Framing analysis of software failure with safety cases

نویسندگان

  • William S. Greenwell
  • John C. Knight
چکیده

Failures of digital systems arise from design faults that are introduced during system development or maintenance, and the complexity and tight coupling of these systems can lead to accidents involving interactions of multiple failed components. These factors complicate the analysis of digital system failures, particularly with respect to framing an analysis and issuing recommendations that are relevant and practicable. We present a systematic approach to the analysis of digital system failures based upon the concept of safety cases. Failures of safety-related digital systems typically indicate the presence of fallacies in their underlying safety arguments. Using our approach, investigators elicit evidence from a failure to discover fallacies in the safety argument that might have contributed to the failure and then develop recommendations for addressing the fallacies they discover, producing a revised safety argument. Our approach assists investigators in framing an analysis by determining what evidence should be elicited, and it ensures that investigators’ recommendations address the problems that they identify. We report our results from applying the approach to a sequence of accidents involving a low-altitude warning system and compare them to the results of the official investigations. We then contrast the features of our approach with those of other methods.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Runtime Verification of Stochastic, Faulty Systems

We desire a capability for the lifelong verification of complex embedded systems that degrade over time, such as a semi-autonomous car. The field of runtime verification has developed many tools for monitoring the safety of software systems in real time. However, these tools do not allow for uncertainty in the system’s state or failure, both of which are essential for monitoring hardware as it ...

متن کامل

Evaluation of Earth Dam Behavior against Earthquake with respect to Dam Height and Constitutive Model of Dam Materials

In spite of the fact that the effect of earthquake on earth dams has been widely studied during the past decades, the complicated behavior of such earth structures against different seismological characteristics is still unknown. Such ambiguities necessitate more accurate studies using more comprehensive computation tools to achieve new results describing the behavior of such structures subject...

متن کامل

Evaluation of Earth Dam Behavior against Earthquake with respect to Dam Height and Constitutive Model of Dam Materials

In spite of the fact that the effect of earthquake on earth dams has been widely studied during the past decades, the complicated behavior of such earth structures against different seismological characteristics is still unknown. Such ambiguities necessitate more accurate studies using more comprehensive computation tools to achieve new results describing the behavior of such structures subject...

متن کامل

Failure Probability and Remaining Life Assessment of Reheater Tubes

In this study, a real and significant industrial problem in a steam power plant was investigated. Reheater tubes in boilers are under the creep and the fireside corrosion mechanism that cause some of them to fail. Since the estimation of probability of failure (PoF) and remaining life (RL) is expensive and time consuming in the deterministic methods, in this work they were evaluated using struc...

متن کامل

Performance Analysis of a Repairable Robot Safety System with Standby, Imperfect Coverage and Reboot Delay

The present study deals with a robot safety system composed of standby robot units and inbuilt safety unit. When the main operative unit fails, it is replaced by the standby robot unit available in the system. The concept of reboot delay is also incorporated in this study according to which the robot unit is rebooted if it is not successfully recovered. The recovery and reboot times of failed u...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2006