background image

20

16-

06

10

Functional Safety HiD2035, HiD2036

Planning

3.2

Assumptions

The following assumptions have been made during the FMEDA:
• The device shall claim less than 10 % of the total failure budget for a 

SIL 2 safety loop.

• For a SIL 2 application operating in low demand mode the total PFD

avg

value 

of the SIF (

S

afety 

I

nstrumented 

F

unction) should be smaller than 10

-2

, hence 

the maximum allowable PFD

avg

value would then be 10

-3

.

• For a SIL 2 application operating in high demand mode the total PFH value of 

the SIF should be smaller than 10

-6

 per hour, hence the maximum allowable 

PFH value would then be 10

-7

 per hour.

• Failure rate based on the Siemens standard SN29500.
• Failure rates are constant, wear is not considered.
• External power supply failure rates are not included.
• The safety-related device is considered to be of type 

A

 device with a hardware 

fault tolerance of 

0

.

• Since the safety loop has a hardware fault tolerance of 

0

 and it is a 

type

A

 device, the SFF must be > 60 % according to table 2 of 

IEC/EN 61508-2 for a SIL 2 (sub) system.

• The device will be used under average industrial ambient conditions, which 

are comparable with the classification "stationary mounted" in 

MIL-HDBK-217F. Alternatively, the following ambient conditions are assumed:
• IEC/EN 60654-1 Class C (sheltered location) with temperature limits in the 

range of the manufacturer's specifications and an average temperature of 

40

º

C over a long period. The humidity level is within manufacturer's rating. 

For a higher average temperature of 60

º

C, the failure rates must be 

multiplied by a factor of 2.5 based on experience. A similar factor must be 

used if frequent temperature fluctuations are expected.

• The application program in the programmable logic controller (PLC) is 

configured to detect underrange and overrange failures.

• The devices are not protected against power supply failures. It is within the 

responsibility of the user to ensure that low supply voltages are detected and 

adequate reaction on this fault is implemented.

Содержание HiD2035

Страница 1: ...Functional Safety Current Driver Repeater HiD2035 HiD2036 PROCESS AUTOMATION MANUAL ISO9001 2...

Страница 2: ...livery for Products and Services of the Electrical Industry published by the Central Association of the Electrical Industry Zentralverband Elektrotechnik und Elektroindustrie ZVEI e V in its most rece...

Страница 3: ...ards and Directives for Functional Safety 8 3 Planning 9 3 1 System Structure 9 3 2 Assumptions 10 3 3 Safety Function and Safe State 11 3 4 Characteristic Safety Values 12 3 5 Useful Life Time 13 4 M...

Страница 4: ...osal The documentation consists of the following parts Present document Instruction manual Manual Datasheet Additionally the following parts may belong to the documentation if applicable EC type of ex...

Страница 5: ...ns will void any warranty and absolve the manufacturer from any liability The device is developed manufactured and tested according to the relevant safety standards Use the device only for the applica...

Страница 6: ...sequence of actions Danger This symbol indicates an imminent danger Non observance will result in personal injury or death Warning This symbol indicates a possible fault or danger Non observance may c...

Страница 7: ...tored by control systems The device is loop powered From the control side no additional power supply has to be connected A reverse polarity protection prevents damage to the device caused by faulty wi...

Страница 8: ...d directives System specific standards and directives Functional safety IEC EN 61508 part 2 edition 2010 Functional safety of electrical electronic programmable electronic safety related systems manuf...

Страница 9: ...this safety loop is assumed to be higher than once per year The relevant safety parameters to be verified are the PFH value Probability of dangerous Failure per Hour Fault reaction time of the safety...

Страница 10: ...hardware fault tolerance of 0 and it is a type A device the SFF must be 60 according to table 2 of IEC EN 61508 2 for a SIL 2 sub system The device will be used under average industrial ambient condi...

Страница 11: ...he output values are below 3 6 mA or above 50 mA the device indicates failures that are considered as dangerous detected Safety Function The device transfers a current from the field side to the contr...

Страница 12: ...0 SIL SC 2 Safety function Current transfer from the field side to the control side sd su 1 1 Not considered failures are considered 50 as dangerous undetected and 50 as No effect No effect failures a...

Страница 13: ...y of the calculation is limited to the useful lifetime of each component It is assumed that early failures are detected to a huge percentage during the installation and therefore the assumption of a c...

Страница 14: ...uction manual 2 Observe the information in the manual 3 Observe the requirements for the safety loop 4 Connect the device only to devices that are suitable for this safety application 5 Check the safe...

Страница 15: ...safety values See chapter 3 4 It is under the responsibility of the plant operator to define the type of proof test and the interval time period Equipment required Digital multimeter with an accuracy...

Страница 16: ...tings for the application after the test HiD2035 HiD2036 1oo1 Structure Figure 5 1 Proof test set up for HiD2035 HiD2036 Channel 2 only for HiD2036 Step No Input value V Input value mA Measured input...

Страница 17: ...ation 2016 06 17 Tip The easiest way to test HiD devices by using a stand alone HiDTB SCT termination board In this test it is not necessary to disconnect the wiring of the existing application Faults...

Страница 18: ...y loop does not work without the device shut down the application Do not restart the application without taking proper precautions Secure the application against accidental restart 3 Do not repair a d...

Страница 19: ...effect failure is not used for calculation of SFF not part Probability of failure of components that are not in the safety loop total safety function Safety function HFT Hardware Fault Tolerance MTBF...

Страница 20: ...rl fuchs com PROCESS AUTOMATION PROTECTING YOUR PROCESS Worldwide Headquarters Pepperl Fuchs GmbH 68307 Mannheim Germany Tel 49 621 776 0 E mail info de pepperl fuchs com For the Pepperl Fuchs represe...

Отзывы: