Software that is used to control critical systems is frequently tasked to ensure the safe operation of the system under its control. The paper suggests the use of fault tree analysis with an external interaction model as part of the software requirements specification and analysis phase for the development of such systems. After a brief review of the model, the general fault tree analysis technique is described and templates for software fault tree construction directly from the model are shown.
展开▼