The nuXmv Symbolic Model Checker
This paper describes the nuXmv symbolic model checker for finite-and infinite-state
synchronous transition systems. nuXmv is the evolution of the nuXmv open source model …
synchronous transition systems. nuXmv is the evolution of the nuXmv open source model …
Synthesis of reactive (1) designs
We address the problem of automatically synthesizing digital designs from linear-time
specifications. We consider various classes of specifications that can be synthesized with …
specifications. We consider various classes of specifications that can be synthesized with …
Contracts for system design
Recently, contract-based design has been proposed as an “orthogonal” approach that
complements system design methodologies proposed so far to cope with the complexity of …
complements system design methodologies proposed so far to cope with the complexity of …
A platform-based design methodology with contracts and related tools for the design of cyber-physical systems
We introduce a platform-based design methodology that uses contracts to specify and
abstract the components of a cyber-physical system (CPS), and provide formal support to the …
abstract the components of a cyber-physical system (CPS), and provide formal support to the …
Synthesis for human-in-the-loop control systems
Several control systems in safety-critical applications involve the interaction of an
autonomous controller with one or more human operators. Examples include pilots …
autonomous controller with one or more human operators. Examples include pilots …
Correct, reactive, high-level robot control
In this article, we presented an overview of how temporal logic synthesis, coupled with
abstractions and continuous bisimilar controllers, can be used to generate high-level …
abstractions and continuous bisimilar controllers, can be used to generate high-level …
Mining assumptions for synthesis
Automatic synthesis of a reactive system from its formal specification is appealing but often
difficult due to the tedium of writing auxiliary specifications, especially on the environment. In …
difficult due to the tedium of writing auxiliary specifications, especially on the environment. In …
GR (1) synthesis for LTL specification patterns
Reactive synthesis is an automated procedure to obtain a correct-by-construction reactive
system from its temporal logic specification. Two of the main challenges in bringing reactive …
system from its temporal logic specification. Two of the main challenges in bringing reactive …
Counter-strategy guided refinement of GR (1) temporal logic specifications
The reactive synthesis problem is to find a finite-state controller that satisfies a given
temporal-logic specification regardless of how its environment behaves. Develo** a …
temporal-logic specification regardless of how its environment behaves. Develo** a …
Specification: The biggest bottleneck in formal methods and autonomy
KY Rozier - Verified Software. Theories, Tools, and Experiments …, 2016 - Springer
Advancement of AI-enhanced control in autonomous systems stands on the shoulders of
formal methods, which make possible the rigorous safety analysis autonomous systems …
formal methods, which make possible the rigorous safety analysis autonomous systems …