Metastability as a failed conditional discharge of rely-guarantee composition

· Murat Demirbas · Sept. 3, 2026, 1:48 a.m.
Summary
This blog post explores metastability in systems, specifically focusing on a retry storm scenario using TLA+ modeling. It analyzes how a system can fail due to conditions not being met and discusses solutions to prevent such issues by implementing stricter rules on retries and service order. The author emphasizes the importance of compositional specification to clarify contracts between system components and identify where guarantees may fail.
AUTHOR
Sponsored
Zulip logo Zulip
Organized team chat for people who take work seriously. Topic-based threading keeps conversations focused.
Try Zulip
Become a sponsor →
BLOG POST FEATURED ON

Add this plugin to your blog