The goal of the DARPA Automated Rapid Certification Of Software (ARCOS) program is to "automate the evaluation of software assurance evidence to enable certifiers to determine rapidly that system risk is acceptable." As part of this program, the DesCert project focuses on the assurance-driven development of new software. The DesCert team consists of SRI International, Honeywell Research, and the University of Washington. We have adopted a formal, tool-based approach to the construction of software artifacts that are supported by rigorous evidence. The DesCert workflow integrates evidence generation into a design process that goes from requirements capture and analysis to the decomposition of the high-level software requirements into architecture properties and software components with assertional contracts, and on to software that can be analyzed both dynamically and statically. The generated evidence is organized by means of an assurance ontology and integrated into the RACK knowledge base.
翻译:DARPA软件自动快速认证(ARCOS)方案的目标是“自动化软件保证证据评估,使验证人能够迅速确定系统风险是可以接受的。” 作为该方案的一部分,DesCert项目侧重于新软件的保证驱动开发。DesCert团队由SRI International、 Honeywell Research 和华盛顿大学组成。我们采用了一种正规的、基于工具的方法来建造有严格证据支持的软件工艺品。DesCert工作流程将证据生成纳入一个设计过程,从需求采集和分析到将高级软件要求分解成建筑属性和软件组件,并附有主张合同,以及可以动态和静态分析的软件。生成的证据通过一种关于理论的保证和融入RACK知识库来组织。