tactics.v 79.3 KB
Newer Older
1 2
From iris.proofmode Require Import coq_tactics.
From iris.proofmode Require Import intro_patterns spec_patterns sel_patterns.
Robbert Krebbers's avatar
Robbert Krebbers committed
3
From iris.bi Require Export bi.
Robbert Krebbers's avatar
Robbert Krebbers committed
4
From iris.proofmode Require Export classes notation.
5
From iris.proofmode Require Import class_instances.
Ralf Jung's avatar
Ralf Jung committed
6
From stdpp Require Import stringmap hlist.
7
From iris.proofmode Require Import strings.
8
Set Default Proof Using "Type".
Robbert Krebbers's avatar
Robbert Krebbers committed
9 10

Declare Reduction env_cbv := cbv [
11
  beq ascii_beq string_beq
12 13
  env_lookup env_lookup_delete env_delete env_app env_replace env_dom
  env_persistent env_spatial env_spatial_is_nil envs_dom
14
  envs_lookup envs_lookup_delete envs_delete envs_snoc envs_app
15 16
    envs_simple_replace envs_replace envs_split
    envs_clear_spatial envs_clear_persistent
17
    envs_split_go envs_split].
Robbert Krebbers's avatar
Robbert Krebbers committed
18 19
Ltac env_cbv :=
  match goal with |- ?u => let v := eval env_cbv in u in change v end.
20
Ltac env_reflexivity := env_cbv; exact eq_refl.
Robbert Krebbers's avatar
Robbert Krebbers committed
21

22
(** * Misc *)
23 24
(* Tactic Notation tactics cannot return terms *)
Ltac iFresh' H :=
Robbert Krebbers's avatar
Robbert Krebbers committed
25 26
  lazymatch goal with
  |- of_envs ?Δ  _ =>
27 28 29
     (* [vm_compute fails] if any of the hypotheses in [Δ] contain evars, so
     first use [cbv] to compute the domain of [Δ] *)
     let Hs := eval cbv in (envs_dom Δ) in
30 31
     eval vm_compute in (fresh_string_of_set H (of_list Hs))
  | _ => H
Robbert Krebbers's avatar
Robbert Krebbers committed
32
  end.
33
Ltac iFresh := iFresh' "~".
Robbert Krebbers's avatar
Robbert Krebbers committed
34

35 36 37 38 39 40 41 42 43
Ltac iMissingHyps Hs :=
  let Δ :=
    lazymatch goal with
    | |- of_envs ?Δ  _ => Δ
    | |- context[ envs_split _ _ ?Δ ] => Δ
    end in
  let Hhyps := eval env_cbv in (envs_dom Δ) in
  eval vm_compute in (list_difference Hs Hhyps).

44
Ltac iTypeOf H :=
Robbert Krebbers's avatar
Robbert Krebbers committed
45
  let Δ := match goal with |- of_envs ?Δ  _ => Δ end in
46
  eval env_cbv in (envs_lookup H Δ).
Robbert Krebbers's avatar
Robbert Krebbers committed
47

48
Tactic Notation "iMatchHyp" tactic1(tac) :=
49 50 51 52
  match goal with
  | |- context[ environments.Esnoc _ ?x ?P ] => tac x P
  end.

Robbert Krebbers's avatar
Robbert Krebbers committed
53
Class AsValid {PROP : bi} (φ : Prop) (P : PROP) := as_entails : φ  P.
Robbert Krebbers's avatar
Robbert Krebbers committed
54 55
Arguments AsValid {_} _%type _%I.

Robbert Krebbers's avatar
Robbert Krebbers committed
56
Instance as_valid_valid {PROP : bi} (P : PROP) : AsValid (bi_valid P) P | 0.
Robbert Krebbers's avatar
Robbert Krebbers committed
57 58
Proof. by rewrite /AsValid. Qed.

Robbert Krebbers's avatar
Robbert Krebbers committed
59 60
Instance as_valid_entails {PROP : bi} (P Q : PROP) : AsValid (P  Q) (P - Q) | 1.
Proof. split. apply bi.entails_wand. apply bi.wand_entails. Qed.
Robbert Krebbers's avatar
Robbert Krebbers committed
61

Robbert Krebbers's avatar
Robbert Krebbers committed
62 63
Instance as_valid_equiv {PROP : bi} (P Q : PROP) : AsValid (P  Q) (P - Q).
Proof. split. apply bi.equiv_wand_iff. apply bi.wand_iff_equiv. Qed.
Robbert Krebbers's avatar
Robbert Krebbers committed
64

Robbert Krebbers's avatar
Robbert Krebbers committed
65
(** * Start a proof *)
66
Ltac iStartProof :=
Robbert Krebbers's avatar
Robbert Krebbers committed
67
  lazymatch goal with
68
  | |- of_envs _  _ => idtac
Robbert Krebbers's avatar
Robbert Krebbers committed
69
  | |- let _ := _ in _ => fail
70
  | |- ?P =>
Robbert Krebbers's avatar
Robbert Krebbers committed
71
    apply (proj2 (_ : AsValid P _)), tac_adequate
Robbert Krebbers's avatar
Robbert Krebbers committed
72
    || fail "iStartProof: not a BI entailment"
Robbert Krebbers's avatar
Robbert Krebbers committed
73 74 75 76 77
  end.

(** * Context manipulation *)
Tactic Notation "iRename" constr(H1) "into" constr(H2) :=
  eapply tac_rename with _ H1 H2 _ _; (* (i:=H1) (j:=H2) *)
78 79
    [env_reflexivity || fail "iRename:" H1 "not found"
    |env_reflexivity || fail "iRename:" H2 "not fresh"|].
Robbert Krebbers's avatar
Robbert Krebbers committed
80

81 82 83 84
Local Inductive esel_pat :=
  | ESelPure
  | ESelName : bool  string  esel_pat.

85
Ltac iElaborateSelPat pat :=
86 87
  let rec go pat Δ Hs :=
    lazymatch pat with
88
    | [] => eval cbv in Hs
89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108
    | SelPure :: ?pat => go pat Δ (ESelPure :: Hs)
    | SelPersistent :: ?pat =>
       let Hs' := eval env_cbv in (env_dom (env_persistent Δ)) in
       let Δ' := eval env_cbv in (envs_clear_persistent Δ) in
       go pat Δ' ((ESelName true <$> Hs') ++ Hs)
    | SelSpatial :: ?pat =>
       let Hs' := eval env_cbv in (env_dom (env_spatial Δ)) in
       let Δ' := eval env_cbv in (envs_clear_spatial Δ) in
       go pat Δ' ((ESelName false <$> Hs') ++ Hs)
    | SelName ?H :: ?pat =>
       lazymatch eval env_cbv in (envs_lookup_delete H Δ) with
       | Some (?p,_,?Δ') => go pat Δ' (ESelName p H :: Hs)
       | None => fail "iElaborateSelPat:" H "not found"
       end
    end in
  lazymatch goal with
  | |- of_envs ?Δ  _ =>
    let pat := sel_pat.parse pat in go pat Δ (@nil esel_pat)
  end.

Robbert Krebbers's avatar
Robbert Krebbers committed
109 110
Tactic Notation "iClear" constr(Hs) :=
  let rec go Hs :=
111
    lazymatch Hs with
Robbert Krebbers's avatar
Robbert Krebbers committed
112
    | [] => idtac
113 114
    | ESelPure :: ?Hs => clear; go Hs
    | ESelName _ ?H :: ?Hs =>
Robbert Krebbers's avatar
Robbert Krebbers committed
115
       eapply tac_clear with _ H _ _; (* (i:=H) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
116 117 118 119 120
         [env_reflexivity || fail "iClear:" H "not found"
         |env_cbv; apply _ ||
          let P := match goal with |- TCOr (Affine ?P) _ => P end in
          fail "iClear:" H ":" P "not affine and the goal not absorbing"
         |go Hs]
Robbert Krebbers's avatar
Robbert Krebbers committed
121
    end in
122
  let Hs := iElaborateSelPat Hs in go Hs.
123

124 125
Tactic Notation "iClear" "(" ident_list(xs) ")" constr(Hs) :=
  iClear Hs; clear xs.
Robbert Krebbers's avatar
Robbert Krebbers committed
126 127 128

(** * Assumptions *)
Tactic Notation "iExact" constr(H) :=
Robbert Krebbers's avatar
Robbert Krebbers committed
129
  eapply tac_assumption with _ H _ _; (* (i:=H) *)
130
    [env_reflexivity || fail "iExact:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
131 132
    |apply _ ||
     let P := match goal with |- FromAssumption _ ?P _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
133 134 135
     fail "iExact:" H ":" P "does not match goal"
    |env_cbv; apply _ ||
     fail "iExact:" H "not absorbing and the remaining hypotheses not affine"].
Robbert Krebbers's avatar
Robbert Krebbers committed
136 137 138

Tactic Notation "iAssumptionCore" :=
  let rec find Γ i P :=
139
    lazymatch Γ with
Robbert Krebbers's avatar
Robbert Krebbers committed
140
    | Esnoc ?Γ ?j ?Q => first [unify P Q; unify i j|find Γ i P]
Robbert Krebbers's avatar
Robbert Krebbers committed
141 142 143
    end in
  match goal with
  | |- envs_lookup ?i (Envs ?Γp ?Γs) = Some (_, ?P) =>
144
     first [is_evar i; fail 1 | env_reflexivity]
Robbert Krebbers's avatar
Robbert Krebbers committed
145
  | |- envs_lookup ?i (Envs ?Γp ?Γs) = Some (_, ?P) =>
146
     is_evar i; first [find Γp i P | find Γs i P]; env_reflexivity
147
  | |- envs_lookup_delete ?i (Envs ?Γp ?Γs) = Some (_, ?P, _) =>
148
     first [is_evar i; fail 1 | env_reflexivity]
149
  | |- envs_lookup_delete ?i (Envs ?Γp ?Γs) = Some (_, ?P, _) =>
150
     is_evar i; first [find Γp i P | find Γs i P]; env_reflexivity
Robbert Krebbers's avatar
Robbert Krebbers committed
151
  end.
152

Robbert Krebbers's avatar
Robbert Krebbers committed
153
Tactic Notation "iAssumption" :=
154 155
  let Hass := fresh in
  let rec find p Γ Q :=
156
    lazymatch Γ with
157
    | Esnoc ?Γ ?j ?P => first
158
       [pose proof (_ : FromAssumption p P Q) as Hass;
Robbert Krebbers's avatar
Robbert Krebbers committed
159 160 161 162 163 164 165 166 167
        eapply (tac_assumption _ _ j p P);
          [env_reflexivity
          |apply Hass
          |env_cbv; apply _ ||
           fail 1 "iAssumption:" j "not absorbing and the remaining hypotheses not affine"]
       |assert (P = False%I) as Hass by reflexivity;
        apply (tac_false_destruct _ j p P);
          [env_reflexivity
          |exact Hass]
168 169
       |find p Γ Q]
    end in
170
  lazymatch goal with
171 172 173 174
  | |- of_envs (Envs ?Γp ?Γs)  ?Q =>
     first [find true Γp Q | find false Γs Q
           |fail "iAssumption:" Q "not found"]
  end.
Robbert Krebbers's avatar
Robbert Krebbers committed
175 176 177 178 179

(** * False *)
Tactic Notation "iExFalso" := apply tac_ex_falso.

(** * Making hypotheses persistent or pure *)
180
Local Tactic Notation "iPersistent" constr(H) :=
Robbert Krebbers's avatar
Robbert Krebbers committed
181
  eapply tac_persistent with _ H _ _ _; (* (i:=H) *)
182
    [env_reflexivity || fail "iPersistent:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
183
    |apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
184 185 186 187 188
     let P := match goal with |- IntoPersistent _ ?P _ => P end in
     fail "iPersistent:" P "not persistent"
    |env_cbv; apply _ ||
     let P := match goal with |- Affine ?P => P end in
     fail "iPersistent:" P "not affine"
189
    |env_reflexivity|].
Robbert Krebbers's avatar
Robbert Krebbers committed
190

191
Local Tactic Notation "iPure" constr(H) "as" simple_intropattern(pat) :=
Robbert Krebbers's avatar
Robbert Krebbers committed
192
  eapply tac_pure with _ H _ _ _; (* (i:=H1) *)
193
    [env_reflexivity || fail "iPure:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
194 195 196
    |apply _ ||
     let P := match goal with |- IntoPure ?P _ => P end in
     fail "iPure:" P "not pure"
Robbert Krebbers's avatar
Robbert Krebbers committed
197 198 199
    |env_cbv; apply _ ||
     let P := match goal with |- Affine ?P => P end in
     fail "iPure:" P "not affine"
Robbert Krebbers's avatar
Robbert Krebbers committed
200 201
    |intros pat].

Robbert Krebbers's avatar
Robbert Krebbers committed
202 203 204
Tactic Notation "iEmpIntro" :=
  iStartProof;
  eapply tac_emp_intro;
205 206
    [env_cbv; apply _ ||
     fail "iEmpIntro: spatial context contains non-affine hypotheses"].
Robbert Krebbers's avatar
Robbert Krebbers committed
207

208
Tactic Notation "iPureIntro" :=
Robbert Krebbers's avatar
Robbert Krebbers committed
209
  iStartProof;
210
  eapply tac_pure_intro;
Robbert Krebbers's avatar
Robbert Krebbers committed
211 212 213 214
    [apply _ ||
     let P := match goal with |- FromPure ?P _ => P end in
     fail "iPureIntro:" P "not pure"
    |].
Robbert Krebbers's avatar
Robbert Krebbers committed
215

216 217 218 219
(** Framing *)
Local Ltac iFrameFinish :=
  lazy iota beta;
  try match goal with
Robbert Krebbers's avatar
Robbert Krebbers committed
220 221
  | |- _  True => exact (bi.pure_intro _ _ I)
  | |- _  emp => iEmpIntro
222 223 224 225 226 227 228 229 230 231
  end.

Local Ltac iFramePure t :=
  let φ := type of t in
  eapply (tac_frame_pure _ _ _ _ t);
    [apply _ || fail "iFrame: cannot frame" φ
    |iFrameFinish].

Local Ltac iFrameHyp H :=
  eapply tac_frame with _ H _ _ _;
232
    [env_reflexivity || fail "iFrame:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
233 234 235
    |apply _ ||
     let R := match goal with |- Frame _ ?R _ _ => R end in
     fail "iFrame: cannot frame" R
236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281
    |iFrameFinish].

Local Ltac iFrameAnyPure :=
  repeat match goal with H : _ |- _ => iFramePure H end.

Local Ltac iFrameAnyPersistent :=
  let rec go Hs :=
    match Hs with [] => idtac | ?H :: ?Hs => repeat iFrameHyp H; go Hs end in
  match goal with
  | |- of_envs ?Δ  _ =>
     let Hs := eval cbv in (env_dom (env_persistent Δ)) in go Hs
  end.

Local Ltac iFrameAnySpatial :=
  let rec go Hs :=
    match Hs with [] => idtac | ?H :: ?Hs => try iFrameHyp H; go Hs end in
  match goal with
  | |- of_envs ?Δ  _ =>
     let Hs := eval cbv in (env_dom (env_spatial Δ)) in go Hs
  end.

Tactic Notation "iFrame" := iFrameAnySpatial.

Tactic Notation "iFrame" "(" constr(t1) ")" :=
  iFramePure t1.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) ")" :=
  iFramePure t1; iFrame ( t2 ).
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) ")" :=
  iFramePure t1; iFrame ( t2 t3 ).
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4) ")" :=
  iFramePure t1; iFrame ( t2 t3 t4 ).
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) ")" :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 ).
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) constr(t6) ")" :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 t6 ).
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) constr(t6) constr(t7) ")" :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 t6 t7 ).
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) constr(t6) constr(t7) constr(t8)")" :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 t6 t7 t8 ).

Tactic Notation "iFrame" constr(Hs) :=
  let rec go Hs :=
282
    lazymatch Hs with
283
    | [] => idtac
284 285 286 287
    | SelPure :: ?Hs => iFrameAnyPure; go Hs
    | SelPersistent :: ?Hs => iFrameAnyPersistent; go Hs
    | SelSpatial :: ?Hs => iFrameAnySpatial; go Hs
    | SelName ?H :: ?Hs => iFrameHyp H; go Hs
288
    end
289
  in let Hs := sel_pat.parse Hs in go Hs.
290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311
Tactic Notation "iFrame" "(" constr(t1) ")" constr(Hs) :=
  iFramePure t1; iFrame Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) ")" constr(Hs) :=
  iFramePure t1; iFrame ( t2 ) Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) ")" constr(Hs) :=
  iFramePure t1; iFrame ( t2 t3 ) Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4) ")"
    constr(Hs) :=
  iFramePure t1; iFrame ( t2 t3 t4 ) Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) ")" constr(Hs) :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 ) Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) constr(t6) ")" constr(Hs) :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 t6 ) Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) constr(t6) constr(t7) ")" constr(Hs) :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 t6 t7 ) Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) constr(t6) constr(t7) constr(t8)")" constr(Hs) :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 t6 t7 t8 ) Hs.

312 313 314
(** * Basic introduction tactics *)
Local Tactic Notation "iIntro" "(" simple_intropattern(x) ")" :=
  try iStartProof;
315 316 317
  lazymatch goal with
  | |- _  _ =>
    eapply tac_forall_intro;
Robbert Krebbers's avatar
Robbert Krebbers committed
318
      [apply _ ||
319 320 321 322 323
       let P := match goal with |- FromForall ?P _ => P end in
       fail "iIntro: cannot turn" P "into a universal quantifier"
      |lazy beta; intros x]
  | |- _ => intros x
  end.
324 325 326 327 328 329

Local Tactic Notation "iIntro" constr(H) :=
  iStartProof;
  first
  [ (* (?Q → _) *)
    eapply tac_impl_intro with _ H; (* (i:=H) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
330
      [env_cbv; apply _ ||
331
       let P := lazymatch goal with |- Persistent ?P => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
332 333
       fail 1 "iIntro: introducing non-persistent" H ":" P
              "into non-empty spatial context"
Robbert Krebbers's avatar
Robbert Krebbers committed
334
      |env_reflexivity || fail 1 "iIntro:" H "not fresh"
Robbert Krebbers's avatar
Robbert Krebbers committed
335
      |]
336 337
  | (* (_ -∗ _) *)
    eapply tac_wand_intro with _ H; (* (i:=H) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
338 339
      [env_reflexivity || fail 1 "iIntro:" H "not fresh"
      |]
340 341 342 343 344 345 346
  | fail 1 "iIntro: nothing to introduce" ].

Local Tactic Notation "iIntro" "#" constr(H) :=
  iStartProof;
  first
  [ (* (?P → _) *)
    eapply tac_impl_intro_persistent with _ H _; (* (i:=H) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
347
      [apply _ ||
348
       let P := match goal with |- IntoPersistent _ ?P _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
349
       fail 1 "iIntro:" P "not persistent"
Robbert Krebbers's avatar
Robbert Krebbers committed
350 351
      |env_reflexivity || fail 1 "iIntro:" H "not fresh"
      |]
352 353
  | (* (?P -∗ _) *)
    eapply tac_wand_intro_persistent with _ H _; (* (i:=H) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
354
      [apply _ ||
355
       let P := match goal with |- IntoPersistent _ ?P _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
356 357 358 359
       fail 1 "iIntro:" P "not persistent"
      |apply _ ||
       let P := match goal with |- Affine ?P => P end in
       fail 1 "iIntro:" P "not affine"
Robbert Krebbers's avatar
Robbert Krebbers committed
360 361
      |env_reflexivity || fail 1 "iIntro:" H "not fresh"
      |]
362 363 364 365 366 367
  | fail 1 "iIntro: nothing to introduce" ].

Local Tactic Notation "iIntro" "_" :=
  try iStartProof;
  first
  [ (* (?Q → _) *) apply tac_impl_intro_drop
Robbert Krebbers's avatar
Robbert Krebbers committed
368 369 370 371 372 373
  | (* (_ -∗ _) *)
    apply tac_wand_intro_drop;
      [apply _ ||
       let P := match goal with |- TCOr (Affine ?P) _ => P end in
       fail 1 "iIntro:" P "not affine and the goal not absorbing"
      |]
374 375 376 377 378 379
  | (* (∀ _, _) *) iIntro (_)
  | fail 1 "iIntro: nothing to introduce" ].

Local Tactic Notation "iIntroForall" :=
  try iStartProof;
  lazymatch goal with
Robbert Krebbers's avatar
Robbert Krebbers committed
380
  | |-  _, ?P => fail (* actually an →, this is handled by iIntro below *)
381 382 383 384 385 386 387 388 389 390 391
  | |-  _, _ => intro
  | |- _  ( x : _, _) => let x' := fresh x in iIntro (x')
  end.
Local Tactic Notation "iIntro" :=
  try iStartProof;
  lazymatch goal with
  | |- _  ?P => intro
  | |- _  (_ - _) => iIntro (?) || let H := iFresh in iIntro #H || iIntro H
  | |- _  (_  _) => iIntro (?) || let H := iFresh in iIntro #H || iIntro H
  end.

Robbert Krebbers's avatar
Robbert Krebbers committed
392
(** * Specialize *)
393 394 395 396 397
Record iTrm {X As} :=
  ITrm { itrm : X ; itrm_vars : hlist As ; itrm_hyps : string }.
Arguments ITrm {_ _} _ _ _.

Notation "( H $! x1 .. xn )" :=
398
  (ITrm H (hcons x1 .. (hcons xn hnil) ..) "") (at level 0, x1, xn at level 9).
399
Notation "( H $! x1 .. xn 'with' pat )" :=
400
  (ITrm H (hcons x1 .. (hcons xn hnil) ..) pat) (at level 0, x1, xn at level 9).
401 402
Notation "( H 'with' pat )" := (ITrm H hnil pat) (at level 0).

403 404 405 406 407 408 409 410 411 412 413
(*
There is some hacky stuff going on here (most probably there is a Coq bug).
Holes -- like unresolved type class instances -- in the argument `xs` are
resolved at arbitrary moments. It seems that tactics like `apply`, `split` and
`eexists` trigger type class search to resolve these holes. To avoid TC being
triggered too eagerly, this tactic uses `refine` at various places instead of
`apply`.

TODO: Investigate what really is going on. Is there a related to Cog bug #5752?
When should holes in an `open_constr` be resolved?
*)
414
Local Tactic Notation "iSpecializeArgs" constr(H) open_constr(xs) :=
415
  let rec go xs :=
416
    lazymatch xs with
417
    | hnil => apply id (* Finally, trigger TC *)
418
    | hcons ?x ?xs =>
419
       eapply tac_forall_specialize with _ H _ _ _; (* (i:=H) (a:=x) *)
420 421
         [env_reflexivity || fail "iSpecialize:" H "not found"
         |typeclasses eauto ||
Robbert Krebbers's avatar
Robbert Krebbers committed
422
          let P := match goal with |- IntoForall ?P _ => P end in
423 424 425 426
          fail "iSpecialize: cannot instantiate" P "with" x
         |lazymatch goal with (* Force [A] in [ex_intro] to deal with coercions. *)
          | |-  _ : ?A, _ => refine (@ex_intro A _ x (conj _ _))
          end; [env_reflexivity|go xs]]
427 428
    end in
  go xs.
Robbert Krebbers's avatar
Robbert Krebbers committed
429

430
Local Tactic Notation "iSpecializePat" open_constr(H) constr(pat) :=
Robbert Krebbers's avatar
Robbert Krebbers committed
431
  let solve_to_wand H1 :=
Robbert Krebbers's avatar
Robbert Krebbers committed
432
    apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
433
    let P := match goal with |- IntoWand _ _ ?P _ _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
434
    fail "iSpecialize:" P "not an implication/wand" in
Robbert Krebbers's avatar
Robbert Krebbers committed
435 436 437
  let rec go H1 pats :=
    lazymatch pats with
    | [] => idtac
438 439 440
    | SForall :: ?pats =>
       idtac "the * specialization pattern is deprecated because it is applied implicitly";
       go H1 pats
441
    | SName ?H2 :: ?pats =>
Robbert Krebbers's avatar
Robbert Krebbers committed
442
       eapply tac_specialize with _ _ H2 _ H1 _ _ _ _; (* (j:=H1) (i:=H2) *)
443 444
         [env_reflexivity || fail "iSpecialize:" H2 "not found"
         |env_reflexivity || fail "iSpecialize:" H1 "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
445
         |apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
446 447
          let P := match goal with |- IntoWand _ _ ?P ?Q _ => P end in
          let Q := match goal with |- IntoWand _ _ ?P ?Q _ => Q end in
Robbert Krebbers's avatar
Robbert Krebbers committed
448
          fail "iSpecialize: cannot instantiate" P "with" Q
449
         |env_reflexivity|go H1 pats]
450 451
    | SPureGoal ?d :: ?pats =>
       eapply tac_specialize_assert_pure with _ H1 _ _ _ _ _;
452
         [env_reflexivity || fail "iSpecialize:" H1 "not found"
453
         |solve_to_wand H1
Robbert Krebbers's avatar
Robbert Krebbers committed
454 455 456
         |apply _ ||
          let Q := match goal with |- FromPure ?Q _ => Q end in
          fail "iSpecialize:" Q "not pure"
457
         |env_reflexivity
458
         |done_if d (*goal*)
459
         |go H1 pats]
460 461
    | SGoal (SpecGoal GPersistent false ?Hs_frame [] ?d) :: ?pats =>
       eapply tac_specialize_assert_persistent with _ _ H1 _ _ _ _;
462
         [env_reflexivity || fail "iSpecialize:" H1 "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
463
         |solve_to_wand H1
Robbert Krebbers's avatar
Robbert Krebbers committed
464
         |apply _ ||
465
          let Q := match goal with |- Persistent ?Q => Q end in
Robbert Krebbers's avatar
Robbert Krebbers committed
466
          fail "iSpecialize:" Q "not persistent"
467
         |env_reflexivity
468
         |iFrame Hs_frame; done_if d (*goal*)
469
         |go H1 pats]
470 471 472
    | SGoal (SpecGoal GPersistent _ _ _ _) :: ?pats =>
       fail "iSpecialize: cannot select hypotheses for persistent premise"
    | SGoal (SpecGoal ?m ?lr ?Hs_frame ?Hs ?d) :: ?pats =>
473
       let Hs' := eval cbv in (if lr then Hs else Hs_frame ++ Hs) in
474
       eapply tac_specialize_assert with _ _ _ H1 _ lr Hs' _ _ _ _;
475
         [env_reflexivity || fail "iSpecialize:" H1 "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
476
         |solve_to_wand H1
477 478 479
         |lazymatch m with
          | GSpatial => apply elim_modal_dummy
          | GModal => apply _ || fail "iSpecialize: goal not a modality"
480
          end
481 482
         |env_reflexivity ||
          let Hs' := iMissingHyps Hs' in
483
          fail "iSpecialize: hypotheses" Hs' "not found"
484
         |iFrame Hs_frame; done_if d (*goal*)
Robbert Krebbers's avatar
Robbert Krebbers committed
485
         |go H1 pats]
486 487
    | SAutoFrame GPersistent :: ?pats =>
       eapply tac_specialize_assert_persistent with _ _ H1 _ _ _ _;
488
         [env_reflexivity || fail "iSpecialize:" H1 "not found"
489
         |solve_to_wand H1
Robbert Krebbers's avatar
Robbert Krebbers committed
490
         |apply _ ||
491
          let Q := match goal with |- Persistent ?Q => Q end in
Robbert Krebbers's avatar
Robbert Krebbers committed
492
          fail "iSpecialize:" Q "not persistent"
493
         |env_reflexivity
494 495 496 497
         |solve [iFrame "∗ #"]
         |go H1 pats]
    | SAutoFrame ?m :: ?pats =>
       eapply tac_specialize_frame with _ H1 _ _ _ _ _ _;
498
         [env_reflexivity || fail "iSpecialize:" H1 "not found"
499 500 501 502 503
         |solve_to_wand H1
         |lazymatch m with
          | GSpatial => apply elim_modal_dummy
          | GModal => apply _ || fail "iSpecialize: goal not a modality"
          end
Robbert Krebbers's avatar
Robbert Krebbers committed
504 505
         |iFrame "∗ #"; apply tac_unlock ||
          fail "iSpecialize: premise cannot be solved by framing"
506
         |reflexivity]; iIntro H1; go H1 pats
507 508
    end in let pats := spec_pat.parse pat in go H pats.

Robbert Krebbers's avatar
Robbert Krebbers committed
509
(* The argument [p] denotes whether the conclusion of the specialized term is
510 511 512
persistent. If so, one can use all spatial hypotheses for both proving the
premises and the remaning goal. The argument [p] can either be a Boolean or an
introduction pattern, which will be coerced into [true] when it solely contains
513 514 515 516 517
`#` or `%` patterns at the top-level.

In case the specialization pattern in [t] states that the modality of the goal
should be kept for one of the premises (i.e. [>[H1 .. Hn]] is used) then [p]
defaults to [false] (i.e. spatial hypotheses are not preserved). *)
518
Tactic Notation "iSpecializeCore" open_constr(t) "as" constr(p) :=
Robbert Krebbers's avatar
Robbert Krebbers committed
519
  let p := intro_pat_persistent p in
520 521
  let t :=
    match type of t with string => constr:(ITrm t hnil "") | _ => t end in
522 523
  lazymatch t with
  | ITrm ?H ?xs ?pat =>
Robbert Krebbers's avatar
Robbert Krebbers committed
524
    iSpecializeArgs H xs;
525 526
    lazymatch type of H with
    | string =>
527 528 529 530 531 532
      (* The lemma [tac_specialize_persistent_helper] allows one to use all
      spatial hypotheses for both proving the premises of the lemma we
      specialize as well as those of the remaining goal. We can only use it when
      the result of the specialization is persistent, and no modality is
      eliminated. As an optimization, we do not use this when only universal
      quantifiers are instantiated. *)
Robbert Krebbers's avatar
Robbert Krebbers committed
533
      let pat := spec_pat.parse pat in
534
      lazymatch eval compute in
535
        (p && bool_decide (pat  []) && negb (existsb spec_pat_modal pat)) with
536
      | true =>
537
         (* FIXME: do something reasonable when the BI is not positive *)
Robbert Krebbers's avatar
Robbert Krebbers committed
538
         eapply tac_specialize_persistent_helper with _ H _ _ _ _;
539
           [env_reflexivity || fail "iSpecialize:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
540
           |iSpecializePat H pat; last (iExact H)
Robbert Krebbers's avatar
Robbert Krebbers committed
541
           |apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
542
            let Q := match goal with |- IntoPersistent _ ?Q _ => Q end in
Robbert Krebbers's avatar
Robbert Krebbers committed
543
            fail "iSpecialize:" Q "not persistent"
Robbert Krebbers's avatar
Robbert Krebbers committed
544
           |env_cbv; apply _ ||
545
            let Q := match goal with |- TCAnd _ (Affine ?Q) => Q end in
Robbert Krebbers's avatar
Robbert Krebbers committed
546 547 548 549
            fail "iSpecialize:" Q "not affine"
           |env_reflexivity
           |(* goal *)]
      | false => iSpecializePat H pat
550 551
      end
    | _ => fail "iSpecialize:" H "should be a hypothesis, use iPoseProof instead"
552
    end
553
  | _ => fail "iSpecialize:" t "should be a proof mode term"
554
  end.
Robbert Krebbers's avatar
Robbert Krebbers committed
555

556
Tactic Notation "iSpecialize" open_constr(t) :=
557 558 559
  iSpecializeCore t as false.
Tactic Notation "iSpecialize" open_constr(t) "as" "#" :=
  iSpecializeCore t as true.
560

Robbert Krebbers's avatar
Robbert Krebbers committed
561
(** * Pose proof *)
562 563
(* The tactic [iIntoValid] tactic solves a goal [uPred_valid Q]. The
arguments [t] is a Coq term whose type is of the following shape:
564

565
- [∀ (x_1 : A_1) .. (x_n : A_n), uPred_valid Q]
566
- [∀ (x_1 : A_1) .. (x_n : A_n), P1 ⊢ P2], in which case [Q] becomes [P1 -∗ P2]
567 568 569 570
- [∀ (x_1 : A_1) .. (x_n : A_n), P1 ⊣⊢ P2], in which case [Q] becomes [P1 ↔ P2]

The tactic instantiates each dependent argument [x_i] with an evar and generates
a goal [P] for non-dependent arguments [x_i : P]. *)
571
Tactic Notation "iIntoValid" open_constr(t) :=
572
  let rec go t :=
573
    let tT := type of t in
574 575 576 577 578 579 580 581 582 583 584
    lazymatch eval hnf in tT with
    | ?P  ?Q => let H := fresh in assert P as H; [|go uconstr:(t H); clear H]
    |  _ : ?T, _ =>
      (* Put [T] inside an [id] to avoid TC inference from being invoked. *)
      (* This is a workarround for Coq bug #4969. *)
      let e := fresh in evar (e:id T);
      let e' := eval unfold e in e in clear e; go (t e')
    | _ =>
      let tT' := eval cbv zeta in tT in apply (proj1 (_ : AsValid tT' _) t)
      || fail "iPoseProof: not a uPred"
    end in
585
  go t.
586

587 588 589 590 591 592 593 594 595 596 597 598 599 600 601
(* The tactic [tac] is called with a temporary fresh name [H]. The argument
[lazy_tc] denotes whether type class inference on the premises of [lem] should
be performed before (if false) or after (if true) [tac H] is called. *)
Tactic Notation "iPoseProofCore" open_constr(lem)
    "as" constr(p) constr(lazy_tc) tactic(tac) :=
  try iStartProof;
  let Htmp := iFresh in
  let t :=
    lazymatch lem with ITrm ?t ?xs ?pat => t | _ => lem end in
  let spec_tac _ :=
    lazymatch lem with
    | ITrm ?t ?xs ?pat => iSpecializeCore (ITrm Htmp xs pat) as p
    | _ => idtac
    end in
  let go goal_tac :=
602 603 604
    lazymatch type of t with
    | string =>
       eapply tac_pose_proof_hyp with _ _ t _ Htmp _;
605 606
         [env_reflexivity || fail "iPoseProof:" t "not found"
         |env_reflexivity || fail "iPoseProof:" Htmp "not fresh"
607
         |goal_tac ()]
608 609
    | _ =>
       eapply tac_pose_proof with _ Htmp _; (* (j:=H) *)
610
         [iIntoValid t
611
         |env_reflexivity || fail "iPoseProof:" Htmp "not fresh"
612
         |goal_tac ()]
613
    end;
614 615 616 617
    try (apply _) in
  lazymatch eval compute in lazy_tc with
  | true => go ltac:(fun _ => spec_tac (); last (tac Htmp))
  | false => go spec_tac; last (tac Htmp)
Robbert Krebbers's avatar
Robbert Krebbers committed
618 619 620
  end.

(** * Apply *)
621
Tactic Notation "iApplyHyp" constr(H) :=
622 623
  let rec go H := first
    [eapply tac_apply with _ H _ _ _;
624
      [env_reflexivity
625 626
      |apply _
      |lazy beta (* reduce betas created by instantiation *)]
627
    |iSpecializePat H "[]"; last go H] in
628 629 630 631 632 633 634 635
  iExact H ||
  go H ||
  lazymatch iTypeOf H with
  | Some (_,?Q) => fail "iApply: cannot apply" Q
  end.

Tactic Notation "iApply" open_constr(lem) :=
  iPoseProofCore lem as false true (fun H => iApplyHyp H).
Robbert Krebbers's avatar
Robbert Krebbers committed
636 637

(** * Revert *)
638
Local Tactic Notation "iForallRevert" ident(x) :=
639 640 641 642 643 644
  let err x :=
    intros x;
    iMatchHyp (fun H P =>
      lazymatch P with
      | context [x] => fail 2 "iRevert:" x "is used in hypothesis" H
      end) in
Robbert Krebbers's avatar
Robbert Krebbers committed
645
  iStartProof;
646 647
  let A := type of x in
  lazymatch type of A with
648 649 650
  | Prop => revert x; first [apply tac_pure_revert|err x]
  | _ => revert x; first [apply tac_forall_revert|err x]
  end.
Robbert Krebbers's avatar
Robbert Krebbers committed
651 652

Tactic Notation "iRevert" constr(Hs) :=
653 654
  let rec go Hs :=
    lazymatch Hs with
655
    | [] => idtac
656 657 658 659 660
    | ESelPure :: ?Hs =>
       repeat match goal with x : _ |- _ => revert x end;
       go Hs
    | ESelName _ ?H :: ?Hs =>
       eapply tac_revert with _ H _ _; (* (i:=H2) *)
661
         [env_reflexivity || fail "iRevert:" H "not found"
662
         |env_cbv; go Hs]
663
    end in
Robbert Krebbers's avatar
Robbert Krebbers committed
664
  let Hs := iElaborateSelPat Hs in iStartProof; go Hs.
Robbert Krebbers's avatar
Robbert Krebbers committed
665

666
Tactic Notation "iRevert" "(" ident(x1) ")" :=
Robbert Krebbers's avatar
Robbert Krebbers committed
667
  iForallRevert x1.
668 669 670 671 672 673 674 675 676 677 678 679 680 681 682 683 684 685 686 687 688 689 690 691 692 693
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ")" :=
  iForallRevert x2; iRevert ( x1 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ")" :=
  iForallRevert x3; iRevert ( x1 x2 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4) ")" :=
  iForallRevert x4; iRevert ( x1 x2 x3 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ")" :=
  iForallRevert x5; iRevert ( x1 x2 x3 x4 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ident(x6) ")" :=
  iForallRevert x6; iRevert ( x1 x2 x3 x4 x5 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ident(x6) ident(x7) ")" :=
  iForallRevert x7; iRevert ( x1 x2 x3 x4 x5 x6 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ident(x6) ident(x7) ident(x8) ")" :=
  iForallRevert x8; iRevert ( x1 x2 x3 x4 x5 x6 x7 ).

Tactic Notation "iRevert" "(" ident(x1) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 x2 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 x2 x3 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4) ")"
Robbert Krebbers's avatar
Robbert Krebbers committed
694
    constr(Hs) :=
695 696 697 698 699 700 701 702 703 704 705 706 707
  iRevert Hs; iRevert ( x1 x2 x3 x4 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 x2 x3 x4 x5 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ident(x6) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 x2 x3 x4 x5 x6 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ident(x6) ident(x7) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 x2 x3 x4 x5 x6 x7 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ident(x6) ident(x7) ident(x8) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 x2 x3 x4 x5 x6 x7 x8 ).
Robbert Krebbers's avatar
Robbert Krebbers committed
708 709 710

(** * Disjunction *)
Tactic Notation "iLeft" :=
711
  iStartProof;
Robbert Krebbers's avatar
Robbert Krebbers committed
712
  eapply tac_or_l;
Robbert Krebbers's avatar
Robbert Krebbers committed
713 714 715 716
    [apply _ ||
     let P := match goal with |- FromOr ?P _ _ => P end in
     fail "iLeft:" P "not a disjunction"
    |].
Robbert Krebbers's avatar
Robbert Krebbers committed
717
Tactic Notation "iRight" :=
718
  iStartProof;
Robbert Krebbers's avatar
Robbert Krebbers committed
719
  eapply tac_or_r;
Robbert Krebbers's avatar
Robbert Krebbers committed
720 721 722 723
    [apply _ ||
     let P := match goal with |- FromOr ?P _ _ => P end in
     fail "iRight:" P "not a disjunction"
    |].
Robbert Krebbers's avatar
Robbert Krebbers committed
724

725
Local Tactic Notation "iOrDestruct" constr(H) "as" constr(H1) constr(H2) :=
Robbert Krebbers's avatar
Robbert Krebbers committed
726
  eapply tac_or_destruct with _ _ H _ H1 H2 _ _ _; (* (i:=H) (j1:=H1) (j2:=H2) *)
727
    [env_reflexivity || fail "iOrDestruct:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
728 729 730
    |apply _ ||
     let P := match goal with |- IntoOr ?P _ _ => P end in
     fail "iOrDestruct: cannot destruct" P
731
    |env_reflexivity || fail "iOrDestruct:" H1 "not fresh"
Robbert Krebbers's avatar
Robbert Krebbers committed
732 733
    |env_reflexivity || fail "iOrDestruct:" H2 "not fresh"
    | |].
Robbert Krebbers's avatar
Robbert Krebbers committed
734 735 736

(** * Conjunction and separating conjunction *)
Tactic Notation "iSplit" :=
737
  iStartProof;
738 739 740
  lazymatch goal with
  | |- _  _ =>
    eapply tac_and_split;
Robbert Krebbers's avatar
Robbert Krebbers committed
741
      [apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
742
       let P := match goal with |- FromAnd ?P _ _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
743
       fail "iSplit:" P "not a conjunction"| |]
744
  end.
Robbert Krebbers's avatar
Robbert Krebbers committed
745 746

Tactic Notation "iSplitL" constr(Hs) :=
747
  iStartProof;
Robbert Krebbers's avatar
Robbert Krebbers committed
748 749
  let Hs := words Hs in
  eapply tac_sep_split with _ _ false Hs _ _; (* (js:=Hs) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
750
    [apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
751
     let P := match goal with |- FromSep _ ?P _ _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
752
     fail "iSplitL:" P "not a separating conjunction"
753 754
    |env_reflexivity ||
     let Hs := iMissingHyps Hs in
755
     fail "iSplitL: hypotheses" Hs "not found"
756 757
    | |].

Robbert Krebbers's avatar
Robbert Krebbers committed
758
Tactic Notation "iSplitR" constr(Hs) :=
759
  iStartProof;
Robbert Krebbers's avatar
Robbert Krebbers committed
760 761
  let Hs := words Hs in
  eapply tac_sep_split with _ _ true Hs _ _; (* (js:=Hs) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
762
    [apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
763
     let P := match goal with |- FromSep _ ?P _ _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
764
     fail "iSplitR:" P "not a separating conjunction"
765 766
    |env_reflexivity ||
     let Hs := iMissingHyps Hs in
767
     fail "iSplitR: hypotheses" Hs "not found"
768
    | |].
Robbert Krebbers's avatar
Robbert Krebbers committed
769 770 771 772

Tactic Notation "iSplitL" := iSplitR "".
Tactic Notation "iSplitR" := iSplitL "".

773 774
Local Tactic Notation "iAndDestruct" constr(H) "as" constr(H1) constr(H2) :=
  eapply tac_and_destruct with _ H _ H1 H2 _ _ _; (* (i:=H) (j1:=H1) (j2:=H2) *)
775
    [env_reflexivity || fail "iAndDestruct:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
776
    |apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
777
     let P := match goal with |- IntoSep _ ?P _ _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
778
     fail "iAndDestruct: cannot destruct" P
779
    |env_reflexivity || fail "iAndDestruct:" H1 "or" H2 " not fresh"|].
780 781 782

Local Tactic Notation "iAndDestructChoice" constr(H) "as" constr(lr) constr(H') :=
  eapply tac_and_destruct_choice with _ H _ lr H' _ _ _;
783
    [env_reflexivity || fail