Pandora: An Approach to Analyzing Safety-Related Digital System Failures

نویسنده

  • William S. Greenwell
چکیده

Accidents have occurred in which failures of digital systems have contributed to property damage, injury, and even loss of life. Most investigative agencies do not know how to investigate these failures comprehensively because the complexity and coupling of a digital system’s functions can obfuscate its design, making it difficult for an investigator to understand the system, and because the uniqueness of each digital system prevents investigators from developing generic checklists for diagnosing failures. To address these problems, this thesis proposes the development of Pandora, a systematic approach to the analysis of safety-related digital system failures that is based upon the system safety case. As the complete argument that a system is safe to operate, the safety case contains the information needed to understand the safety-related aspects of a system and to diagnose and address the failure. Pandora audits a system’s safety case to identify the fallacious reasoning or faulty evidence that allowed a failure to occur, and in doing so it drives the elicitation of background information and counter-evidence needed to diagnose the failure. The products of this audit are a set of lessons comprising the flaws identified in the original safety argument, a revised safety case that is free of those flaws, and a set of recommendations for repairing the system and its associated development and operational practices. Pandora is a rigorous approach because it systematically revisits each of the safety claims that, if unsatisfied, could have contributed to a failure, and it is efficient because it considers only those system details, evidence, and safety claims that pertain to the investigation. This proposal discusses Pandora and its supporting work, further development, and planned evaluation of the approach through case studies.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Framing analysis of software failure with safety cases

Failures of digital systems arise from design faults that are introduced during system development or maintenance, and the complexity and tight coupling of these systems can lead to accidents involving interactions of multiple failed components. These factors complicate the analysis of digital system failures, particularly with respect to framing an analysis and issuing recommendations that are...

متن کامل

ارزیابی مخاطرات کوره یک کارخانه سیمان با روش آنالیز بحرانیت حالات شکست و اثرات آن (FMECA)

  Background and aims : Technique of Failure Modes Effects and Criticality Analysis, FMECA, is a method for identifying and analyzing all potential failure modes of a system.This technique is used to prevent failures and to reduce their effects on the system . The main goal of this study was identifying and analyzing of the potential failure modes and assessing the effects of failures in the ce...

متن کامل

Presenting a Morphological Based Approach for Filtering The Point Cloud to Extract the Digital Terrain Model

The Digital terrain model is an important geospatial product used as the basis of many practical projects related to geospatial information. Nowadays, a dense point cloud can be generated using the LiDAR data. Actually, the acquired point cloud of the LiDAR, presents a digital surface model that contains ground and non-ground objects. The purpose of this paper is to present a new approach of ex...

متن کامل

Reliability Analysis of Dynamic Systems by Translating Temporal Fault Trees into Bayesian Networks

Classical combinatorial fault trees can be used to assess combinations of failures but are unable to capture sequences of faults, which are important in complex dynamic systems. A number of proposed techniques extend fault tree analysis for dynamic systems. One of such technique, Pandora, introduces temporal gates to capture the sequencing of events and allows qualitative analysis of temporal f...

متن کامل

Gaining Insight into the Prevention of Maternal Death Using Narrative Analysis: An Experience from Kerman, Iran

Reduction in maternal mortality requires an in-depth knowledge of the causes of death. This study was conducted to explore the circumstances and events leading to maternal mortality through a holistic approach. Using narrative text analysis, all documents related to maternal deaths occurred from 2007 to 2011 in Kerman province/Iran were reviewed thoroughly by an expert panel. A 93-item chart ab...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2005