2013
DOI: 10.1007/s00165-011-0202-7
|View full text |Cite
|
Sign up to set email alerts
|

The mechanical generation of fault trees for reactive systems via retrenchment I: combinational circuits

Abstract: Abstract. The manual construction of fault trees for complex systems is an error-prone and time-consuming activity, encouraging automated techniques. In this paper we show how the retrenchment approach to formal system model evolution can be developed into a versatile structured approach for the mechanical construction of fault trees. The system structure and the structure of retrenchment concessions interact to generate fault trees with appropriately deep nesting. We show how this approach can be extended to … Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
5
0

Year Published

2013
2013
2023
2023

Publication Types

Select...
4
1
1

Relationship

4
2

Authors

Journals

citations
Cited by 7 publications
(5 citation statements)
references
References 35 publications
0
5
0
Order By: Relevance
“…7 Now, we see why there was no orange = OFF guard in GearStartMoving_S earlier. If there had been, the second occurrence of GearStartMoving_S would have been disabled in the pilot machine, causing problems.…”
Section: The Nominal Regimementioning
confidence: 96%
See 2 more Smart Citations
“…7 Now, we see why there was no orange = OFF guard in GearStartMoving_S earlier. If there had been, the second occurrence of GearStartMoving_S would have been disabled in the pilot machine, causing problems.…”
Section: The Nominal Regimementioning
confidence: 96%
“…For this to work, the pilot's handle events are further synchronised with analogical switch events that reset clk_AnSw to the appro- 7 Dealing with this properly in the Conf development caused the majority of the excessive verbosity. 8 It may be argued that the phenomenon being discussed is absent at level 00, so the guard could have been included there, and removed at level 01, but in Event-B refinement, guards are strengthened, so this would have prevented the 00 to 01 development step from being an Event-B refinement.…”
Section: The Nominal Regimementioning
confidence: 99%
See 1 more Smart Citation
“…Banach 95,96 developed the reduction method of formal system model evolution into a general structured method for mechanical construction of DFT. On the positive side, automated analysis helped to reduce efforts and prevent errors, especially in the most repetitive and mechanical parts of the analysis.…”
Section: Intelligent Evaluation Of Dftmentioning
confidence: 99%
“…In this context, faults are represented by contract violations. A different approach to generate hierarchical fault trees is based on retrenchment [BB13a,BB13b]. This framework focuses on the relations between nominal and faulty behaviors, and does not address implementation issues.…”
Section: Fault Tree Analysismentioning
confidence: 99%