffer.mlw"
992
    loclnum="91" loccnumb="6" loccnume="13"
993
    expl="VC for harness"
994
    sum="7a7d6ca1e092ccc2a6c78bff0c962a76"
995
996
    proved="true"
    expanded="true"
997
    shape="ainfix =V25c3ICV18aNilfaConsVVainfix =V22V27Aainfix =V25V26Aainfix =V23ainfix -V19c1Aainfix =anthV28V22aSomeagetV12ainfix -ainfix +V24V28V2Iainfix &lt;=c0ainfix -ainfix +V24V28V2Aainfix =anthV28V22aSomeagetV12ainfix +V24V28Iainfix &lt;ainfix +V24V28V2Iainfix &lt;V28V23Aainfix &lt;=c0V28FAainfix =V23alengthV22Aainfix &lt;=V23V2Aainfix &lt;=c0V23Aainfix &lt;V24V2Aainfix &lt;=c0V24FFAainfix &gt;V19c0Aainfix =V21c2ICV14aNilfaConsVVainfix =V18V30Aainfix =V21V29Aainfix =V19ainfix -V15c1Aainfix =anthV31V18aSomeagetV12ainfix -ainfix +V20V31V2Iainfix &lt;=c0ainfix -ainfix +V20V31V2Aainfix =anthV31V18aSomeagetV12ainfix +V20V31Iainfix &lt;ainfix +V20V31V2Iainfix &lt;V31V19Aainfix &lt;=c0V31FAainfix =V19alengthV18Aainfix &lt;=V19V2Aainfix &lt;=c0V19Aainfix &lt;V20V2Aainfix &lt;=c0V20FFAainfix &gt;V15c0Aainfix =V17c1ICV11aNilfaConsVVainfix =V14V33Aainfix =V17V32Aainfix =V15ainfix -V13c1Aainfix =anthV34V14aSomeagetV12ainfix -ainfix +V16V34V2Iainfix &lt;=c0ainfix -ainfix +V16V34V2Aainfix =anthV34V14aSomeagetV12ainfix +V16V34Iainfix &lt;ainfix +V16V34V2Iainfix &lt;V34V15Aainfix &lt;=c0V34FAainfix =V15alengthV14Aainfix &lt;=V15V2Aainfix &lt;=c0V15Aainfix &lt;V16V2Aainfix &lt;=c0V16FFAainfix &gt;V13c0Iainfix =V11ainfix ++V8aConsc3aNilAainfix =V13ainfix +V10c1Aainfix =anthV35V11aSomeagetV12ainfix -ainfix +V0V35V2Iainfix &lt;=c0ainfix -ainfix +V0V35V2Aainfix =anthV35V11aSomeagetV12ainfix +V0V35Iainfix &lt;ainfix +V0V35V2Iainfix &lt;V35V13Aainfix &lt;=c0V35FAainfix =V13alengthV11Aainfix &lt;=V13V2Aainfix &lt;=c0V13Aainfix &lt;V0V2Aainfix &lt;=c0V0FAainfix &lt;V10V2Iainfix =V8ainfix ++V5aConsc2aNilAainfix =V10ainfix +V7c1Aainfix =anthV36V8aSomeagetV9ainfix -ainfix +V0V36V2Iainfix &lt;=c0ainfix -ainfix +V0V36V2Aainfix =anthV36V8aSomeagetV9ainfix +V0V36Iainfix &lt;ainfix +V0V36V2Iainfix &lt;V36V10Aainfix &lt;=c0V36FAainfix =V10alengthV8Aainfix &lt;=V10V2Aainfix &lt;=c0V10Aainfix &lt;V0V2Aainfix &lt;=c0V0FAainfix &lt;V7V2Iainfix =V5ainfix ++V4aConsc1aNilAainfix =V7ainfix +V1c1Aainfix =anthV37V5aSomeagetV6ainfix -ainfix +V0V37V2Iainfix &lt;=c0ainfix -ainfix +V0V37V2Aainfix =anthV37V5aSomeagetV6ainfix +V0V37Iainfix &lt;ainfix +V0V37V2Iainfix &lt;V37V7Aainfix &lt;=c0V37FAainfix =V7alengthV5Aainfix &lt;=V7V2Aainfix &lt;=c0V7Aainfix &lt;V0V2Aainfix &lt;=c0V0FAainfix &lt;V1V2Iainfix =V4aNilAainfix =V2c10Aainfix =anthV38V4aSomeagetV3ainfix -ainfix +V0V38V2Iainfix &lt;=c0ainfix -ainfix +V0V38V2Aainfix =anthV38V4aSomeagetV3ainfix +V0V38Iainfix &lt;ainfix +V0V38V2Iainfix &lt;V38V1Aainfix &lt;=c0V38FAainfix =V1alengthV4Aainfix &lt;=V1V2Aainfix &lt;=c0V1Aainfix &lt;V0V2Aainfix &lt;=c0V0FAainfix &gt;c10c0">
998
    <label
999
     name="expl:VC for harness"/>
1000
1001
1002
1003
1004
1005
    <transf
     name="split_goal"
     proved="true"
     expanded="true">
     <goal
      name="WP_parameter harness.1"
1006
      locfile="../vstte12_ring_buffer.mlw"
1007
      loclnum="91" loccnumb="6" loccnume="13"
1008
      expl="1. precondition"
1009
      sum="2ff966d847ee16f689f10a05eaf4cd7e"
1010
1011
1012
1013
      proved="true"
      expanded="true"
      shape="ainfix &gt;c10c0">
      <label
1014
       name="expl:VC for harness"/>
1015
1016
1017
      <proof
       prover="0"
       timelimit="10"
1018
       memlimit="0"
1019
1020
       obsolete="false"
       archived="false">
1021
       <result status="valid" time="0.01"/>
1022
1023
1024
1025
      </proof>
     </goal>
     <goal
      name="WP_parameter harness.2"
1026
      locfile="../vstte12_ring_buffer.mlw"
1027
      loclnum="91" loccnumb="6" loccnume="13"
1028
      expl="2. precondition"
1029
      sum="52f4b1235b2f1662e06cb6c4559cfa8e"
1030
1031
      proved="true"
      expanded="true"
1032
      shape="ainfix &lt;V1V2Iainfix =V4aNilAainfix =V2c10Aainfix =anthV5V4aSomeagetV3ainfix -ainfix +V0V5V2Iainfix &lt;=c0ainfix -ainfix +V0V5V2Aainfix =anthV5V4aSomeagetV3ainfix +V0V5Iainfix &lt;ainfix +V0V5V2Iainfix &lt;V5V1Aainfix &lt;=c0V5FAainfix =V1alengthV4Aainfix &lt;=V1V2Aainfix &lt;=c0V1Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &gt;c10c0">
1033
      <label
1034
       name="expl:VC for harness"/>
1035
      <proof
1036
       prover="0"
1037
       timelimit="10"
1038
       memlimit="0"
1039
1040
       obsolete="false"
       archived="false">
1041
       <result status="valid" time="0.01"/>
1042
1043
1044
1045
      </proof>
     </goal>
     <goal
      name="WP_parameter harness.3"
1046
      locfile="../vstte12_ring_buffer.mlw"
1047
      loclnum="91" loccnumb="6" loccnume="13"
1048
      expl="3. precondition"
1049
      sum="7a87f0c4a620d694937ae7134b49be1c"
1050
1051
      proved="true"
      expanded="true"
1052
      shape="ainfix &lt;V7V2Iainfix =V5ainfix ++V4aConsc1aNilAainfix =V7ainfix +V1c1Aainfix =anthV8V5aSomeagetV6ainfix -ainfix +V0V8V2Iainfix &lt;=c0ainfix -ainfix +V0V8V2Aainfix =anthV8V5aSomeagetV6ainfix +V0V8Iainfix &lt;ainfix +V0V8V2Iainfix &lt;V8V7Aainfix &lt;=c0V8FAainfix =V7alengthV5Aainfix &lt;=V7V2Aainfix &lt;=c0V7Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &lt;V1V2Iainfix =V4aNilAainfix =V2c10Aainfix =anthV9V4aSomeagetV3ainfix -ainfix +V0V9V2Iainfix &lt;=c0ainfix -ainfix +V0V9V2Aainfix =anthV9V4aSomeagetV3ainfix +V0V9Iainfix &lt;ainfix +V0V9V2Iainfix &lt;V9V1Aainfix &lt;=c0V9FAainfix =V1alengthV4Aainfix &lt;=V1V2Aainfix &lt;=c0V1Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &gt;c10c0">
1053
      <label
1054
       name="expl:VC for harness"/>
1055
1056
1057
1058
1059
1060
1061
1062
      <proof
       prover="0"
       timelimit="10"
       memlimit="0"
       obsolete="false"
       archived="false">
       <result status="valid" time="0.01"/>
      </proof>
1063
1064
1065
      <proof
       prover="1"
       timelimit="10"
1066
       memlimit="0"
1067
1068
       obsolete="false"
       archived="false">
1069
       <result status="valid" time="0.02"/>
1070
1071
1072
1073
      </proof>
     </goal>
     <goal
      name="WP_parameter harness.4"
1074
      locfile="../vstte12_ring_buffer.mlw"
1075
      loclnum="91" loccnumb="6" loccnume="13"
1076
      expl="4. precondition"
1077
      sum="6cd6c11870cda60811a2cac6dbb94be9"
1078
1079
      proved="true"
      expanded="true"
1080
      shape="ainfix &lt;V10V2Iainfix =V8ainfix ++V5aConsc2aNilAainfix =V10ainfix +V7c1Aainfix =anthV11V8aSomeagetV9ainfix -ainfix +V0V11V2Iainfix &lt;=c0ainfix -ainfix +V0V11V2Aainfix =anthV11V8aSomeagetV9ainfix +V0V11Iainfix &lt;ainfix +V0V11V2Iainfix &lt;V11V10Aainfix &lt;=c0V11FAainfix =V10alengthV8Aainfix &lt;=V10V2Aainfix &lt;=c0V10Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &lt;V7V2Iainfix =V5ainfix ++V4aConsc1aNilAainfix =V7ainfix +V1c1Aainfix =anthV12V5aSomeagetV6ainfix -ainfix +V0V12V2Iainfix &lt;=c0ainfix -ainfix +V0V12V2Aainfix =anthV12V5aSomeagetV6ainfix +V0V12Iainfix &lt;ainfix +V0V12V2Iainfix &lt;V12V7Aainfix &lt;=c0V12FAainfix =V7alengthV5Aainfix &lt;=V7V2Aainfix &lt;=c0V7Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &lt;V1V2Iainfix =V4aNilAainfix =V2c10Aainfix =anthV13V4aSomeagetV3ainfix -ainfix +V0V13V2Iainfix &lt;=c0ainfix -ainfix +V0V13V2Aainfix =anthV13V4aSomeagetV3ainfix +V0V13Iainfix &lt;ainfix +V0V13V2Iainfix &lt;V13V1Aainfix &lt;=c0V13FAainfix =V1alengthV4Aainfix &lt;=V1V2Aainfix &lt;=c0V1Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &gt;c10c0">
1081
      <label
1082
       name="expl:VC for harness"/>
1083
      <proof
1084
       prover="0"
1085
       timelimit="10"
1086
       memlimit="0"
1087
1088
       obsolete="false"
       archived="false">
1089
       <result status="valid" time="0.02"/>
1090
1091
1092
1093
      </proof>
     </goal>
     <goal
      name="WP_parameter harness.5"
1094
      locfile="../vstte12_ring_buffer.mlw"
1095
      loclnum="91" loccnumb="6" loccnume="13"
1096
      expl="5. precondition"
1097
      sum="6c0a52d6ce48f659fb354627e715fffb"
1098
1099
      proved="true"
      expanded="true"
1100
      shape="ainfix &gt;V13c0Iainfix =V11ainfix ++V8aConsc3aNilAainfix =V13ainfix +V10c1Aainfix =anthV14V11aSomeagetV12ainfix -ainfix +V0V14V2Iainfix &lt;=c0ainfix -ainfix +V0V14V2Aainfix =anthV14V11aSomeagetV12ainfix +V0V14Iainfix &lt;ainfix +V0V14V2Iainfix &lt;V14V13Aainfix &lt;=c0V14FAainfix =V13alengthV11Aainfix &lt;=V13V2Aainfix &lt;=c0V13Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &lt;V10V2Iainfix =V8ainfix ++V5aConsc2aNilAainfix =V10ainfix +V7c1Aainfix =anthV15V8aSomeagetV9ainfix -ainfix +V0V15V2Iainfix &lt;=c0ainfix -ainfix +V0V15V2Aainfix =anthV15V8aSomeagetV9ainfix +V0V15Iainfix &lt;ainfix +V0V15V2Iainfix &lt;V15V10Aainfix &lt;=c0V15FAainfix =V10alengthV8Aainfix &lt;=V10V2Aainfix &lt;=c0V10Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &lt;V7V2Iainfix =V5ainfix ++V4aConsc1aNilAainfix =V7ainfix +V1c1Aainfix =anthV16V5aSomeagetV6ainfix -ainfix +V0V16V2Iainfix &lt;=c0ainfix -ainfix +V0V16V2Aainfix =anthV16V5aSomeagetV6ainfix +V0V16Iainfix &lt;ainfix +V0V16V2Iainfix &lt;V16V7Aainfix &lt;=c0V16FAainfix =V7alengthV5Aainfix &lt;=V7V2Aainfix &lt;=c0V7Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &lt;V1V2Iainfix =V4aNilAainfix =V2c10Aainfix =anthV17V4aSomeagetV3ainfix -ainfix +V0V17V2Iainfix &lt;=c0ainfix -ainfix +V0V17V2Aainfix =anthV17V4aSomeagetV3ainfix +V0V17Iainfix &lt;ainfix +V0V17V2Iainfix &lt;V17V1Aainfix &lt;=c0V17FAainfix =V1alengthV4Aainfix &lt;=V1V2Aainfix &lt;=c0V1Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &gt;c10c0">
1101
      <label
1102
       name="expl:VC for harness"/>
1103
1104
      <proof
       prover="0"
1105
       timelimit="15"
1106
       memlimit="0"
1107
1108
       obsolete="false"
       archived="false">
1109
       <result status="valid" time="0.02"/>
1110
1111
1112
1113
      </proof>
     </goal>
     <goal
      name="WP_parameter harness.6"
1114
      locfile="../vstte12_ring_buffer.mlw"
1115
      loclnum="91" loccnumb="6" loccnume="13"
1116
      expl="6. assertion"
1117
      sum="49c63169ecb8956f0eeef0692ec67224"
1118
1119
      proved="true"
      expanded="true"
1120
      shape="ainfix =V17c1ICV11aNilfaConsVVainfix =V14V19Aainfix =V17V18Aainfix =V15ainfix -V13c1Aainfix =anthV20V14aSomeagetV12ainfix -ainfix +V16V20V2Iainfix &lt;=c0ainfix -ainfix +V16V20V2Aainfix =anthV20V14aSomeagetV12ainfix +V16V20Iainfix &lt;ainfix +V16V20V2Iainfix &lt;V20V15Aainfix &lt;=c0V20FAainfix =V15alengthV14Aainfix &lt;=V15V2Aainfix &lt;=c0V15Aainfix &lt;V16V2Aainfix &lt;=c0V16FFIainfix &gt;V13c0Iainfix =V11ainfix ++V8aConsc3aNilAainfix =V13ainfix +V10c1Aainfix =anthV21V11aSomeagetV12ainfix -ainfix +V0V21V2Iainfix &lt;=c0ainfix -ainfix +V0V21V2Aainfix =anthV21V11aSomeagetV12ainfix +V0V21Iainfix &lt;ainfix +V0V21V2Iainfix &lt;V21V13Aainfix &lt;=c0V21FAainfix =V13alengthV11Aainfix &lt;=V13V2Aainfix &lt;=c0V13Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &lt;V10V2Iainfix =V8ainfix ++V5aConsc2aNilAainfix =V10ainfix +V7c1Aainfix =anthV22V8aSomeagetV9ainfix -ainfix +V0V22V2Iainfix &lt;=c0ainfix -ainfix +V0V22V2Aainfix =anthV22V8aSomeagetV9ainfix +V0V22Iainfix &lt;ainfix +V0V22V2Iainfix &lt;V22V10Aainfix &lt;=c0V22FAainfix =V10alengthV8Aainfix &lt;=V10V2Aainfix &lt;=c0V10Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &lt;V7V2Iainfix =V5ainfix ++V4aConsc1aNilAainfix =V7ainfix +V1c1Aainfix =anthV23V5aSomeagetV6ainfix -ainfix +V0V23V2Iainfix &lt;=c0ainfix -ainfix +V0V23V2Aainfix =anthV23V5aSomeagetV6ainfix +V0V23Iainfix &lt;ainfix +V0V23V2Iainfix &lt;V23V7Aainfix &lt;=c0V23FAainfix =V7alengthV5Aainfix &lt;=V7V2Aainfix &lt;=c0V7Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &lt;V1V2Iainfix =V4aNilAainfix =V2c10Aainfix =anthV24V4aSomeagetV3ainfix -ainfix +V0V24V2Iainfix &lt;=c0ainfix -ainfix +V0V24V2Aainfix =anthV24V4aSomeagetV3ainfix +V0V24Iainfix &lt;ainfix +V0V24V2Iainfix &lt;V24V1Aainfix &lt;=c0V24FAainfix =V1alengthV4Aainfix &lt;=V1V2Aainfix &lt;=c0V1Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &gt;c10c0">
1121
      <label
1122
       name="expl:VC for harness"/>
1123
      <proof
1124
1125
       prover="0"
       timelimit="10"
1126
       memlimit="0"
1127
1128
       obsolete="false"
       archived="false">
1129
       <result status="valid" time="1.63"/>
1130
1131
1132
1133
      </proof>
     </goal>
     <goal
      name="WP_parameter harness.7"
1134
      locfile="../vstte12_ring_buffer.mlw"
1135
      loclnum="91" loccnumb="6" loccnume="13"
1136
      expl="7. precondition"
1137
      sum="91d1833645152e165b421117a1f5c31e"
1138
1139
      proved="true"
      expanded="true"
1140
      shape="ainfix &gt;V15c0Iainfix =V17c1ICV11aNilfaConsVVainfix =V14V19Aainfix =V17V18Aainfix =V15ainfix -V13c1Aainfix =anthV20V14aSomeagetV12ainfix -ainfix +V16V20V2Iainfix &lt;=c0ainfix -ainfix +V16V20V2Aainfix =anthV20V14aSomeagetV12ainfix +V16V20Iainfix &lt;ainfix +V16V20V2Iainfix &lt;V20V15Aainfix &lt;=c0V20FAainfix =V15alengthV14Aainfix &lt;=V15V2Aainfix &lt;=c0V15Aainfix &lt;V16V2Aainfix &lt;=c0V16FFIainfix &gt;V13c0Iainfix =V11ainfix ++V8aConsc3aNilAainfix =V13ainfix +V10c1Aainfix =anthV21V11aSomeagetV12ainfix -ainfix +V0V21V2Iainfix &lt;=c0ainfix -ainfix +V0V21V2Aainfix =anthV21V11aSomeagetV12ainfix +V0V21Iainfix &lt;ainfix +V0V21V2Iainfix &lt;V21V13Aainfix &lt;=c0V21FAainfix =V13alengthV11Aainfix &lt;=V13V2Aainfix &lt;=c0V13Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &lt;V10V2Iainfix =V8ainfix ++V5aConsc2aNilAainfix =V10ainfix +V7c1Aainfix =anthV22V8aSomeagetV9ainfix -ainfix +V0V22V2Iainfix &lt;=c0ainfix -ainfix +V0V22V2Aainfix =anthV22V8aSomeagetV9ainfix +V0V22Iainfix &lt;ainfix +V0V22V2Iainfix &lt;V22V10Aainfix &lt;=c0V22FAainfix =V10alengthV8Aainfix &lt;=V10V2Aainfix &lt;=c0V10Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &lt;V7V2Iainfix =V5ainfix ++V4aConsc1aNilAainfix =V7ainfix +V1c1Aainfix =anthV23V5aSomeagetV6ainfix -ainfix +V0V23V2Iainfix &lt;=c0ainfix -ainfix +V0V23V2Aainfix =anthV23V5aSomeagetV6ainfix +V0V23Iainfix &lt;ainfix +V0V23V2Iainfix &lt;V23V7Aainfix &lt;=c0V23FAainfix =V7alengthV5Aainfix &lt;=V7V2Aainfix &lt;=c0V7Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &lt;V1V2Iainfix =V4aNilAainfix =V2c10Aainfix =anthV24V4aSomeagetV3ainfix -ainfix +V0V24V2Iainfix &lt;=c0ainfix -ainfix +V0V24V2Aainfix =anthV24V4aSomeagetV3ainfix +V0V24Iainfix &lt;ainfix +V0V24V2Iainfix &lt;V24V1Aainfix &lt;=c0V24FAainfix =V1alengthV4Aainfix &lt;=V1V2Aainfix &lt;=c0V1Aainfix &lt;V0V2Aainfix &lt;=c0V0FIainfix &gt;c10c0">
1141
      <label
1142
       name="expl:VC for harness"/>
1143
1144
1145
      <proof
       prover="0"
       timelimit="10"
1146
       memlimit="0"
1147
1148
       obsolete="false"
       archived="false">