Synthesizing Update Schedules with Game-Based Extension of Bounded Model Checking

📅 2026-09-24
🏛️ Electronic Proceedings in Theoretical Computer Science
📈 Citations: 0
✨ Influential: 0
📄 PDF
🤖 AI Summary
This study addresses the conflict between software updates and operational availability in safety-critical systems by proposing a disruption-free, secure deployment method that eliminates the need for cold-standby hardware. The interaction between the system and the update process is modeled as a two-player timed game. By employing bounded model checking-based quantified SMT encoding techniques under linear update automata, this work synthesizes fixed global-time schedules that decouple update scheduling from autonomous system behavior. Experimental evaluation on an autonomous driving trajectory planner demonstrates that the synthesized scheduling strategy ensures safe update deployment across all admissible execution paths. Consequently, this approach effectively mitigates update risks arising from behavioral uncertainty in safety-critical systems.
📝 Abstract
Ensuring safe software updates in safety-critical systems without interrupting operation and without provisioning and activating cold spare hardware poses a fundamental challenge due to the conflict between system availability and update execution. In this paper, we present a bounded SMT encoding for synthesizing fixed global-time update schedules for timed-games with linear update automata and a fixed number of update transitions. We model the interaction between the system and the update as a two-player timed game. Our key contribution is the synthesis of global time points that define a fixed update schedule which guarantees safe and complete deployment of the update independently of the autonomous system behavior. To this end, we reduce the scheduling problem to a reachability and safety objective and encode it as a quantified SMT problem. We demonstrate it on an example system of a trajectory planner for autonomous driving, showing that the synthesized schedule ensures safe deployment under all admissible executions.
Problem

Research questions and friction points this paper is trying to address.

software update
safety-critical systems
update scheduling
timed games
system availability
Innovation

Methods, ideas, or system contributions that make the work stand out.

Bounded Model Checking
Timed Games
SMT Encoding
Update Schedules Synthesis
Safety-Critical Systems
🔎 Similar Papers
No similar papers found.
💼 Related Jobs
No related jobs found.
J
Janis Kröger
Carl von Ossietzky Universität Oldenburg, Germany
P
Paul Kröger
Carl von Ossietzky Universität Oldenburg, Germany
Martin Fränzle
Martin Fränzle
Professor of Computer Science, University of Oldenburg
Formal methods in computer sciencehybrid discrete-continuous systemscontrol