Professional Documents
Culture Documents
Taxonomy:
*** Comment:
there must be separation of concerns between high-level
functionality and underlying assumptions
there should be a recursion of the above
fault prevention in OS
*** cool, always a pleasure to see good OSs, but
how effective?
Conclusions
underlying environment
separation of concerns;
trustworthiness(dependability)-aware assertions;
continuous (rather than discrete) notions of trust
www.navigators.di.fc.ul.pt/it
Pre = Pr (H | f)
f- any fault
Pro = Pr (A | H)
Alice
Paul
Bob
Alice
Luisa
Architectural hybridization:
C1
C1
C2
C2
C3
C3
C4
C4
C6
C6
Trusted (trustworthy)
components:
C5
C5
Architectural hybridization:
Trusted (trustworthy)
components:
C1
C1
B2
B1
C3
C3
B5
C4
C4
B3
C2
C2
C5
C5
C6 B4
C6