Originally posted by muncrief
View Post
The lead architects are among the authors of that paper, though it seems the guy calling most of the shots these days is Matthew Ahrens. As for verification, unless you want to try to develop a system of formal verification for C code (something the rust people are still working towards, with a much better language) the various unit and integration tests in the ztest test suite is about the best one can hope for. Yes, that testing includes both targeted and fuzz testing, as well as torture testing for extreme conditions. After the bug that surfaced in november was patched, tests based on the reproducer were added, and there's been discussion of how best to test for similar classes of bug in the future.
Comment