Friedrich W. von Henke

Learn More
Well, someone can decide by themselves what they want to do and need to do but sometimes, that kind of person will need some anna a language for annotating ada programs reference manual 1st edition references. People with open minded will always try to seek for the new things and information from many sources. On the contrary, people with closed mind will(More)
Clock synchronization algorithms play a crucial role in a variety of fault-tolerant distributed architectures. Although those algorithms are similar in their basic structure, the particular designs diier considerably , for instance in the way clock adjustments are computed. This paper develops a formal generic theory of clock synchronization algorithms(More)
We describe our experience with formal, machinechecked verification of algorithms for critical ap-, placations, concentrating on a Byzantine faulttolerant algorithm for synchronizing the clocks in the replicated computers of a digit al flight control system. First, we explain the problems encountered in unsynchronized systems and the necessity, and(More)
This paper describes our experience using coordinated atomic (CA) actions as a system structuring tool to design and validate a sophisticated control system for a complex industrial application that has high reliability and safety requirements. Our study is based on the "Fault-Tolerant Production Cell", which represents a manufacturing process involving(More)
This work is motivated by experiences in the course of developing an ontology-based application within a real-world setting. We found out that current benchmarks are not well suited to provide helpful hints for users who seek for an appropriate reasoning system able to deal with expressive terminological descriptions, large volumes of assertional data, and(More)
This paper describes the mechanized formal verification we have performed on some of the crucial algorithms used in the Time-Triggered Architecture (TTA) for safetycritical distributed control. We outline the approach taken to formally analyse the clock synchronization algorithm and the group membership service of TTA, summarize our experience and describe(More)
We present a modular formal analysis of the communication properties of the Time-Triggered Protocol TTP/C based on the guardian approach. The guardian is an independent component that employs static knowledge about the system to transform arbitrary node failures into failure modes that are covered by the rather optimistic fault hypothesis of TTP/C. Through(More)