To verify the requirements for the mode control logic of a Flight Guidance System (FGS) we applied SPIN, a widely used software package that supports the formal verification of distributed systems. These requirements, collectively called the FGS specification, were developed at Rockwell Avionics & Communications and expressed in terms of the Consortium Requirements Engineering (CoRE) method. The properties to be verified are the invariants formulated in the FGS specification, along with the standard properties of consistency and completeness. The project had two stages. First, the FGS specification and the properties to be verified were reformulated in PROMELA, the input language of SPIN. This involved a semantics issue, as some constru...
Researchers at the Naval Research Laboratory (NRL) have been developing a formal method, known as th...
Abstract:For the formal verification of software, a verification tool has to be selected and it shou...
The aerospace domain is a safety-critical domain. Therefore software has to be of high quality. Soft...
This report describes a requirements specification written in the RSML-e language for the mode logic...
Model checking has become a promising automated verification technique in practice. Nevertheless, mo...
AbstractModel checking has become a promising automated verification technique in practice. Neverthe...
Model checking has become a promising automated verification technique in practice. Nevertheless, mo...
Abstract Model checking has become a promising technique for verifying software and hardware designs...
Mode confusion is one of the most serious problems in aviation safety. Today's complex digital ...
This document summarizes the safety analysis performed on a Flight Guidance System (FGS) requirement...
Two main types of formal methods have been investigated, formal specification and formal verificatio...
This paper describes two separate efforts that used the SPIN model checker to verify deep space auto...
The size and complexity of control software in aerospace systems is rapidly increasing, and this de...
Abstract. Model checking is an important method to verify state machine based system. In this paper,...
SPIN is a general verification tool for proving correctness properties of distributed or concurrent ...
Researchers at the Naval Research Laboratory (NRL) have been developing a formal method, known as th...
Abstract:For the formal verification of software, a verification tool has to be selected and it shou...
The aerospace domain is a safety-critical domain. Therefore software has to be of high quality. Soft...
This report describes a requirements specification written in the RSML-e language for the mode logic...
Model checking has become a promising automated verification technique in practice. Nevertheless, mo...
AbstractModel checking has become a promising automated verification technique in practice. Neverthe...
Model checking has become a promising automated verification technique in practice. Nevertheless, mo...
Abstract Model checking has become a promising technique for verifying software and hardware designs...
Mode confusion is one of the most serious problems in aviation safety. Today's complex digital ...
This document summarizes the safety analysis performed on a Flight Guidance System (FGS) requirement...
Two main types of formal methods have been investigated, formal specification and formal verificatio...
This paper describes two separate efforts that used the SPIN model checker to verify deep space auto...
The size and complexity of control software in aerospace systems is rapidly increasing, and this de...
Abstract. Model checking is an important method to verify state machine based system. In this paper,...
SPIN is a general verification tool for proving correctness properties of distributed or concurrent ...
Researchers at the Naval Research Laboratory (NRL) have been developing a formal method, known as th...
Abstract:For the formal verification of software, a verification tool has to be selected and it shou...
The aerospace domain is a safety-critical domain. Therefore software has to be of high quality. Soft...