10th IEEE High Assurance Systems Engineering Symposium (HASE'07) 2007
DOI: 10.1109/hase.2007.50
|View full text |Cite
|
Sign up to set email alerts
|

Sustaining Property Verification of Synchronous Dependable Protocols Over Implementation

Abstract: It is often considered that a protocol that has been verified for its dependability properties at the protocol level maintains these proven properties over its implementation. Focusing on synchronous protocols, we demonstrate that this assumption can easily be fallacious. We utilize the example of an existing formally verified diagnostic protocol as implemented onto the targeted time-triggered architecture (TTA). The cause is identified as the overlap mismatch across the computation and communication phases in… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
8
0

Year Published

2007
2007
2008
2008

Publication Types

Select...
2

Relationship

1
1

Authors

Journals

citations
Cited by 2 publications
(8 citation statements)
references
References 18 publications
(44 reference statements)
0
8
0
Order By: Relevance
“…A convenient abstraction layer is provided by a mechanism called read/send alignment e s s a g e b r o a d c a s t e d b a s e d o n T D M A s c h e d u l e N o d e j o b e x e c u t i o n j o b 3 j o b 3 j o b 4 t i m e Figure 2. TDMA communication and internal node schedule [4,23] which enables nodes to exchange and compute messages as if there were dedicated links between every pair of nodes and the replicated jobs were executed parallel in time. This facilitates the development of applications where replicated jobs are assumed to maintain a common consistent state (e.g., diagnosis [23]).…”
Section: Consistency-abstraction Layermentioning
confidence: 99%
See 4 more Smart Citations
“…A convenient abstraction layer is provided by a mechanism called read/send alignment e s s a g e b r o a d c a s t e d b a s e d o n T D M A s c h e d u l e N o d e j o b e x e c u t i o n j o b 3 j o b 3 j o b 4 t i m e Figure 2. TDMA communication and internal node schedule [4,23] which enables nodes to exchange and compute messages as if there were dedicated links between every pair of nodes and the replicated jobs were executed parallel in time. This facilitates the development of applications where replicated jobs are assumed to maintain a common consistent state (e.g., diagnosis [23]).…”
Section: Consistency-abstraction Layermentioning
confidence: 99%
“…Note that more simplistic models can be proposed by assuming services like alignment or membership. For example, it was shown that the frame-based model can be used to model general TT systems if alignment is used [4]. In this paper, on the contrary, we propose a realistic model which can also be used for the design of new algorithms that exploit the characteristics of the TT architecture.…”
Section: Alignment Modulementioning
confidence: 99%
See 3 more Smart Citations