Self-stabilizing autonomic recoverer for eventual Byzantine software

被引:6
作者
Brukman, O [1 ]
Dolev, S [1 ]
Kolodner, EK [1 ]
机构
[1] Ben Gurion Univ Negev, Dept Comp Sci, IL-84105 Beer Sheva, Israel
来源
IEEE INTERNATIONAL CONFERENCE ON SOFTWARE - SCIENCE, TECHNOLOGY & ENGINEERING, PROCEEDINGS | 2003年
关键词
D O I
10.1109/SWSTE.2003.1245312
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
We suggest to model software package flaws (bugs) by assuming eventual Byzantine behavior of the package. In particular the package has been tested by the manufacturer for limited length scenarios when started in a predefined initial state; the behavior beyond the tested scenario may be Byzantine. Restarts (reboots) are useful for recovering such systems. We suggest a general yet practical framework and paradigm, based on a theoretical foundation, for the monitoring and restarting of systems. An autonomic recoverer that monitors and restarts the system is proposed, where: The autonomic recoverer is designed to handle different tasks given specific task requirements in the form of predicates and actions. DAG subsystem hierarchy structure is used by a consistency monitoring procedure in order to achieve gracious recovery. The existence and correct functionality of the autonomic recovery is guaranteed by the use of a kernel resident (anchor) process, and the design of the process to be self-stabilizing. The autonomic recoverer uses new scheme for liveness assurance via on-line monitoring that complements known schemes for on-line ensuring safety.
引用
收藏
页码:20 / 29
页数:10
相关论文
共 22 条
  • [1] DEFINING LIVENESS
    ALPERN, B
    SCHNEIDER, FB
    [J]. INFORMATION PROCESSING LETTERS, 1985, 21 (04) : 181 - 185
  • [2] [Anonymous], 2002, UCBCSD021175
  • [3] ATTIYA H, 1998, DISTRIB COMPUT, P78
  • [4] AZAGURY A, 2003, P 20 IEEE 11 NASA GO
  • [5] *B GUR U COMP SCI, 2003, 200316 B GUR U COMP
  • [6] Candea G., 2000, CS244C STANF U
  • [7] Candea G., 2001, P 1 WORKSH EV ARCH S
  • [8] CANDEA G, 2001, P 8 WORKSH HOT TOP O
  • [9] CANDEA G., 2002, P INT C DEP SYST NET
  • [10] Demsky B., 2002, MITLCSTR875