- Claire Loiseaux, Susanne Graf, Joseph Sifakis, Ahmed Bouajjani, Saddek Bensalem
- Formal Methods in System Design
- 1995

We study property preserving transformations for reactive systems. The main idea is the use of simulationsparameterizedby Galois connections(;), relating the lattices of properties of two systems. We propose and study a notion of preservation of properties expressed by formulas of a logic, by a function mapping sets of states of a system S into sets of… (More)

- Axel Legay, Benoît Delahaye, Saddek Bensalem
- RV
- 2010

Quantitative properties of stochastic systems are usually specified in logics that allow one to compare the measure of executions satisfying certain temporal properties with thresholds. The model checking problem for stochastic systems with respect to such logics is typically solved by a numerical approach [31,8,35,22,21,5] that iteratively computes (or… (More)

This paper presents a dynamic program analysis algorithm that can detect deadlock potentials in a multi-threaded program by examining a single execution trace, obtained by running an instrumented version of the program. The algorithm is interesting because it can identify deadlock potentials even though no deadlocks occur in the examined execution, and… (More)

D-Finder tool implements a compositional method for the verification of component-based systems described in BIP language encompassing multi-party interaction. For deadlock detection, D-Finder applies proof strategies to eliminate potential deadlocks by computing increasingly stronger invariants.

- Ananda Basu, Saddek Bensalem, +4 authors Joseph Sifakis
- IEEE Software
- 2011

An autonomous robot case study illustrates the use of the behavior, interaction, priority (BIP) component framework as a unifying semantic model to ensure correctness of essential system design properties.

We present a compositional method for the verification of component-based systems described in a subset of the BIP language encompassing multi-party interaction without data transfer. The method is based on the use of two kinds of invariants. Component invariants which are over-approximations of components’ reachability sets. Interaction invariants which… (More)

- Saddek Bensalem, Yassine Lakhnech, Sam Owre
- CAV
- 1998

- Saddek Bensalem, Klaus Havelund
- Haifa Verification Conference
- 2005

- A. Ceballos, S. Bensalem, +9 authors M. van Winnendael
- 2011

The Goal-Oriented Autonomous Controller (GOAC) is the envisaged result of a multi-institutional effort within the on-going Autonomous Controller R&D activity funded by ESA ESTEC. The objective of this effort is to design, build and test a viable on-board controller to demonstrate key concepts in fully autonomous operations for ESA missions. This three-layer… (More)