已阅读5页,还剩36页未读, 继续免费阅读
版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领
文档简介
Chapter9,FormalSpecifications,FormalSpecification,Techniquesfortheunambiguousspecificationofsoftware,Objectives,ToexplainwhyformalspecificationtechniqueshelpdiscoverproblemsinsystemrequirementsTodescribetheuseofalgebraictechniquesforinterfacespecificationTodescribetheuseofmodel-basedtechniquesforbehaviouralspecification,Topicscovered,FormalspecificationinthesoftwareprocessInterfacespecificationBehaviouralspecification,Formalmethods,FormalspecificationispartofamoregeneralcollectionoftechniquesthatareknownasformalmethodsTheseareallbasedonmathematicalrepresentationandanalysisofsoftwareFormalmethodsincludeFormalspecificationSpecificationanalysisandproofTransformationaldevelopmentProgramverification,Acceptanceofformalmethods,FormalmethodshavenotbecomemainstreamsoftwaredevelopmenttechniquesaswasoncepredictedOthersoftwareengineeringtechniqueshavebeensuccessfulatincreasingsystemquality.HencetheneedforformalmethodshasbeenreducedMarketchangeshavemadetime-to-marketratherthansoftwarewithalowerrorcountthekeyfactor.FormalmethodsdonotreducetimetomarketThescopeofformalmethodsislimited.Theyarenotwell-suitedtospecifyingandanalysinguserinterfacesanduserinteractionFormalmethodsarehardtoscaleuptolargesystems,Useofformalmethods,FormalmethodshavelimitedpracticalapplicabilityTheirprincipalbenefitsareinreducingthenumberoferrorsinsystemssotheirmaiareaofapplicabilityiscriticalsystemsInthisarea,theuseofformalmethodsismostlikelytobecost-effective,Specificationinthesoftwareprocess,Specificationanddesignareinextricablyintermingled.Architecturaldesignisessentialtostructureaspecification.Formalspecificationsareexpressedinamathematicalnotationwithpreciselydefinedvocabulary,syntaxandsemantics.,Specificationanddesign,Specificationinthesoftwareprocess,Specificationtechniques,AlgebraicapproachThesystemisspecifiedintermsofitsoperationsandtheirrelationshipsModel-basedapproachThesystemisspecifiedintermsofastatemodelthatisconstructedusingmathematicalconstructssuchassetsandsequences.Operationsaredefinedbymodificationstothesystemsstate,Formalspecificationlanguages,Useofformalspecification,FormalspecificationinvolvesinvestingmoreeffortintheearlyphasesofsoftwaredevelopmentThisreducesrequirementserrorsasitforcesadetailedanalysisoftherequirementsIncompletenessandinconsistenciescanbediscoveredandresolvedHence,savingsasmadeastheamountofreworkduetorequirementsproblemsisreduced,Developmentcostswithformalspecification,Interfacespecification,Largesystemsaredecomposedintosubsystemswithwell-definedinterfacesbetweenthesesubsystemsSpecificationofsubsysteminterfacesallowsindependentdevelopmentofthedifferentsubsystemsInterfacesmaybedefinedasabstractdatatypesorobjectclassesThealgebraicapproachtoformalspecificationisparticularlywell-suitedtointerfacespecification,Sub-systeminterfaces,Thestructureofanalgebraicspecification,sort,imports,Inf,or,maldescr,iptionofthesor,tanditsoper,ations,Oper,ationsignaturessettingoutthenamesandthetypesof,theparameterstotheoperationsdefinedoverthesort,Axiomsdefiningtheoper,ationso,v,erthesor,t,(Gener,icP,ar,ameter),Specificationcomponents,IntroductionDefinesthesort(thetypename)anddeclaresotherspecificationsthatareusedDescriptionInformallydescribestheoperationsonthetypeSignatureDefinesthesyntaxoftheoperationsintheinterfaceandtheirparametersAxiomsDefinestheoperationsemanticsbydefiningaxiomswhichcharacterisebehaviour,Systematicalgebraicspecification,AlgebraicspecificationsofasystemmaybedevelopedinasystematicwaySpecificationstructuring.Specificationnaming.Operationselection.InformaloperationspecificationSyntaxdefinitionAxiomdefinition,Specificationoperations,Constructoroperations.OperationswhichcreateentitiesofthetypebeingspecifiedInspectionoperations.OperationswhichevaluateentitiesofthetypebeingspecifiedTospecifybehaviour,definetheinspectoroperationsforeachconstructoroperation,OperationsonalistADT,ConstructoroperationswhichevaluatetosortListCreate,ConsandTailInspectionoperationswhichtakesortlistasaparameterandreturnsomeothersortHeadandLength.TailcanbedefinedusingthesimplerconstructorsCreateandCons.NoneedtodefineHeadandLengthwithTail.,Listspecification,Head(Create)=Undefined,exception,(emptylist),Head(Cons(L,v)=,if,L,=Create,then,v,else,Head(L),Length(Create)=0,Length(Cons(L,v)=Length(L)+1,T,ail(Create)=Create,T,ail(Cons(L,v)=,if,L,=Create,then,Create,else,Cons(T,ail(L),v),sort,List,imports,INTEGER,Definesalistwhereelementsareaddedattheendandremo,v,ed,fromthefront.,Theoper,ationsareCreate,whichbr,ingsanemptylist,intoe,xistence,Cons,whichcreatesane,wlistwithanaddedmember,Length,whiche,v,aluatesthelistsiz,e,Head,whiche,v,aluatesthefront,elementofthelist,and,T,ail,whichcreatesalistb,yremo,vingtheheadfromits,inputlist.UndefinedrepresentsanundefinedvalueoftypeElem.,Create,List,Cons(List,Elem),List,Head(List),Elem,Length(List),Integer,T,ail(List),List,LIST,(Elem),Recursioninspecifications,OperationsareoftenspecifiedrecursivelyTail(Cons(L,v)=ifL=CreatethenCreateelseCons(Tail(L),v)Cons(5,7,9)=5,7,9Tail(5,7,9)=Tail(Cons(5,7,9)=Cons(Tail(5,7),9)=Cons(Tail(Cons(5,7),9)=Cons(Cons(Tail(5),7),9)=Cons(Cons(Tail(Cons(,5),7),9)=Cons(Cons(Create,7),9)=Cons(7,9)=7,9,Interfacespecificationincriticalsystems,ConsideranairtrafficcontrolsystemwhereaircraftflythroughmanagedsectorsofairspaceEachsectormayincludeanumberofaircraftbut,forsafetyreasons,thesemustbeseparatedInthisexample,asimpleverticalseparationof300misproposedThesystemshouldwarnthecontrollerifaircraftareinstructedtomovesothattheseparationruleisbreached,Asectorobject,CriticaloperationsonanobjectrepresentingacontrolledsectorareEnter.AddanaircrafttothecontrolledairspaceLeave.RemoveanaircraftfromthecontrolledairspaceMove.MoveanaircraftfromoneheighttoanotherLookup.Givenanaircraftidentifier,returnitscurrentheight,Primitiveoperations,ItissometimesnecessarytointroduceadditionaloperationstosimplifythespecificationTheotheroperationscanthenbedefinedusingthesemoreprimitiveoperationsPrimitiveoperationsCreate.BringaninstanceofasectorintoexistencePut.AddanaircraftwithoutsafetychecksIn-space.DetermineifagivenaircraftisinthesectorOccupied.Givenaheight,determineifthereisanaircraftwithin300mofthatheight,Sectorspecification,Specificationcommentary,UsethebasicconstructorsCreateandPuttospecifyotheroperationsDefineOccupiedandIn-spaceusingCreateandPutandusethemtomakechecksinotheroperationdefinitionsAlloperationsthatresultinchangestothesectormustcheckthatthesafetycriterionholds,Behaviouralspecification,AlgebraicspecificationcanbecumbersomewhentheobjectoperationsarenotindependentoftheobjectstateModel-basedspecificationexposesthesystemstateanddefinestheoperationsintermsofchangestothatstateTheZnotationisamaturetechniqueformodel-basedspecification.Itcombinesformalandinformaldescriptionandusesgraphicalhighlightingwhenpresentingspecifications,ThestructureofaZschema,Aninsulinpump,Modellingtheinsulinpump,Theschemamodelstheinsulinpumpasanumberofstatevariablesreading?dose,cumulative_doser0,r1,r2capacityalarm!pump!display1!,display2!Namesfollowedbya?areinputs,namesfollowedbya!areoutputs,Schemainvariant,EachZschemahasaninvariantpartwhichdefinesconditionsthatarealwaystrueFortheinsulinpumpschemaitisalwaystruethatThedosemustbelessthanorequaltothecapacityoftheinsulinreservoirNosingledosemaybemorethan5unitsofinsulinandthetotaldosedeliveredinatimeperiodmustnotexceed50unitsofinsulin.Thisisasafetyconstraint(seeChapters16and17)display1!showsthestatusoftheinsulinreservoir.,Insulinpumpschema,Thedosagecomputation,TheinsulinpumpcomputestheamountofinsulinrequiredbycomparingthecurrentreadingwithtwopreviousreadingsIfthesesuggestthatbloodglucoseisrisingtheninsulinisdeliveredInformationaboutthetotaldosedeliveredismaintainedtoallowthesafetycheckinvarianttobeappliedNotethatthisinvariantalwaysapplies-thereisnoneedtorepeatitinthedosagecomputation,DOSAGEschema,Outputschemas,TheoutputschemasmodelthesystemdisplaysandthealarmthatindicatessomepotentiallydangerousconditionTheoutputdisplaysshowthedosecomputedandawarningmessageThealarmisactivatedifbloodsugarisverylow-thisindicatesthattheusershouldeatsomethingtoincreasetheirbloodsugarlevel,Outputschemas,Schemaconsistency,Itisimportantt
温馨提示
- 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
- 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
- 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
- 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
- 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
- 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
- 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。
最新文档
- (重点)广东省岩土工程原位测试技术培训考核近年考试真题题库-含答案
- 2025年桂东县中小学教师招聘笔试参考题库及答案解析
- 2025年锡林郭勒盟苏尼特左旗教师招聘参考题库及答案解析
- 2025年虚拟数字人社交互动协议合同
- 2025年小学教师资格证考试(体育学科知识与教学能力)模拟卷后附答案
- 2025年中职(专业技能类)教师资格证考试专业知识高频集训卷(含解析)
- 2025年唐山市开平区教师招聘考试参考题库及答案解析
- 激活想象 创编趣味童话-以统编版小语文二年级上册语文园地七写话为例
- 2024-2025学年四川省甘孜藏族自治州石渠县高考数学五模试卷含解析
- 2025年松原市宁江区中小学教师招聘笔试参考题库及答案解析
- 大型储罐拆除专项施工方案
- 水利监理大纲
- 文库发布:GoodNotes教学课件
- 防爆电机知识培训总结课件
- 2025年「金属非金属矿山(露天矿山)安全管理人员」考试题附答案
- 毛衣纺织专业知识培训内容课件
- 精油沙龙活动方案
- 2025年江苏事业考试试题及答案
- SY-T 4130-2024 玻璃纤维增强热固性树脂现场缠绕立式储罐施工规范
- 壮腰健肾丸课件
- 红高粱小说深度解析
评论
0/150
提交评论