#. Cas-d-'étude, Plate-forme expérimentale issue du projet CONNEXION, p.110

B. Abichou, Construction de la séquence globale Cette seconde itération de recherche d'atteignabilité ayant généré une trace incluant le niveau M 1 , il s'agit de la dernière itération possible (Figure 4.1). L'outil d'analyse de séquences permet alors la construction de la séquence globale des actions à effectuer Après conversion des identifiants en noms d'équipements, l'outil retourne la séquence suivante, exprimée dans un langage compréhensible par un opérateur humain, et permettant de conduire la plate forme CISPI de manière à pouvoir remplir la bâche 001BA : Bibliographie Contribution à la formalisation de bilans/états de santé multi-niveaux d'un système pour aider à la prise de décision en maintenance : agrégation d'indicateurs par l'intégrale de Choquet, 2013.

. Alengry and P. Alengry, Analyse du travail de pilotage d'une centrale nucleaire (i) : le systeme socio-technique, 1989.
URL : https://hal.archives-ouvertes.fr/inria-00075570

. Alengry and P. Alengry, Analyse du travail de pilotage d'une centrale nucleaire (ii) : les classes de situation, 1989.
URL : https://hal.archives-ouvertes.fr/inria-00075551

D. Alur, R. Alur, and D. L. Dill, A theory of timed automata. Theoretical computer science, pp.183-235, 1994.

J. Arzen, K. Arzen, and C. Johnsson, Object-oriented SFC and ISA-S88.01 recipes presented at the World Batch Forum, ISA Transactions, vol.35, issue.3, pp.237-244, 1996.
DOI : 10.1016/S0019-0578(96)00033-X

. Behrmann, Uppaal 4.0, Quantitative Evaluation of Systems Third International Conference on, pp.125-126, 2006.

. Behrmann, Efficient guiding towards cost-optimality in uppaal, 2001.
DOI : 10.1007/3-540-45319-9_13

URL : http://www.docs.uu.se/docs/rtmv/papers/bfhlpr-tacas01.ps.gz

. Bigot, Automatic Test Generation with AGATHA, Tools and Algorithms for the Construction and Analysis of Systems, pp.591-596, 2003.
DOI : 10.1007/3-540-36577-X_43

. Bouajjani, Abstract Regular Model Checking, Computer Aided Verification, pp.372-386, 2004.
DOI : 10.1007/978-3-540-27813-9_29

URL : https://hal.archives-ouvertes.fr/hal-00159512

. Bouaziz, Prise en compte de l?????tat r??el d'un syst??me complexe pour l???aide ?? la d??cision en phase d'exploitation, Journal Europ??en des Syst??mes Automatis??s, vol.49, issue.4-5, 2016.
DOI : 10.3166/jesa.49.403-535

. Bouaziz, Health checkup indicators-based safety criteria for operating sequences ranking of critical systems, IFAC-PapersOnLine, vol.48, issue.21, 2015.
DOI : 10.1016/j.ifacol.2015.09.626

URL : https://hal.archives-ouvertes.fr/hal-01132733

F. Bouffaron, Executable system co-specification based on models : Application to interactive conduct of critical industrial process. Theses, 2016.
URL : https://hal.archives-ouvertes.fr/tel-01263624

L. Cassandras, C. G. Cassandras, and S. Lafortune, Introduction to discrete event systems, 2008.

. Castelnuovo, An Incremental Petri Net-Based Approach to the Modeling of Production Sequences in Manufacturing Systems, IEEE Transactions on Automation Science and Engineering, vol.4, issue.3, pp.424-434, 2007.
DOI : 10.1109/TASE.2006.885124

. Cimatti, NuSMV 2: An OpenSource Tool for Symbolic Model Checking, Computer Aided Verification, pp.359-364, 2002.
DOI : 10.1007/3-540-45657-0_29

. Clarke, Bounded model checking using satisfiability solving, Formal Methods in System Design, vol.19, issue.1, pp.7-34, 2001.
DOI : 10.1023/A:1011276507260

E. Clarke, E. M. Clarke, and E. A. Emerson, Design and synthesis of synchronization skeletons using branching-time temporal logic, Logic of Programs, pp.52-71, 1981.

. Clarke, Model checking and abstraction, ACM Transactions on Programming Languages and Systems, vol.16, issue.5, pp.1512-1542, 1994.
DOI : 10.1145/186025.186051

. Clarke, Model checking, 1999.

. Clarke, . Wing, E. M. Clarke, and J. M. Wing, Formal methods: state of the art and future directions, ACM Computing Surveys, vol.28, issue.4, pp.626-643, 1996.
DOI : 10.1145/242223.242257

URL : https://hal.archives-ouvertes.fr/hal-00444076

. Cochard, Génération de séquences d'actions sûres par recherche d'atteignabilité, Génie logiciel, issue.112, pp.43-50, 2015.

. Cochard, Generation of safe plant operation sequences using reachability analysis, 2015 IEEE 20th Conference on Emerging Technologies & Factory Automation (ETFA), 2015.
DOI : 10.1109/ETFA.2015.7301458

URL : https://hal.archives-ouvertes.fr/hal-01198590

. Cochard, Generation of safe operation sequences using riterative refinements and abstractions of timed automata, 21th IEEE International Conference on Emerging Technologies and Factory Automation, 2016.

. Cochard, Safe operation sequences: a generation approach based on iterative refinements and abstractions of timed automata, 20th IFAC World Congress, 2017.
DOI : 10.1016/j.ifacol.2017.08.1335

URL : https://hal.archives-ouvertes.fr/hal-01568324

. Cochard, Aiding generation and verification of action sequence, 26th International Conference on Software & Systems Engineering and their Applications, ICSSEA'15, 2015.
URL : https://hal.archives-ouvertes.fr/hal-01157695

A. David, R. David, A. , and H. , Petri nets and grafcet : tools for modelling discrete event systems, 1992.

C. Devic, Connexion -contrôle commande nucléaire numérique pour l'export et la rénovation de la schématique progressive à la centrale numérique au service de la productivité des études, Génie Logiciel, pp.2-11, 2014.

C. Devic, L'innovation se construit par brique, L'avenir se construit aujourd'hui. Edition Multimedia, 2016.

D. Devic, C. Devic, and A. Dourgnon, L'innovation à portée de tous pour la performance de nos usines : défis et possibilités offertes par les technologies capacitantes, Génie Logiciel, pp.16-24, 2015.

C. Devic and P. Morilhat, Connexion contrôle commande nucléaire numérique pour l'export et la rénovation -coupler génie logiciel et ingénierie système : source d'innovations, Génie Logiciel, vol.104, pp.2-11, 2013.

D. Dobre, Contribution à la modélisation d'un système interactif d'aide à la conduite d'un prodédé industriel, 2010.

. Dobre, Improving Human-System Digital Interaction for Industrial System Control: Some Systems Engineering Issues, IFAC Proceedings Volumes, pp.290-295, 2010.
DOI : 10.3182/20100701-2-PT-4011.00050

URL : https://hal.archives-ouvertes.fr/hal-00519602

[. Silva, A survey of automated techniques for formal software verification. Computer-Aided Design of Integrated Circuits and Systems, IEEE Transactions on, issue.7, pp.271165-1178, 2008.

R. Eshuis, Reconciling statechart semantics, Science of Computer Programming, vol.74, issue.3, pp.65-99, 2009.
DOI : 10.1016/j.scico.2008.09.001

URL : https://doi.org/10.1016/j.scico.2008.09.001

. Faraut, Formal Approach to Multimodal Control Design: Application to Mode Switching, IEEE Transactions on Industrial Informatics, vol.5, issue.4, pp.443-453, 2009.
DOI : 10.1109/TII.2009.2028135

URL : https://hal.archives-ouvertes.fr/hal-00471885

. Foulkes, Computer-aided synthesis of complex pump and valve operations, Computers & Chemical Engineering, vol.12, issue.9-10, pp.1035-1044, 1988.
DOI : 10.1016/0098-1354(88)87025-X

P. Fusillo, R. Fusillo, and G. Powers, A synthesis method for chemical plant operating procedures, Computers & Chemical Engineering, vol.11, issue.4, pp.369-382, 1987.
DOI : 10.1016/0098-1354(87)85018-4

P. Fusillo, R. Fusillo, and G. Powers, Operating procedure synthesis using local models and distributed goals, Computers & Chemical Engineering, vol.12, issue.9-10, pp.1023-1034, 1988.
DOI : 10.1016/0098-1354(88)87024-8

D. Galara, Roadmap to master the complexity of process operation to help operators improve safety, productivity and reduce environmental impact, Annual Reviews in Control, vol.30, issue.2, pp.215-222, 2006.
DOI : 10.1016/j.arcontrol.2006.09.001

. Galara, . Hennebicq, D. Galara, and J. P. Hennebicq, Process control engineering trends, Annual Reviews in Control, vol.23, pp.1-11, 1999.
DOI : 10.1016/S1367-5788(99)90049-4

O. Goubali, Apport des techniques de programmation par démonstration dans une démarche de génération automatique d'applicatifs de contrôle-commande, 2017.

. Gouyon, Conduire à l'objectif, 2016.
URL : https://hal.archives-ouvertes.fr/hal-01366363

. Grabisch, Aggregation functions: Means, Information Sciences, vol.181, issue.1, pp.1-22, 2011.
DOI : 10.1016/j.ins.2010.08.043

URL : https://hal.archives-ouvertes.fr/hal-00539028

D. Harel, On the formal semantics of statecharts, IEEE Symposium on Logic in Computer Science, pp.54-64, 1987.

D. Harel, Statecharts: a visual formalism for complex systems, Science of Computer Programming, vol.8, issue.3, pp.231-274, 1987.
DOI : 10.1016/0167-6423(87)90035-9

D. Harel, Statecharts in the making : a personal account, Proceedings of the third ACM SIGPLAN conference on History of programming languages, pp.5-6, 2007.

K. Harel, D. Harel, and C. Kahana, On statecharts with overlapping, ACM Transactions on Software Engineering and Methodology, vol.1, issue.4, pp.399-421, 1992.
DOI : 10.1145/136586.136589

URL : http://www.wisdom.weizmann.ac.il/%7Edharel/SCANNED.PAPERS/StatechartsWithOverlapping.pdf

. Harel, STATEMATE: a working environment for the development of complex reactive systems, IEEE Transactions on Software Engineering, vol.16, issue.4, pp.403-414, 1990.
DOI : 10.1109/32.54292

T. A. Henzinger, The theory of hybrid automata, Verification of Digital and Hybrid Systems, pp.265-292, 2000.

G. J. Holzmann, The model checker SPIN, IEEE Transactions on Software Engineering, vol.23, issue.5, pp.279-295, 1997.
DOI : 10.1109/32.588521

. Jensen, Coloured Petri Nets and CPN Tools for modelling and validation of concurrent systems, International Journal on Software Tools for Technology Transfer, vol.2, issue.2, pp.3-4213, 2007.
DOI : 10.1007/978-1-4757-3143-9

R. Kumar, Supervisory synthesis techniques for discrete event dynamical systems, 1992.

R. P. Kurshan, Automata-theoretic verification of coordinating processes, 11th International Conference on Analysis and Optimization of Systems Discrete Event Systems, pp.16-28, 1994.
DOI : 10.1007/BFb0033528

T. Lemattre, Allocation de fonctions de commande de systèmes critiques par recherche d'atteignabilité dans un réseau d'automates communicants, 2013.

. Li, A two-tier methodology for synthesis of operating procedures, Computers & Chemical Engineering, vol.21, pp.899-903, 1997.
DOI : 10.1016/S0098-1354(97)87616-8

. Li, Systematic generation of cyclic operating procedures based on timed automata, Chemical Engineering Research and Design, vol.92, issue.1, pp.139-155, 2014.
DOI : 10.1016/j.cherd.2013.06.032

. Lieberman, End-User Development: An Emerging Paradigm, End user development, pp.1-8, 2006.
DOI : 10.1007/1-4020-5386-X_1

M. Lind, Representing goals and functions of complex systems?an introduction to multilevel flow modeling, 1990.

M. Lind, MODELING GOALS AND FUNCTIONS OF COMPLEX INDUSTRIAL PLANTS, Applied Artificial Intelligence, vol.28, issue.2, pp.259-283, 1994.
DOI : 10.1016/0004-3702(84)90039-0

M. Lind, An introduction to multilevel flow modeling. Nuclear safety and simulation, pp.22-32, 2011.

M. Lind, Reasoning about causes and consequences in Multilevel Flow Models, 2011.
DOI : 10.1201/b11433-334

M. Lüttgen, G. Lüttgen, and M. Mendler, The intuitionism behind Statecharts steps, ACM Transactions on Computational Logic, vol.3, issue.1, pp.1-41, 2002.
DOI : 10.1145/504077.504078

M. Machin, Synthèse de règles de sécurité pour des systèmes autonomes critiques, 2015.

. Maggiolo-schettini, A comparison of Statecharts step semantics, Theoretical Computer Science, vol.290, issue.1, pp.465-498, 2003.
DOI : 10.1016/S0304-3975(01)00381-4

J. Meinadier, Découvrir et comprendre l'ingénierie système-version expérimentale-version 3, 2009.

[. Kesraoui and S. , Intégration des techniques de vérification formelle dans une approche de conception des systèmes de contrôle-commande : Application aux architectures SCADA, 2017.

G. Morel, Contribution à l'automatisation et à l'ingénierie des systèmes intégrés de production. Habilitation à diriger des recherches, 1992.

T. Murata, Petri nets: Properties, analysis and applications, Proceedings of the IEEE, pp.541-580, 1989.
DOI : 10.1109/5.24143

. Niang, Formal Verification for Validation of PSEEL???s PLC Program, Proceedings of the 14th International Conference on Informatics in Control, Automation and Robotics, 2017.
DOI : 10.5220/0006418705670574

[. Hara, Computer-based procedure systems : Technical basis and human factors review guidance (technical report no. nureg/cr-6634) Nuclear Regulatory Commission, 2000.

. Pétin, Supervisory synthesis for product-driven automation and its application to a flexible assembly cell, Control Engineering Practice, vol.15, issue.5, pp.595-614, 2007.
DOI : 10.1016/j.conengprac.2006.10.013

. Pétin, Distributed intelligent actuation and measurement (IAM) system within an integrated shop-floor organisation, Computers in Industry, vol.37, issue.3, pp.197-211, 1998.
DOI : 10.1016/S0166-3615(98)00099-2

P. Piriou, Contribution to model Based Safety Analysis for dynamic repairable reconfigurable systems. Theses, 2015.
URL : https://hal.archives-ouvertes.fr/tel-01251556

A. Pnueli, The temporal semantics of concurrent programs, Theoretical Computer Science, vol.13, issue.1, pp.45-60, 1981.
DOI : 10.1016/0304-3975(81)90110-9

. Pnueli, . Shalev, A. Pnueli, and M. Shalev, What is in a step: On the semantics of statecharts, Theoretical aspects of computer Software, pp.244-264, 1991.
DOI : 10.1007/3-540-54415-1_49

R. G. Qiu, Virtual production line based WIP control for semiconductor manufacturing systems, International Journal of Production Economics, vol.95, issue.2, pp.165-178, 2005.
DOI : 10.1016/j.ijpe.2003.12.004

P. J. Ramadge and W. M. Wonham, Supervisory Control of a Class of Discrete Event Processes, SIAM Journal on Control and Optimization, vol.25, issue.1, pp.206-230, 1987.
DOI : 10.1137/0325013

N. Rapin, Artimon un outil de monitoring de propriétés de logique temporisée, Génie Logiciel, pp.26-31, 2014.

R. , H. Rene, D. Hassane, and A. , Discrete, continuous, and hybrid petri nets, 2005.

R. Rivas, J. R. Rivas, and D. F. Rudd, Synthesis of failure-safe operations, AIChE Journal, vol.59, issue.2, pp.320-325, 1974.
DOI : 10.1093/mind/LIX.236.433

L. Saleem, A. Saleem, and M. Lind, Reasoning about Control Situations in Power Systems, 2009 15th International Conference on Intelligent System Applications to Power Systems, pp.1-6, 2009.
DOI : 10.1109/ISAP.2009.5352845

. Viswanathan, Automating operating procedure synthesis for batch processes : Part i. knowledge representation and planning framework, Computers & chemical engineering, issue.11, pp.221673-1685, 1998.

. Viswanathan, Automating operating procedure synthesis for batch processes : Part ii. implementation and application, Computers & chemical engineering, issue.11, pp.221687-1698, 1998.
DOI : 10.1016/s0098-1354(98)00228-2

C. Vogel, Génie cognitif, 1988.

. Wang, Generation of batch operating procedures for multiple material-transfer tasks with Petri nets, Computers & Chemical Engineering, vol.29, issue.8, pp.291822-1836, 2005.
DOI : 10.1016/j.compchemeng.2005.03.001

C. Yeh and C. Chang, An automata-based approach to synthesize untimed operating procedures in batch chemical processes, Korean Journal of Chemical Engineering, vol.89, issue.5, pp.29583-594, 2012.
DOI : 10.1016/j.cherd.2011.05.007

. Zaytoon, . Riera, J. Zaytoon, and B. Riera, Synthesis and implementation of logic controllers ??? A review, Annual Reviews in Control, vol.43, 2017.
DOI : 10.1016/j.arcontrol.2017.03.004