{"id":{"repo_id":"uiuc","oai_identifier":"oai:www.ideals.illinois.edu:2142/44374"},"canonical_url":"https://search.dev.ndltd.org/etd/uiuc/oai:www.ideals.illinois.edu:2142/44374","repository":{"repo_id":"uiuc","name":"University of Illinois - Urbana-Champaign","base_url":"https://www.ideals.illinois.edu/oai-pmh"},"display":{"title":"Verifiable COTS-based cyber-physical systems","abstract":"Cyber-physical systems (CPS) use networked control software to interact with and manipulate the physical world. Examples of cyber-physical systems include smart buildings, power distribution networks, and fleets of autonomous agriculture vehicles. These types of systems are increasingly of interest due to the significant potential benefit of automating and optimizing tasks in the real-world and at large scales. However, before wide-scale deployment becomes a reality, two challenges must be addressed: safety and cost. The contained research directly addresses these two challenges, in the context of cyber-physical systems. The second challenge of cyber-physical systems is their cost. Since cyber-physical systems interact with the physical world, these systems are often inherently real-time systems. In real-time systems, the correctness of a computation is not only a function of its result, but also depends on the timing at which the result is produced. For example, an inherently unstable airplane, like the F-16, needs a control system that can guarantee adjustments are always made dozens of times a second in order to guarantee aircraft stability. Most commercial off-the-shelf (COTS) computing systems, however, do not provide such real-time guarantees. Relying on custom-made components in order to guarantee timeliness properties, however, leads to systems with an exorbitant cost. For affordability, we must make use of low-cost COTS components. In the presented research, we address the primary problem with COTS components used in real-time systems: unpredictable interference, and therefore unpredictable timing, when accessing a shared memory resource. Methods are provided to mitigate both memory interference from external peripherals, as well as memory interference from other cores in a multi-core processor. Since cyber-physical systems interact with the physical world, the effects of bugs in the design or implementation are not necessarily quarantined in the cyber (software) part of the system. Software written with traditional development practices will almost certainly contain bugs or unintended interactions among components. In CPS, these bugs can result in uncontrolled and possibly disastrous physical-world interactions. The safety problem for CPS is addressed on two fronts. First, a technique based on selective command filtering is provided to give safety to the high-level CPS computation. This technique can guarantee distributed safety properties in the physical world, if assumptions are given about the low-level controllers. Second, a method for guaranteeing assumptions about the low-level controllers is presented. This method, based on the Simplex Architecture, allows safety invariants to be maintained in individual agents of the distributed CPS, despite the presence of bugs in their control software. Combined, the two approaches provide safety for entire CPS, without requiring complete formal verification of the system.","abstract_html":"Cyber-physical systems (CPS) use networked control software to interact with and manipulate the physical world. Examples of cyber-physical systems include smart buildings, power distribution networks, and fleets of autonomous agriculture vehicles. These types of systems are increasingly of interest due to the significant potential benefit of automating and optimizing tasks in the real-world and at large scales. However, before wide-scale deployment becomes a reality, two challenges must be addressed: safety and cost. The contained research directly addresses these two challenges, in the context of cyber-physical systems. The second challenge of cyber-physical systems is their cost. Since cyber-physical systems interact with the physical world, these systems are often inherently real-time systems. In real-time systems, the correctness of a computation is not only a function of its result, but also depends on the timing at which the result is produced. For example, an inherently unstable airplane, like the F-16, needs a control system that can guarantee adjustments are always made dozens of times a second in order to guarantee aircraft stability. Most commercial off-the-shelf (COTS) computing systems, however, do not provide such real-time guarantees. Relying on custom-made components in order to guarantee timeliness properties, however, leads to systems with an exorbitant cost. For affordability, we must make use of low-cost COTS components. In the presented research, we address the primary problem with COTS components used in real-time systems: unpredictable interference, and therefore unpredictable timing, when accessing a shared memory resource. Methods are provided to mitigate both memory interference from external peripherals, as well as memory interference from other cores in a multi-core processor. Since cyber-physical systems interact with the physical world, the effects of bugs in the design or implementation are not necessarily quarantined in the cyber (software) part of the system. Software written with traditional development practices will almost certainly contain bugs or unintended interactions among components. In CPS, these bugs can result in uncontrolled and possibly disastrous physical-world interactions. The safety problem for CPS is addressed on two fronts. First, a technique based on selective command filtering is provided to give safety to the high-level CPS computation. This technique can guarantee distributed safety properties in the physical world, if assumptions are given about the low-level controllers. Second, a method for guaranteeing assumptions about the low-level controllers is presented. This method, based on the Simplex Architecture, allows safety invariants to be maintained in individual agents of the distributed CPS, despite the presence of bugs in their control software. Combined, the two approaches provide safety for entire CPS, without requiring complete formal verification of the system.","abstract_has_math":false,"creators":["Bak, Stanley"],"institution":"University of Illinois at Urbana-Champaign","degree_name":"Ph.D.","degree_level":"Dissertation","degree_discipline":"Computer Science","degree_department":null,"school":null,"contributors":["Caccamo, Marco","Mitra, Sayan","Sha, Lui R.","Hill, James"],"advisors":[],"committee_chairs":[],"committee_members":[],"year":2013,"date_issued":"2013-05-24T22:09:23Z","date_published":"2013-05-24T22:09:23Z","updated_at":"2026-07-22T22:25:34Z","subjects":["real-time","cyber-physical system","verification","simplex","system-level simplex","architecture","safety","off-road vehicle","hybrid system","hybrid automaton","nonlinear","reachability","Commercial off-the-shelf (COTS)","real-time bridge","memory interference"],"languages":["en"],"rights":["Copyright 2013 Stanley Bak"],"rights_urls":[],"identifier_entries":[]},"links":{"outbound_url":"http://hdl.handle.net/2142/44374","outbound_label":"Handle","outbound_source":"dc:identifier"},"metadata_groups":[{"id":"people","label":"People","entries":[{"key":"dc:contributor","label":"Contributor","values":["Caccamo, Marco","Mitra, Sayan","Sha, Lui R.","Hill, James"]},{"key":"dc:creator","label":"Author","values":["Bak, Stanley"]}]},{"id":"academic_context","label":"Academic Context","entries":[{"key":"dc:date","label":"Dc Date","values":["2013-05-24T22:09:23Z","2013-05"]},{"key":"dc:type","label":"Dc Type","values":["text"]},{"key":"thesis:degree_discipline","label":"Discipline","values":["Computer Science"]},{"key":"thesis:degree_level","label":"Degree Level","values":["Dissertation"]},{"key":"thesis:degree_name","label":"Degree Name","values":["Ph.D."]},{"key":"thesis:institution_name","label":"Thesis Institution Name","values":["University of Illinois at Urbana-Champaign"]}]},{"id":"subjects_keywords","label":"Subjects and Keywords","entries":[{"key":"dc:subject","label":"Dc Subject","values":["real-time","cyber-physical system","verification","simplex","system-level simplex","architecture","safety","off-road vehicle","hybrid system","hybrid automaton","nonlinear","reachability","Commercial off-the-shelf (COTS)","real-time bridge","memory interference"]}]},{"id":"language_rights","label":"Language and Rights","entries":[{"key":"dc:language","label":"Dc Language","values":["en"]},{"key":"dc:rights","label":"Dc Rights","values":["Copyright 2013 Stanley Bak"]}]},{"id":"identifiers","label":"Identifiers","entries":[{"key":"dc:identifier","label":"Identifier","values":["http://hdl.handle.net/2142/44374"]}]},{"id":"additional","label":"Additional Metadata","entries":[{"key":"dc:description","label":"Description","values":["Cyber-physical systems (CPS) use networked control software to interact with and manipulate the physical world. Examples of cyber-physical systems include smart buildings, power distribution networks, and fleets of autonomous agriculture vehicles. These types of systems are increasingly of interest due to the significant potential benefit of automating and optimizing tasks in the real-world and at large scales. However, before wide-scale deployment becomes a reality, two challenges must be addressed: safety and cost. The contained research directly addresses these two challenges, in the context of cyber-physical systems. The second challenge of cyber-physical systems is their cost. Since cyber-physical systems interact with the physical world, these systems are often inherently real-time systems. In real-time systems, the correctness of a computation is not only a function of its result, but also depends on the timing at which the result is produced. For example, an inherently unstable airplane, like the F-16, needs a control system that can guarantee adjustments are always made dozens of times a second in order to guarantee aircraft stability. Most commercial off-the-shelf (COTS) computing systems, however, do not provide such real-time guarantees. Relying on custom-made components in order to guarantee timeliness properties, however, leads to systems with an exorbitant cost. For affordability, we must make use of low-cost COTS components. In the presented research, we address the primary problem with COTS components used in real-time systems: unpredictable interference, and therefore unpredictable timing, when accessing a shared memory resource. Methods are provided to mitigate both memory interference from external peripherals, as well as memory interference from other cores in a multi-core processor. Since cyber-physical systems interact with the physical world, the effects of bugs in the design or implementation are not necessarily quarantined in the cyber (software) part of the system. Software written with traditional development practices will almost certainly contain bugs or unintended interactions among components. In CPS, these bugs can result in uncontrolled and possibly disastrous physical-world interactions. The safety problem for CPS is addressed on two fronts. First, a technique based on selective command filtering is provided to give safety to the high-level CPS computation. This technique can guarantee distributed safety properties in the physical world, if assumptions are given about the low-level controllers. Second, a method for guaranteeing assumptions about the low-level controllers is presented. This method, based on the Simplex Architecture, allows safety invariants to be maintained in individual agents of the distributed CPS, despite the presence of bugs in their control software. Combined, the two approaches provide safety for entire CPS, without requiring complete formal verification of the system.","Item withdrawn by Mark Zulauf (zulauf@illinois.edu) on 2013-04-09T13:53:23Z Item was in collections: University of Illinois Theses & Dissertations (ID: 1) No. of bitstreams: 2 Bak_Stanley_Source.zip: 7084887 bytes, checksum: 5c91f6812475dfb7185c26329d41ff76 (MD5) Bak_Stanley.pdf: 3757175 bytes, checksum: d1da6a2c319f441dbd5103ad1754d049 (MD5)","Made available in DSpace on 2013-05-24T22:09:23Z (GMT). No. of bitstreams: 3 Stanley_Bak.pdf: 3757175 bytes, checksum: 3fca8d0a959b88df1efbc6b402b14dcf (MD5) Bak_Stanley_Source.zip: 4082824 bytes, checksum: 879d5d57b9c502e6b46a1ff29bbd01c6 (MD5) license.txt: 4058 bytes, checksum: 0587f1dce526464da2c06697f940f477 (MD5)"]},{"key":"dc:title","label":"Title","values":["Verifiable COTS-based cyber-physical systems"]}]}],"canonical_facts":{"dc:contributor":["Caccamo, Marco","Mitra, Sayan","Sha, Lui R.","Hill, James"],"dc:creator":["Bak, Stanley"],"dc:date":["2013-05-24T22:09:23Z","2013-05"],"dc:description":["Cyber-physical systems (CPS) use networked control software to interact with and manipulate the physical world. Examples of cyber-physical systems include smart buildings, power distribution networks, and fleets of autonomous agriculture vehicles. These types of systems are increasingly of interest due to the significant potential benefit of automating and optimizing tasks in the real-world and at large scales. However, before wide-scale deployment becomes a reality, two challenges must be addressed: safety and cost. The contained research directly addresses these two challenges, in the context of cyber-physical systems. The second challenge of cyber-physical systems is their cost. Since cyber-physical systems interact with the physical world, these systems are often inherently real-time systems. In real-time systems, the correctness of a computation is not only a function of its result, but also depends on the timing at which the result is produced. For example, an inherently unstable airplane, like the F-16, needs a control system that can guarantee adjustments are always made dozens of times a second in order to guarantee aircraft stability. Most commercial off-the-shelf (COTS) computing systems, however, do not provide such real-time guarantees. Relying on custom-made components in order to guarantee timeliness properties, however, leads to systems with an exorbitant cost. For affordability, we must make use of low-cost COTS components. In the presented research, we address the primary problem with COTS components used in real-time systems: unpredictable interference, and therefore unpredictable timing, when accessing a shared memory resource. Methods are provided to mitigate both memory interference from external peripherals, as well as memory interference from other cores in a multi-core processor. Since cyber-physical systems interact with the physical world, the effects of bugs in the design or implementation are not necessarily quarantined in the cyber (software) part of the system. Software written with traditional development practices will almost certainly contain bugs or unintended interactions among components. In CPS, these bugs can result in uncontrolled and possibly disastrous physical-world interactions. The safety problem for CPS is addressed on two fronts. First, a technique based on selective command filtering is provided to give safety to the high-level CPS computation. This technique can guarantee distributed safety properties in the physical world, if assumptions are given about the low-level controllers. Second, a method for guaranteeing assumptions about the low-level controllers is presented. This method, based on the Simplex Architecture, allows safety invariants to be maintained in individual agents of the distributed CPS, despite the presence of bugs in their control software. Combined, the two approaches provide safety for entire CPS, without requiring complete formal verification of the system.","Item withdrawn by Mark Zulauf (zulauf@illinois.edu) on 2013-04-09T13:53:23Z Item was in collections: University of Illinois Theses & Dissertations (ID: 1) No. of bitstreams: 2 Bak_Stanley_Source.zip: 7084887 bytes, checksum: 5c91f6812475dfb7185c26329d41ff76 (MD5) Bak_Stanley.pdf: 3757175 bytes, checksum: d1da6a2c319f441dbd5103ad1754d049 (MD5)","Made available in DSpace on 2013-05-24T22:09:23Z (GMT). No. of bitstreams: 3 Stanley_Bak.pdf: 3757175 bytes, checksum: 3fca8d0a959b88df1efbc6b402b14dcf (MD5) Bak_Stanley_Source.zip: 4082824 bytes, checksum: 879d5d57b9c502e6b46a1ff29bbd01c6 (MD5) license.txt: 4058 bytes, checksum: 0587f1dce526464da2c06697f940f477 (MD5)"],"dc:identifier":["http://hdl.handle.net/2142/44374"],"dc:language":["en"],"dc:rights":["Copyright 2013 Stanley Bak"],"dc:subject":["real-time","cyber-physical system","verification","simplex","system-level simplex","architecture","safety","off-road vehicle","hybrid system","hybrid automaton","nonlinear","reachability","Commercial off-the-shelf (COTS)","real-time bridge","memory interference"],"dc:title":["Verifiable COTS-based cyber-physical systems"],"dc:type":["text"],"thesis:degree_discipline":["Computer Science"],"thesis:degree_level":["Dissertation"],"thesis:degree_name":["Ph.D."],"thesis:institution_name":["University of Illinois at Urbana-Champaign"]},"updated_at":"2026-07-22T22:25:34Z"}