Skip to content

Minutes 20 Apr 2023

Paul Albertella edited this page Apr 20, 2023 · 1 revision

Host: Paul Albertella

Participants: Pete Brink, Daniel Krippner, Raffaele Giannessi

Agenda: Collectively draft an email to the wider ELISA community, describing the approach that we discussed in the previous sessions, so that:

  • we have captured what we are planning to do in OSEP
  • other ELISA WGs and participants have the opportunity to either get involved or provide some inputs / suggestions

Drafted text:


Our objective is to specify a system context and an example set of safety goals for a safety-related system involving the Linux kernel, in order to enable the safety analysis and specification of a set of safety responsibilities that we may assign to the kernel in that context (and possibly other contexts), at a useful level of detail.

  • By system context we mean either a concrete system design, or an abstraction representing a class of system designs.
  • By safety goals, we mean a set of system-level criteria that must be satisfied in order to avoid specific negative outcomes or consequences.
  • By safety responsibilities, we mean the behaviour or properties that are required to avoid violating the safety goals for the given system context. This may require safety mechanisms that operate when it is not possible to avoid violating a high level safety goal.

This is equivalent to defining the assumptions of use (AoU) for Linux (or any FOSS component or integration of components) as a Safety Element out of Context (SEooC).

Our purpose with this analysis is to describe and provide examples of a method for identifying and documenting the risks associated with using Linux in the given context, and how its existing features may be used to help to identify, control and/or mitigate these risks.

TODO: What artifacts do we expect to generate from this process?


Paul has added this to a GitHub pull request: https://github.com/elisa-tech/wg-osep/pull/17

We will continue to work in this next week, and then share it with the wider ELISA community (before the next TSC meeting) Daniel mentioned that the Zephyr community may be interested or able to provide input to this as well. Pete will discuss this with Kate.

Pete mentioned another community (SFIA) that may be relevant

Clone this wiki locally