Architectural Modeling and Analysis for Safety Engineering
Architecture description languages such as AADL allow systems engineers to specify the structure of system architectures and perform several analyses over them, including schedulability, resource analysis, and information flow. In addition, they permit system-level requirements to be specified and analyzed early in the development process of airborne and ground-based systems. These tools can also be used to perform safety analysis based on the system architecture and initial functional decomposition.
Using AADL-based system architecture modeling and analysis tools as an exemplar, we extend existing analysis methods to support system safety objectives of ARP4754A and ARP4761. This includes extensions to existing modeling languages to better describe failure conditions, interactions, and mitigations, and improvements to compositional reasoning approaches focused on the specific needs of system safety analysis. We develop example systems based on the Wheel Braking System in SAE AIR6110 to evaluate the effectiveness and practicality of our approach.
KeywordsModel-based systems engineering Fault analysis Safety engineering
This research was funded by NASA AMASE NNL16AB07T and University of Minnesota College of Science and Engineering Graduate Fellowship.
- 1.AADL: Predictable Model-Based EngineeringGoogle Scholar
- 2.AIR 6110: Contiguous Aircraft/System Development Process Example (2011)Google Scholar
- 4.Bittner, B., Bozzano, M., Cavada, R., Cimatti, A., Gario, M., Griggio, A., Mattarei, C., Micheli, A., Zampedri, G.: The xSAP Safety Analysis Platform. In: Proceedings of 22nd International Conference on Tools and Algorithms for the Construction and Analysis of Systems (TACAS 2016), Held as Part of the European Joint Conferences on Theory and Practice of Software (ETAPS 2016), Eindhoven, The Netherlands, 2–8 April 2016, pp. 533–539 (2016)Google Scholar
- 5.Bozzano, M., Cimatti, A., Pires, A.F., Jones, D., Kimberly, G., Petri, T., Robinson, R., Tonetta, S.: Formal design and safety analysis of AIR6110 wheel brake system. In: Proceedings of 27th International Conference on Computer Aided Verification (CAV 2015), Part I, San Francisco, CA, USA, 18–24 July 2015, pp. 518–535 (2015)Google Scholar
- 9.Delange, J., Feiler, P., Gluch, D.P., Hudak, J.: AADL Fault Modeling, Analysis Within an ARP4761 Safety Assessment. Technical report CMU/SEI-2014-TR-020, Software Engineering InstituteGoogle Scholar
- 10.Friedenthal, S., Moore, A., Steiner, R.: A Practical Guide to SysML. Morgan Kaufman Publisher, San Francisco (2008)Google Scholar
- 11.Gudemann, M., Ortmeier, F.: A framework for qualitative and quantitative formal model-based safety analysis. In: Proceedings of the 2010 IEEE 12th International Symposium on High-Assurance Systems Engineering, HASE 2010, pp. 132–141. IEEE Computer Society, Washington, D.C. (2010)Google Scholar
- 15.Joshi, A., Heimdahl, M.P.: Behavioral fault modeling for model-based safety analysis. In: Proceedings of the 10th IEEE High Assurance Systems Engineering Symposium (HASE) (2007)Google Scholar
- 16.Joshi, A., Miller, S.P., Whalen, M., Heimdahl, M.P.: A proposal for model-based safety analysis. In: Proceedings of 24th Digital Avionics Systems Conference (Awarded Best Paper of Track) (2005)Google Scholar
- 17.Joshi, A., Whalen, M., Heimdahl, M.P.: Automated Safety Analysis Draft Final Report. Report for NASA Contract NCC-01001 (2005)Google Scholar
- 18.Larson, B., Hatcliff, J., Fowler, K., Delange, J.: Illustrating the AADL error modeling annex (v.2) using a simple safety-critical medical device. In: Proceedings of the 2013 ACM SIGAda Annual Conference on High Integrity Language Technology (HILT 2013), pp. 65–84. ACM, New York (2013)Google Scholar
- 19.Lisagor, O., Kelly, T., Niu, R.: Model-based safety assessment: Review of the discipline and its challenges. In: Proceedings of 2011 9th International Conference on Reliability, Maintainability and Safety, pp. 625–632 (2011)Google Scholar
- 20.MathWorks: The MathWorks Inc., Simulink Product Web Site (2004). http://www.mathworks.com/products/simulink
- 21.Murugesan, A., Whalen, M.W., Rayadurgam, S., Heimdahl, M.P.: Compositional verification of a medical device system. In: ACM International Conference on High Integrity Language Technology (HILT 2013), ACM (2013)Google Scholar
- 22.Pajic, M., Mangharam, R., Sokolsky, O., Arney, D., Goldman, J., Lee, I.: Model-driven safety analysis of closed-loop medical systems. IEEE Trans. Industr. Inf. pp. 1–12 (2012)Google Scholar
- 24.SAE ARP 4761: Guidelines and Methods for Conducting the Safety Assessment Process on Civil Airborne Systems and Equipment (1996)Google Scholar
- 25.SAE AS 5506B–3: Aadl annex volume 1 (2015)Google Scholar
- 26.Sokolsky, O., Lee, I., Clarke, D.: Process-algebraic interpretation of AADL models. In: Proceedings of 14th Ada-Europe International Conference on Reliable Software Technologies (Ada-Europe 2009), Brest, France, 8–12 June 2009, pp. 222–236 (2009)Google Scholar