Availability of CAUTRA, a Subset of the French Air Traffic Control System

The aim of our work is to provide a quantified means of helping in the definition of a new architecture for CAUTRA, a subset of the French Air Traffic Control system. In this paper, we define a set of alternative architectures, give some elements for constructing their dependability models, and compare their availability. Modeling is carried out following a modular and systematic approach, based on the derivation of block models at a high level of abstraction. In a second step, the blocks are replaced by their equivalent Generalized Stochastic Petri Nets to build up the detailed model of the architecture. The evaluations performed permit identification of a subset of architectures whose availability meets the dependability requirements and also identification of the best architecture among this subset.

[1]  Jean-Marc Garot,et al.  Evaluating Proposed Architectures for the FAA's Advanced Automation System , 1987, Computer.

[2]  Flaviu Cristian,et al.  Fault-tolerance in the advanced automation system , 1990, EW 4.

[3]  William H. Sanders,et al.  Reduced Base Model Construction Methods for Stochastic Activity Networks , 1991, IEEE J. Sel. Areas Commun..

[4]  Jean-Claude Laprie,et al.  Dependability Evaluation of Software Systems in Operation , 1984, IEEE Transactions on Software Engineering.

[5]  E. Amadio,et al.  Implementation of high availability mechanisms in the air traffic control SIR-S system , 1994, Proceedings of IEEE 24th International Symposium on Fault- Tolerant Computing.

[6]  Giovanni Chiola,et al.  GSPNs versus SPNs: what is the actual role of immediate transitions? , 1991, Proceedings of the Fourth International Workshop on Petri Nets and Performance Models PNPM91.

[7]  Michael R. Lyu,et al.  System-Level Reliability and Sensitivity Analyses for Three Fault-Tolerant System Architectures , 1995 .

[8]  Kishor S. Trivedi,et al.  An Aggregation Technique for the Transient Analysis of Stiff Markov Chains , 1986, IEEE Transactions on Computers.

[9]  Christian Landrault,et al.  Reliability and Availability Models for Maintained Systems Featuring Hardware Failures and Design Faults , 1978, IEEE Transactions on Computers.

[10]  D. McCue,et al.  Fault-Tolerance in the Advanced Automation System , 1991, OPSR.

[11]  Jean-Claude Laprie,et al.  X-Ware Reliability and Availability Modeling , 1992, IEEE Trans. Software Eng..

[12]  William H. Sanders,et al.  Performability of a token bus network under transient fault conditions , 1989, [1989] The Nineteenth International Symposium on Fault-Tolerant Computing. Digest of Papers.

[13]  William H. Sanders,et al.  Specification and construction of performability models , 1993 .

[14]  Algirdas Avizienis,et al.  On the Achievement of a Highly Dependable and Fault-Tolerant Air Traffic Control System , 1987, Computer.

[15]  George E. Stark Dependability Evaluation of Integrated Hardware/Software Systems , 1987, IEEE Transactions on Reliability.

[16]  Karama Kanoun,et al.  Modeling the dependability of CAUTRA, a subset of the French air traffic control system , 1996, Proceedings of Annual Symposium on Fault Tolerant Computing.

[17]  Valerio R. Hunt,et al.  Guest Editors' Introduction the Federal Aviation Administration's Advanced Automation Program , 1987, Computer.

[18]  Jean-Claude Laprie,et al.  The transformation approach to the modeling and evaluation of the reliability and availability growth , 1990 .

[19]  K. Kanoun,et al.  Dependability evaluation of an air traffic control computing system , 1998, Proceedings. IEEE International Computer Performance and Dependability Symposium. IPDS'98 (Cat. No.98TB100248).

[20]  Karama Kanoun,et al.  Dependability of fault-tolerant systems-explicit modeling of the interactions between hardware and software components , 1996, Proceedings of IEEE International Computer Performance and Dependability Symposium.

[21]  Jean Arlat,et al.  SURF-2: A program for dependability evaluation of complex hardware and software systems , 1993, FTCS-23 The Twenty-Third International Symposium on Fault-Tolerant Computing.

[22]  William H. Sanders,et al.  Performability evaluation of CSMA/CD and CSMA/DCR protocols under transient fault conditions , 1993 .

[23]  G. G. Stokes "J." , 1890, The New Yale Book of Quotations.

[24]  Kishor S. Trivedi,et al.  Dependability modeling of a heterogeneous VAX-cluster system using stochastic reward nets , 1992 .

[25]  Hany H. Ammar,et al.  Hierarchical models for systems reliability, maintainability, and availability , 1987 .

[26]  Tohru Kikuno,et al.  Comparison of hybrid modular redundant multiprocessor systems with respect to performabilities , 1993, FTCS-23 The Twenty-Third International Symposium on Fault-Tolerant Computing.

[27]  Ravishankar K. Iyer,et al.  Faults, symptoms, and software fault tolerance in the Tandem GUARDIAN90 operating system , 1993, FTCS-23 The Twenty-Third International Symposium on Fault-Tolerant Computing.

[28]  William H. Sanders,et al.  Reduced base model construction methods for stochastic activity networks , 1989, Proceedings of the Third International Workshop on Petri Nets and Performance Models, PNPM89.

[29]  Pierre I. Pignal An Analysis of Hardware and Software Availability Exemplified on the IBM 3725 Communication Controller , 1988, IBM J. Res. Dev..

[30]  William H. Sanders,et al.  Performability evaluation of CSMA/CD and CSMA/DCR protocols under transient fault conditions , 1991, [1991] Proceedings Tenth Symposium on Reliable Distributed Systems.