An Event-B model of the hybrid ERTMS/ETCS level 3 standard

Abstract : This paper presents an Event-B model of the ABZ2018 case study on the European Rail Trac Management System (ERTMS) standard. The case study focusses on the management of xed virtual sub-sections (VSS). We model the hybrid level 3 of the standard, which assumes that trains may be either equipped with an on-board train integrity monitoring system (TIMS) and that they report their position and integrity, ERTMS trains not tted with TIMS that report only their front position or non-ERTMS trains that do not report any information about their position. We take into account most of the main features of the case study. Our model is decomposed into four renements. All proof obligations have been discharged using the Rodin provers, except those related to the computation of the VSS state machine, which was found to be ambiguous (nondeterministic). Our model has been validated using ProB. The main safety property, which is that ERTMS trains do not collide, is proved
Document type :
Conference papers
Liste complète des métadonnées

https://hal.archives-ouvertes.fr/hal-01797810
Contributor : Régine Laleau <>
Submitted on : Tuesday, May 22, 2018 - 6:00:07 PM
Last modification on : Tuesday, January 22, 2019 - 2:32:06 PM

Identifiers

Citation

Amel Mammar, Marc Frappier, Steve Jeffrey Tueno Fotso, Régine Laleau. An Event-B model of the hybrid ERTMS/ETCS level 3 standard. Abstract State Machines, Alloy, B, TLA, VDM, and Z - 6th International Conference, ABZ 2018, Southampton, UK, June 5-8, 2018, Proceedings, Jun 2018, Southampton, United Kingdom. pp.353-366, ⟨10.1007/978-3-319-91271-4_24⟩. ⟨hal-01797810⟩

Share

Metrics

Record views

75