Академический Документы
Профессиональный Документы
Культура Документы
EN ISO 13849-1 Applicable to safety-related parts of control systems and for all types of machines, EN 61508 Functional safety of electrical/electronic/programmable electronic safety-related systems
EN 61511
regardless of the technology and power used electric, pneumatic, hydraulic, mechanic.
Functional safety safety instrumented systems for the process industry sector.
1 Risk assessment Determining the required Performance Level (PLr) Determining the required Safety Integrity Level (SILr)
W1 W2 W3 S Consequence
Low risk S1 Minor injuries to a person
Evaluation of the application
2 Designated architectures Specifications of categories HFT Defining the Hardware Failure Tolerance
Category B/Category 1 Category 3
Input Monitoring HFT 0 HFT 1 HFT 2
Evaluation of safety measures
Input Output
Input Logic Output Input Logic Output
Output
signal
signal signal
signal
Test signal
Monitoring
Input
Input Logic Output Output
signal
Category 2 signal
3 CCF Common Cause Failure/DC Determining Diagnostics Coverage SFF Defining the Safe Failure Fraction
ëDD + ëS High Demand Mode Low Demand Mode
SFF = ________
ëD + ëS
Measures against CCF Points Start Component DC SFF 1 FME(D)A FME(D)A
ë (failure rates ) FME(D)A (Failure Modes, Effects and SFF (Safe Failure Fraction)
ëS: Failure rate for safe failures ëSU: Failure rate for safe, undetected failures Diagnostics Analysis) Proportion of all safe and detected
ëD: Failure rate for dangerous failures ëDD: Failure rate for dangerous, detected failures Methods of analysis for quantitative failures based on the total amount
ëSD: Failure rate for safe, detected failures ëDU: Failure rate for dangerous, undetected failures determination of types of failure and failure rates of failures
4 MTTFd Definition of the Mean Time To Failure PFH/PFD Determination of the probability of failure
MTBF = MTTF + MTTR
Input Input signal Logic Control signal Output Control signal Drive Formula for determining Input Input signal Logic Control signal Output Control signal Drive Input Input signal Logic Control signal Output Control signal Drive
B10d for MTTF ,, MTTR
MTTF = _______ the MTTFd value for
d > MTBF = MTTF
Characteristic service life values B10d B10d 0,1 . nop a mechanical element in a Characteristic service life values B10d B10d Characteristic service life values B10d B10d
of the individual components channel of the individual components of the individual components
(from the data sheets) Application data (from the data sheets) Application data (from the data sheets) Application data
dop . hop . 3600 s/h Mean number of annual
MTTFd MTTFd MTTFd MTTFd nop = _________________ actuations nop for the MTBF MTBF MTTFd MTTFd MTBF MTBF MTTFd MTTFd
tcycle mechanical element
Example layout of safety-related parts of a control system Typical distribution of the PFH Typical distribution of the PFD
between the sub-systems of a safety function in single safety loops between the sub-systems of a safety function in single safety loops
Input Logic Output Drive Sensor 35% Logic 15% Actuator 50% Sensor 35% Logic 15% Actuator 50%
Defined by manufacturer To be determined by the system operator Defined by manufacturer To be determined by the system operator Defined by manufacturer To be determined by the system operator
One risk of failure HFT 1 HFT 1 HFT 1 Once every 10,000 years
4 109 PFH . 108 HFT 2 HFT 2 105 PFD . 104
every 11,574.1 yeras HFT 2 HFT 2 HFT 2
[per hour]
DC . 60% DC . 60% 60% DC 90% DC 60% DC 90% DC 99% DC
Device type A
none none . 90% . 99% . 90% . 99%
Evaluation MTTFd low medium low medium high Device for which the failure behaviour of all components and the
failure characteristics are sufficiently determined
Low 3 years MTTFd . 10 years
Kat B Kat 1 Kat 2 Kat 3 Kat 4
Device type B
CCF not relevant CCF 65 %
High 30 years MTTFd . 100 Jahre Device for which the failure behaviour of at least one component
and the behaviour in case of a failure are not sufficiently determined.