Example: barber

Introduction to Functional Safety

Elektrobit(EB) 2018 Introduction to Functional SafetyHurley Davis Director of Engineering, , ElektrobitNovember 8, 2018 Elektrobit(EB) 2018 Elektrobit(EB) 2018 Introduction to Functional SafetyWhat is Functional Safety ?ISO 26262 Definitions Elektrobit(EB) 2018 Absence of unreasonable risk Combination of Probability and SeverityFunctional SafetyAbsence of unreasonable risk due to hazards caused by malfunctioning behavior of E/E systemsSystem of electrical and electronic components including softwareSafetyRiskE/E System Elektrobit(EB) 2018 Introduction to Functional Safety Elektrobit(EB) 2018 ISO 26262 Functional Safety StandardIntroduced in 2011 Second addition expected late 2018 AutomotivesafetylifecycleAutomotive risk-based approach Requirements for validation and confirmation measures Elektrobit(EB) 2018 Introduction to Functional SafetyFunctional Safety Concept2)

(of potential harm) E3 - Medium probability Exposure (of situation) C3 - Difficult to control or uncontrollable Controllability (of hazardous event) C ASIL Determination EXAMPLE: Function definition Hazard identification Situation analysis Hazardous event identification Hazard classification Derivation of safety goals Path Planning

Tags:

  Introduction, Safety, Functional, Harm, Introduction to functional safety

Information

Domain:

Source:

Link to this page:

Please notify us if you found a problem with this document:

Other abuse

Transcription of Introduction to Functional Safety

1 Elektrobit(EB) 2018 Introduction to Functional SafetyHurley Davis Director of Engineering, , ElektrobitNovember 8, 2018 Elektrobit(EB) 2018 Elektrobit(EB) 2018 Introduction to Functional SafetyWhat is Functional Safety ?ISO 26262 Definitions Elektrobit(EB) 2018 Absence of unreasonable risk Combination of Probability and SeverityFunctional SafetyAbsence of unreasonable risk due to hazards caused by malfunctioning behavior of E/E systemsSystem of electrical and electronic components including softwareSafetyRiskE/E System Elektrobit(EB) 2018 Introduction to Functional Safety Elektrobit(EB) 2018 ISO 26262 Functional Safety StandardIntroduced in 2011 Second addition expected late 2018 AutomotivesafetylifecycleAutomotive risk-based approach Requirements for validation and confirmation measures Elektrobit(EB) 2018 Introduction to Functional SafetyFunctional Safety Concept2)

2 Management of Functional SafetySafety Management during Item Development3) Concept Phase8) Supporting Processes7) Production and Operation5) Hardware DevelopmentSystem Dev. InitiationSystem Requirements4) System DevelopmentObservationServiceProductionI tem DefinitionStart Safety LifecycleSystem DesignSafety Management after SOPO verall Safety ManagementReleaseItem Integration, TestInitiationInitiationHW DesigneHW Integration and TestingHW Failure RateHazard & Risk AnalysisValidation & Safety AssessmentSW Safety RequirementsSW DesignSW Integration and TestingSW Unit TestingSW Unit Design & ImplementationVerification of SW Safety Requirements9) ASIL-Oriented and Safety -Oriented AnalysisDistributed DevelopmentMgmt.

3 Of Safety RequirementsConfiguration ManagementRequirement DecompositionChange ManagementVerificationCoexistence of ElementsQualification of SW of HW in Use ArgumentationAnalysis of dependent FailuresDocumentationQualification of SW ToolsSafety AnalysisHSIHW Architectural MetricsHW Safety Requirements1) Vocabulary6) Software Development10) Guide-lineISO 26262 Consists of Ten Parts Elektrobit(EB) 2018 ISO 26262 has 10 parts 500 pages 43 Chapters 600 Requirements 100 Work Products 180 Methods Safety Lifecycle Elektrobit(EB) 2018 Introduction to Functional SafetyAutomotive Safety Integrity Level (ASIL)ISO 26262:2011, Part 3 Section : Hazard Analysis and Risk Assessment (HARA) Elektrobit(EB) 2018 Function definitionHazard identificationSituation analysis Hazardous event identificationHazard classificationDerivation of Safety goalsRisk potentialQMABCD Elektrobit(EB) 2018 Introduction to Functional SafetyStep 1 -Define the function to be analyzedExample.

4 Adaptive Cruise Control (ACC) with emergency brakingFunction definitionHazard identificationSituation analysis Hazardous event identificationHazard classificationDerivation of Safety goals Elektrobit(EB) 2018 HARA Workflow Safety and Error ManagementSituative BehaviorArbitrationHD PositioningObject FusionGrid FusionRoad & Lane FusionVehicle DatabaseFunction Specific ViewsTrajectory ControlLongitudinal ControlLateral ControlMotionManagementHMI ManagementTrajectory ControlLongitudinal ControlLateral ControlMotionManagementHMI ManagementVehicle Abstraction -SensorsBehaviorVehicle Abstraction -ActuatorsSensor DATA FusionSituationAnalysisSituationAnalysis SituationAnalysisBehaviorBehaviorACCPath PlanningPathPlanning Elektrobit(EB)

5 2018 Introduction to Functional SafetyStep 2 -Define a possible malfunctionSafety and Error ManagementSituative BehaviorArbitrationHD PositioningObject FusionGrid FusionRoad & Lane FusionVehicle DatabaseFunction Specific ViewsTrajectory ControlLongitudinal ControlLateral ControlMotionManagementHMI ManagementTrajectory ControlLongitudinal ControlLateral ControlMotionManagementHMI ManagementVehicle Abstraction -SensorsBehaviorVehicle Abstraction -ActuatorsSensor DATA FusionSituationAnalysisSituationAnalysis SituationAnalysisBehaviorBehaviorACCPath PlanningExample: Braking force too high (above ACC norm) Elektrobit(EB) 2018 MalfunctionDetails}HazarddescriptionPoss ible MalfunctionHARA Workflow Function definitionHazard identificationSituation analysis Hazardous event identificationHazard classificationDerivation of Safety goalsPathPlanning Elektrobit(EB)

6 2018 Introduction to Functional SafetyCritical SituationHARA Workflow Step 3 -Define a critical situationSafety and Error ManagementSituative BehaviorArbitrationHD PositioningObject FusionGrid FusionRoad & Lane FusionVehicle DatabaseFunction Specific ViewsTrajectory ControlLongitudinal ControlLateral ControlMotionManagementHMI ManagementTrajectory ControlLongitudinal ControlLateral ControlMotionManagementHMI ManagementVehicle Abstraction -SensorsBehaviorVehicle Abstraction -ActuatorsSensor DATA FusionSituationAnalysisSituationAnalysis SituationAnalysisBehaviorBehaviorACCPath PlanningExample: Normal highway driving in fog (degraded view) with high speed (rear traffic near) Elektrobit(EB) 2018 Operating modeOperational situationEnvironmental conditionSpeed (details)Function definitionHazard identificationSituation analysis Hazardous event identificationHazard classificationDerivation of Safety goalsPathPlanning Elektrobit(EB)

7 2018 Introduction to Functional SafetyHazardous EventHARA Workflow Step 4 -Evaluate consequences of the malfunctionSafety and Error ManagementSituative BehaviorArbitrationHD PositioningObject FusionGrid FusionRoad & Lane FusionVehicle DatabaseFunction Specific ViewsTrajectory ControlLongitudinal ControlLateral ControlMotionManagementHMI ManagementTrajectory ControlLongitudinal ControlLateral ControlMotionManagementHMI ManagementVehicle Abstraction -SensorsBehaviorVehicle Abstraction -ActuatorsSensor DATA FusionSituationAnalysisSituationAnalysis SituationAnalysisBehaviorBehaviorACCPath Planning Elektrobit(EB) 2018 Function definitionHazard identificationSituation analysis Hazardous event identificationHazard classificationDerivation of Safety goalsPathPlanningRear-end collision with speed difference > 25 mphHazardous Event Details}Malfunction Effect Elektrobit(EB)

8 2018 Introduction to Functional SafetyHazardous EventHARA Workflow Step 5 -Classify the hazardous eventSafety and Error ManagementSituative BehaviorArbitrationHD PositioningObject FusionGrid FusionRoad & Lane FusionVehicle DatabaseFunction Specific ViewsTrajectory ControlLongitudinal ControlLateral ControlMotionManagementHMI ManagementTrajectory ControlLongitudinal ControlLateral ControlMotionManagementHMI ManagementVehicle Abstraction -SensorsBehaviorVehicle Abstraction -ActuatorsSensor DATA FusionSituationAnalysisSituationAnalysis SituationAnalysisBehaviorBehaviorACCPath Planning Elektrobit(EB) 2018 Function definitionHazard identificationSituation analysis Hazardous event identificationHazard classificationDerivation of Safety goalsPathPlanning Elektrobit(EB) 2018 Introduction to Functional Safety Elektrobit(EB) 2018 Severity, exposure and controllabilityS0: No injuriesS1: Light or moderate injuriesS2: Severe and life threatening injuriesS3: Life threatening injuries fatal injuriesE0: IncredibleE1: Very low probabilityE2: Low probabilityE3: Medium probabilityE4: High probabilityC0: Controllable in generalC1: Simply controllableC2: Normally controllableC3.

9 Difficult to control or uncontrollableHazard ClassificationSeverity (S)Exposure (E)Controllability (C)Degree of potential harm to personsProbability of being in a situationAbility to avoid harm through reaction of the persons involved Elektrobit(EB) 2018 Introduction to Functional SafetyASIL Level derived from Elektrobit(EB) 2018C1C2C3S1E1 QMQMQME2 QMQMQME3 QMQMAE4 QMABS2E1 QMQMQME2 QMQMAE3 QMABE4 ABCS3E1 QMQMAE2 QMABE3 ABCE4 BCD Elektrobit(EB) 2018 Introduction to Functional SafetyHazardous EventHARA Workflow Step 5 -Classify the hazardous eventSafety and Error ManagementSituative BehaviorArbitrationHD PositioningObject FusionGrid FusionRoad & Lane FusionVehicle DatabaseFunction Specific ViewsTrajectory ControlLongitudinal ControlLateral ControlMotionManagementHMI ManagementTrajectory ControlLongitudinal ControlLateral ControlMotionManagementHMI ManagementVehicle Abstraction -SensorsBehaviorVehicle Abstraction -ActuatorsSensor DATA FusionSituationAnalysisSituationAnalysis SituationAnalysisBehaviorBehaviorACCPath Planning Elektrobit(EB) 2018S3 -Life-threatening or fatal injuriesSeverity(of potential harm )

10 E3 -Medium probabilityExposure(of situation)C3 -Difficult to control or uncontrollableControllability(of hazardous event)CASILD eterminationEXAMPLE:Function definitionHazard identificationSituation analysis Hazardous event identificationHazard classificationDerivation of Safety goalsPathPlanning Elektrobit(EB) 2018 Introduction to Functional SafetyDevelopment Methods Dependent on ASIL Levels Elektrobit(EB) 2018 ++ The method is highly recommended for this ASIL. + The method is recommended for this ASIL. o The method has no recommendation for or against its usage for this Safety Concept2) Management of Functional SafetySafety Management during Item Development3) Concept Phase8) Supporting Processes7) Production and Operation5) Hardware DevelopmentSystem Dev.


Related search queries