Design and Evaluation of a Safe Driver Machine Interface

Driver Machine Interface (DMI) is a slave unit of the train onboard computer in the ERTMS automatic train control system. The SAFEDMI project aimed at the devel- opment of a DMI which fulfills the requirements of Safety Integrity Level 2 according to the CENELEC development standards. The main challenges were (i) the reduction of the hardware complexity and costs by implementing the safety mechanisms in software and (ii) provide a safe and secure wireless communication interface to support diagnostics and maintenance. This paper presents the requirements, the design of the architecture and the wireless communication protocol, and the evaluation of the applied solutions.

[1]  Stephen T. Kent,et al.  Security Architecture for the Internet Protocol , 1998, RFC.

[2]  Neeraj Suri,et al.  On-Line Diagnosis and Recovery: On the Choice and Impact of Tuning Parameters , 2007, IEEE Transactions on Dependable and Secure Computing.

[3]  I. Majzik,et al.  Tool-Supported Dependability Evaluation of Redundant Architectures in Computer-Based Control Systems , 2006 .

[4]  William H. Sanders,et al.  Stochastic Activity Networks: Formal Definitions and Concepts , 2002, European Educational Forum: School on Formal Methods and Performance Analysis.

[5]  Andrea Bondavalli,et al.  Modeling on-line tests in safety-critical systems , 2006 .

[6]  Martin Herrmann,et al.  Optimization of cyclic redundancy-check codes with 24 and 32 parity bits , 1993, IEEE Trans. Commun..

[7]  Kang G. Shin,et al.  Fault Injection Techniques and Tools , 1997, Computer.

[8]  William H. Sanders,et al.  Möbius: An Extensible Tool for Performance and Dependability Modeling , 2000, Computer Performance Evaluation / TOOLS.

[9]  Jacob A. Abraham,et al.  Test Generation for Microprocessors , 1980, IEEE Transactions on Computers.

[10]  Hugo Krawczyk,et al.  A Security Architecture for the Internet Protocol , 1999, IBM Syst. J..

[11]  Andrea Bondavalli,et al.  A Resilient SIL 2 Driver Machine Interface for Train Control Systems , 2008, 2008 Third International Conference on Dependability of Computer Systems DepCoS-RELCOMEX.