Distributed specification and verification with TLT a case study
  • Jorge Cuellar
  • Martin Huber
Part of the Lecture Notes in Computer Science book series (LNCS, volume 891)


The Temporal Language of Transitions (TLT) is a framework for the design and verification of distributed systems being developed at Siemens. Similar to UNITY and TLA, it is a formalism to model systems and specify their properties. It further includes methods for refinement and composition, used repeatedly in this case study. We were able to specify, verify and simulate a distributed controller that can handle up to eight plates. The correctness proofs for both safety and liveness properties were done automatically using a model checking tool based on BDDs.


Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.


  1. [1]
    R. Allen, D. Garlan, Formal Connectors, technical report CMU-CS-94-115, Carnegie-Mellon-University, 1994Google Scholar
  2. [2]
    K.M. Chandy, J. Misra, Parallel Program Design — A Foundation, Addison-Wesley Publishing Company, 1988Google Scholar
  3. [3]
    D. Barnard, J. Cuellar, A Tutorial Introduction to TLT — Part I: The Design of Distributed Systems, Siemens ZFE BT SE 11, 19941 Google Scholar
  4. [4]
    D. Barnard, J. Cuellar, M. Huber, A Tutorial Introduction to TLT — Part II: The Verification of Distributed Systems, Siemens ZFE BT SE 11, 1994Google Scholar
  5. [5]
    J. Cuellar, I. Wildgruber, D. Barnard, Combining the Design of Industrial Systems with Effective Verification Techniques, FME '94, Formal Methods Europe 1994, to appear1 Google Scholar
  6. [6]
    T. Filkorn, H.-A. Schneider, A. Scholz, A. Strasser, P. Warkentin, SVE System Verification Environment, Siemens ZFE BT SE 11, to appearGoogle Scholar
  7. [7]
    L. Lamport, The Temporal Logic of Actions, digital systems Research Center, 1991Google Scholar
  8. [8]
    K. Nökel, K. Winkelmann, Controller Synthesis and Verification with CSL, Siemens ZFE BT SE 15, in this volumeGoogle Scholar

Copyright information

© Springer-Verlag 1995

Authors and Affiliations

  • Jorge Cuellar
    • 1
  • Martin Huber
    • 1
  1. 1.Corporate Research and DevelopmentSiemens AGUSA

Personalised recommendations