Using Multi-Viewpoint Contracts for Negotiation of Embedded Software Updates

Sönke Holthusen
(TU Braunschweig)
Sophie Quinton
(Inria Grenoble - Rhône-Alpes)
Ina Schaefer
(TU Braunschweig)
Johannes Schlatow
(TU Braunschweig)
Martin Wegner
(TU Braunschweig)

In this paper we address the issue of change after deployment in safety-critical embedded system applications. Our goal is to substitute lab-based verification with in-field formal analysis to determine whether an update may be safely applied. This is challenging because it requires an automated process able to handle multiple viewpoints such as functional correctness, timing, etc. For this purpose, we propose an original methodology for contract-based negotiation of software updates. The use of contracts allows us to cleanly split the verification effort between the lab and the field. In addition, we show how to rely on existing viewpoint-specific methods for update negotiation. We illustrate our approach on a concrete example inspired by the automotive domain.

In Luca Aceto, Adrian Francalanza and Anna Ingolfsdottir: Proceedings First Workshop on Pre- and Post-Deployment Verification Techniques (PrePost 2016), Reykjavík, Iceland, 4th June 2016, Electronic Proceedings in Theoretical Computer Science 208, pp. 31–45.
Published: 25th May 2016.

ArXived at: https://dx.doi.org/10.4204/EPTCS.208.3 bibtex PDF

Comments and questions to: eptcs@eptcs.org
For website issues: webmaster@eptcs.org