Checking JML specifications using an extensible software model checking framework

被引:6
作者
Edwin Robby
Matthew B. Rodríguez
John Dwyer
机构
[1] Kansas State University,Department of Computing and Information Sciences
[2] University of Nebraska-Lincoln,Department of Computer Science and Engineering
关键词
Model Check; Java Program; Java Virtual Machine; Java Modeling Language; Atomic Block;
D O I
10.1007/s10009-005-0218-5
中图分类号
学科分类号
摘要
The use of assertions to express correctness properties of programs is growing in practice. Assertions provide a form of lightweight checkable specification that can be very effective in finding defects in programs and in guiding developers to the cause of a problem. A wide variety of assertion languages and associated validation techniques have been developed, but run-time monitoring is commonly thought to be the only practical solution. In this paper, we describe how specifications written in the Java Modeling Language (JML), a general purpose behavioral specification and assertional language for Java, can be validated using a customized model checker built on top of the Bogor model checking framework. Our experience illustrates the need for customized state-space representations and reduction strategies in model checking frameworks in order to effectively check the kind of strong behavioral specifications that can be written in JML. We discuss the advantages and tradeoffs of model checking relative to other specification validation techniques and present data that suggest that the cost of model checking strong specifications is practical for several real programs.
引用
收藏
页码:280 / 299
页数:19
相关论文
共 8 条
  • [1] Rosenblum D.S.(1995)A practical approach to programming with assertions IEEE Trans. Software Eng. 21 19-31
  • [2] Holzmann G.J.(1997)The model checker SPIN IEEE Trans. Software Eng. 23 279-294
  • [3] Dwyer M.B.(2004)Exploiting object escape and locking information in partial order reduction for concurrent object-oriented programs Formal Methods Syst. Des. 25 199-240
  • [4] Hatcliff Robby J.(1987)Writing Larch interface language specifications ACM Trans. Program Lang. Syst. 9 1-24
  • [5] Prasad V.R.(1997)A framework for parallel adaptive grid simulations Concurrency: Pract Exp. 9 1293-1310
  • [6] Wing J.M.(undefined)undefined undefined undefined undefined-undefined
  • [7] Dwyer M.B.(undefined)undefined undefined undefined undefined-undefined
  • [8] Wallentine V.(undefined)undefined undefined undefined undefined-undefined