comp.lang.ada
 help / color / mirror / Atom feed
From: Tim Rowe <spamtrap@tgrowe.plus.net>
Subject: Re: OT?: AF 447 and avionics software
Date: Fri, 05 Jun 2009 21:35:02 +0100
Date: 2009-06-05T21:35:02+01:00	[thread overview]
Message-ID: <PK2dnfy6XJfmHLTXnZ2dnUVZ8umdnZ2d@brightview.co.uk> (raw)
In-Reply-To: <9ab9c181-bad4-4859-97f6-5ee70acf0ad9@c36g2000yqn.googlegroups.com>

Ludovic Brenta wrote:
> The most critical subsystems are usually certified to the DO-178B
> level A standard; this means that unit tests must cover 100% of the
> code and 100% of the decision paths; it's called MC/DC testing
> (Modified Condition/Decision Coverage).

I think the problem is confusion between testing the behaviour of the 
/code/ and the behaviour of the /system/. Even if we could achieve 
perfect confidence in the behaviour of the software, in the case of 
fly-by-wire it's still difficult to be sure that it's what you /want/ it 
to do for all situations the aircraft finds itself in. This requirements 
problem is far from unique, of course, but it's important to remember 
that no language and no amount of proof against requirements will help 
if we're unsure of the requirements!



  reply	other threads:[~2009-06-05 20:35 UTC|newest]

Thread overview: 21+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2009-06-04  9:29 OT?: AF 447 and avionics software Alex R. Mosteo
2009-06-04 11:02 ` Martin
2009-06-04 18:20   ` roderick.chapman
2009-06-06 17:34     ` Martin
2009-06-04 11:58 ` Egil Høvik
2009-06-04 13:25   ` Alex R. Mosteo
2009-06-04 19:02   ` Olivier Scalbert
2009-06-04 20:17     ` Matteo Bordin
2009-06-05  7:22 ` MRE
2009-06-06 10:38   ` sjw
2009-06-06 10:52     ` Dmitry A. Kazakov
2009-06-07 11:16       ` Florian Weimer
2009-06-07 13:19         ` Dmitry A. Kazakov
2009-06-10  6:11           ` MRE
2009-06-10  7:36             ` Dmitry A. Kazakov
2009-06-07  8:33     ` MRE
2009-06-05  9:22 ` Ludovic Brenta
2009-06-05 20:35   ` Tim Rowe [this message]
2009-06-09 21:06   ` Olivier Scalbert
2009-06-09 22:14     ` Martin
2009-06-10  6:12       ` MRE
replies disabled

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox