LiVe: Timely error detection in light-lockstep safety critical systems

LiVe: Timely error detection in light-lockstep safety critical systems
复制标题

LiVe:轻锁步安全关键系统中的及时错误检测

DOI:
10.1145/2593069.2593155
复制
发表时间:
2014
期刊:
2014 51st ACM/EDAC/IEEE Design Automation Conference (DAC)
影响因子:
--
通讯作者:
J. Abella
J. Abella
中科院分区:
--
文献类型:
--
作者:
Carles Hernández;J. Abella

文献摘要

被引文献

相似文献

安全关键型系统依赖于锁步执行等功能进行错误检测,以及重置和重新执行错误纠正。特别是,轻锁步是一个有吸引力的选择,因为它不需要重新设计内核,而是比较核外活动(即发送的数据/地址)。虽然这种方法足以保证系统的功能正确性,但根据安全标准(例如,ISO 26262),它不能提供任何定时保证,因为从错误发生到锁步检测到它所经过的时间可能非常大。在本文中,(i)我们分析了光锁步系统中误差的定时行为,表明很大一部分误差可能在很长一段时间内未被检测到。然后,(ii)我们把这个问题的背景下,对安全标准的认证。最后,(iii)我们提出了LiVe(轻度冗长),一种方法,以保证及时检测的错误,在低成本的背景下,轻锁步系统。
Safety-critical systems rely on features such as lockstep execution for error detection, and reset and reexecution for error correction. In particular, light lockstep is an attractive choice since it does not require redesigning cores but, instead, comparing off-core activities (i.e. data/addresses sent). While this approach suffices to guarantee functional correctness of the system, as needed for certification against safety standards (e.g., ISO26262), it fails to provide any timing guarantee as the time elapsed since the error occurs until lockstep detects it can be inordinately large. In this paper (i) we analyse the timing behaviour of errors in light lockstep systems, showing that a significant fraction of errors may remain undetected for long periods. Then, (ii) we put this problem in the context of certification against safety standards. Finally, (iii) we propose LiVe (Lightly Verbose), an approach to guarantee timely detection of errors at low cost in the context of light lockstep systems.