
STM8AF safety architecture
UM1915
UM1915 Rev 3
Figure 1. Definition of the STM8AF as a SEooC
Other components, like the external HW components needed to guarantee either the
functionality of the STM8AF (external memory, clock quartz) or its safety (e.g. the external
watchdog, voltage supervisors) can be connected to the SEooC.
3.3 Assumed
safety
requirements
A SEooC is developed, according to ISO 2626-10 clause 9, on the basis of assumptions for
its intended functionality, use and context, including external interfaces (
Figure 2. Relationship between assumptions and SEooC development
The validity of the aforementioned assumptions is checked, in the context of the actual
item, after the integration of the SEooC.
In this document it is assumed that the concept specification, the hazard and risk analysis,
the overall safety requirement specification and the consequent allocation have determined
the assumed safety requirements reported in
.
069
5HPRWH
FRQWUROOHU
5HPRWH
FRQWUROOHU
5HPRWH
FRQWUROOHU
5HPRWH
FRQWUROOHU
6HQVRU
$FWXDWRU
6
6
$
$
3URFHVVLQJHOHPHQW
6(RR&
670$)
069
$VVXPSWLRQV
$VVXPHGUHTXLUHPHQWV
$VVXPSWLRQVRQGHVLJQ
H[WHUQDOWR6(RR&
6(RR&UHTXLUHPHQWV
6(RR&GHVLJQ