Loreme CAL4/100ig Safety Manual Download Page 9

 

SOMMAIRE

 

 E 9 

4-20mA signal isolator, signal splitter with 2,3,4 outputs 
SIL2 / SIL3   

 

 

 

 CAL4/100ig     CAL4/100igM 

Functional analysis 
 

The converter consist of : 
an power stage 
two analog input stage 
two isolation stage (signal transmission) 
two output stage (current amplifier) 
 

Dreaded event definition 
 

For the converter 

CAL4-100ig,

 the dreaded event (i.e the dangerous failure as defined in the previous section) it's to 

supply an wrong output current :  
Either an erroneous output current of more than 1% compared to the process demand, 
either an output current, blocked to a value, such as it is not possible to have a security fallback state : output current 
blocked in the range >3.6mA or <21mA. Therefore in the impossibility to transmitting an alarm. 
 

Security fallback definition 
 

The security fallback state is defined with an output current out of the range 3.6mA - 21mA. 
Either an output current =< 3.6 mA 
Either an output current >= 21mA 
The application program of the "Logic safety equipment" shall be configured to detect all current values out of range 
(=< 3.6mA and >= 21mA) and considered them as "invalidate". 
Thereby, in the FMEA analysis, this state is considered as a not dangerous state. 
 

Study hypotheses  
 

The failure rate of component are considered as constant for the all system life time. 
The evaluation of the safety features of a device involves a number of assumptions: 
Only the catalectic failures are taken in account : straight, sudden, or unpredictable failures.  
Are not considered the failures that could be due to: 
- design errors 
- batch defect in production 
- environment (electrical interference, temperature cycles, vibrations) 
- human errors in operation or maintenance 
Precautions are taken to avoid them: management of a L.O.F.C (List of manufacturing operation and control) 
Only simple fault are handled. Welding defect, which are usually due to a lack of quality detectable at the end of pro-
duction by a specific burn-in, are not taken into account. 
All aspects of power-on specific features are not treated. 
 

Failure rate 
 

The simple failure rate for the components of the converter CAL4-100ig are classified on the document: 

AMDEC CAL4-100ig rev4.XLS

 

( internal document not communicated for reasons of design confidentiality) 

 
Created with "ALD MTBF calculator" according to the reliability reports : 
 
- MIL-HDBK-217F Notice 2 Electronic Reliability Prediction et iec-tr-62380.e Reliability data handbook 
 
 
 
 
  

Summary of Contents for CAL4/100ig

Page 1: ...fety manual LOREME 12 rue des Potiers d Etain Actipole BORNY B P 35014 57071 METZ Phone 03 87 76 32 51 Fax 03 87 76 32 52 Contact Commercial Loreme fr Technique Loreme fr Download manual on www loreme...

Page 2: ...tate E4 2 1 Safety function E4 2 2 Safety fallback position E4 3 Safety Recommendation E4 3 1 Interfaces E4 3 2 Configuration Calibration E4 3 3 Useful lifetime E4 4 Installation commissioning and rep...

Page 3: ...urity features and damage to property environment or people 1 2 Functions and intended uses The transducer CAL4 100ig provides isolation and duplication of analog current loop 4 20mA an auxiliary powe...

Page 4: ...ssumed by the probabilistic estimation that it applies only to the useful lifetime of components Beyond this lifetime the probability of failure is increasing significantly with time The useful lifeti...

Page 5: ...uts SIL2 SIL3 CAL4 100ig CAL4 100igM Green LED Power indicates that the device is cor rectly power on Blink if power is on protected mode under voltage supply overload or thermal protection mode Green...

Page 6: ...ode the output load resistance must be between 0 ohms and 600 ohms Input wiring In 4 20mA passive current input between terminal in and GND for active transmitter In 4 20mA loop with transmitter suppl...

Page 7: ...efined under paragraph proof interval 5 1 control steps Periodic proof allows detection of possible product internal failure and loop calibration environmental conditions and a minimum heating time of...

Page 8: ...ls 4 20mA image of input Generally a transducer is taking place between a sensor and a protective equipment designated as Logic Safety Equipment Sensor transmitter CAL4 100ig PLC Logic Safety Equipmen...

Page 9: ...reby in the FMEA analysis this state is considered as a not dangerous state Study hypotheses The failure rate of component are considered as constant for the all system life time The evaluation of the...

Page 10: ...ion up to SIL3 according to standard IEC61508 2 2000 respecting the safety instructions specified in the safety manual The assessment of the safety critical and dangerous random failure give the follo...

Page 11: ...of a device with a walkie talkie 5 W output power because it creates a electromagnetic field with an intensity greater than 10 V M for a distance of less than 50 cm 2 2 Power supply Observe the charac...

Page 12: ...failure occurs if the measuring system doesn t switch into a define safe state or into an alarm signaling mode on process demand Appendix term and definitions SIL stands for Security Integrity Level w...

Reviews: