pub struct Refined<Inner, P> {
pub inner: Inner,
pub predicate: P,
}Expand description
Combinator that refines the result of an inner combinator with a predicate that implements
Pred.
Fields§
§inner: InnerThe inner combinator.
predicate: PThe predicate.
Trait Implementations§
Source§impl<'x, I, O, Inner, P> Combinator<'x, I, O> for Refined<Inner, P>where
I: VestInput,
O: VestOutput<I>,
Inner: Combinator<'x, I, O, SType = &'x <Inner as Combinator<'x, I, O>>::Type>,
Inner::V: SecureSpecCombinator<Type = <Inner::Type as View>::V>,
P: Pred<Inner::Type>,
P::V: SpecPred<<Inner::Type as View>::V>,
Inner::Type: 'x,
impl<'x, I, O, Inner, P> Combinator<'x, I, O> for Refined<Inner, P>where
I: VestInput,
O: VestOutput<I>,
Inner: Combinator<'x, I, O, SType = &'x <Inner as Combinator<'x, I, O>>::Type>,
Inner::V: SecureSpecCombinator<Type = <Inner::Type as View>::V>,
P: Pred<Inner::Type>,
P::V: SpecPred<<Inner::Type as View>::V>,
Inner::Type: 'x,
Source§open spec fn ex_requires(&self) -> bool
open spec fn ex_requires(&self) -> bool
{ self.inner.ex_requires() }Source§exec fn serialize(
&self,
v: Self::SType,
data: &mut O,
pos: usize,
) -> Result<usize, SerializeError>
exec fn serialize( &self, v: Self::SType, data: &mut O, pos: usize, ) -> Result<usize, SerializeError>
Source§type Type = <Inner as Combinator<'x, I, O>>::Type
type Type = <Inner as Combinator<'x, I, O>>::Type
The result type of parsing
Source§type SType = <Inner as Combinator<'x, I, O>>::SType
type SType = <Inner as Combinator<'x, I, O>>::SType
The input type of serialization, often a reference to
Self::Type.
For “structural” formats though (e.g., crate::regular::sequence::Pair and crate::regular::variant::Choice),
this is the tuple/sum of the corresponding Combinator::SType types.Source§impl<Inner, P1, P2> DisjointFrom<Refined<Inner, P2>> for Refined<Inner, P1>
impl<Inner, P1, P2> DisjointFrom<Refined<Inner, P2>> for Refined<Inner, P1>
Source§open spec fn disjoint_from(&self, other: &Refined<Inner, P2>) -> bool
open spec fn disjoint_from(&self, other: &Refined<Inner, P2>) -> bool
{
self.inner == other.inner
&& forall |i| {
self.predicate.spec_apply(&i) ==> !other.predicate.spec_apply(&i)
}
}Source§proof fn parse_disjoint_on(&self, other: &Refined<Inner, P2>, buf: Seq<u8>)
proof fn parse_disjoint_on(&self, other: &Refined<Inner, P2>, buf: Seq<u8>)
Source§impl<Inner, P> SecureSpecCombinator for Refined<Inner, P>
impl<Inner, P> SecureSpecCombinator for Refined<Inner, P>
Source§open spec fn is_prefix_secure() -> bool
open spec fn is_prefix_secure() -> bool
{ Inner::is_prefix_secure() }Source§open spec fn is_productive(&self) -> bool
open spec fn is_productive(&self) -> bool
{ self.inner.is_productive() }Source§proof fn theorem_serialize_parse_roundtrip(&self, v: Self::Type)
proof fn theorem_serialize_parse_roundtrip(&self, v: Self::Type)
Source§proof fn theorem_parse_serialize_roundtrip(&self, buf: Seq<u8>)
proof fn theorem_parse_serialize_roundtrip(&self, buf: Seq<u8>)
Source§proof fn lemma_prefix_secure(&self, s1: Seq<u8>, s2: Seq<u8>)
proof fn lemma_prefix_secure(&self, s1: Seq<u8>, s2: Seq<u8>)
Source§proof fn lemma_parse_length(&self, s: Seq<u8>)
proof fn lemma_parse_length(&self, s: Seq<u8>)
Source§proof fn lemma_parse_productive(&self, s: Seq<u8>)
proof fn lemma_parse_productive(&self, s: Seq<u8>)
Source§fn corollary_parse_surjective(&self, v: Self::Type)
fn corollary_parse_surjective(&self, v: Self::Type)
Source§fn corollary_serialize_injective_contraposition(
&self,
v1: Self::Type,
v2: Self::Type,
)
fn corollary_serialize_injective_contraposition( &self, v1: Self::Type, v2: Self::Type, )
Source§fn lemma_serialize_productive(&self, v: Self::Type)
fn lemma_serialize_productive(&self, v: Self::Type)
Source§impl<Inner, P> SpecCombinator for Refined<Inner, P>
impl<Inner, P> SpecCombinator for Refined<Inner, P>
Source§open spec fn wf(&self, v: Self::Type) -> bool
open spec fn wf(&self, v: Self::Type) -> bool
{ self.inner.wf(v) && self.predicate.spec_apply(&v) }Source§open spec fn spec_parse(&self, s: Seq<u8>) -> Option<(int, Self::Type)>
open spec fn spec_parse(&self, s: Seq<u8>) -> Option<(int, Self::Type)>
{
match self.inner.spec_parse(s) {
Some((n, v)) if self.predicate.spec_apply(&v) => Some((n, v)),
_ => None,
}
}Source§open spec fn spec_serialize(&self, v: Self::Type) -> Seq<u8>
open spec fn spec_serialize(&self, v: Self::Type) -> Seq<u8>
{ self.inner.spec_serialize(v) }Source§type Type = <Inner as SpecCombinator>::Type
type Type = <Inner as SpecCombinator>::Type
The view of [
Combinator::Result].Auto Trait Implementations§
impl<Inner, P> Freeze for Refined<Inner, P>
impl<Inner, P> RefUnwindSafe for Refined<Inner, P>where
Inner: RefUnwindSafe,
P: RefUnwindSafe,
impl<Inner, P> Send for Refined<Inner, P>
impl<Inner, P> Sync for Refined<Inner, P>
impl<Inner, P> Unpin for Refined<Inner, P>
impl<Inner, P> UnwindSafe for Refined<Inner, P>where
Inner: UnwindSafe,
P: UnwindSafe,
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more
§impl<T, VERUS_SPEC__A> FromSpec<T> for VERUS_SPEC__Awhere
VERUS_SPEC__A: From<T>,
impl<T, VERUS_SPEC__A> FromSpec<T> for VERUS_SPEC__Awhere
VERUS_SPEC__A: From<T>,
fn obeys_from_spec() -> bool
fn from_spec(v: T) -> VERUS_SPEC__A
§impl<T, VERUS_SPEC__A> IntoSpec<T> for VERUS_SPEC__Awhere
VERUS_SPEC__A: Into<T>,
impl<T, VERUS_SPEC__A> IntoSpec<T> for VERUS_SPEC__Awhere
VERUS_SPEC__A: Into<T>,
fn obeys_into_spec() -> bool
fn into_spec(self) -> T
§impl<T, U> IntoSpecImpl<U> for Twhere
U: From<T>,
impl<T, U> IntoSpecImpl<U> for Twhere
U: From<T>,
fn obeys_into_spec() -> bool
fn into_spec(self) -> U
Source§impl<T, U> SpecTryInto<U> for Twhere
U: SpecTryFrom<T>,
impl<T, U> SpecTryInto<U> for Twhere
U: SpecTryFrom<T>,
Source§open spec fn spec_try_into(self) -> Result<U, <U as SpecTryFrom<T>>::Error>
open spec fn spec_try_into(self) -> Result<U, <U as SpecTryFrom<T>>::Error>
{ U::spec_try_from(self) }Source§type Error = <U as SpecTryFrom<T>>::Error
type Error = <U as SpecTryFrom<T>>::Error
The type returned in the event of a conversion error.