All proofs
Project-declaredLean 4.31.0 · null

Verify Never Errors is ok and sound

Cedar.Thm.verifyNeverErrors_is_ok_and_sound

Project documentation

Concrete version of verifyNeverErrors_is_sound. NOTE: This theorem and many of the following soundness theorems use env.StronglyWellFormedForPolicy p' in the conclusion rather than env.StronglyWellFormedForPolicy p. One can obtain a weaker version with env.StronglyWellFormedForPolicy p, using the lemma `wellTypedPolicy_preserves_StronglyWellFormed...

Exact Lean statement

theorem verifyNeverErrors_is_ok_and_sound {p p' : Policy} {Γ : TypeEnv} :
  Γ.WellFormed →
  wellTypedPolicy p Γ = .ok p' →
  ∃ asserts,
    verifyNeverErrors p' (SymEnv.ofEnv Γ) = .ok asserts ∧
    (SymEnv.ofEnv Γ ⊭ asserts →
      ∀ env : Env,
        InstanceOfWellFormedEnvironment env.request env.entities Γ →
        env.StronglyWellFormedForPolicy p' →
        (evaluate p.toExpr env.request env.entities).isOk)

Formal artifact

Lean source

Canonical source
Full Lean sourceLean 4
theorem verifyNeverErrors_is_ok_and_sound {p p' : Policy} {Γ : TypeEnv} :  Γ.WellFormed   wellTypedPolicy p Γ = .ok p'    asserts,    verifyNeverErrors p' (SymEnv.ofEnv Γ) = .ok asserts     (SymEnv.ofEnv Γ ⊭ asserts        env : Env,        InstanceOfWellFormedEnvironment env.request env.entities Γ         env.StronglyWellFormedForPolicy p'         (evaluate p.toExpr env.request env.entities).isOk):= by  intros hwf hwt  have hwf_εnv := ofEnv_swf_for_policy hwf hwt  have asserts, hok := verifyNeverErrors_is_ok hwf hwt  exists asserts  simp only [hok, true_and]  intros hunsat env hinst hwf_env  simp only [wellTypedPolicy_preserves_evaluation hinst hwt]  apply verifyNeverErrors_is_sound hwf_εnv hok hunsat env  · exact ofEnv_soundness hwf_env.1 hinst  · exact hwf_env
Project
Cedar Specification
License
Apache-2.0
Commit
3f093947b8ae
Source
cedar-lean/Cedar/Thm/WellTypedVerification.lean:47-67

Reuse this declaration

Bring the exact result into your workflow

The import identifies the source module. Your project still needs the pinned package dependency shown on this page.

What this badge means

This completion status comes from the project or community source. It has not yet been represented here as an independent rebuild and axiom audit.

Continue in this project

Related declarations

Project-declaredLean 4.31.0

Find? ext

Cedar.Data.Map.find?_ext

Plain-language statement

Two well-formed maps are equal if they have the same find? for every key.

authorizationprogram verificationsemantics

Source project: Cedar Specification

Person-level attribution pending.

View proof record
Project-declaredLean 4.31.0

Find? notmem keys

Cedar.Data.Map.find?_notmem_keys

Plain-language statement

Inverse of find?_mem_toList, except that this requires wf

authorizationprogram verificationsemantics

Source project: Cedar Specification

Person-level attribution pending.

View proof record
Project-declaredLean 4.31.0

Find? some iff in values

Cedar.Data.Map.find?_some_iff_in_values

Plain-language statement

The mp direction of this does not need the wf precondition and, in fact, is available separately as find?_some_implies_in_values above

authorizationprogram verificationsemantics

Source project: Cedar Specification

Person-level attribution pending.

View proof record