SACEM: A fault tolerant system for train speed control

The authors give an overview of the SACEM system which controls the train movements on RER A in Paris, which transports daily one million passengers. The various aspects of the dependability of the system are described, including the techniques aimed at insuring safety (online error detection, software validation). Fault tolerance of the onboard-ground compound system is emphasized.

[1]  Dan Craigen,et al.  Observations on industrial practice using formal methods , 1993, Proceedings of 1993 15th International Conference on Software Engineering.

[2]  M. Jean Martin Vital processing by single coded unit , 1992 .

[3]  Matthew K. O. Lee,et al.  The B-Method , 1991, VDM Europe.

[4]  Dan Craigen,et al.  An International Survey of Industrial Applications of Formal Methods , 1992, Z User Workshop.

[5]  P. Chapront VITAL CODED PROCESSOR AND SAFETY RELATED SOFTWARE DESIGN , 1992 .

[6]  Babak Dehbonei,et al.  Error-free software development for critical systems using the B-Methodology , 1992, [1992] Proceedings Third International Symposium on Software Reliability Engineering.

[7]  Hans Toetenel,et al.  VDM'91 Formal Software Development Methods , 1991, Lecture Notes in Computer Science.

[8]  Babak Dehbonei,et al.  Formal specification in the development of industrial applications: Subway speed control system , 1992, FORTE.