Lecture 1: intro

+------+    proof   +------+
| spec |  <-------> | code |
+------+            +------+

Today’s plan

Class structure

History

Overview

Workflow

Discussion: safe kernel extensions