Foster, Simon David orcid.org/0000-0002-9889-9514, Nemouchi, Yakoub, Gleirscher, Mario orcid.org/0000-0002-9445-6863 et al. (2 more authors) (2021) Integration of Formal Proof into Unified Assurance Cases with Isabelle/SACM. Formal Aspects of Computing. pp. 855-884. ISSN 1433-299X
Abstract
Assurance cases are often required to certify critical systems. The use of formal methods in assurance can improve automation, increase confidence, and overcome errant reasoning. However, assurance cases can never be fully formalised, as the use of formal methods is contingent on models that are validated by informal processes. Consequently, assurance techniques should support both formal and informal artifacts, with explicated inferential links between them. In this paper, we contribute a formal machine-checked interactive language, called Isabelle/SACM, supporting the computer-assisted construction of assurance cases compliant with the OMG Structured Assurance Case Meta-Model. The use of Isabelle/SACM guarantees well-formedness, consistency, and traceability of assurance cases, and allows a tight integration of formal and informal evidence of various provenance. In particular, Isabelle brings a diverse range of automated verification techniques that can provide evidence. To validate our approach, we present a substantial case study based on the Tokeneer secure entry system benchmark. We embed its functional specification into Isabelle, verify its security requirements, and form a modular security case in Isabelle/SACM that combines the heterogeneous artifacts. We thus show that Isabelle is a suitable platform for critical systems assurance.
Metadata
Item Type: | Article |
---|---|
Authors/Creators: |
|
Copyright, Publisher and Additional Information: | © The Author(s) 2021 |
Dates: |
|
Institution: | The University of York |
Academic Units: | The University of York > Faculty of Sciences (York) > Computer Science (York) |
Depositing User: | Pure (York) |
Date Deposited: | 27 Jan 2021 13:30 |
Last Modified: | 16 Oct 2024 17:18 |
Published Version: | https://doi.org/10.1007/s00165-021-00537-4 |
Status: | Published |
Refereed: | Yes |
Identification Number: | 10.1007/s00165-021-00537-4 |
Related URLs: | |
Open Archives Initiative ID (OAI ID): | oai:eprints.whiterose.ac.uk:170541 |
Download
Filename: Foster2021_Article_IntegrationOfFormalProofIntoUn.pdf
Description: Integration of formal proof into unified assurance cases with Isabelle/SACM