2006
DOI: 10.2514/1.24677
|View full text |Cite
|
Sign up to set email alerts
|

Engineering Spacecraft Mission Software using a Model-Based and Safety-Driven Design Methodology

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
8
0
1

Year Published

2008
2008
2023
2023

Publication Types

Select...
6
1

Relationship

2
5

Authors

Journals

citations
Cited by 11 publications
(9 citation statements)
references
References 4 publications
0
8
0
1
Order By: Relevance
“…II) is potential interference among uncoordinated control actions by multiple controllers. The collision between two aircraft over Überlingen, Germany, has been partially blamed on conflicting advisories to the pilots by the ground air traffic controller and TCAS II, the automated collision avoidance system on the two aircraft [13]. One aircraft followed the ground advisory while the other aircraft followed the TCAS advisory.…”
Section: Identifying Potentially Unsafe Interactions Among Multiplmentioning
confidence: 99%
See 1 more Smart Citation
“…II) is potential interference among uncoordinated control actions by multiple controllers. The collision between two aircraft over Überlingen, Germany, has been partially blamed on conflicting advisories to the pilots by the ground air traffic controller and TCAS II, the automated collision avoidance system on the two aircraft [13]. One aircraft followed the ground advisory while the other aircraft followed the TCAS advisory.…”
Section: Identifying Potentially Unsafe Interactions Among Multiplmentioning
confidence: 99%
“…SpecTRM, a system and software engineering environment that supports safety engineering processes such as hazard analysis [13] was used to experimentally validate the feasibility of using this method to identify interference. SpecTRM allows modeling preconditions and postconditions and automated checking for consistency and interference.…”
Section: Identifying Potentially Unsafe Interactions Among Multiplmentioning
confidence: 99%
“…In equation (3), the role of the monitor is to check whether the chosen action (ω 1 ) of the ownship is safe assuming that the evolution of the involved aircraft is governed by the differential equations given in equation (4). The symbol (?)…”
Section: B Safety Monitoring Using Differential Invariantsmentioning
confidence: 99%
“…In this study, a commercial systems engineering toolset called SpecTRM (Specification Tools and Requirements Methodology) was used to capture intent specifications [5]. SpecTRM focuses on the early stages of system development, where the foundation is set for later implementation, operations, and maintenance activities.…”
Section: Spectrm and Spectrm-rlmentioning
confidence: 99%
“…This model is used to determine what control actions are needed and it is updated through various forms of feedback. When the model does not match the controlled process, accidents can result [5,6].…”
Section: Stampmentioning
confidence: 99%