tactics.v 80.5 KB
Newer Older
1
From iris.proofmode Require Import coq_tactics.
2
From iris.proofmode Require Import base intro_patterns spec_patterns sel_patterns.
3
From iris.bi Require Export bi big_op.
Robbert Krebbers's avatar
Robbert Krebbers committed
4
From iris.proofmode Require Export classes notation.
5
From iris.proofmode Require Import class_instances.
Ralf Jung's avatar
Ralf Jung committed
6
From stdpp Require Import stringmap hlist.
7
Set Default Proof Using "Type".
Robbert Krebbers's avatar
Robbert Krebbers committed
8
9

Declare Reduction env_cbv := cbv [
10
  beq ascii_beq string_beq
11
12
  env_lookup env_lookup_delete env_delete env_app env_replace env_dom
  env_persistent env_spatial env_spatial_is_nil envs_dom
13
  envs_lookup envs_lookup_delete envs_delete envs_snoc envs_app
14
15
    envs_simple_replace envs_replace envs_split
    envs_clear_spatial envs_clear_persistent
16
    envs_split_go envs_split].
Robbert Krebbers's avatar
Robbert Krebbers committed
17
18
Ltac env_cbv :=
  match goal with |- ?u => let v := eval env_cbv in u in change v end.
19
Ltac env_reflexivity := env_cbv; exact eq_refl.
Robbert Krebbers's avatar
Robbert Krebbers committed
20

21
(** * Misc *)
22
23
(* Tactic Notation tactics cannot return terms *)
Ltac iFresh' H :=
Robbert Krebbers's avatar
Robbert Krebbers committed
24
  lazymatch goal with
25
  |- envs_entails ?Δ _ =>
26
27
28
     (* [vm_compute fails] if any of the hypotheses in [Δ] contain evars, so
     first use [cbv] to compute the domain of [Δ] *)
     let Hs := eval cbv in (envs_dom Δ) in
29
30
     eval vm_compute in (fresh_string_of_set H (of_list Hs))
  | _ => H
Robbert Krebbers's avatar
Robbert Krebbers committed
31
  end.
32
Ltac iFresh := iFresh' "~".
Robbert Krebbers's avatar
Robbert Krebbers committed
33

34
35
36
Ltac iMissingHyps Hs :=
  let Δ :=
    lazymatch goal with
37
    | |- envs_entails ?Δ _ => Δ
38
39
40
41
42
    | |- context[ envs_split _ _ ?Δ ] => Δ
    end in
  let Hhyps := eval env_cbv in (envs_dom Δ) in
  eval vm_compute in (list_difference Hs Hhyps).

43
Ltac iTypeOf H :=
44
  let Δ := match goal with |- envs_entails ?Δ _ => Δ end in
45
  eval env_cbv in (envs_lookup H Δ).
Robbert Krebbers's avatar
Robbert Krebbers committed
46

47
Tactic Notation "iMatchHyp" tactic1(tac) :=
48
49
50
51
  match goal with
  | |- context[ environments.Esnoc _ ?x ?P ] => tac x P
  end.

52
Class AsValid {PROP : bi} (φ : Prop) (P : PROP) := as_valid : φ  P.
Robbert Krebbers's avatar
Robbert Krebbers committed
53
54
Arguments AsValid {_} _%type _%I.

55
Lemma as_valid_1 (φ : Prop) {PROP : bi} (P : PROP) `{!AsValid φ P} : φ  P.
56
Proof. by apply as_valid. Qed.
57
Lemma as_valid_2 (φ : Prop) {PROP : bi} (P : PROP) `{!AsValid φ P} : P  φ.
58
59
Proof. by apply as_valid. Qed.

Robbert Krebbers's avatar
Robbert Krebbers committed
60
Instance as_valid_valid {PROP : bi} (P : PROP) : AsValid (bi_valid P) P | 0.
Robbert Krebbers's avatar
Robbert Krebbers committed
61
62
Proof. by rewrite /AsValid. Qed.

Robbert Krebbers's avatar
Robbert Krebbers committed
63
64
Instance as_valid_entails {PROP : bi} (P Q : PROP) : AsValid (P  Q) (P - Q) | 1.
Proof. split. apply bi.entails_wand. apply bi.wand_entails. Qed.
Robbert Krebbers's avatar
Robbert Krebbers committed
65

Robbert Krebbers's avatar
Robbert Krebbers committed
66
67
Instance as_valid_equiv {PROP : bi} (P Q : PROP) : AsValid (P  Q) (P - Q).
Proof. split. apply bi.equiv_wand_iff. apply bi.wand_iff_equiv. Qed.
Robbert Krebbers's avatar
Robbert Krebbers committed
68

Robbert Krebbers's avatar
Robbert Krebbers committed
69
(** * Start a proof *)
70
Ltac iStartProof :=
Robbert Krebbers's avatar
Robbert Krebbers committed
71
  lazymatch goal with
72
  | |- envs_entails _ _ => idtac
Robbert Krebbers's avatar
Robbert Krebbers committed
73
  | |- let _ := _ in _ => fail
74
  | |- ?φ => eapply (as_valid_2 φ);
75
               [apply _ || fail "iStartProof: not a Bi entailment"
76
               |apply tac_adequate]
Robbert Krebbers's avatar
Robbert Krebbers committed
77
78
79
80
81
  end.

(** * Context manipulation *)
Tactic Notation "iRename" constr(H1) "into" constr(H2) :=
  eapply tac_rename with _ H1 H2 _ _; (* (i:=H1) (j:=H2) *)
82
83
    [env_reflexivity || fail "iRename:" H1 "not found"
    |env_reflexivity || fail "iRename:" H2 "not fresh"|].
Robbert Krebbers's avatar
Robbert Krebbers committed
84

85
86
87
88
Local Inductive esel_pat :=
  | ESelPure
  | ESelName : bool  string  esel_pat.

89
Ltac iElaborateSelPat pat :=
90
91
  let rec go pat Δ Hs :=
    lazymatch pat with
92
    | [] => eval cbv in Hs
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
    | SelPure :: ?pat => go pat Δ (ESelPure :: Hs)
    | SelPersistent :: ?pat =>
       let Hs' := eval env_cbv in (env_dom (env_persistent Δ)) in
       let Δ' := eval env_cbv in (envs_clear_persistent Δ) in
       go pat Δ' ((ESelName true <$> Hs') ++ Hs)
    | SelSpatial :: ?pat =>
       let Hs' := eval env_cbv in (env_dom (env_spatial Δ)) in
       let Δ' := eval env_cbv in (envs_clear_spatial Δ) in
       go pat Δ' ((ESelName false <$> Hs') ++ Hs)
    | SelName ?H :: ?pat =>
       lazymatch eval env_cbv in (envs_lookup_delete H Δ) with
       | Some (?p,_,?Δ') => go pat Δ' (ESelName p H :: Hs)
       | None => fail "iElaborateSelPat:" H "not found"
       end
    end in
  lazymatch goal with
109
  | |- envs_entails ?Δ _ =>
110
111
112
    let pat := sel_pat.parse pat in go pat Δ (@nil esel_pat)
  end.

Robbert Krebbers's avatar
Robbert Krebbers committed
113
114
Tactic Notation "iClear" constr(Hs) :=
  let rec go Hs :=
115
    lazymatch Hs with
Robbert Krebbers's avatar
Robbert Krebbers committed
116
    | [] => idtac
117
118
    | ESelPure :: ?Hs => clear; go Hs
    | ESelName _ ?H :: ?Hs =>
Robbert Krebbers's avatar
Robbert Krebbers committed
119
       eapply tac_clear with _ H _ _; (* (i:=H) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
120
121
122
123
124
         [env_reflexivity || fail "iClear:" H "not found"
         |env_cbv; apply _ ||
          let P := match goal with |- TCOr (Affine ?P) _ => P end in
          fail "iClear:" H ":" P "not affine and the goal not absorbing"
         |go Hs]
Robbert Krebbers's avatar
Robbert Krebbers committed
125
    end in
126
  let Hs := iElaborateSelPat Hs in go Hs.
127

128
129
Tactic Notation "iClear" "(" ident_list(xs) ")" constr(Hs) :=
  iClear Hs; clear xs.
Robbert Krebbers's avatar
Robbert Krebbers committed
130
131
132

(** * Assumptions *)
Tactic Notation "iExact" constr(H) :=
Robbert Krebbers's avatar
Robbert Krebbers committed
133
  eapply tac_assumption with _ H _ _; (* (i:=H) *)
134
    [env_reflexivity || fail "iExact:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
135
136
    |apply _ ||
     let P := match goal with |- FromAssumption _ ?P _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
137
138
139
     fail "iExact:" H ":" P "does not match goal"
    |env_cbv; apply _ ||
     fail "iExact:" H "not absorbing and the remaining hypotheses not affine"].
Robbert Krebbers's avatar
Robbert Krebbers committed
140
141
142

Tactic Notation "iAssumptionCore" :=
  let rec find Γ i P :=
143
    lazymatch Γ with
Robbert Krebbers's avatar
Robbert Krebbers committed
144
    | Esnoc ?Γ ?j ?Q => first [unify P Q; unify i j|find Γ i P]
Robbert Krebbers's avatar
Robbert Krebbers committed
145
146
147
    end in
  match goal with
  | |- envs_lookup ?i (Envs ?Γp ?Γs) = Some (_, ?P) =>
148
     first [is_evar i; fail 1 | env_reflexivity]
Robbert Krebbers's avatar
Robbert Krebbers committed
149
  | |- envs_lookup ?i (Envs ?Γp ?Γs) = Some (_, ?P) =>
150
     is_evar i; first [find Γp i P | find Γs i P]; env_reflexivity
151
  | |- envs_lookup_delete ?i (Envs ?Γp ?Γs) = Some (_, ?P, _) =>
152
     first [is_evar i; fail 1 | env_reflexivity]
153
  | |- envs_lookup_delete ?i (Envs ?Γp ?Γs) = Some (_, ?P, _) =>
154
     is_evar i; first [find Γp i P | find Γs i P]; env_reflexivity
Robbert Krebbers's avatar
Robbert Krebbers committed
155
  end.
156

Robbert Krebbers's avatar
Robbert Krebbers committed
157
Tactic Notation "iAssumption" :=
158
159
  let Hass := fresh in
  let rec find p Γ Q :=
160
    lazymatch Γ with
161
    | Esnoc ?Γ ?j ?P => first
162
       [pose proof (_ : FromAssumption p P Q) as Hass;
Robbert Krebbers's avatar
Robbert Krebbers committed
163
164
165
166
167
168
169
170
171
        eapply (tac_assumption _ _ j p P);
          [env_reflexivity
          |apply Hass
          |env_cbv; apply _ ||
           fail 1 "iAssumption:" j "not absorbing and the remaining hypotheses not affine"]
       |assert (P = False%I) as Hass by reflexivity;
        apply (tac_false_destruct _ j p P);
          [env_reflexivity
          |exact Hass]
172
173
       |find p Γ Q]
    end in
174
  lazymatch goal with
175
  | |- envs_entails (Envs ?Γp ?Γs) ?Q =>
176
177
178
     first [find true Γp Q | find false Γs Q
           |fail "iAssumption:" Q "not found"]
  end.
Robbert Krebbers's avatar
Robbert Krebbers committed
179
180
181
182
183

(** * False *)
Tactic Notation "iExFalso" := apply tac_ex_falso.

(** * Making hypotheses persistent or pure *)
184
Local Tactic Notation "iPersistent" constr(H) :=
Robbert Krebbers's avatar
Robbert Krebbers committed
185
  eapply tac_persistent with _ H _ _ _; (* (i:=H) *)
186
    [env_reflexivity || fail "iPersistent:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
187
    |apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
188
189
190
     let P := match goal with |- IntoPersistent _ ?P _ => P end in
     fail "iPersistent:" P "not persistent"
    |env_cbv; apply _ ||
191
192
     let P := match goal with |- TCOr (Affine ?P) _ => P end in
     fail "iPersistent:" P "not affine and the goal not absorbing"
193
    |env_reflexivity|].
Robbert Krebbers's avatar
Robbert Krebbers committed
194

195
Local Tactic Notation "iPure" constr(H) "as" simple_intropattern(pat) :=
Robbert Krebbers's avatar
Robbert Krebbers committed
196
  eapply tac_pure with _ H _ _ _; (* (i:=H1) *)
197
    [env_reflexivity || fail "iPure:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
198
199
200
    |apply _ ||
     let P := match goal with |- IntoPure ?P _ => P end in
     fail "iPure:" P "not pure"
Robbert Krebbers's avatar
Robbert Krebbers committed
201
    |env_cbv; apply _ ||
202
203
     let P := match goal with |- TCOr (Affine ?P) _ => P end in
     fail "iPure:" P "not affine and the goal not absorbing"
Robbert Krebbers's avatar
Robbert Krebbers committed
204
205
    |intros pat].

Robbert Krebbers's avatar
Robbert Krebbers committed
206
207
208
Tactic Notation "iEmpIntro" :=
  iStartProof;
  eapply tac_emp_intro;
209
210
    [env_cbv; apply _ ||
     fail "iEmpIntro: spatial context contains non-affine hypotheses"].
Robbert Krebbers's avatar
Robbert Krebbers committed
211

212
Tactic Notation "iPureIntro" :=
Robbert Krebbers's avatar
Robbert Krebbers committed
213
  iStartProof;
214
  eapply tac_pure_intro;
Robbert Krebbers's avatar
Robbert Krebbers committed
215
216
217
218
    [apply _ ||
     let P := match goal with |- FromPure ?P _ => P end in
     fail "iPureIntro:" P "not pure"
    |].
Robbert Krebbers's avatar
Robbert Krebbers committed
219

220
221
222
223
(** Framing *)
Local Ltac iFrameFinish :=
  lazy iota beta;
  try match goal with
224
225
  | |- envs_entails _ True => exact (bi.pure_intro _ _ I)
  | |- envs_entails _ emp => iEmpIntro
226
227
228
229
230
231
232
233
234
235
  end.

Local Ltac iFramePure t :=
  let φ := type of t in
  eapply (tac_frame_pure _ _ _ _ t);
    [apply _ || fail "iFrame: cannot frame" φ
    |iFrameFinish].

Local Ltac iFrameHyp H :=
  eapply tac_frame with _ H _ _ _;
236
    [env_reflexivity || fail "iFrame:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
237
238
239
    |apply _ ||
     let R := match goal with |- Frame _ ?R _ _ => R end in
     fail "iFrame: cannot frame" R
240
241
242
243
244
245
246
247
248
    |iFrameFinish].

Local Ltac iFrameAnyPure :=
  repeat match goal with H : _ |- _ => iFramePure H end.

Local Ltac iFrameAnyPersistent :=
  let rec go Hs :=
    match Hs with [] => idtac | ?H :: ?Hs => repeat iFrameHyp H; go Hs end in
  match goal with
249
  | |- envs_entails ?Δ _ =>
250
251
252
253
254
255
256
     let Hs := eval cbv in (env_dom (env_persistent Δ)) in go Hs
  end.

Local Ltac iFrameAnySpatial :=
  let rec go Hs :=
    match Hs with [] => idtac | ?H :: ?Hs => try iFrameHyp H; go Hs end in
  match goal with
257
  | |- envs_entails ?Δ _ =>
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
     let Hs := eval cbv in (env_dom (env_spatial Δ)) in go Hs
  end.

Tactic Notation "iFrame" := iFrameAnySpatial.

Tactic Notation "iFrame" "(" constr(t1) ")" :=
  iFramePure t1.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) ")" :=
  iFramePure t1; iFrame ( t2 ).
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) ")" :=
  iFramePure t1; iFrame ( t2 t3 ).
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4) ")" :=
  iFramePure t1; iFrame ( t2 t3 t4 ).
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) ")" :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 ).
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) constr(t6) ")" :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 t6 ).
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) constr(t6) constr(t7) ")" :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 t6 t7 ).
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) constr(t6) constr(t7) constr(t8)")" :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 t6 t7 t8 ).

Tactic Notation "iFrame" constr(Hs) :=
  let rec go Hs :=
286
    lazymatch Hs with
287
    | [] => idtac
288
289
290
291
    | SelPure :: ?Hs => iFrameAnyPure; go Hs
    | SelPersistent :: ?Hs => iFrameAnyPersistent; go Hs
    | SelSpatial :: ?Hs => iFrameAnySpatial; go Hs
    | SelName ?H :: ?Hs => iFrameHyp H; go Hs
292
    end
293
  in let Hs := sel_pat.parse Hs in go Hs.
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
Tactic Notation "iFrame" "(" constr(t1) ")" constr(Hs) :=
  iFramePure t1; iFrame Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) ")" constr(Hs) :=
  iFramePure t1; iFrame ( t2 ) Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) ")" constr(Hs) :=
  iFramePure t1; iFrame ( t2 t3 ) Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4) ")"
    constr(Hs) :=
  iFramePure t1; iFrame ( t2 t3 t4 ) Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) ")" constr(Hs) :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 ) Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) constr(t6) ")" constr(Hs) :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 t6 ) Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) constr(t6) constr(t7) ")" constr(Hs) :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 t6 t7 ) Hs.
Tactic Notation "iFrame" "(" constr(t1) constr(t2) constr(t3) constr(t4)
    constr(t5) constr(t6) constr(t7) constr(t8)")" constr(Hs) :=
  iFramePure t1; iFrame ( t2 t3 t4 t5 t6 t7 t8 ) Hs.

316
317
318
(** * Basic introduction tactics *)
Local Tactic Notation "iIntro" "(" simple_intropattern(x) ")" :=
  try iStartProof;
319
  lazymatch goal with
320
  | |- envs_entails _ _ =>
321
    eapply tac_forall_intro;
Robbert Krebbers's avatar
Robbert Krebbers committed
322
      [apply _ ||
323
324
325
326
327
       let P := match goal with |- FromForall ?P _ => P end in
       fail "iIntro: cannot turn" P "into a universal quantifier"
      |lazy beta; intros x]
  | |- _ => intros x
  end.
328
329
330
331
332

Local Tactic Notation "iIntro" constr(H) :=
  iStartProof;
  first
  [ (* (?Q → _) *)
333
    eapply tac_impl_intro with _ H _; (* (i:=H) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
334
      [env_cbv; apply _ ||
335
       let P := lazymatch goal with |- Persistent ?P => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
336
337
       fail 1 "iIntro: introducing non-persistent" H ":" P
              "into non-empty spatial context"
Robbert Krebbers's avatar
Robbert Krebbers committed
338
      |env_reflexivity || fail 1 "iIntro:" H "not fresh"
339
      |apply _
Robbert Krebbers's avatar
Robbert Krebbers committed
340
      |]
341
342
  | (* (_ -∗ _) *)
    eapply tac_wand_intro with _ H; (* (i:=H) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
343
344
      [env_reflexivity || fail 1 "iIntro:" H "not fresh"
      |]
345
  | fail "iIntro: nothing to introduce" ].
346
347
348
349
350
351

Local Tactic Notation "iIntro" "#" constr(H) :=
  iStartProof;
  first
  [ (* (?P → _) *)
    eapply tac_impl_intro_persistent with _ H _; (* (i:=H) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
352
      [apply _ ||
353
       let P := match goal with |- IntoPersistent _ ?P _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
354
       fail 1 "iIntro:" P "not persistent"
Robbert Krebbers's avatar
Robbert Krebbers committed
355
356
      |env_reflexivity || fail 1 "iIntro:" H "not fresh"
      |]
357
358
  | (* (?P -∗ _) *)
    eapply tac_wand_intro_persistent with _ H _; (* (i:=H) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
359
      [apply _ ||
360
       let P := match goal with |- IntoPersistent _ ?P _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
361
362
       fail 1 "iIntro:" P "not persistent"
      |apply _ ||
363
364
       let P := match goal with |- TCOr (Affine ?P) _ => P end in
       fail 1 "iIntro:" P "not affine and the goal not absorbing"
Robbert Krebbers's avatar
Robbert Krebbers committed
365
366
      |env_reflexivity || fail 1 "iIntro:" H "not fresh"
      |]
367
  | fail "iIntro: nothing to introduce" ].
368
369
370
371
372

Local Tactic Notation "iIntro" "_" :=
  try iStartProof;
  first
  [ (* (?Q → _) *) apply tac_impl_intro_drop
Robbert Krebbers's avatar
Robbert Krebbers committed
373
374
375
376
377
378
  | (* (_ -∗ _) *)
    apply tac_wand_intro_drop;
      [apply _ ||
       let P := match goal with |- TCOr (Affine ?P) _ => P end in
       fail 1 "iIntro:" P "not affine and the goal not absorbing"
      |]
379
380
381
382
383
384
  | (* (∀ _, _) *) iIntro (_)
  | fail 1 "iIntro: nothing to introduce" ].

Local Tactic Notation "iIntroForall" :=
  try iStartProof;
  lazymatch goal with
Robbert Krebbers's avatar
Robbert Krebbers committed
385
  | |-  _, ?P => fail (* actually an →, this is handled by iIntro below *)
386
  | |-  _, _ => intro
387
  | |- envs_entails _ ( x : _, _) => let x' := fresh x in iIntro (x')
388
389
390
391
392
  end.
Local Tactic Notation "iIntro" :=
  try iStartProof;
  lazymatch goal with
  | |- _  ?P => intro
393
394
  | |- envs_entails _ (_ - _) => iIntro (?) || let H := iFresh in iIntro #H || iIntro H
  | |- envs_entails _ (_  _) => iIntro (?) || let H := iFresh in iIntro #H || iIntro H
395
396
  end.

Robbert Krebbers's avatar
Robbert Krebbers committed
397
(** * Specialize *)
398
399
400
401
402
Record iTrm {X As} :=
  ITrm { itrm : X ; itrm_vars : hlist As ; itrm_hyps : string }.
Arguments ITrm {_ _} _ _ _.

Notation "( H $! x1 .. xn )" :=
403
  (ITrm H (hcons x1 .. (hcons xn hnil) ..) "") (at level 0, x1, xn at level 9).
404
Notation "( H $! x1 .. xn 'with' pat )" :=
405
  (ITrm H (hcons x1 .. (hcons xn hnil) ..) pat) (at level 0, x1, xn at level 9).
406
407
Notation "( H 'with' pat )" := (ITrm H hnil pat) (at level 0).

408
409
410
411
412
413
414
415
416
417
418
(*
There is some hacky stuff going on here (most probably there is a Coq bug).
Holes -- like unresolved type class instances -- in the argument `xs` are
resolved at arbitrary moments. It seems that tactics like `apply`, `split` and
`eexists` trigger type class search to resolve these holes. To avoid TC being
triggered too eagerly, this tactic uses `refine` at various places instead of
`apply`.

TODO: Investigate what really is going on. Is there a related to Cog bug #5752?
When should holes in an `open_constr` be resolved?
*)
419
Local Tactic Notation "iSpecializeArgs" constr(H) open_constr(xs) :=
420
  let rec go xs :=
421
    lazymatch xs with
422
    | hnil => apply id (* Finally, trigger TC *)
423
    | hcons ?x ?xs =>
424
       eapply tac_forall_specialize with _ H _ _ _; (* (i:=H) (a:=x) *)
425
426
         [env_reflexivity || fail "iSpecialize:" H "not found"
         |typeclasses eauto ||
Robbert Krebbers's avatar
Robbert Krebbers committed
427
          let P := match goal with |- IntoForall ?P _ => P end in
428
429
430
431
          fail "iSpecialize: cannot instantiate" P "with" x
         |lazymatch goal with (* Force [A] in [ex_intro] to deal with coercions. *)
          | |-  _ : ?A, _ => refine (@ex_intro A _ x (conj _ _))
          end; [env_reflexivity|go xs]]
432
433
    end in
  go xs.
Robbert Krebbers's avatar
Robbert Krebbers committed
434

435
Local Tactic Notation "iSpecializePat" open_constr(H) constr(pat) :=
Robbert Krebbers's avatar
Robbert Krebbers committed
436
  let solve_to_wand H1 :=
Robbert Krebbers's avatar
Robbert Krebbers committed
437
    apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
438
    let P := match goal with |- IntoWand _ _ ?P _ _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
439
    fail "iSpecialize:" P "not an implication/wand" in
Robbert Krebbers's avatar
Robbert Krebbers committed
440
441
442
  let rec go H1 pats :=
    lazymatch pats with
    | [] => idtac
443
444
445
    | SForall :: ?pats =>
       idtac "the * specialization pattern is deprecated because it is applied implicitly";
       go H1 pats
446
    | SName ?H2 :: ?pats =>
Robbert Krebbers's avatar
Robbert Krebbers committed
447
       eapply tac_specialize with _ _ H2 _ H1 _ _ _ _; (* (j:=H1) (i:=H2) *)
448
449
         [env_reflexivity || fail "iSpecialize:" H2 "not found"
         |env_reflexivity || fail "iSpecialize:" H1 "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
450
         |apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
451
452
          let P := match goal with |- IntoWand _ _ ?P ?Q _ => P end in
          let Q := match goal with |- IntoWand _ _ ?P ?Q _ => Q end in
Robbert Krebbers's avatar
Robbert Krebbers committed
453
          fail "iSpecialize: cannot instantiate" P "with" Q
454
         |env_reflexivity|go H1 pats]
455
456
    | SPureGoal ?d :: ?pats =>
       eapply tac_specialize_assert_pure with _ H1 _ _ _ _ _;
457
         [env_reflexivity || fail "iSpecialize:" H1 "not found"
458
         |solve_to_wand H1
Robbert Krebbers's avatar
Robbert Krebbers committed
459
460
461
         |apply _ ||
          let Q := match goal with |- FromPure ?Q _ => Q end in
          fail "iSpecialize:" Q "not pure"
462
         |env_reflexivity
463
         |done_if d (*goal*)
464
         |go H1 pats]
465
    | SGoal (SpecGoal GPersistent false ?Hs_frame [] ?d) :: ?pats =>
466
       eapply tac_specialize_assert_persistent with _ _ H1 _ _ _ _ _;
467
         [env_reflexivity || fail "iSpecialize:" H1 "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
468
         |solve_to_wand H1
Robbert Krebbers's avatar
Robbert Krebbers committed
469
         |apply _ ||
470
          let Q := match goal with |- Persistent ?Q => Q end in
Robbert Krebbers's avatar
Robbert Krebbers committed
471
          fail "iSpecialize:" Q "not persistent"
472
         |apply _
473
         |env_reflexivity
474
         |iFrame Hs_frame; done_if d (*goal*)
475
         |go H1 pats]
476
477
478
    | SGoal (SpecGoal GPersistent _ _ _ _) :: ?pats =>
       fail "iSpecialize: cannot select hypotheses for persistent premise"
    | SGoal (SpecGoal ?m ?lr ?Hs_frame ?Hs ?d) :: ?pats =>
479
       let Hs' := eval cbv in (if lr then Hs else Hs_frame ++ Hs) in
480
       eapply tac_specialize_assert with _ _ _ H1 _ lr Hs' _ _ _ _;
481
         [env_reflexivity || fail "iSpecialize:" H1 "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
482
         |solve_to_wand H1
483
484
485
         |lazymatch m with
          | GSpatial => apply elim_modal_dummy
          | GModal => apply _ || fail "iSpecialize: goal not a modality"
486
          end
487
488
         |env_reflexivity ||
          let Hs' := iMissingHyps Hs' in
489
          fail "iSpecialize: hypotheses" Hs' "not found"
490
         |iFrame Hs_frame; done_if d (*goal*)
Robbert Krebbers's avatar
Robbert Krebbers committed
491
         |go H1 pats]
492
493
    | SAutoFrame GPersistent :: ?pats =>
       eapply tac_specialize_assert_persistent with _ _ H1 _ _ _ _;
494
         [env_reflexivity || fail "iSpecialize:" H1 "not found"
495
         |solve_to_wand H1
Robbert Krebbers's avatar
Robbert Krebbers committed
496
         |apply _ ||
497
          let Q := match goal with |- Persistent ?Q => Q end in
Robbert Krebbers's avatar
Robbert Krebbers committed
498
          fail "iSpecialize:" Q "not persistent"
499
         |env_reflexivity
500
501
502
503
         |solve [iFrame "∗ #"]
         |go H1 pats]
    | SAutoFrame ?m :: ?pats =>
       eapply tac_specialize_frame with _ H1 _ _ _ _ _ _;
504
         [env_reflexivity || fail "iSpecialize:" H1 "not found"
505
506
507
508
509
         |solve_to_wand H1
         |lazymatch m with
          | GSpatial => apply elim_modal_dummy
          | GModal => apply _ || fail "iSpecialize: goal not a modality"
          end
Robbert Krebbers's avatar
Robbert Krebbers committed
510
511
         |iFrame "∗ #"; apply tac_unlock ||
          fail "iSpecialize: premise cannot be solved by framing"
512
         |reflexivity]; iIntro H1; go H1 pats
513
514
    end in let pats := spec_pat.parse pat in go H pats.

Robbert Krebbers's avatar
Robbert Krebbers committed
515
(* The argument [p] denotes whether the conclusion of the specialized term is
516
517
518
persistent. If so, one can use all spatial hypotheses for both proving the
premises and the remaning goal. The argument [p] can either be a Boolean or an
introduction pattern, which will be coerced into [true] when it solely contains
519
520
521
522
523
`#` or `%` patterns at the top-level.

In case the specialization pattern in [t] states that the modality of the goal
should be kept for one of the premises (i.e. [>[H1 .. Hn]] is used) then [p]
defaults to [false] (i.e. spatial hypotheses are not preserved). *)
524
Tactic Notation "iSpecializeCore" open_constr(t) "as" constr(p) :=
Robbert Krebbers's avatar
Robbert Krebbers committed
525
  let p := intro_pat_persistent p in
526
527
  let t :=
    match type of t with string => constr:(ITrm t hnil "") | _ => t end in
528
529
  lazymatch t with
  | ITrm ?H ?xs ?pat =>
Robbert Krebbers's avatar
Robbert Krebbers committed
530
    iSpecializeArgs H xs;
531
532
    lazymatch type of H with
    | string =>
533
534
535
536
537
538
      (* The lemma [tac_specialize_persistent_helper] allows one to use all
      spatial hypotheses for both proving the premises of the lemma we
      specialize as well as those of the remaining goal. We can only use it when
      the result of the specialization is persistent, and no modality is
      eliminated. As an optimization, we do not use this when only universal
      quantifiers are instantiated. *)
Robbert Krebbers's avatar
Robbert Krebbers committed
539
      let pat := spec_pat.parse pat in
540
      lazymatch eval compute in
541
        (p && bool_decide (pat  []) && negb (existsb spec_pat_modal pat)) with
542
      | true =>
543
         (* FIXME: do something reasonable when the BI is not affine *)
Robbert Krebbers's avatar
Robbert Krebbers committed
544
         eapply tac_specialize_persistent_helper with _ H _ _ _ _;
545
           [env_reflexivity || fail "iSpecialize:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
546
           |iSpecializePat H pat; last (iExact H)
Robbert Krebbers's avatar
Robbert Krebbers committed
547
           |apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
548
            let Q := match goal with |- IntoPersistent _ ?Q _ => Q end in
Robbert Krebbers's avatar
Robbert Krebbers committed
549
            fail "iSpecialize:" Q "not persistent"
Robbert Krebbers's avatar
Robbert Krebbers committed
550
           |env_cbv; apply _ ||
551
            let Q := match goal with |- TCAnd _ (Affine ?Q) => Q end in
Robbert Krebbers's avatar
Robbert Krebbers committed
552
553
554
555
            fail "iSpecialize:" Q "not affine"
           |env_reflexivity
           |(* goal *)]
      | false => iSpecializePat H pat
556
557
      end
    | _ => fail "iSpecialize:" H "should be a hypothesis, use iPoseProof instead"
558
    end
559
  | _ => fail "iSpecialize:" t "should be a proof mode term"
560
  end.
Robbert Krebbers's avatar
Robbert Krebbers committed
561

562
Tactic Notation "iSpecialize" open_constr(t) :=
563
564
565
  iSpecializeCore t as false.
Tactic Notation "iSpecialize" open_constr(t) "as" "#" :=
  iSpecializeCore t as true.
566

Robbert Krebbers's avatar
Robbert Krebbers committed
567
(** * Pose proof *)
568
569
(* The tactic [iIntoValid] tactic solves a goal [uPred_valid Q]. The
arguments [t] is a Coq term whose type is of the following shape:
570

571
- [∀ (x_1 : A_1) .. (x_n : A_n), uPred_valid Q]
572
- [∀ (x_1 : A_1) .. (x_n : A_n), P1 ⊢ P2], in which case [Q] becomes [P1 -∗ P2]
573
574
575
576
- [∀ (x_1 : A_1) .. (x_n : A_n), P1 ⊣⊢ P2], in which case [Q] becomes [P1 ↔ P2]

The tactic instantiates each dependent argument [x_i] with an evar and generates
a goal [P] for non-dependent arguments [x_i : P]. *)
577
Tactic Notation "iIntoValid" open_constr(t) :=
578
  let rec go t :=
579
    let tT := type of t in
580
581
582
583
584
585
586
587
    lazymatch eval hnf in tT with
    | ?P  ?Q => let H := fresh in assert P as H; [|go uconstr:(t H); clear H]
    |  _ : ?T, _ =>
      (* Put [T] inside an [id] to avoid TC inference from being invoked. *)
      (* This is a workarround for Coq bug #4969. *)
      let e := fresh in evar (e:id T);
      let e' := eval unfold e in e in clear e; go (t e')
    | _ =>
588
589
      let tT' := eval cbv zeta in tT in apply (as_valid_1 tT');
        [apply _ || fail "iPoseProof: not a uPred"|exact t]
590
    end in
591
  go t.
592

593
594
595
596
597
598
599
600
601
602
603
604
605
606
607
(* The tactic [tac] is called with a temporary fresh name [H]. The argument
[lazy_tc] denotes whether type class inference on the premises of [lem] should
be performed before (if false) or after (if true) [tac H] is called. *)
Tactic Notation "iPoseProofCore" open_constr(lem)
    "as" constr(p) constr(lazy_tc) tactic(tac) :=
  try iStartProof;
  let Htmp := iFresh in
  let t :=
    lazymatch lem with ITrm ?t ?xs ?pat => t | _ => lem end in
  let spec_tac _ :=
    lazymatch lem with
    | ITrm ?t ?xs ?pat => iSpecializeCore (ITrm Htmp xs pat) as p
    | _ => idtac
    end in
  let go goal_tac :=
608
609
610
    lazymatch type of t with
    | string =>
       eapply tac_pose_proof_hyp with _ _ t _ Htmp _;
611
612
         [env_reflexivity || fail "iPoseProof:" t "not found"
         |env_reflexivity || fail "iPoseProof:" Htmp "not fresh"
613
         |goal_tac ()]
614
615
    | _ =>
       eapply tac_pose_proof with _ Htmp _; (* (j:=H) *)
616
         [iIntoValid t
617
         |env_reflexivity || fail "iPoseProof:" Htmp "not fresh"
618
         |goal_tac ()]
619
    end;
620
621
622
623
    try (apply _) in
  lazymatch eval compute in lazy_tc with
  | true => go ltac:(fun _ => spec_tac (); last (tac Htmp))
  | false => go spec_tac; last (tac Htmp)
Robbert Krebbers's avatar
Robbert Krebbers committed
624
625
626
  end.

(** * Apply *)
627
Tactic Notation "iApplyHyp" constr(H) :=
628
629
  let rec go H := first
    [eapply tac_apply with _ H _ _ _;
630
      [env_reflexivity
631
632
      |apply _
      |lazy beta (* reduce betas created by instantiation *)]
633
    |iSpecializePat H "[]"; last go H] in
634
635
636
637
638
639
640
641
  iExact H ||
  go H ||
  lazymatch iTypeOf H with
  | Some (_,?Q) => fail "iApply: cannot apply" Q
  end.

Tactic Notation "iApply" open_constr(lem) :=
  iPoseProofCore lem as false true (fun H => iApplyHyp H).
Robbert Krebbers's avatar
Robbert Krebbers committed
642
643

(** * Revert *)
644
Local Tactic Notation "iForallRevert" ident(x) :=
645
646
647
648
649
650
  let err x :=
    intros x;
    iMatchHyp (fun H P =>
      lazymatch P with
      | context [x] => fail 2 "iRevert:" x "is used in hypothesis" H
      end) in
Robbert Krebbers's avatar
Robbert Krebbers committed
651
  iStartProof;
652
653
  let A := type of x in
  lazymatch type of A with
654
655
656
  | Prop => revert x; first [apply tac_pure_revert|err x]
  | _ => revert x; first [apply tac_forall_revert|err x]
  end.
Robbert Krebbers's avatar
Robbert Krebbers committed
657
658

Tactic Notation "iRevert" constr(Hs) :=
659
660
  let rec go Hs :=
    lazymatch Hs with
661
    | [] => idtac
662
663
664
665
666
    | ESelPure :: ?Hs =>
       repeat match goal with x : _ |- _ => revert x end;
       go Hs
    | ESelName _ ?H :: ?Hs =>
       eapply tac_revert with _ H _ _; (* (i:=H2) *)
667
         [env_reflexivity || fail "iRevert:" H "not found"
668
         |env_cbv; go Hs]
669
    end in
Robbert Krebbers's avatar
Robbert Krebbers committed
670
  let Hs := iElaborateSelPat Hs in iStartProof; go Hs.
Robbert Krebbers's avatar
Robbert Krebbers committed
671

672
Tactic Notation "iRevert" "(" ident(x1) ")" :=
Robbert Krebbers's avatar
Robbert Krebbers committed
673
  iForallRevert x1.
674
675
676
677
678
679
680
681
682
683
684
685
686
687
688
689
690
691
692
693
694
695
696
697
698
699
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ")" :=
  iForallRevert x2; iRevert ( x1 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ")" :=
  iForallRevert x3; iRevert ( x1 x2 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4) ")" :=
  iForallRevert x4; iRevert ( x1 x2 x3 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ")" :=
  iForallRevert x5; iRevert ( x1 x2 x3 x4 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ident(x6) ")" :=
  iForallRevert x6; iRevert ( x1 x2 x3 x4 x5 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ident(x6) ident(x7) ")" :=
  iForallRevert x7; iRevert ( x1 x2 x3 x4 x5 x6 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ident(x6) ident(x7) ident(x8) ")" :=
  iForallRevert x8; iRevert ( x1 x2 x3 x4 x5 x6 x7 ).

Tactic Notation "iRevert" "(" ident(x1) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 x2 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 x2 x3 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4) ")"
Robbert Krebbers's avatar
Robbert Krebbers committed
700
    constr(Hs) :=
701
702
703
704
705
706
707
708
709
710
711
712
713
  iRevert Hs; iRevert ( x1 x2 x3 x4 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 x2 x3 x4 x5 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ident(x6) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 x2 x3 x4 x5 x6 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ident(x6) ident(x7) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 x2 x3 x4 x5 x6 x7 ).
Tactic Notation "iRevert" "(" ident(x1) ident(x2) ident(x3) ident(x4)
    ident(x5) ident(x6) ident(x7) ident(x8) ")" constr(Hs) :=
  iRevert Hs; iRevert ( x1 x2 x3 x4 x5 x6 x7 x8 ).
Robbert Krebbers's avatar
Robbert Krebbers committed
714
715
716

(** * Disjunction *)
Tactic Notation "iLeft" :=
717
  iStartProof;
Robbert Krebbers's avatar
Robbert Krebbers committed
718
  eapply tac_or_l;
Robbert Krebbers's avatar
Robbert Krebbers committed
719
720
721
722
    [apply _ ||
     let P := match goal with |- FromOr ?P _ _ => P end in
     fail "iLeft:" P "not a disjunction"
    |].
Robbert Krebbers's avatar
Robbert Krebbers committed
723
Tactic Notation "iRight" :=
724
  iStartProof;
Robbert Krebbers's avatar
Robbert Krebbers committed
725
  eapply tac_or_r;
Robbert Krebbers's avatar
Robbert Krebbers committed
726
727
728
729
    [apply _ ||
     let P := match goal with |- FromOr ?P _ _ => P end in
     fail "iRight:" P "not a disjunction"
    |].
Robbert Krebbers's avatar
Robbert Krebbers committed
730

731
Local Tactic Notation "iOrDestruct" constr(H) "as" constr(H1) constr(H2) :=
Robbert Krebbers's avatar
Robbert Krebbers committed
732
  eapply tac_or_destruct with _ _ H _ H1 H2 _ _ _; (* (i:=H) (j1:=H1) (j2:=H2) *)
733
    [env_reflexivity || fail "iOrDestruct:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
734
735
736
    |apply _ ||
     let P := match goal with |- IntoOr ?P _ _ => P end in
     fail "iOrDestruct: cannot destruct" P
737
    |env_reflexivity || fail "iOrDestruct:" H1 "not fresh"
Robbert Krebbers's avatar
Robbert Krebbers committed
738
739
    |env_reflexivity || fail "iOrDestruct:" H2 "not fresh"
    | |].
Robbert Krebbers's avatar
Robbert Krebbers committed
740
741
742

(** * Conjunction and separating conjunction *)
Tactic Notation "iSplit" :=
743
  iStartProof;
744
745
  eapply tac_and_split;
    [apply _ ||
746
     let P := match goal with |- FromAnd ?P _ _ => P end in
747
     fail "iSplit:" P "not a conjunction"| |].
Robbert Krebbers's avatar
Robbert Krebbers committed
748
749

Tactic Notation "iSplitL" constr(Hs) :=
750
  iStartProof;
Robbert Krebbers's avatar
Robbert Krebbers committed
751
  let Hs := words Hs in
752
  eapply tac_sep_split with _ _ Left Hs _ _; (* (js:=Hs) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
753
    [apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
754
     let P := match goal with |- FromSep _ ?P _ _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
755
     fail "iSplitL:" P "not a separating conjunction"
756
757
    |env_reflexivity ||
     let Hs := iMissingHyps Hs in
758
     fail "iSplitL: hypotheses" Hs "not found"
759
760
    | |].

Robbert Krebbers's avatar
Robbert Krebbers committed
761
Tactic Notation "iSplitR" constr(Hs) :=
762
  iStartProof;
Robbert Krebbers's avatar
Robbert Krebbers committed
763
  let Hs := words Hs in
764
  eapply tac_sep_split with _ _ Right Hs _ _; (* (js:=Hs) *)
Robbert Krebbers's avatar
Robbert Krebbers committed
765
    [apply _ ||
Robbert Krebbers's avatar
Robbert Krebbers committed
766
     let P := match goal with |- FromSep _ ?P _ _ => P end in
Robbert Krebbers's avatar
Robbert Krebbers committed
767
     fail "iSplitR:" P "not a separating conjunction"
768
769
    |env_reflexivity ||
     let Hs := iMissingHyps Hs in
770
     fail "iSplitR: hypotheses" Hs "not found"
771
    | |].
Robbert Krebbers's avatar
Robbert Krebbers committed
772
773
774
775

Tactic Notation "iSplitL" := iSplitR "".
Tactic Notation "iSplitR" := iSplitL "".

776
777
Local Tactic Notation "iAndDestruct" constr(H) "as" constr(H1) constr(H2) :=
  eapply tac_and_destruct with _ H _ H1 H2 _ _ _; (* (i:=H) (j1:=H1) (j2:=H2) *)
778
    [env_reflexivity || fail "iAndDestruct:" H "not found"
779
780
781
782
783
784
    |env_cbv; apply _ ||
     let P :=
       lazymatch goal with
       | |- IntoSep ?P _ _ => P
       | |- IntoAnd _ ?P _ _ => P
       end in
Robbert Krebbers's avatar
Robbert Krebbers committed
785
     fail "iAndDestruct: cannot destruct" P
786
    |env_reflexivity || fail "iAndDestruct:" H1 "or" H2 " not fresh"|].
787

788
789
Local Tactic Notation "iAndDestructChoice" constr(H) "as" constr(d) constr(H') :=
  eapply tac_and_destruct_choice with _ H _ d H' _ _ _;
790
    [env_reflexivity || fail "iAndDestructChoice:" H "not found"
Robbert Krebbers's avatar
Robbert Krebbers committed
791
792
    |env_cbv; apply _ ||
     let P := match goal with |- TCOr (I