【24h】

Model-Driven Development of Safety Architectures

机译:型号驱动安全架构的开发

获取原文

摘要

We describe the use of model-driven development for safety assurance of a pioneering NASA flight operation involving a fleet of small unmanned aircraft systems (sUAS) flying beyond visual line of sight. The central idea is to develop a safety architecture that provides the basis for risk assessment and visualization within a safety case, the formal justification of acceptable safety required by the aviation regulatory authority. A safety architecture is composed from a collection of bow tie diagrams (BTDs), a practical approach to manage safety risk by linking the identified hazards to the appropriate mitigation measures. The safety justification for a given unmanned aircraft system (UAS) operation can have many related BTDs. In practice, however, each BTD is independently developed, which poses challenges with respect to incremental development, maintaining consistency across different safety artifacts when changes occur, and in extracting and presenting stakeholder specific information relevant for decision making. We show how a safety architecture reconciles the various BTDs of a system, and, collectively, provide an overarching picture of system safety, by considering them as views of a unified model. We also show how it enables model-driven development of BTDs, replete with validations, transformations, and a range of views. Our approach, which we have implemented in our toolset, AdvoCATE, is illustrated with a running example drawn from a real UAS safety case. The models and some of the innovations described here were instrumental in successfully obtaining regulatory flight approval.
机译:我们描述了模型驱动的开发,以便安全保证涉及一个涉及一段小型无人机系统(SUAS)飞越视觉视线的舰队。中央观点是开发一种安全架构,为安全案件中提供风险评估和可视化的基础,是航空监管机构所需的可接受安全的正式理由。安全架构由船首领带图(BTDS)集合,通过将所识别的危险与适当的缓解措施联系起来,管理安全风险的实用方法。给定无人驾驶飞机系统(UAS)操作的安全理由可以有许多相关的BTD。然而,在实践中,每个BTD都是独立开发的,这对增量开发构成了挑战,在发生变化时,在提取和提出与决策相关的利益相关者特定信息时,保持不同安全伪影的一致性。我们通过将它们视为统一模型的视图,我们展示了安全架构如何协调系统安全的各种BTD,以及集体提供系统安全的总体图像。我们还展示了它如何实现BTD的模型驱动,请利用验证,转换和一系列视图。我们在我们的工具集中实现的方法,admocate,通过从真实的UAS安全性案例中汲取的运行示例来说明。这里描述的模型和一些创新在成功获得监管飞行批准方面是有用的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号