CDC / RDC · All levels

Reconvergence Analysis: Theory Deep Dive

Theory Deep Dive for Reconvergence Analysis.

Foundational theory

Reconvergence Analysis anchors Reconvergence & Gray Coding. Signals synchronized along different paths may reconverge with phase skew, creating functionally illegal combinations despite structurally legal crossings. Senior signoff discussions tie every warning to mechanism class, operational mode, and risk containment evidence.

Core concepts explained

  • Signals synchronized along different paths may reconverge with phase skew, creating functionally illegal combinations despite structurally legal crossings.

  • Primary metric: reconvergence hazard count, false alarm ratio, silicon-escape risk index

  • Primary artifact: reconvergence report, fanout cone map, functional hazard classification

  • Owners: CDC owner, verification owner, design owner

  • Distinguish structural cleanliness from functional correctness.

  • Tie every waiver to silicon-risk framing and expiry.

Why this matters at signoff

At tapeout, unresolved CDC/RDC issues become latent reliability bugs. Reconvergence failures are logic-level hazards caused by asynchronous skew.

Mental model

diagram
signal A --sync path 1--                             logic merge -> hazard
signal B --sync path 2--/

Individually synchronized signals can still combine illegally.

Worked intuition

  1. Classify crossing intent and direction.

  2. Name clock/reset relationship assumptions.

  3. Inspect primary metric: reconvergence hazard count, false alarm ratio, silicon-escape risk index.

  4. Collect structural plus dynamic evidence.

  5. Differentiate real hazard from tool noise.

  6. Pick smallest safe fix and define regression matrix.

  7. Document signoff rationale or waiver ownership.

Common misconceptions

  • CDC clean report means protocol is proven.

  • All resets are equivalent if assertion works.

  • Gray code alone guarantees FIFO correctness.

  • Waivers are harmless schedule shortcuts.

Visual reinforcement

Reconvergence skew

diagram
signal A --sync path 1--                             logic merge -> hazard
signal B --sync path 2--/

Individually synchronized signals can still combine illegally.

Layer responsibilities

diagram
CDC/RDC OWNERSHIP LAYERS — Reconvergence Analysis

layer                 owns                            common failure
------------------    -----------------------------   -----------------------------
design intent         crossing architecture           wrong topology selected
protocol semantics    req/ack, fifo, ordering        liveness/deadlock bugs
reset behavior        assert/deassert sequencing      boot instability
analysis setup        tool rules + waivers            false confidence
signoff governance    risk acceptance + dashboard     stale critical waivers

CDC/RDC deep dive

Reconvergence failures are timing + logic coupling hazards.

Concept diagram

diagram
RECONVERGENCE

branch A sync --                 -> merge logic -> illegal combination window
branch B sync --/

Metric graph

diagram
HAZARD REPRODUCTION RATE

before fix: 1/2000 runs
after fix: 0/100000 runs

Reports and artifacts

  • reconvergence warnings

  • gray transition checks

  • hazard replay traces

  • multi-bit strategy map

Mini case study

Gray pointer was legal, but downstream merge decoded mixed-era values during burst stress.

Debug branches

  • Trace fanin cones

  • align event windows

  • verify decode assumptions

Senior review question

Ask: what evidence proves this risk is closed for silicon, not just tool-clean?

Key takeaways

  • State crossing class, assumptions, and owner with every issue.

  • Run structural and dynamic regressions after each fix.

Common pitfalls

  • Treating all warnings as equivalent risk.

  • Waiving issues without containment evidence.

  • Skipping reset and reconvergence stress after CDC fixes.

Theory reinforcement

Reconvergence failures are logic-level hazards caused by asynchronous skew.