Experience Report : Contributions of SFMEA to RequirementsAnalysisRobyn
نویسندگان
چکیده
This experience report describes the lessons learned from the use of Software Failure Modes and EEects Analysis (SFMEA) for requirements analysis of critical spacecraft software. The SFMEA process was found to be successful in identifying some ambiguous , inconsistent, and missing requirements. More importantly, the SFMEA process, followed by a backward analysis somewhat similar to Fault Tree Analysis (FTA), identiied four signiicant, unresolved requirements issues. These issues involved complex system interfaces and unanticipated dependencies. Our results challenge some current views on the limitations of SFMEA and suggest that recent eeorts by researchers to integrate SFMEA with a broader FTA approach have merit. 1. The Problem There are software programs onboard spacecraft that must autonomously detect, identify, and oversee the recovery of the spacecraft from faults during ight. Since these faults can threaten the well-being of the spacecraft and the success of its scientiic mission, the software that responds to such faults is considered to be critical by the development team. A fault is given the standard deenition here of being either \a defect in a hardware device or component" or \an incorrect step, process, or data deenition in a computer program" 4]. Those faults which can cause power loss, excessive temperature, propellant tank overpres-sure, interruption of uplink commandability, or loss of downlinked scientiic and engineering telemetry are detected and handled by onboard software. Requirements analysis of this critical software is diicult since the software is often both complex and highly coupled. The software that responds to faults is often dependent on other distributed software and hardware components (for example, a single hardware fault may aaect multiple software processes) and subject to timing constraints (for example, the software must provide quick recovery of functionality). These properties make the correct and complete spec-iication of requirements hard to determine and hard to validate. In particular, inadequate software responses to extreme conditions and boundary cases are of concern. Appropriate software responses to anomalous hardware behavior, unanticipated states, invalid data, and signal saturation are robustness issues that should be resolved, if possible, during the requirements phase. 2. Our Approach This experience report describes our use of Software Failure Modes and EEects Analysis (SFMEA), followed by a backward analysis somewhat similar to Fault Tree Analysis (FTA), to assist in analyzing the software requirements for critical portions of the spacecraft software. The approach was used on twenty-four software modules on two spacecraft systems , Cassini and Galileo. …
منابع مشابه
Traffic Impact Assessment of Land Use Proposals: Fifty Years of Australian Experience
Draft traffic impact assessment (TIA) guidelines for various landuses in general, and for high traffic generating buildings in particular, were published in Iran in the middle of 2016. In formulating that report the Traffic Committee of the Iranian Building Engineering Order reviewed international experience, including that of Australia. Traffic impact assessment started in Australia in the 196...
متن کاملBi-directional Analysis for Certi cation of Safety-Critical Software
For safety-critical systems, it is insu cient to certify the developer and the development process. Certi cation of the software product itself is also needed. SFMEA (Software Failure Modes and E ects Analysis) and SFTA (Software Fault Tree Analysis) are two engineering techniques that have been used successfully for a number of years and in a variety of safety-critical applications to verify s...
متن کاملEditorial Report of fifteen years contributions to radiological sciences: Future directions and prospects
At the close of the 20th century, fundamental discoveries changed broadly the worlds of physics, biology and medicine. The rapid advancements achieved during recent years, mainly due to revolutionary methodological improvements, have led to an unparalleled explosion of information; often appear to overshadow the earlier works. However as more basic discoveries are made these separate scientific...
متن کاملEpidemiological Distributions and Critical Contributions to the Growth Rate for Infants and Young Children in Hubei Province of China during 2017 to 2018: A Review
The growth rate for infants and young children manifests the significant differences between age, sex, regional, and seasonal distributions. The growth rate for infants and young children is a complex process that depends on interaction of the genetic and environmental factors. All genetic and environmental factors jointly contribute to the growth rate for infants and young children, for exampl...
متن کاملA Brief Report on Telerehabilitation during COVID-19 Outbreak- Experience at a Tertiary Care Center in Kerala
The unanticipated lockdown following the COVID-19 has had a significant impact in the field of rehabilitation compelling the professionals to switch to tele-mode in order to continue service without interruption. The aim of this article is to highlight the steps taken to overcome the various challenges encountered and to strengthen the opportunities in telerehabilitation services at a tertiary ...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 1996