background image

Functional Safety KCD2-RR2-Ex1(.SP)

Planning

20

19

-1

1

9

3.2

Assumptions

The following assumptions have been made during the FMEDA:
• Failure rate based on the Siemens standard SN 29500.
• Failure rates are constant, wear is not considered.
• External power supply failure rates are not included.
• The safety-related device is considered to be of type 

A

 device with a hardware fault 

tolerance of 

0

.

• The device will be used under average industrial ambient conditions comparable 

to the classification "stationary mounted" according to MIL-HDBK-217F.

Alternatively, operating stress conditions typical of an industrial field environment similar 

to IEC/EN 60654-1 Class C with an average temperature over a long period of time 

of 40

º

C may be assumed. For a higher average temperature of 60

º

C, the failure rates 

must be multiplied by a factor of 2.5 based on experience. A similar factor must be used 

if frequent temperature fluctuations are expected.

• The application program in the programmable logic controller (PLC) is configured 

to detect underrange and overrange failures.

• The device do not has a fault bus.

SIL 2 Application

• The device shall claim less than 10 % of the total failure budget for a SIL 2 safety loop.
• For a SIL 2 application operating in low demand mode the total PFD

avg

value 

of the SIF (

S

afety 

I

nstrumented 

F

unction) should be smaller than 10

-2

hence the maximum allowable PFD

avg

value would then be 10

-3

.

• For a SIL 2 application operating in high demand mode the total PFH value 

of the SIF should be smaller than 10

-6

 per hour, hence the maximum allowable PFH value 

would then be 10

-7

 per hour.

• Since the safety loop has a hardware fault tolerance of 

0

 and it is a type

A

 device, 

the SFF must be > 60 % according to table 2 of IEC/EN 61508-2 for a SIL 2 (sub) system.

Содержание KCD2-RR2-Ex1

Страница 1: ...ISO9001 2 Functional Safety Resistance Repeater KCD2 RR2 Ex1 SP PROCESS AUTOMATION MANUAL ...

Страница 2: ...elivery for Products and Services of the Electrical Industry published by the Central Association of the Electrical Industry Zentralverband Elektrotechnik und Elektroindustrie ZVEI e V in its most recent version as well as the supplementary clause Expanded reservation of proprietorship Functional Safety KCD2 RR2 Ex1 SP ...

Страница 3: ...on 7 2 2 Interfaces 7 2 3 Marking 7 2 4 Standards and Directives for Functional Safety 7 3 Planning 8 3 1 System Structure 8 3 2 Assumptions 9 3 3 Safety Function and Safe State 10 3 4 Characteristic Safety Values 11 3 5 Useful Lifetime 12 4 Mounting and Installation 13 4 1 Configuration 13 5 Operation 14 5 1 Proof Test 14 6 Maintenance and Repair 17 7 List of Abbreviations 18 ...

Страница 4: ...oting Dismounting Disposal The documentation consists of the following parts Present document Instruction manual Manual Datasheet Additionally the following parts may belong to the documentation if applicable EU type examination certificate EU declaration of conformity Attestation of conformity Certificates Control drawings FMEDA report Assessment report Additional documents For more information a...

Страница 5: ...d and understood the instruction manual and further documentation Intended Use The device is only approved for appropriate and intended use Ignoring these instructions will void any warranty and absolve the manufacturer from any liability The device is developed manufactured and tested according to the relevant safety standards Use the device only for the application described with specified envir...

Страница 6: ...re displayed in descending order as follows Informative Symbols Action This symbol indicates a paragraph with instructions You are prompted to perform an action or a sequence of actions Danger This symbol indicates an imminent danger Non observance will result in personal injury or death Warning This symbol indicates a possible fault or danger Non observance may cause personal injury or serious pr...

Страница 7: ...715 2 2 Interfaces The device has the following interfaces Safety relevant interfaces input and output 2 3 Marking 2 4 Standards and Directives for Functional Safety Device specific standards and directives System specific standards and directives Note For corresponding connections see datasheet Pepperl Fuchs Group Lilienthalstraße 200 68307 Mannheim Germany Internet www pepperl fuchs com KCD2 RR2...

Страница 8: ...he demand rate for this safety loop is assumed to be higher than once per year The relevant safety parameters to be verified are the PFH value Probability of dangerous Failure per Hour Fault reaction time of the safety system the SFF value Safe Failure Fraction the HFT architecture Hardware Fault Tolerance 3 1 3 Safe Failure Fraction The safe failure fraction describes the ratio of all safe failur...

Страница 9: ...e failure rates must be multiplied by a factor of 2 5 based on experience A similar factor must be used if frequent temperature fluctuations are expected The application program in the programmable logic controller PLC is configured to detect underrange and overrange failures The device do not has a fault bus SIL 2 Application The device shall claim less than 10 of the total failure budget for a S...

Страница 10: ...tached PLC must recognize a fault when the resistance drops below 15 or rises above 400 for Pt100 or above 4 k for Pt1000 The switch position of the DIP switch on the device has no influence on the safety function Safe State The safe state of the output is the high impedance state 100 k or the fault state 15 Reaction Time The reaction time for all safety functions is 20 ms Note See corresponding d...

Страница 11: ...FT 0 SIL 2 SC 3 Safety function Transfer of the resistance values with an accuracy of 2 s 1 0 FIT dd 134 FIT du 54 4 FIT total safety function 1 188 FIT not part 377 FIT SFF 1 71 1 MTBF 2 164 years PFH 5 44 x 10 8 1 h PFDavg for T1 1 year 2 38 x 10 4 PFDavg for T1 2 years 4 77 x 10 4 PFDavg for T1 3 years 7 15 x 10 4 PTC 100 Reaction time 3 20 ms Table 3 1 1 No effect failures are not influencing ...

Страница 12: ...is assumed that early failures are detected to a huge percentage during the installation and therefore the assumption of a constant failure rate during the useful lifetime is valid However according to IEC EN 61508 2 a useful lifetime based on general experience should be assumed Experience has shown that the useful lifetime often lies within a range period of about 8 to 12 years As noted in DIN E...

Страница 13: ...n 5 Check the safety function to ensure the expected output behavior 4 1 Configuration Configuring the Device The device is configured via DIP switch The DIP switch is on the front of the device The switch position of the DIP switch on the device has no influence on the safety function 1 De energize the device before configuring the device 2 Open the cover 3 Configure the device via the DIP switch...

Страница 14: ... Check the function of the subsystem at periodic intervals depending on the applied PFDavg in accordance with the characteristic safety values See chapter 3 4 It is under the responsibility of the plant operator to define the type of proof test and the interval time period Equipment required Digital multimeter with an accuracy better than 0 1 Use for the proof test of the intrinsic safety side of ...

Страница 15: ... the following voltage values are measured see table 7 To test the correct lead breakage detection open the connections at terminals 1 2 3 and 4 individually The proof test is passed if the resistance signaled on the digital multimeter for all excitation currents is between 15 or 400 The proof test is passed if the resistance signaled on the digital multimeter for a excitation current 1 mA is betw...

Страница 16: ... Safety KCD2 RR2 Ex1 SP Operation Figure 5 1 Proof test set up for KCD2 RR2 Ex1 SP KCD2 RR Ex1 SP Zone 0 1 2 Div 1 2 Zone 2 Div 2 Multimeter V 9 10 I supply 8 7 6 5 4 3 1 2 24 V DC Power supply Supply 4 mA to 20 mA I supply ...

Страница 17: ...es not work Take appropriate measures to protect personnel and equipment while the safety function is not available Secure the application against accidental restart 3 Do not repair a defective device A defective device must only be repaired by the manufacturer 4 If there is a defect always replace the device with an original device Danger Danger to life from missing safety function Changes to the...

Страница 18: ...e is not used for calculation of SFF not part Probability of failure of components that are not in the safety loop total safety function Probability of failure of components that are in the safety loop HFT Hardware Fault Tolerance MTBF Mean Time Between Failures MTTR Mean Time To Restoration PCS Process Control System PFDavg Average Probability of dangerous Failure on Demand PFH Average frequency ...

Страница 19: ...Functional Safety KCD2 RR2 Ex1 SP Notes 2019 11 19 ...

Страница 20: ...rl fuchs com Worldwide Headquarters Pepperl Fuchs Group 68307 Mannheim Germany Tel 49 621 776 0 E mail info de pepperl fuchs com For the Pepperl Fuchs representative closest to you check www pepperl fuchs com contact PROCESS AUTOMATION PROTECTING YOUR PROCESS DOCT 6482A 11 2019 ...

Отзывы: