
2
014-07
8
Safety Manual SIL KFD0-RSH-1(-Y2), KFD2-SL-4
Planning
It is assumed that any safe failures that occur (e.g., output in safe condition)
will be corrected within eight hours (e.g., correction of a sensor fault).
While the device is being repaired, measures must be taken to maintain the
safety function (e.g., by using a replacement device).
The indication of a dangerous fault (via fault bus) is detected within 1 hour by
the programmable logic controller (PLC).
Since the two outputs of the device use common components, these outputs
must not be used in the same safety function.
For the KFD0-RSH devices, the relay outputs need protection by a fuse
initiating at 80 % of the rated current to avoid contact welding.
2.3
Safety Function and Safe State
Safety Function
KFD0-RSH-1(-Y2): Whenever the input of the device is de-energized, the output
is de-energized.
KFD2-SL-4: Whenever the common disable input is de-energized, all outputs are
de-energized.
Safe State
The safe state is defined as all outputs being de-energized (not conducting)
The KFD2-SL-4 is configurable. The settings do not influence the safety function.
The settings only cause reactions on the additional error output.
Switching Frequency
The maximum switching frequency in the safety relevant input (for KFD2-SL-4 the
common disable input) is 10 Hz.
For the KFD2-SL-4, the maximum switching frequency for the not safety relevant
signal transfer is 1 kHz.
Содержание SIL KFD0-RSH-1
Страница 1: ...ISO9001 2 3 Relay Module KFD0 RSH 1 Y2 KFD2 SL 4 PROCESS AUTOMATION SAFETY MANUAL SIL...
Страница 18: ...2014 07 18 Safety Manual SIL KFD0 RSH 1 Y2 KFD2 SL 4 Notes Safety Manual SIL KFD0 RSH 1 Y2 KFD2 SL 4...
Страница 19: ...Safety Manual SIL KFD0 RSH 1 Y2 KFD2 SL 4 Notes 2014 07 19...