Đang chuẩn bị nút TẢI XUỐNG, xin hãy chờ
Tải xuống
Chapter 18b - Formal Methods Tools: JML. In this section, we introduce the features of JML as they apply to the formal specification and verification of an individual function, such as the Factorial function that we specified and verified by hand in the previous section. We also show how JML allows us to specify run-time exceptions, providing a more robust vehicle than the pure Hoare triples in a real computational setting where exceptions actually occur. | Programming Languages 2nd edition Tucker and Noonan Chapter 18 Program Correctness To treat programming scientifically, it must be possible to specify the required properties of programs precisely. Formality is certainly not an end in itself. The importance of formal specifications must ultimately rest in their utility - in whether or not they are used to improve the quality of software or to reduce the cost of producing and maintaining software. J. Horning Contents 18.1 Axiomatic Semantics 18.2 Formal Methods Tools: JML 18.2.1 JML Exception Handling 18.3 Correctness of Object-Oriented Programs 18.3.1 Design by Contract 18.3.2 The Class Invariant 18.3.3 Correctness of a Stack Application 18.3.4 Final Observations 18.4 Correctness of Functional Programs Background OO systems focuses on classes and objects Methods and messages are subordinate The state of a system is the set of all active objects and their values at any moment of run time. Formal specifications P and Q are therefore logical expressions about an object’s state. Tools for formal specifications: Specifications : Java Modeling Language (JML) Design: Unified Modeling Language (UML) and JML Coding: Java and JML Verification: Java and JML Specifications in OO Programs Where? Method level: pre- and post-conditions, loop invariants Class level: class invariant (class state) System level: intra-class invariants (system state) When (in the OO design process)? Specification and design phases: Write specifications for all classes and methods (UML/JML) Coding phase: Develop code from the specifications (UML/JML/Java) Verification phase: Prove that specifications and code are equivalent (JML/Java) What is JML? (www.jmlspecs.org) History Emerged in early 2000s out of ESC/Java2 Goals Infuse formal methods into the software process Make formal specification accessible to programmers Provide direct support for “design by contract” methodology Integrate with a real language (Java) JML is a language for writing . | Programming Languages 2nd edition Tucker and Noonan Chapter 18 Program Correctness To treat programming scientifically, it must be possible to specify the required properties of programs precisely. Formality is certainly not an end in itself. The importance of formal specifications must ultimately rest in their utility - in whether or not they are used to improve the quality of software or to reduce the cost of producing and maintaining software. J. Horning Contents 18.1 Axiomatic Semantics 18.2 Formal Methods Tools: JML 18.2.1 JML Exception Handling 18.3 Correctness of Object-Oriented Programs 18.3.1 Design by Contract 18.3.2 The Class Invariant 18.3.3 Correctness of a Stack Application 18.3.4 Final Observations 18.4 Correctness of Functional Programs Background OO systems focuses on classes and objects Methods and messages are subordinate The state of a system is the set of all active objects and their values at any moment of run time. Formal specifications P and Q are therefore .