 
JACoW is a publisher in Geneva, Switzerland that publishes the proceedings of accelerator conferences held around the world by an international collaboration of editors.
@inproceedings{fernandezadiego:icalepcs2021-wepv042,
  author       = {B. Fernández Adiego and E. Blanco Viñuela and F. Havart and T. Ladzinski and I.D. Lopez-Miguel and J-C. Tournier},
  title        = {{Applying Model Checking to Highly-Configurable Safety Critical Software: The SPS-PPS PLC Program}},
  booktitle    = {Proc. ICALEPCS'21},
  pages        = {759--763},
  eid          = {WEPV042},
  language     = {english},
  keywords     = {PLC, controls, software, site, status},
  venue        = {Shanghai, China},
  series       = {International Conference on Accelerator and Large Experimental Physics Control Systems},
  number       = {18},
  publisher    = {JACoW Publishing, Geneva, Switzerland},
  month        = {03},
  year         = {2022},
  issn         = {2226-0358},
  isbn         = {978-3-95450-221-9},
  doi          = {10.18429/JACoW-ICALEPCS2021-WEPV042},
  url          = {https://jacow.org/icalepcs2021/papers/wepv042.pdf},
  abstract     = {{An important aspect of many particle accelerators is the constant evolution and frequent configuration changes that are needed to perform the experiments they are designed for. This often leads to the design of configurable software that can absorb these changes and perform the required control and protection actions. This design strategy minimizes the engineering and maintenance costs, but it makes the software verification activities more challenging since safety properties must be guaranteed for any of the possible configurations. Software model checking is a popular automated verification technique in many industries. This verification method explores all possible combinations of the system model to guarantee its compliance with certain properties or specification. This is a very appropriate technique for highly configurable software, since there is usually an enormous amount of combinations to be checked. This paper presents how PLCverif, a CERN model checking platform, has been applied to a highly configurable Programmable Logic Controller (PLC) program, the SPS Personnel Protection System (PPS). The benefits and challenges of this verification approach are also discussed.}},
}