1. Introduction
As the demands for large-scale mission-critical realtime (RT) distributed computing systems grow steadily, the urgency for developing a rigorous, broadly applicable method for determining the execution safety of such systems also grows. By execution safety we refer to the absence of the possibility of violating hard deadlines in an RT distributed computing system [Kim00a], [Kim00b], [Kim03]. The needs for new-generation RT safety-critical distributed embedded computing systems, such as tsunami alert systems and remote surgery systems, heighten the importance of the execution safety.