On the Role of Formal Methods in Software Certification: An Experience Report

نویسنده

  • Constance L. Heitmeyer
چکیده

This paper describes how formal methods were used to produce evidence in a certification, based on the Common Criteria, of a security-critical software system. The evidence included a top level specification (TLS) of the security-relevant software behavior, a formal statement of the required security properties, proofs that the specification satisfied the properties, and a demonstration that the source code, which had been annotated with preconditions and postconditions, was a refinement of the TLS. The paper also describes those aspects of our approach which were most effective and research that could significantly increase the effectiveness of formal methods in software certification.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Physicians' and Clinical Coders' Knowledge about Cause of Death Rules for Death Certification in Hospitals Affiliated to Kashan University of Medical Sciences

Introduction: To clarify mortality trend, enhancing the knowledge of physicians and clinical coders who play their role in coding based on ICD book is crucial. This study was performed to investigate the knowledge of physicians and clinical coders on the rules and guidelines of determining mortality causes. Methods: This descriptive cross-sectional study was performed on 152 health care provid...

متن کامل

Formal Specification and Verification of PLC for Certification

KNICS (Korea Nuclear Instrumentation and Control System) is a national promoted project to develop a safety-critical level embedded system for nuclear plant protection system. PLC(Programmable Logic Controller) is a typical embedded system to instrument and control plant system, and KNICS has been developing a PLC for controlling a reactor of nuclear power plant system. The PLC micro-kernel is ...

متن کامل

کاربرد مدل ملی بهره وری در بخش بهداشت و درمان

Introduction: Integrated and goal - oriented productivity attempts as well as decision making for next action can be considered as a leading approach for organizations which will in turn result in to competitive advantages. This research was done to assess Social Security Organization Hospitals in Tehran according to The National Productivity Model. Methods: This cross- sectional descriptive re...

متن کامل

The Impact of Report writing Training on the Quality of Auditory Reporting in Audiology Students and Graduates of Ahvaz University of Medical Sciences in 1396-1398

ABSTRACT BACKGROUND AND OBJECTIVE: Report writing is a necessary framework for presentation of audio logical test results. One of the methods of teaching report writing is workshops. The overall purpose of this study was to investigate the impact of report writing on the quality of audiology reporting in Ahvaz University of Medical Sciences. METHODS: This study is a quasi-experimental (before a...

متن کامل

Simultaneous Detection of Arabis Mosaic Virus, Cherry Leafroll Virus and Cucumber Mosaic Virus with Coamplification of Plant mRNA as Internal Control for Olive Certification Programs

Background and Aims: Certification programs of plant propagating materials rely on faster, cheaper and more importantly sensitive and reliable methods for detection of systemic pathogens as indicated in national and/or international health standards of plant propagating materials. Reverse transcription-polymerase chain reaction (RT-PCR) has been documented as an alternative assay for certific...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:
  • Electr. Notes Theor. Comput. Sci.

دوره 238  شماره 

صفحات  -

تاریخ انتشار 2009