메뉴 건너뛰기




Volumn , Issue , 2009, Pages 3-10

Software verification and system assurance

Author keywords

Assurance; Formal verification; Possible perfection; Probabilistic assessment; Reliability

Indexed keywords

FORMAL VERIFICATION; FORMAL VERIFICATIONS; PROBABILISTIC ASSESSMENTS; SOFTWARE VERIFICATION; SYSTEM ASSURANCE; SYSTEM LEVELS;

EID: 77749264954     PISSN: None     EISSN: None     Source Type: Conference Proceeding    
DOI: 10.1109/SEFM.2009.39     Document Type: Conference Paper
Times cited : (33)

References (50)
  • 1
    • 0034292031 scopus 로고    scopus 로고
    • The use of proof in diversity arguments
    • Oct
    • B. Littlewood, "The use of proof in diversity arguments," IEEE Transactions on Software Engineering, vol. 26, no. 10, pp. 1022-1023, Oct. 2000.
    • (2000) IEEE Transactions on Software Engineering , vol.26 , Issue.10 , pp. 1022-1023
    • Littlewood, B.1
  • 3
    • 77749234922 scopus 로고    scopus 로고
    • System Design and Analysis, Federal Aviation Administration, Jun. 21, 1988, advisory Circular 25.1309-1A.
    • System Design and Analysis, Federal Aviation Administration, Jun. 21, 1988, advisory Circular 25.1309-1A.
  • 5
    • 84976723958 scopus 로고
    • Validation of ultrahigh dependability for software-based systems
    • Nov
    • B. Littlewood and L. Strigini, "Validation of ultrahigh dependability for software-based systems," Communications of the ACM, pp. 69-80, Nov. 1993.
    • (1993) Communications of the ACM , pp. 69-80
    • Littlewood, B.1    Strigini, L.2
  • 6
    • 0027306938 scopus 로고
    • The infeasibility of experimental quantification of life-critical software reliability
    • Jan
    • R. W. Butler and G. B. Finelli, "The infeasibility of experimental quantification of life-critical software reliability," IEEE Transactions on Software Engineering, vol. 19, no. 1, pp. 3-12, Jan. 1993.
    • (1993) IEEE Transactions on Software Engineering , vol.19 , Issue.1 , pp. 3-12
    • Butler, R.W.1    Finelli, G.B.2
  • 7
    • 0029404105 scopus 로고
    • Reliability estimation from appropriate testing of plant protection software
    • Nov
    • J. May, G. Hughes, and A. D. Lunn, "Reliability estimation from appropriate testing of plant protection software," IEE/BCS Software Engineering Journal, vol. 10, no. 6, pp. 206-218, Nov. 1995.
    • (1995) IEE/BCS Software Engineering Journal , vol.10 , Issue.6 , pp. 206-218
    • May, J.1    Hughes, G.2    Lunn, A.D.3
  • 9
    • 0022581573 scopus 로고
    • An experimental evaluation of the assumption of independence in multiversion programming
    • Jan
    • J. C. Knight and N. G. Leveson, "An experimental evaluation of the assumption of independence in multiversion programming," IEEE Transactions on Software Engineering, vol. SE-12, no. 1, pp. 96-109, Jan. 1986.
    • (1986) IEEE Transactions on Software Engineering , vol.SE-12 , Issue.1 , pp. 96-109
    • Knight, J.C.1    Leveson, N.G.2
  • 10
    • 0022232712 scopus 로고
    • A theoretical basis for the analysis of multiversion software subject to coincident errors
    • Dec
    • D. E. Eckhardt, Jr. and L. D. Lee, "A theoretical basis for the analysis of multiversion software subject to coincident errors," IEEE Transactions on Software Engineering, vol. SE-11, no. 12, pp. 1511-1517, Dec. 1985.
    • (1985) IEEE Transactions on Software Engineering , vol.SE-11 , Issue.12 , pp. 1511-1517
    • Eckhardt Jr., D.E.1    Lee, L.D.2
  • 11
    • 0024884032 scopus 로고
    • Conceptual modeling of coincident failures in multiversion software
    • Dec
    • B. Littlewood and D. R. Miller, "Conceptual modeling of coincident failures in multiversion software," IEEE Transactions on Software Engineering, vol. 15, no. 12, pp. 1596-1614, Dec. 1989.
    • (1989) IEEE Transactions on Software Engineering , vol.15 , Issue.12 , pp. 1596-1614
    • Littlewood, B.1    Miller, D.R.2
  • 13
    • 77749265883 scopus 로고    scopus 로고
    • Aerospace Recommended Practice (ARP) 4754: Certification Considerations for Highly-Integrated or Complex Aircraft Systems, Society of Automotive Engineers, Nov. 1996, also issued as EUROCAE ED-79.
    • Aerospace Recommended Practice (ARP) 4754: Certification Considerations for Highly-Integrated or Complex Aircraft Systems, Society of Automotive Engineers, Nov. 1996, also issued as EUROCAE ED-79.
  • 14
    • 0010645437 scopus 로고
    • Requirements and Technical Concepts for Aviation, Washington, DC, Dec, this document is known as EUROCAE ED-12B in Europe
    • DO-178B: Software Considerations in Airborne Systems and Equipment Certification, Requirements and Technical Concepts for Aviation, Washington, DC, Dec. 1992, this document is known as EUROCAE ED-12B in Europe.
    • (1992) DO-178B: Software Considerations in Airborne Systems and Equipment Certification
  • 18
    • 77749284492 scopus 로고    scopus 로고
    • 2006th ed, UK Health and Safety Executive, Bootle, UK, available at
    • Safety Assessment Principles for Nuclear Facilities, 2006th ed., UK Health and Safety Executive, Bootle, UK, available at http://www.hse.gov.uk/ nuclear/saps/saps2006.pdf.
    • Safety Assessment Principles for Nuclear Facilities
  • 19
    • 77749231835 scopus 로고    scopus 로고
    • Licensing of Safety Critical Software for Nuclear Reactors: Common Position of Seven European Nuclear Regulators and Authorised Technical Support Organizations, AVN Belgium, BfS Germany, CSN Spain, ISTec Germany, NII United Kingdom, SKI Sweden, STUK Finland, 2007, available at http://www.bfs.de/de/kerntechnik/sicherheit/Licensing safety critical software.pdf.
    • Licensing of Safety Critical Software for Nuclear Reactors: Common Position of Seven European Nuclear Regulators and Authorised Technical Support Organizations, AVN Belgium, BfS Germany, CSN Spain, ISTec Germany, NII United Kingdom, SKI Sweden, STUK Finland, 2007, available at http://www.bfs.de/de/kerntechnik/sicherheit/Licensing safety critical software.pdf.
  • 20
    • 77749284493 scopus 로고    scopus 로고
    • Air Traffic Services Safety Requirements, CAP 670, Safety Regulation Group, UK Civil Aviation Authority, Jun. 2008, see Part B, Section 3, Systems Engineering SW01: Regulatory Objectives for Software Safety Assurance in ATS Equipment; Available at http://www.caa.co.uk/docs/33/cap670.pdf.
    • Air Traffic Services Safety Requirements, CAP 670, Safety Regulation Group, UK Civil Aviation Authority, Jun. 2008, see Part B, Section 3, Systems Engineering SW01: Regulatory Objectives for Software Safety Assurance in ATS Equipment; Available at http://www.caa.co.uk/docs/33/cap670.pdf.
  • 23
    • 0004300242 scopus 로고
    • UK, available at
    • Health and Safety at Work etc. Act, UK Health and Safety Executive, 1974, available at http://www.hse.gov.uk/legislation/hswa.htm;
    • (1974) Health and Safety at Work etc. Act
  • 24
    • 77749284496 scopus 로고    scopus 로고
    • guidance suite at http://www.hse.gov.uk/risk/theory/alarp.htm.
    • guidance suite at http://www.hse.gov.uk/risk/theory/alarp.htm.
  • 25
    • 77958467741 scopus 로고    scopus 로고
    • J. Rushby, A safety-case approach for certifying adaptive systems, in AIAA Infotech@Aerospace Conference. Seattle WA: American Institute of Aeronautics and Astronautics, Apr. 2009, aIAA paper 2009-1992; available at http://www.csl.sri.com/users/rushby/abstracts/aiaa09.
    • J. Rushby, "A safety-case approach for certifying adaptive systems," in AIAA Infotech@Aerospace Conference. Seattle WA: American Institute of Aeronautics and Astronautics, Apr. 2009, aIAA paper 2009-1992; available at http://www.csl.sri.com/users/rushby/abstracts/aiaa09.
  • 26
    • 57049157146 scopus 로고    scopus 로고
    • - , Runtime certification, in Eighth Workshop on Runtime Verification: RV08, ser. Lecture Notes in Computer Science, M. Leucker, Ed., 5289. Budapest, Hungary: Springer-Verlag, Apr. 2008, pp. 21-35.
    • - , "Runtime certification," in Eighth Workshop on Runtime Verification: RV08, ser. Lecture Notes in Computer Science, M. Leucker, Ed., vol. 5289. Budapest, Hungary: Springer-Verlag, Apr. 2008, pp. 21-35.
  • 27
    • 34547229860 scopus 로고    scopus 로고
    • - , Harnessing disruptive innovation in formal verification, in Fourth International Conference on Software Engineering and Formal Methods (SEFM), D. V. Hung and P. Pandya, Eds. Pune, India: IEEE Computer Society, Sep. 2006, pp. 21-28.
    • - , "Harnessing disruptive innovation in formal verification," in Fourth International Conference on Software Engineering and Formal Methods (SEFM), D. V. Hung and P. Pandya, Eds. Pune, India: IEEE Computer Society, Sep. 2006, pp. 21-28.
  • 28
    • 0036466927 scopus 로고    scopus 로고
    • Using model checking to help discover mode confusions and other automation surprises
    • Feb, available at
    • - , "Using model checking to help discover mode confusions and other automation surprises," Reliability Engineering and System Safety, vol. 75, no. 2, pp. 167-177, Feb. 2002, available at http://www.csl.sri. com/users/rushby/abstracts/ress02.
    • (2002) Reliability Engineering and System Safety , vol.75 , Issue.2 , pp. 167-177
  • 29
    • 77749234918 scopus 로고    scopus 로고
    • National Transportation Safety Board, Washington, DC, Oct. 2007, available at
    • Safety Recommendations A-07-65 though -69, National Transportation Safety Board, Washington, DC, Oct. 2007, available at http://www.ntsb.gov/recs/ letters/2007/A07-65-69.pdf.
    • Safety Recommendations A-07-65 though -69
  • 30
    • 77749234916 scopus 로고    scopus 로고
    • National Transportation Safety Board, Washington, DC, Oct. 2007, available at
    • Safety Recommendation A-07-70 though -86, National Transportation Safety Board, Washington, DC, Oct. 2007, available at http://www.ntsb.gov/Recs/ letters/2007/A07-70-86.pdf.
    • Safety Recommendation A-07-70 though -86
  • 31
    • 77749231827 scopus 로고    scopus 로고
    • In-Flight Upset Event, 154 km West of Learmonth, WA, 7 October 2008, VH-QPA Airbus A330-303, Australian Transport Safety Bureau, Mar. 2009, reference number AO-2008-070 Interim Factual, available at http://www.atsb.gov. au/publications/investigation reports/2008/AAIR/pdf/AO2008070-interim.pdf.
    • In-Flight Upset Event, 154 km West of Learmonth, WA, 7 October 2008, VH-QPA Airbus A330-303, Australian Transport Safety Bureau, Mar. 2009, reference number AO-2008-070 Interim Factual, available at http://www.atsb.gov. au/publications/investigation reports/2008/AAIR/pdf/AO2008070-interim.pdf.
  • 32
    • 77749234913 scopus 로고    scopus 로고
    • In-Flight Upset Event, 240 km North-West of Perth, WA, Boeing Company 777-200, 9M-MRG, 1 August 2005, Australian Transport Safety Bureau, Mar. 2007, reference number Mar2007/DOTARS 50165, available at http://www.atsb.gov. au/publications/investigation reports/2005/AAIR/aair200503722.aspx.
    • In-Flight Upset Event, 240 km North-West of Perth, WA, Boeing Company 777-200, 9M-MRG, 1 August 2005, Australian Transport Safety Bureau, Mar. 2007, reference number Mar2007/DOTARS 50165, available at http://www.atsb.gov. au/publications/investigation reports/2005/AAIR/aair200503722.aspx.
  • 33
    • 77749231833 scopus 로고    scopus 로고
    • Report on the incident to Airbus A340-642, registration G-VATL enroute from Hong Kong to London Heathrow on 8 February 2005, UK Air Investigations Branch, 2007, available at http://www.aaib.gov.uk/publications/formal-reports/ 4-2007-g-vatl.cfm.
    • Report on the incident to Airbus A340-642, registration G-VATL enroute from Hong Kong to London Heathrow on 8 February 2005, UK Air Investigations Branch, 2007, available at http://www.aaib.gov.uk/publications/formal-reports/ 4-2007-g-vatl.cfm.
  • 35
    • 0031124371 scopus 로고    scopus 로고
    • M. Kaufmann and J. S. Moore, An industrial strength theorem prover for a logic based on Common Lisp, IEEE Transactions on Software Engineering, 23, no. 4, pp. 203-213, Apr. 1997, aCL2 home page: http://www.cs.utexas.edu/users/moore/acl2/.
    • M. Kaufmann and J. S. Moore, "An industrial strength theorem prover for a logic based on Common Lisp," IEEE Transactions on Software Engineering, vol. 23, no. 4, pp. 203-213, Apr. 1997, aCL2 home page: http://www.cs.utexas.edu/users/moore/acl2/.
  • 37
    • 77749284497 scopus 로고    scopus 로고
    • M. J. C. Gordon and T. F. Melham, Eds., Introduction to HOL: A Theorem Proving Environment for Higher-Order Logic. Cambridge, UK: Cambridge University Press, 1993, hOL home page: http://www.cl.cam.ac.uk/Research/HVG/HOL/ .
    • M. J. C. Gordon and T. F. Melham, Eds., Introduction to HOL: A Theorem Proving Environment for Higher-Order Logic. Cambridge, UK: Cambridge University Press, 1993, hOL home page: http://www.cl.cam.ac.uk/Research/HVG/HOL/ .
  • 38
    • 77749284495 scopus 로고    scopus 로고
    • L. C. Paulson, Isabelle: A Generic Theorem Prover, ser. Lecture Notes in Computer Science. Springer-Verlag, 1994, 828, isabelle home page: http://www.cl.cam.ac.uk/research/hvg/Isabelle/.
    • L. C. Paulson, Isabelle: A Generic Theorem Prover, ser. Lecture Notes in Computer Science. Springer-Verlag, 1994, vol. 828, isabelle home page: http://www.cl.cam.ac.uk/research/hvg/Isabelle/.
  • 39
    • 0029251055 scopus 로고    scopus 로고
    • S. Owre, J. Rushby, N. Shankar, and F. von Henke, Formal verification for fault-tolerant architectures: Prolegomena to the design of PVS, IEEE Transactions on Software Engineering, 21, no. 2, pp. 107-125, Feb. 1995, pVS home page: http://pvs.csl.sri.com.
    • S. Owre, J. Rushby, N. Shankar, and F. von Henke, "Formal verification for fault-tolerant architectures: Prolegomena to the design of PVS," IEEE Transactions on Software Engineering, vol. 21, no. 2, pp. 107-125, Feb. 1995, pVS home page: http://pvs.csl.sri.com.
  • 40
    • 14744275497 scopus 로고    scopus 로고
    • Computer Science Laboratory, SRI International, Menlo Park, CA, Tech. Rep. SRI-CSL-01-01, Apr
    • S. Owre and N. Shankar, "Theory interpretations in PVS," Computer Science Laboratory, SRI International, Menlo Park, CA, Tech. Rep. SRI-CSL-01-01, Apr. 2001.
    • (2001) Theory interpretations in PVS
    • Owre, S.1    Shankar, N.2
  • 41
    • 77749231834 scopus 로고    scopus 로고
    • M. Saaltink, Domain checking Z specifications, in LFM' 97: Fourth NASA Langley Formal Methods Workshop, ser. NASA Conference Publication 3356, C. M. Holloway and K. J. Hayhurst, Eds. Hampton, VA: NASA Langley Research Center, Sep. 1997, pp. 185-192, available at http://atb-www.larc.nasa.gov/Lfm97/proceedings/.
    • M. Saaltink, "Domain checking Z specifications," in LFM' 97: Fourth NASA Langley Formal Methods Workshop, ser. NASA Conference Publication 3356, C. M. Holloway and K. J. Hayhurst, Eds. Hampton, VA: NASA Langley Research Center, Sep. 1997, pp. 185-192, available at http://atb-www.larc.nasa.gov/Lfm97/proceedings/.
  • 43
    • 33947105015 scopus 로고    scopus 로고
    • A note on inconsistent axioms in Rushby's Systematic formal verification for fault-tolerant time-triggered algorithms
    • May
    • L. Pike, "A note on inconsistent axioms in Rushby's "Systematic formal verification for fault-tolerant time-triggered algorithms"," IEEE Transactions on Software Engineering, vol. 32, no. 5, pp. 347-348, May 2006.
    • (2006) IEEE Transactions on Software Engineering , vol.32 , Issue.5 , pp. 347-348
    • Pike, L.1
  • 44
    • 37149003042 scopus 로고    scopus 로고
    • Computer Science Laboratory, SRI International, Menlo Park, CA, Technical Note, Sep, available at
    • G. Hamon, L. de Moura, and J. Rushby, "Automated test generation with SAL," Computer Science Laboratory, SRI International, Menlo Park, CA, Technical Note, Sep. 2005, available at http://www.csl.sri.com/users/rushby/ abstracts/sal-atg.
    • (2005) Automated test generation with SAL
    • Hamon, G.1    de Moura, L.2    Rushby, J.3
  • 47
    • 35248882606 scopus 로고    scopus 로고
    • J. S. Moore, A grand challenge proposal for formal methods: A verified stack, in Formal Methods at the Crossroads: From Panacea to Foundational Support, ser. Lecture Notes in Computer Science, 2757. Lisbon, Portugal: Springer-Verlag, 2003, pp. 161-172, 10th Anniversary Colloquium of UNU/IIST the International Institute for Software Technology of The United Nations University.
    • J. S. Moore, "A grand challenge proposal for formal methods: A verified stack," in Formal Methods at the Crossroads: From Panacea to Foundational Support, ser. Lecture Notes in Computer Science, vol. 2757. Lisbon, Portugal: Springer-Verlag, 2003, pp. 161-172, 10th Anniversary Colloquium of UNU/IIST the International Institute for Software Technology of The United Nations University.
  • 49
    • 33749553558 scopus 로고    scopus 로고
    • J. Harrison, Towards self-verification of HOL Light, in Automated Reasoning, Third International Joint Conference, IJCAR 2006, Seattle, WA, USA, August 17-20, 2006, Proceedings, ser. Lecture Notes in Computer Science, U. Furbach and N. Shankar, Eds., 4130. Springer, 2006, pp. 177-191. [Online]. Available: http://dx.doi.org/10.1007/11814771-17
    • J. Harrison, "Towards self-verification of HOL Light," in Automated Reasoning, Third International Joint Conference, IJCAR 2006, Seattle, WA, USA, August 17-20, 2006, Proceedings, ser. Lecture Notes in Computer Science, U. Furbach and N. Shankar, Eds., vol. 4130. Springer, 2006, pp. 177-191. [Online]. Available: http://dx.doi.org/10.1007/11814771-17
  • 50
    • 56749155805 scopus 로고    scopus 로고
    • N. Shankar, Trust and automation in verification tools, in 6th International Symposium on Automated Technology for Verification and Analysis (ATVA), ser. Lecture Notes in Computer Science, S. S. Cha, J.-Y. Choi, M. Kim, I. Lee, and M. Viswanathan, Eds., 5311. Springer-Verlag, Oct. 2008, pp. 4-17.
    • N. Shankar, "Trust and automation in verification tools," in 6th International Symposium on Automated Technology for Verification and Analysis (ATVA), ser. Lecture Notes in Computer Science, S. S. Cha, J.-Y. Choi, M. Kim, I. Lee, and M. Viswanathan, Eds., vol. 5311. Springer-Verlag, Oct. 2008, pp. 4-17.


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.