microsoft / CCF

Confidential Consortium Framework

Home Page:https://microsoft.github.io/CCF/

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

TLA+ simulation failure observed on main

heidihoward opened this issue · comments

On first sight, looks like a spec bug:

Error: Evaluating invariant LogInv failed.
The third argument of SubSeq must be in the domain of its first argument:
<< [term |-> 2, contentType |-> Reconfiguration, configuration |-> {n4}],
   [term |-> 2, contentType |-> Signature],
   [term |-> 2, contentType |-> Entry, request |-> 42],
   [term |-> 2, contentType |-> Signature],
   [term |-> 2, contentType |-> Entry, request |-> 42] >>
, but instead it is
8