datasheets.com EBN.com EDN.com EETimes.com Embedded.com PlanetAnalog.com TechOnline.com  
Events
UBM Tech
UBM Tech

Design Article

Comment


Bala92998

6/21/2011 2:15 AM EDT

@Prabhakar, Thanks for enlightening me on this Technique

More...



prabhakar_deosthali

6/18/2011 7:43 AM EDT

Normally in a control system if you want to build a truly fail safe control ...

More...

ECU architecture ensures failure safety

Marc Osajda, Freescale Semiconductor

6/17/2011 12:00 AM EDT

Driven by the introduction of higher value functions in cars and the continuous trend to vehicle electrification, safety critical functions are increasingly carried out by programmable electronic systems rather than mechanical components. The complexity of these systems makes it impossible to fully determine all potential failure modes or to test all possible behavior.

Consequently, the challenge for system engineers is to architect control units in a way that dangerous failures are prevented or at least sufficiently controlled when they occur.

Dangerous failures may arise from:
  • Random hardware failure mechanisms
  • Systematic hardware failure mechanism
  • Software errors
  • Common cause failures

Being a challenge for electronic control unit design, these failure modes are also specifically relevant for complex components such as microcontrollers.

Therefore, industry standards such as the upcoming ISO26262 specify four safety integrity levels, each corresponding to a range of target likelihood of failures of a safety function.

Safety concept fundamentals

Freescale, with design experience in dual-core controller technology for safety critical applications, aimed for a holistic safety concept for its latest dual core processor families. Third-party functional safety experts were engaged for monitoring and assessment of concept implementation as well as design processes.

On this basis, the MPC564xL family was developed. Focus was on:
  • Measures against single point faults
  • Measures against latent faults
  • Measures against common cause faults (CCF)

To read the complete article, which describes the fault mitigating architecture, click here, courtesy of Automotive Designline Europe.




Dr DSP

6/17/2011 12:12 PM EDT

Good to know that as more eletronics goes into cars more safety and reliability is included. When my car has joined an autobaun 'train' I will feel a bit better trusting the automatic drive mode. Think of all those lines of code that need to function correctly...

Sign in to Reply



prabhakar_deosthali

6/18/2011 7:43 AM EDT

Normally in a control system if you want to build a truly fail safe control system then mere duplication and verification does not always work. What you need is a two-out-of-three kind of a system where the system always have three set of signals, variables or such things. The fault cheeking system will verify whether at least two of these three signals are matching. If they match then the control system is said to be working fault free else it is declared as faulty.

Sign in to Reply



Bala92998

6/21/2011 2:15 AM EDT

@Prabhakar, Thanks for enlightening me on this Technique

Sign in to Reply



Please sign in to post comment

Navigate to related information

Datasheets.com Parts Search

185 million searchable parts
(please enter a part number or hit search to begin)