https://github.com/EasyCrypt/easycrypt
Revision e023995f55d5837b8c789a508bf3bfe55ece0d1d authored by Benjamin Gregoire on 14 October 2019, 12:09:21 UTC, committed by Pierre-Yves Strub on 14 October 2019, 12:27:51 UTC
Allows no to not use tuple assignments.
1 parent a38b2e9
Raw File
Tip revision: e023995f55d5837b8c789a508bf3bfe55ece0d1d authored by Benjamin Gregoire on 14 October 2019, 12:09:21 UTC
New option from inline: [tuple].
Tip revision: e023995
WhileSampling.ec
require import Real Distr.

type t.

op sample: t distr.
axiom sample_ll: is_lossless sample.

op test: t -> bool.
axiom pr_ntest: 0%r < mu sample (predC test).

module Sample = {
  proc sample () : t = {
    var r : t;

    r <$ sample;
    while (test r) {
      r <$ sample;
    }
    return r;
  }
}.

lemma Sample_lossless: islossless Sample.sample.
proof.
proc; seq  1: true=> //.
+ by auto=> />; exact/sample_ll.
while true (if test r then 1 else 0) 1 (mu sample (predC test))=> //.
+ by move=> _ r; case: (test r).
+ move=> ih; seq  1: true=> //.
  by auto; rewrite sample_ll.
+ by auto; rewrite sample_ll.
rewrite pr_ntest=> /= z; conseq (: true ==> !test r).
+ smt().
by rnd; auto=> />.
qed.
back to top