Home > Research > Publications & Outputs > Mitigating timing error propagation in mixed-cr...

Associated organisational unit

Links

Text available via DOI:

View graph of relations

Mitigating timing error propagation in mixed-criticality automotive systems

Research output: Contribution in Book/Report/Proceedings - With ISBN/ISSNConference contribution/Paper

Published
Close
NullPointerException

Abstract

For mixed-criticality automotive systems, the functional safety standard ISO 26262 stipulates freedom from interference, i.e., errors should not propagate from low to high criticality tasks. To prevent the propagation of timing errors, the automotive software standard AUTOSAR provides monitor based timing protection, which detects and confines task timing errors. As current monitors are unaware of a criticality concept, the effective protection of a critical task requires to monitor all tasks that constitute a potential source of propagating errors, thereby causing overhead for worst-case execution time analysis, configuration and monitoring. Differing from the indirect protection of critical tasks facilitated by existing mechanisms, we propose a novel monitoring scheme that directly protects critical tasks from interference, by providing them with execution time guarantees. Overall, our approach provides efficient lowoverhead interference protection, while also adding transient timing error ride-through capabilities. © 2015 IEEE.