Investigação, Desenvolvimento e Inovação · Aceite pela Entidade

SafeIaC: Análise e Reparação Automática para Infraestrutura como Código

INESC ID - INSTITUTO DE ENGENHARIA DE SISTEMAS E COMPUTADORES, INVESTIGAÇÃO E DESENVOLVIMENTO EM LISBOA

Fundo aprovado
57 991,68 €
Fundo executado
0,00 €
Fundo pago
0,00 €

Esta ficha organiza os campos publicados no Portugal 2030. Mostra financiamento e execução administrativa; não avalia o mérito da candidatura nem confirma resultados no terreno.

LISBOA2030-FEDER-00866800

O QUE FOI APRESENTADO

Finalidade da operação

This project's primary goal is to enhance Infrastructure as Code (IaC) systems' reliability. More specifically, we propose the first polyglot solution for reliable analysis and automated repair for Infrastructure as Code that provides formal correctness guarantees. Given the multitude of IaC technologies, the scattered ecosystem and the fact that it is very common for software projects to use more than one IaC technology, polyglot solutions that support multiple languages and environments are extremely valuable. Also, given the catastrophic impact that configuration errors can cause (see Description for examples), the development of tools that support automated repair and that provide formal guarantees is necessary. However, existing polyglot solutions do not support automated repair and…

Ler a descrição publicada na íntegra

This project's primary goal is to enhance Infrastructure as Code (IaC) systems' reliability. More specifically, we propose the first polyglot solution for reliable analysis and automated repair for Infrastructure as Code that provides formal correctness guarantees. Given the multitude of IaC technologies, the scattered ecosystem and the fact that it is very common for software projects to use more than one IaC technology, polyglot solutions that support multiple languages and environments are extremely valuable. Also, given the catastrophic impact that configuration errors can cause (see Description for examples), the development of tools that support automated repair and that provide formal guarantees is necessary. However, existing polyglot solutions do not support automated repair and do not provide any formal guarantees (Saavedra et al. 2022, 2023; Santolucito et al. 2017). On the other hand, solutions that provide formal guarantees, or that are based on formal models, are focused on a single IaC technology (Lepiller et al. 2021). SafeIaC will encompass both the versatility of polyglot support across various languages and environments and the reliability of formal correctness guarantees, addressing the needs of the industry by providing a singular solution to the previously unmet challenge of polyglot automated repair and reliable IaC management. This project faces significant challenges due to the diversity of Infrastructure as Code (IaC) technologies and the complexity of creating general yet impactful intermediate models. To tackle this, the project will leverage recent advancements in polyglot smell detection: in particular, we will use our own tool GLITCH and its intermediate model as the starting point (Saavedra et al. 2022, 2023). Addressing the issue of assigning formal semantics to these models is critical, given the varied semantics across IaC technologies, which influences error detection capabilities. The expertise in formal verification will be pivotal here: in particular, the team’s expertise on intermediate representations for formal verification (Alam et al, 2021). Additionally, automating program repair poses difficulties due to differing semantics; this will be approached by integrating insights from language parametric transformations (Koppel et al, 2018) and leveraging polyglot detection techniques. Given these challenges, our team is uniquely positioned to push the boundaries of the current state of the art and make a significant impact. In summary, our objectives are to: - Develop a polyglot analysis and repair framework for IaC capable of automatically detecting and repairing challenging problems that can have a high impact in practice, such as incorrect ordering constraints (Sotiropoulos et al., 2020) and configuration drifts (Weiss et al., 2017) . - Provide formal correctness guarantees about the results and repairs produced. - Ensure that the framework can be seamlessly incorporated into the current development and deployment pipelines. - Conduct empirical research on IaC practices with the goal of uncovering insights into the needs and challenges faced by the community.

PROGRAMA E OBJETIVOS

Como a operação está enquadrada

Programa
Programa Regional de Lisboa
Fundo
Fundo Europeu de Desenvolvimento Regional
Objetivo estratégico
+ Inteligente
Objetivo específico
Reforçar a investigação, inovação e adoção de tecnologias avançadas.
Área temática
Investigação, Desenvolvimento e Inovação
Atividade económica
Outra investigação e desenvolvimento das ciências físicas e naturais
Modalidade
Subvenção
Taxa de cofinanciamento
40%

ONDE

Distribuição territorial publicada

LisboaÁrea Metropolitana de Lisboa · Área Metropolitana de Lisboa
100% da localização

Localização observada no ficheiro de 30 de junho de 2026.

QUANDO

Calendário publicado

Início previsto
1 de julho de 2025
Início efetivo
Não indicada
Conclusão prevista
29 de junho de 2028
Conclusão efetiva
Não indicada

PROVENIÊNCIA

Fonte oficial e datas de corte

Operação e valores: 30 de abril de 2026. Localização: 30 de junho de 2026.

Consultar o portal oficial Portugal 2030 ↗Capturas validadas por SHA-256; última observação em 15 de agosto de 2026.
SafeIaC: Análise e Reparação Automática para Infraestrutura como Código | Impacto Público