Abstract
In this paper we describe the on-going specification and development of Ansald’s Radio Block Center (RBC), a component of the next-generation European Rail Traffic Management System (ERTMS). The RBC will be responsible of managing the movement of trains equipped with radio communication. Its development process is critical: the rBC is a large-scale and complex system, it must provide several novel services at different levels of functionality, it must guarantee interoperability according to European standards, and, last but not least, a high level of safety. We have addressed these issues by devising a development based on formal specifications. ERTMS scenarios have been formalized in order to provide a better understanding of the interoperability requirements. The architecture of the RBC has been formally specified such that the system can be incrementally built as an overlay system (compatible with the existing train detection and interlocking systems) and modularly expanded to control different kinds of trains. The formal specifications of the behaviour of each RBC module have been structured hierarchically: they provide an easy-to-understand documentation for customers and developers; moreover, they can be simulated and validated automatically at the early stage of the development process, thus providing a high level of confidence in their safety in a cost-effective way.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Preview
Unable to display preview. Download preview PDF.
References
A. Chiappini, A. Cimatti, F. Giunchiglia, G. Rotondo, R. Sebastiani, P. Traverso, and A. Villafiorita. Formal Specification of the Radio Block Centre (RBC): First Part. RBC I: Ansaldo-IRST Project Report, December 1998.
EEIG-ERTMS Users Group, 25 Avenue De Beaulieu 1160 Brussels, Belgium. Scenarios.
EEIG-ERTMS Users Group, 25 Avenue De Beaulieu 1160 Brussels, Belgium. System Requirements Specification.
David Harel. Statecharts: A Visual Formalism for Complex Systems. Science of Computer Programming, 8(3):231–274, June 1987.
ITU-T. CCITT specification and description language (SDL), March 1993. ITU-T Recommendation Z.100.
ITU-T. Message Sequence Chart (MSC), October 1996. ITU-T Recommendation Z.120.
VERILOG. ObjectGeode Documentation. Available at http://www.verilogusa.com.
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 1999 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Chiappini, A. et al. (1999). Formal Specification and Development of a Safety-Critical Train Management System. In: Felici, M., Kanoun, K. (eds) Computer Safety, Reliability and Security. SAFECOMP 1999. Lecture Notes in Computer Science, vol 1698. Springer, Berlin, Heidelberg. https://doi.org/10.1007/3-540-48249-0_35
Download citation
DOI: https://doi.org/10.1007/3-540-48249-0_35
Published:
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-540-66488-8
Online ISBN: 978-3-540-48249-9
eBook Packages: Springer Book Archive