The Design of a Verifiable Operating System Kernel IDTR-79-15AuthorsT. LockhartPublishing dateJanuary 1979