• Skip to content (access key 1)
  • Skip to search (access key 7)
FWF — Austrian Science Fund
  • Go to overview page Discover

    • Research Radar
      • Research Radar Archives 1974–1994
    • Discoveries
      • Emmanuelle Charpentier
      • Adrian Constantin
      • Monika Henzinger
      • Ferenc Krausz
      • Wolfgang Lutz
      • Walter Pohl
      • Christa Schleper
      • Elly Tanaka
      • Anton Zeilinger
    • Impact Stories
      • Verena Gassner
      • Wolfgang Lechner
      • Georg Winter
    • scilog Magazine
    • Austrian Science Awards
      • FWF Wittgenstein Awards
      • FWF ASTRA Awards
      • FWF START Awards
      • Award Ceremony
    • excellent=austria
      • Clusters of Excellence
      • Emerging Fields
    • In the Spotlight
      • 40 Years of Erwin Schrödinger Fellowships
      • Quantum Austria
    • Dialogs and Talks
      • think.beyond Summit
    • Knowledge Transfer Events
    • E-Book Library
  • Go to overview page Funding

    • Portfolio
      • excellent=austria
        • Clusters of Excellence
        • Emerging Fields
      • Projects
        • Principal Investigator Projects
        • Principal Investigator Projects International
        • Clinical Research
        • 1000 Ideas
        • Arts-Based Research
        • FWF Wittgenstein Award
      • Careers
        • ESPRIT
        • FWF ASTRA Awards
        • Erwin Schrödinger
        • doc.funds
        • doc.funds.connect
      • Collaborations
        • Specialized Research Groups
        • Special Research Areas
        • Research Groups
        • International – Multilateral Initiatives
        • #ConnectingMinds
      • Communication
        • Top Citizen Science
        • Science Communication
        • Book Publications
        • Digital Publications
        • Open-Access Block Grant
      • Subject-Specific Funding
        • AI Mission Austria
        • Belmont Forum
        • ERA-NET HERA
        • ERA-NET NORFACE
        • ERA-NET QuantERA
        • ERA-NET TRANSCAN
        • Alternative Methods to Animal Testing
        • European Partnership Biodiversa+
        • European Partnership BrainHealth
        • European Partnership ERA4Health
        • European Partnership ERDERA
        • European Partnership EUPAHW
        • European Partnership FutureFoodS
        • European Partnership OHAMR
        • European Partnership PerMed
        • European Partnership Water4All
        • Gottfried and Vera Weiss Award
        • netidee SCIENCE
        • Herzfelder Foundation Projects
        • Quantum Austria
        • Rückenwind Funding Bonus
        • WE&ME Award
        • Zero Emissions Award
      • International Collaborations
        • Belgium/Flanders
        • Germany
        • France
        • Italy/South Tyrol
        • Japan
        • Luxembourg
        • Poland
        • Switzerland
        • Slovenia
        • Taiwan
        • Tyrol–South Tyrol–Trentino
        • Czech Republic
        • Hungary
    • Step by Step
      • Find Funding
      • Submitting Your Application
      • International Peer Review
      • Funding Decisions
      • Carrying out Your Project
      • Closing Your Project
      • Further Information
        • Integrity and Ethics
        • Inclusion
        • Applying from Abroad
        • Personnel Costs
        • PROFI
        • Final Project Reports
        • Final Project Report Survey
    • FAQ
      • Project Phase PROFI
      • Project Phase Ad Personam
      • Expiring Programs
        • Elise Richter and Elise Richter PEEK
        • FWF START Awards
  • Go to overview page About Us

    • Mission Statement
    • FWF Video
    • Values
    • Facts and Figures
    • Annual Report
    • What We Do
      • Research Funding
        • Matching Funds Initiative
      • International Collaborations
      • Studies and Publications
      • Equal Opportunities and Diversity
        • Objectives and Principles
        • Measures
        • Creating Awareness of Bias in the Review Process
        • Terms and Definitions
        • Your Career in Cutting-Edge Research
      • Open Science
        • Open-Access Policy
          • Open-Access Policy for Peer-Reviewed Publications
          • Open-Access Policy for Peer-Reviewed Book Publications
          • Open-Access Policy for Research Data
        • Research Data Management
        • Citizen Science
        • Open Science Infrastructures
        • Open Science Funding
      • Evaluations and Quality Assurance
      • Academic Integrity
      • Science Communication
      • Philanthropy
      • Sustainability
    • History
    • Legal Basis
    • Organization
      • Executive Bodies
        • Executive Board
        • Supervisory Board
        • Assembly of Delegates
        • Scientific Board
        • Juries
      • FWF Office
    • Jobs at FWF
  • Go to overview page News

    • News
    • Press
      • Logos
    • Calendar
      • Post an Event
      • FWF Informational Events
    • Job Openings
      • Enter Job Opening
    • Newsletter
  • Discovering
    what
    matters.

    FWF-Newsletter Press-Newsletter Calendar-Newsletter Job-Newsletter scilog-Newsletter

    SOCIAL MEDIA

    • LinkedIn, external URL, opens in a new window
    • , external URL, opens in a new window
    • Facebook, external URL, opens in a new window
    • Instagram, external URL, opens in a new window
    • YouTube, external URL, opens in a new window

    SCILOG

    • Scilog — The science magazine of the Austrian Science Fund (FWF)
  • elane login, external URL, opens in a new window
  • Scilog external URL, opens in a new window
  • de Wechsle zu Deutsch

  

Proof-Aware Engineering of Cyber-Physical Systems

Proof-Aware Engineering of Cyber-Physical Systems

Stefan Mitsch (ORCID: 0000-0002-3194-9759)
  • Grant DOI 10.55776/P28187
  • Funding program Principal Investigator Projects
  • Status ended
  • Start August 1, 2015
  • End July 31, 2020
  • Funding amount € 237,132
  • Project website

Disciplines

Computer Sciences (80%); Mathematics (20%)

Keywords

    Cyber-Physical Systems, Verification, Component-Based Modeling, Model Refinement, Model Transformation

Abstract Final report

Motivation Cyber-physical systems (CPS) are operated in many safety-critical areas where lives are at stake, such as in road traffic and robotics. CPS are almost impossible to get right without proper analysis of their behavior, which emerges from combined discrete dynamics (the cyber part, e.g., setting the acceleration of a car) and the entailed continuous dynamics (the physical part, e.g., motion of a car). Thus, formal verification techniques to analyze CPS are of paramount importance to provide correctness guarantees for all of the infinitely many possible states of a CPS---not just for some, as in testing or simulation. Problem Formal verification rests on models of a CPS, which capture these infinitely many possible states. Current methods make a trade-off between full automation and modeling expressiveness: Reachability analysis methods focus on full automation and are therefore restricted to less expressive classes of CPS. Theorem proving methods, in contrast, rely on human guidance to make progress despite undecidability so that more realistic models can be verified. To make human guidance possible, however, the inherent complexities of CPS practically mandate incremental development, which requires full re-verification after every change with current theorem proving methods. At the same time, we want the correctness properties that are verified formally for a model also to hold for an actual implementation. For this, we have to resolve a gap between modeling concepts that are beneficial for verification (e.g., non-deterministic control) and those that are appropriate for implementation (e.g., deterministic control) in a way that preserves correctness. The vision of this project is to reduce verification effort despite incremental CPS engineering, and at the same time ensure implementation correctness despite conceptual gaps to modeling. Research Challenges To work towards achieving this vision, we will base on our prior experience with CPS to make the concepts, methods, techniques, and tools for incremental engineering of CPS proof-aware. Proof-aware Refinement: Develop provably correct refinement operations that change the structure of models (e.g., share duplicated control decision) or the behavior of models (e.g., introduce sensor uncertainty) and automatically derive proof obligations to retain correctness. Proof-aware Composition: Develop provably correct composition operators to connect verified CPS components (e.g., asynchronously communicate), automatically derive proof obligations to establish overall system correctness and adapt components to their new environment. Proof-aware Implementation: Develop provably correct transformation operators (e.g., non- deterministic sensor input into sensor access through a driver) that turn a CPS model into code automatically. Evaluation The expected benefits of the proposed research include reduced effort w.r.t. modeling, verification, and implementation of CPS, as well as increased implementation correctness. We will demonstrate the feasibility of the proposed approach with case studies in the area of road traffic and robotics, based on a proof-of-concept prototype.

Cyber-physical systems in road traffic, aircraft, robotics, medical devices, and many other safety-critical areas ask for highest safety standards. The project ProofAwareCPS developed modeling and theorem proving techniques to assemble cyber-physical systems from components with mathematical proof in a way that lifts proofs about components to full system-level proofs about the emerging behavior of the interacting components in a cyber-physical system. A unique characteristic of cyber-physical systems is their combined computer-based control decisions (e.g., how to control the brakes, throttle, and steering in a self-driving car) and the entailed physical motion (e.g., how the car itself moves in reaction to those decisions) in relation to other agents in the system's environment (e.g., pedestrians crossing streets). ProofAwareCPS targeted a comprehensive approach for such hybrid software-controlled physical behavior and the project results apply specifically not only to the control software, but also to the physical behavior. As fundamental pillars of the approach, ProofAwareCPS studied three topics: proof-aware composition, proof-aware refinement, and proof-aware implementation. Proof-aware composition exploits the structure of templates for describing components and their interaction to provide a proof technique to lift component proofs to system proofs; the proof technique can be (and is) implemented as a proof tactic in theorem provers for cyber-physical systems to automate compositional verification. Proof-aware refinement describes techniques to develop and adapt systems and proofs incrementally, which is not only useful for model and proof maintenance, but also at the heart of the generic composition proof developed in the project. Proof-aware implementation tackles translation from component models into executable control and monitoring software in a popular programming language for immediate practical applicability of verified models of cyber-physical systems. The project results facilitate distributed, model-based development of cyber-physical systems with safety guarantees. The developed modeling and proof techniques were demonstrated with modeling and verification case studies in the area of road traffic control and collision avoidance in robotics.

Research institution(s)
  • Universität Linz - 100%
Project participants
  • Wieland Schwinger, Universität Linz , associated research partner
International project participants
  • Bernhard Beckert, Karlsruher Institut für Technologie - Germany
  • André Platzer, Carnegie Mellon University - USA
  • Rance Cleaveland, University of Maryland - USA

Research Output

  • 73 Citations
  • 13 Publications
  • 1 Disseminations
Publications
  • 2019
    Title A Component-Based Hybrid Systems Verification and Implementation Tool in KeYmaera X (Tool Demonstration)
    DOI 10.1007/978-3-030-23703-5_5
    Type Book Chapter
    Author Müller A
    Publisher Springer Nature
    Pages 91-110
  • 2018
    Title Tactical contract composition for hybrid system component verification
    DOI 10.1007/s10009-018-0502-9
    Type Journal Article
    Author Müller A
    Journal International Journal on Software Tools for Technology Transfer
    Pages 615-643
    Link Publication
  • 2016
    Title A Component-Based Approach to Hybrid Systems Safety Verification
    DOI 10.1007/978-3-319-33693-0_28
    Type Book Chapter
    Author Müller A
    Publisher Springer Nature
    Pages 441-456
  • 2020
    Title Associative, proof-aware Composition of Cyber-physical Systems
    Type Other
    Author Andreas Müller
    Link Publication
  • 2020
    Title Towards CPS Verification Engineering
    Type Conference Proceeding Abstract
    Author Werner Retschitzegger
    Conference 22nd International Conference on Information Integration and Web-based Applications and Services (iiWAS)
  • 2017
    Title Change and Delay Contracts for Hybrid System Component Verification
    Type Other
    Author Andreas Müller
    Link Publication
  • 2017
    Title Component-based Deductive Verification of Cyber-Physical System
    Type Other
    Author Andreas Müller
    Link Publication
  • 2017
    Title A Benchmark for Component-based Hybrid Systems Safety Verification
    DOI 10.29007/9jm3
    Type Conference Proceeding Abstract
    Author Müller A
    Pages 65-54
    Link Publication
  • 2017
    Title Change and Delay Contracts for Hybrid System Component Verification
    DOI 10.1007/978-3-662-54494-5_8
    Type Book Chapter
    Author Müller A
    Publisher Springer Nature
    Pages 134-151
  • 2020
    Title Towards CPS Verification Engineering
    DOI 10.1145/3428757.3429146
    Type Conference Proceeding Abstract
    Author Müller A
    Pages 367-371
    Link Publication
  • 2015
    Title Logic-Based Modeling Approaches for Qualitative and Hybrid Reasoning in Dynamic Spatial Systems
    DOI 10.1145/2764901
    Type Journal Article
    Author Mitsch S
    Journal ACM Computing Surveys (CSUR)
    Pages 1-40
  • 2015
    Title Verified Traffic Networks: Component-Based Verification of Cyber-Physical Flow Systems
    DOI 10.1109/itsc.2015.128
    Type Conference Proceeding Abstract
    Author Muller A
    Pages 757-764
  • 2015
    Title Component-based CPS Verification: A Recipe for Reusability
    Type Conference Proceeding Abstract
    Author Andreas Müller
    Conference Doctoral Symposium of Formal Methods, co-located with the 20th International Symposium on Formal Methods (FM 2015)
    Pages 33-37
    Link Publication
Disseminations
  • 2016
    Title Lange Nacht der Forschung
    Type Participation in an open day or visit at my research institution

Discovering
what
matters.

Newsletter

FWF-Newsletter Press-Newsletter Calendar-Newsletter Job-Newsletter scilog-Newsletter

Contact

Austrian Science Fund (FWF)
Georg-Coch-Platz 2
(Entrance Wiesingerstraße 4)
1010 Vienna

office(at)fwf.ac.at
+43 1 505 67 40

General information

  • Job Openings
  • Jobs at FWF
  • Press
  • Philanthropy
  • scilog
  • FWF Office
  • Social Media Directory
  • LinkedIn, external URL, opens in a new window
  • , external URL, opens in a new window
  • Facebook, external URL, opens in a new window
  • Instagram, external URL, opens in a new window
  • YouTube, external URL, opens in a new window
  • Cookies
  • Whistleblowing/Complaints Management
  • Accessibility Statement
  • Data Protection
  • Acknowledgements
  • IFG-Form
  • Social Media Directory
  • © Österreichischer Wissenschaftsfonds FWF
© Österreichischer Wissenschaftsfonds FWF