A comprehensive safety engineering approach for software-intensive systems based on STPA

被引:52
作者
Abdulkhaleq, Asim [1 ]
Wagner, Stefan [1 ]
Leveson, Nancy [2 ]
机构
[1] Univ Stuttgart, Inst Software Technol, D-70174 Stuttgart, Germany
[2] MIT, Cambridge, MA 02139 USA
来源
PROCEEDINGS OF THE 3RD EUROPEAN STAMP WORKSHOP | 2015年 / 128卷
关键词
STAMP; STPA; safety verification; model checking; software sesting;
D O I
10.1016/j.proeng.2015.11.498
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
Formal verification and testing are complementary approaches which are used in the development process to verify the functional correctness of software. However, the correctness of software cannot ensure the safe operation of safety-critical software systems. The software must be verified against its safety requirements which are identified by safety analysis, to ensure that potential hazardous causes cannot occur. The complexity of software makes defining appropriate software safety requirements with traditional safety analysis techniques difficult. STPA (Systems-Theoretic Processes Analysis) is a unique safety analysis approach that has been developed to identify system hazards, including the software-related hazards. This paper presents a comprehensive safety engineering approach based on STPA, including software testing and model checking approaches for the purpose of developing safe software. The proposed approach can be embedded within a defined software engineering process or applied to existing software systems, allow software and safety engineers integrate the analysis of software risks with their verification. The application of the proposed approach is illustrated with an automotive software controller. (C) 2015 The Authors. Published by Elsevier Ltd.
引用
收藏
页码:2 / 11
页数:10
相关论文
共 23 条
[1]  
Abdulkhaleq A., 2013, SOFTW ENG WORKSH SAN
[2]   Integrated Safety Analysis Using Systems-Theoretic Process Analysis and Software Model Checking [J].
Abdulkhaleq, Asim ;
Wagner, Stefan .
COMPUTER SAFETY, RELIABILITY, AND SECURITY, SAFECOMP 2015, 2015, 9337 :121-134
[3]  
Abdulkhaleq A, 2014, LECT NOTES COMPUT SC, V8696, P401, DOI 10.1007/978-3-319-10557-4_44
[4]  
Abdulkhaleq Asim, Xstampp: an extensible STAMP platform as tool support for safety engineering
[5]   Using model checking to generate tests from specifications [J].
Ammann, PE ;
Black, PE ;
Majurski, W .
SECOND INTERNATIONAL CONFERENCE ON FORMAL ENGINEERING METHODS, PROCEEDINGS, 1998, :46-54
[6]  
[Anonymous], 2012, MILSTD882E US DEP DE
[7]  
Baier C, 2008, PRINCIPLES OF MODEL CHECKING, P1
[8]  
Cimatti A., 2000, INT J SOFTWARE TOOLS, V2, P410, DOI [10.1007/s100090050046, DOI 10.1007/S100090050046]
[9]  
Hetzel B., 1988, The Complete Guide to Software Testing, V2nd
[10]  
Holzmann G., 2003, The SPIN Model Checker: Primer and Reference Manual, V1st