{"title":"软件可以被赋予高结果的功能","authors":"B. Di Vito","doi":"10.1109/HASE.1999.809505","DOIUrl":null,"url":null,"abstract":"Some observers believe it is the nature of software to be inherently unreliable. Others are more hopeful, but doubt we can ever analyze software systems sufficiently well to justify dependability. Both of these viewpoints are overly pessimistic. Although building a high consequence system is not a casual undertaking, emerging assurance technologies promise improved dependability. The decision to deploy such systems must consider these assurances as well as weigh the expected benefits against the residual risk of trusting a digital control mechanism. Increased functionality can be a powerful motivation while simultaneously enhancing operational safety itself. Formal methods can give us the strong assurances we need to follow this path.","PeriodicalId":369187,"journal":{"name":"Proceedings 4th IEEE International Symposium on High-Assurance Systems Engineering","volume":"16 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"1900-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Software can be entrusted with high consequence functionality\",\"authors\":\"B. Di Vito\",\"doi\":\"10.1109/HASE.1999.809505\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Some observers believe it is the nature of software to be inherently unreliable. Others are more hopeful, but doubt we can ever analyze software systems sufficiently well to justify dependability. Both of these viewpoints are overly pessimistic. Although building a high consequence system is not a casual undertaking, emerging assurance technologies promise improved dependability. The decision to deploy such systems must consider these assurances as well as weigh the expected benefits against the residual risk of trusting a digital control mechanism. Increased functionality can be a powerful motivation while simultaneously enhancing operational safety itself. Formal methods can give us the strong assurances we need to follow this path.\",\"PeriodicalId\":369187,\"journal\":{\"name\":\"Proceedings 4th IEEE International Symposium on High-Assurance Systems Engineering\",\"volume\":\"16 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"1900-01-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Proceedings 4th IEEE International Symposium on High-Assurance Systems Engineering\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/HASE.1999.809505\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings 4th IEEE International Symposium on High-Assurance Systems Engineering","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/HASE.1999.809505","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Software can be entrusted with high consequence functionality
Some observers believe it is the nature of software to be inherently unreliable. Others are more hopeful, but doubt we can ever analyze software systems sufficiently well to justify dependability. Both of these viewpoints are overly pessimistic. Although building a high consequence system is not a casual undertaking, emerging assurance technologies promise improved dependability. The decision to deploy such systems must consider these assurances as well as weigh the expected benefits against the residual risk of trusting a digital control mechanism. Increased functionality can be a powerful motivation while simultaneously enhancing operational safety itself. Formal methods can give us the strong assurances we need to follow this path.