Repository navigation
Infallible div_ceil for NonZero<unsigned>Β #471
Description
Activity
- addedapi-change-proposalA proposal to add or alter unstable APIs in the standard librariesA proposal to add or alter unstable APIs in the standard libraries
on Oct 28, 2024 I think it would be weird to just add just
div_ceilwithout also adding a checked version of "regular" division. The signed NonZero types should probably also have the checked "regular" division function.I disagree. The existing API surface of these types is pretty much only functions that can't already be written without
unwrapor unsafe code. Normal division as you propose is justNonZero::new(x.get() / y.get())Reacted by kennytmI think it would be weird to just add just
div_ceilwithout also adding a checked version of "regular" division. The signed NonZero types should probably also have the checked "regular" division function.I disagree. The existing API surface of these types is pretty much only functions that can't already be written without
unwrapor unsafe code. Normal division as you propose is justNonZero::new(x.get() / y.get())Note that
NonZero::new(x.get() / y.get())only works for unsigned numbers.For signed numbers you would need
x.get().checked_div(y.get()).and_then(NonZero::new), asi8::MIN / -1overflows.For signed numbers you would need
x.get().checked_div(y.get()).and_then(NonZero::new), as i8::MIN / -1 overflows.That's not an equivalent operation to "regular division" which will panic on overflow.
The existing API surface of these types is pretty much only functions that can't already be written without
unwrapor unsafe code.Yeah, this. That's why there's no
NonZeroU32::wrapping_addbut there isNonZeroU32::checked_add, for example.So I agree with skipping something that's just
.and_then(NonZero::new)after an operation on the normal integers.EDIT later for clarity: they're useful when they're
.map(|x| unsafe { NonZero::new_unchecked(x) })to avoid unsafe in the caller, just not when they need an additional check to be safe that could be done with the normal version anyway.For signed numbers you would need
x.get().checked_div(y.get()).and_then(NonZero::new), as i8::MIN / -1 overflows.That's not an equivalent operation to "regular division" which will panic on overflow.
Sure, but it would be insane to add a
checked_divfunction returningOption<Self>that could panic.The existing API surface of these types is pretty much only functions that can't already be written without
unwrapor unsafe code.Yeah, this. That's why there's no
NonZeroU32::wrapping_addbut there isNonZeroU32::checked_add, for example.So I agree with skipping something that's just
.and_then(NonZero::new)after an operation on the normal integers.But there is a
NonZero<T>::checked_mul, which could as well be implemented asx.get().checked_mul(y.get()).and_then(NonZero::new).Not exactly. We know that
n*m>0iffn>0andm>0. So we actually don't need to check if the result of the operation is zero, we just need to check that it doesn't overflow. Theand_then(NonZero::new)would be redundant.For div, you have to check if the result is zero regardless, you can't make any assumptions about it based on the fact that both inputs are nonzero. So in the division case, the
and_then(NonZero::new)is necessary.Reacted by Asger Hautop Drewsen and scottmcmFair enough. I've updated the proposal to only propose the
div_ceilforNonZero<unsigned>.- addedACP-acceptedAPI Change Proposal is accepted (seconded with no objections)API Change Proposal is accepted (seconded with no objections)
on Nov 5, 2024 Seems reasonable; let's accept this.
- added a commit that references this issue
on Nov 7, 2024 - added a commit that references this issue
on Nov 9, 2024
Proposal
Problem statement
The
NonZero<T>types currently doesn't have any division functions. If you need to perform divisions on these types, you need to convert it to its underlying type, do the division and convert it back. It would make sense to provide these methods directly on the types.Motivating examples or use cases
I recently needed this when calculating the number of sheets needed for printing a document using duplex printing.
As a document can never have 0 pages, I represent the page count as a
NonZero<u32>. The number of sheets required can then be calculated with (assuming thatdiv_ceilexists onNonZero<u32>):Solution sketch
NonZero<unsigned>should implementdiv_ceilas it would be panic-free and could never produce a zero:I think it would be weird to just add just `div_ceil` without also adding a checked version of "regular" division. The signed `NonZero` types should probably also have the checked "regular" division function.So in conclusion I think the following functions should be added to core:
Alternatives
Alternatively users can define these themselves using an extension trait or using a separate function.
For example:
The user will either need to use
unsafeorunwrapto create the result, which they could avoid ifdiv_ceilwas implemented in core.Links and related work
What happens now?
This issue contains an API change proposal (or ACP) and is part of the libs-api team feature lifecycle. Once this issue is filed, the libs-api team will review open proposals as capability becomes available. Current response times do not have a clear estimate, but may be up to several months.
Possible responses
The libs team may respond in various different ways. First, the team will consider the problem (this doesn't require any concrete solution or alternatives to have been proposed):
Second, if there's a concrete solution: