Jan Bredereke

Learn More
Mode confusions are a significant safety concern in safety-critical systems, for example in aircraft. A mode confusion occurs when the observed behaviour of a technical system is out of sync with the behaviour of the user's mental model of it. But the notion is described only informally in the literature. We present a rigorous way of modelling the user and(More)
One main purpose for the use of formal description techniques (FDTs) is formal reasoning and veriication. This requires a formal calculus and a suitable formal semantics of the FDT. In this paper, we discuss the basic veriication requirements for Estelle, and how they can be supported by existing calculi. This leads us to the redeenition of the standard(More)