Siemens Safety Systems. NTNU , Arnt Olav Sveen

Size: px
Start display at page:

Download "Siemens Safety Systems. NTNU 05.03.2012, Arnt Olav Sveen"

Transcription

1 Siemens Safety Systems. NTNU , Arnt Olav Sveen l Historikk og bakgrunn l Applikasjoner l Krav i IEC61508 l Løsninger» Generell SIS Basis» Basis system Simatic S7 F» Programvare /programmering» Inngangs og utgangs moduler» Human - Machine Interface» Kommunikasjon / nettverk» Hjemmesikkerhetssystem 100.1

2 Siemens Safety Systems. The prevention of accidents should not be considered a question of legislation, but instead our responsibility to fellow beings and economic sense (Werner von Siemens in 1880) 100.2

3 History of Siemens Electronic Safety Systems Was started together with the start of computers S7 F Systems S7-400FH / PROFIsafe (1999) Distributed Safety S7 151F/315F/317F/416F (2002/2003) Safety Matrix (1999) QUADLOG (1995) SIMATIC S5-110F (1980) SIMATIC S5-115F (1988) SIMATIC S5-95F (1994)

4 Siemens Safety Systems. First large safety project for offshore 1985, Oseberg Feltsenter, safety I/O To day nearly 25% of installed safety systems in Norwegian part of the North Sea, and numerous deliveries world wide. First solutions, Simatic PLC's with additional hardware, 2 PLC's running independently. To-day a full range of S7 F, TÜV, SIL3 verified systems Work procedures according to IEC61508, SINTEF verified, and a full scope of function blocks and typicals 100.4

5 Siemens Safety Systems, Norwegian designed basic system Siemens Safety Systems applications are based on long experience Stena Don 2000 Statfjord A 2000 Snorre B 2000 Huldra 2000 Oseberg South 2000 Embla 2000 Oseberg Gas 1999 Troll C 1999 Statfjord B 1998 Visund 1998 Eldfisk WIP 1999 Oseberg East 1997 Petrojarl Foinhaven 1996 Njord A & B 1995 Statfjord C 1995 Vigdis 1995 Ekofisk 1995 Eldfisk alpha 1993 Brage 1992 Embla 1991 Snorre TLP 1990 Oseberg A 1988 Oseberg B

6 Siemens Safety Systems, S7, PCS7 F l HULDRA (Norway) 2000 l MAERSK XL1 /XL2 (worlds largest jack up s, built in Korea) 2002 l EKOFISK 2/7A 2002 l Visund l Halfdan 5 platforms (Denmark/built in Singapore and Holland) l Al Shaheen (28 platforms in Qatar) l White Rose FPSO (Canada/ built in Canada/Korea/Abu Dhabi/USA) 2005 l P50, Albacore Leste FPSO (Brazil), PRA l FPSOcean 1 (China) l Santa Fe (USA, 2 drilling Rigs) 2004 l Oseberg Field-centre (Norway) (113 off S7 400/400FH, I/O) l Statfjord A/B/C ESD and F&G l Sevan SSP300-1, 2 and l Deep Sea Driller 1 and l Blackford Dolphin l Snorre TLP l Tor 2011 l Yme (upgrade) 2011 (Void) l ATP Cheviot (UK, Korea) l Deep Sea Driller 3 & 4 (China / Norge) l OCX (Brazil) l GEAD Eldfisk, 5 installations totally l Heire, (Denmark)

7 Safety Systems Applications Hva er et sikkerhetssystem (SIS)? Disaster protection Disaster protection Hvor griper det inn i en ulykkesutvikling, og forhåpentligvis stanser den? Collection basin Overpressure valve, rupture disc Safety system (automatic) Safety Shutdown alarm Passive protection Active mechanical protection Safety Instrumented System (SIS) Plant personnel intervention Basic automation Process value Process alarm Normal activity Process control system 100.7

8 Safety Systems Applications Hva er et sikkerhetssystem (SIS)? Detect fire, gas leakage, overpressures, over tem. etc Release fire fighting, electrical isolation, shutdown, blow-down (isolate or release energy sources) Safety Instrumented System (SIS) Inputs Outputs Basic Process Control System (BPCS) Inputs Outputs PT 1A PT 1B I / P Reactor FT Low level

9 Safety Systems Applications Og hva er Equipment Under Control, EUC? AS 414 F AS 417 F PROFIBUS-DP ET 200M IM 153 F-I/O Modules Safety Module Standard I/O Modules Pressurized Vessel 100.9

10 Safety Systems Applications Purpose Risk reduction by safety systems, SIS Residual Risk Tolerable Risk From IEC 61508: EUC risk Necessary Risk Reduction Actual Risk Reduction Increasing Risk Risk reduction achieved by all safety-systems Hensikten med å innføre et sikkerhetssystem, er å få risikoen ned til et akseptabelt nivå

11 Safety Systems Applications What is Risk? Who decides what is acceptable risk? What do we accept? Examples of fatality risk figures: l Smoking 20 per day 5000 cpm 5.0x10-3/yr 1 of 2 l Road accident 100cpm 1.0x10-4/yr 1 of 100 (lifetime 100 years) l Car accident 150cpm 1.5x10-4/yr 1,5 of 100 l Accident at work 10cpm 1.0x10-5/yr 1 of 1000 l Falling Aircraft 0.02 cpm 2.0x10-8/yr 2 of (note) l Lightning strike 0.1cpm 1.0x10-7/yr 1 of l Insect/Snake bite 0.1cpm 1.0x10-7/yr 1 of NOTE: Risk per hour the same as for car accident cpm = chances per million of the population (per year) We are always informed when 8 persons are killed by suicide killer in Afghanistan, but we are not informed when 53 persons die traffic accidents in Spain happens every weekend

12 Safety Systems Applications Risk reduction by safety systems, SIS Containment Dike Control System Unacceptable Risk Region Hazard #1 It is often said that the risk reduction by the instrumented safety system is low, compared to the total risk. Risk reduction is decades higher by other means. Likelihood Operator Intervention SIL1 SIL2 Safety Instrumented Function SIL3 If other means reduces the number of causalities from 100 to 1 per year, there is still one left maybe that one person is saved by the instrumented safety system Tolerable Risk Region Consequence Risikoreduksjonen er større ved et høyere SIL

13 Safety Systems Applications What is Safe state? Can the Safety System bring the area or equipment to a safe state? How? What is required? Power Plant

14 Safety Systems Applications Some of the Safety Systems Applications l l l l l l l l l ESD, Emergency Shutdown F&G, Fire & Gas Detection, Fire-fighting Process Shutdown Fire-pump Logic Ballast Control Blow-down Riser release / Anchor Release Fire Dampers, Active Smoke Control HIPPS, High Integrity Pressure Protection System

15 Safety Systems Topology for total platform control system including safety

16 Fire ext.. acktivated Fire vent. activ. Fire Brig. recvd. Power Prewarning Early warning Fault System fault Function disabled Test More Alarms Silence buzzer Silence sounders Reset C? Self Verify Fire & Gas Topology (sample) F&G ESD Wide ScreenOverview Ethernet 100 Mbit Ethernet 100 Mbit Commands from OS to SIL3 PROFIBUS/ ProfiSafe (SIL3) Industrial Ethernet 100 Mbit Industrial Ethernet 100 Mbit Communication to other nodes SIL3 S7-400FH (SIL3, and redundant) SIL 2 ALARM SIEMENS SIEMENS Software is implemented according to procedure, SIL 3 PROFIBUS/ProfiSafe (SIL3) PROFIBUS/ProfiSafe (SIL3)

17 F&G System Topology (the different modules) F&G Matrix Remote Control (Veslefrikk) I/O modules SIL 2/3 PROFIBUS/ PROFISAFE SIL3 and redundant Redundant, operator stations,each with dual powersupplies and multi CPU's (tolerabable for CPU errors) F&G Matrix Radio Note: Separate bus sytems are used for interface to matrixes to avoid common mode failurres with field I/O F&G Matrix Radio Redundant, servers,each with dual powersupplies and multi CPU's (tolerabable for CPU errors) Redundant Operator Stations Redundant Safety Servers Redundant Fail Safe Communications SIL3 (Profisafe) Addressable Fire Detection Systems I/O modules SIL 2/3 PROFIBUS/ PROFISAFE, SIL3 optical and redundant Autronica fire panel Redundant, optical, 100 Mbit Industrial Ethernet Autronica protocol Autronica protocol SIEMENS S7-400FH (SIL3, and redundant) S7-400F(SIL3) S7-400F(SIL3) SIEMENS Redundant Integrated Safety & Process Network High Available & Fail Safe CPU s Redundant Communications Interface Fire Area (1of n gives alarm) Hardwired alarm Analogue inputs (each SIl1) in votingone of many (total is SIL2) PROFIBUS or Profisafe (SIL3) PROFIBUS or Profisafe (SIL3) Output modules F-SM's, SIL 2/3 redundant or redundant ouput configuration verified by SINTEF (SIL2/3) Fail Safe I/O Modules

18 ESD Topology (sample) ESD Matrix. Operator Stations EngineeringStation F&G ESD Wide ScreenOverview Ethernet 100 Mbit Ethernet 100 Mbit Commands from OS to SIL3 Remote Input / Output modules, F-SM SIL2/3 or ET200M SIL0/1 Redundant Safety Servers (built in redundancy and auto-repair) Industrial Ethernet 100 Mbit PROFIBUS/ ProfiSafe (SIL3) S7-400FH (SIL3, and redundant) Industrial Ethernet 100 Mbit Controller Cabinet Communication to other nodes SIL3 Field Termination Cabinet SIEMENS S7-400F(SIL3) S7-400F(SIL3) SIEMENS Software is implemented according to procedure, SIL 3 Hardware design according to procedure, SIL 3 Remote "fail safe" Input /output modules F-SM's, SIL 2/3 Remote Input / Output modules, IS1 or ET200M SIL0/1 PROFIBUS/ProfiSafe (SIL3) PROFIBUS/ProfiSafe (SIL3)

19 PSD Topology (sample) Operator Stations EngineeringStation Ethernet 100 Mbit Ethernet 100 Mbit Commands from OS to SIL3 Redundant Servers Industrial Ethernet 100 Mbit Industrial Ethernet 100 Mbit Communication to other nodes SIL3 SIEMENS S7-400F(SIL3) S7-400F(SIL3) SIEMENS Controller Cabinet Software is implemented according to procedure, SIL 3 Hardware design according to procedure, SIL 3 Remote ET200iS or"fail safe" Input /output modules F-SM's, SIL 2/3 Remote Input / Output modules, IS1 or ET200M SIL0/1 Field Termination Cabinet or Junction Box PROFIBUS/ProfiSafe (SIL3)

20 Marine Safety Control System Operator Stations EngineeringStation Ethernet 100 Mbit Commands from OS to SIL3 Manual Ballast Functions Redundant Servers Communication to other nodes SIL3 Industrial Ethernet 100 Mbit Industrial Ethernet 100 Mbit SIEMENS Controller Cabinet A S7-400F(SIL3) ACPU Remote "fail safe" Input /output modules F-SM's, SIL 2/3 Remote Input / Output modules, IS1 or ET200M SIL0/1 Field Termination Cabinet or Junction Box S7-400FH (SIL3, and redundant) S7-400F(SIL3) B CPU SIEMENS Controller Cabinet B Software is implemented according to procedure, SIL 3 Hardware design according to procedure, SIL 3 PROFIBUS/ProfiSafe (SIL3) Synchronization link

21 Subsea PSD solution and HIPPS, both SIL3 ESD, S7-400F, SIL3 PSD, S7-400F, SIL2/3 PCS, S7-400 X x=number of connection`s PROFISAFE,SIL3 Remote F-SM, SIL3 PROFISAFE,SIL3 Remote F-SM, SIL3 RF-Modem PROFBUS (Remote I/O) RF-Modem 1 Twisted Pair 2 Fiber Optic Cable 3 Umbilical with center line 5 Hydraulic 6 Riser (Stigerør) Bleed Hydraulic (SIL 3) PSV HPU Hydraulic Supply Production Topside EV Subsea PT PT HIPPS 1 HIPPS 2 PT PT PT PT SSIV PT 4-20 ma S5 95F/S7 300F 4-20 ma 4-20 ma PT PT T Choke Slot no. 2-4 RF- Modem Profibus DP(to topside modem) 19.2 Kbits Subsea HIPPS/SIL 3 Titanium Pipe/enclosure PT T PSD Remote I/O Simatic S7 F-SM (SIL3) RIO (F.SM.) PWV PMV PT T RF-Modem Titanium Pipe/enclosure SCSSV Profibus DP/ProfiSafe (SIL3) 183 Kbits Slot no. 1 PT T Supplier Document Review Accepted

22 IEC The safety level is applicable for: l l The total solution All the projects lifecycles The system solution covers EUC, including HMI HW engineering, construction and testing l l Software l l l By use of standard hardware set-up With special modules approved by TÜV Function blocks (basic blocks approved by TÜV) Protocols and drivers approved by TÜV Application program (according to procedure) Maintenance procedures Operation and Modification Procedures

23 IEC 61508, Quality Assurance and a few direct requirements 1 2 Concept Overall scope definition Software safety lifecycle 3 Hazard and risk analysis 9.1 Software safety requirements specification OveralI Overall operation and maintenance planning Overall planning safety validation planning 4 5 OveralI installation and commissioning planning Overall safety requirements Safety requirements allocation 9 Safety-related systems: E/E/PES Realisation (see E/E/PES safety lifecycle) Safety-related systems: other technology Realisation External risk reduction facilities Realisation E/E/PES safety lifecycle (see figure 2) 9.2 Software safety validation planning Safety functions requirements specification 9.3 Software design and development Safety integrity requirements specification 12 Overall installation and commissioning 9.4 PE integration 9.5 Software operation and (hardware/software) modification procedures 13 Overall safety validation Back to appropriate overall safety lifecycle phase Overall operation, maintenance and repair Overall modification and retrofit 9.6 Software safety validation Decommissioning or disposal NOTE 1 Activities relating to verification, management of functional safety and functional safety assessment are not shown for reasons of clarity but are relevent to all overall, E/E/PES and software safety lifecycle phases. NOTE 2 The phases represented by boxes 10 and 11 are outside the scope of this standard. 16 NOTE 3 Parts 2 and 3 deal with box 9 (realisation) but they also deal, where relevant, with the programmable electronic (hardware and software) aspects of boxes 13, 14 and 15. To box 12 in figure 2 of part 1 To box 14 in figure 2 of part

24 IEC 61508, Implementation according to proven procedures. Safety requirements shall be specified, and the requirements shall be traceable through all engineering phases. Internal procedures for development of software according to IEC61508 l Procedures developed in co-operation with SINTEF Tele and Data. specification planning implementation verification validation modifications. Internal procedures for hardware design and production according to IEC61508 l Made on the same structure as the SINTEF verified SW procedure

25 Basic principles to fulfill IEC61508 Basically three requirements 1. Quality assurance (98% of IEC61508) 2. Requirement to availability of safety function (PFD requirement, Probability of Failure on Demand) 3. Requirement to safe failure fraction (SFF requirement, Safe Failure Fraction) Answers to the requirements 1. Work methods, procedures, qualified workers 2. Equipment quality, redundancy, second resort, diagnostics 3. Fail to safe design, diagnostics

26 Diagnostics, feedback and redundancy Diagnostics / feedback Diagnostics will give possibility to repair dangerous errors before an emergency situation, hence improving PFD and SFF. Increased diagnostics also give room for extension of test interval, hence saving cost. Feedback will give opportunity to use second shutdown possibility in case of first possibility failing, hence increasing PFD and SFF. Redundancy / second shutdown facility More than one shutdown facility, and all are activated at same time, or second facilities are used as result of feedback when first is failing, will give improved SFF and PFD

27 Risk Determination (one of several methods) How to find Required Safety Integrated Level (SIL) of the Safety System" Risk Graph S1 F1 S2 F2 F1 S3 F2 S4 A1 A2 A1 A2 P P2 P S: Severity of injury/damage 1:small injury, minor environmental damage 2:serious irreversible injury of many people involved or a death temporary serious environmental damage 3:death of many people long-term serious environmental : damage 4:catastrophic results, many deaths F: Frequency and/or exposure time to hazard 1:seldom - quite often 2:frequent - continous A: Avoiding hazard 1:possible 2:not possible P: Probability of Occurrence 1:very low 2:low 3:relatively high

28 Safety Integrity Levels, PFD calculation F&G loop with Gas detector and control valve. Gas detector 4-20 ma AI PROFISAFE PROFISAFE CPU DO F&G loop with Gas detector and control valve. Control valve ESV Safety reliability Block diagram:"

29 Siemens Simatic PCS7F Safety Control System controllers, SIMATIC S7 300/400/1500 F/FH Redundant systems S H *) 2.8MB 600 F-I/Os S7-319F-2DP 1.4MB 1000 F-I/Os S H *) 30MB 3000 F-I/Os S S H *) 768kB 100 F-I/Os S7-317F-2DP 1MB 500 F-I/Os S7-315F-2DP 192kB 300 F-I/Os Solutions S o for l uoilt &i Gas o noffshore s f o r O i l & G a s Certified up to SIL

30 Components S7-400F/FH (Simatic safety system is SW based, and partly HW independent) High available System CPU with F program as a basis CPU 417-4F(H) TÜV certified, including system SW (SIL3) TÜV certified failsafe logic SW blocks (SIL3). Redundant, diverse programs. Method and tool for Engineering / Hardware Configuration / Programming Configuration of the S7-400F-Hardware with Standard HW-Config. Graphical Engineering (programming) with Standard CFC (Continuous Function Chart) Coexistence of Standard- and F-Applications (SIL3) in one CPU (safe island) Connection to the Process Devices PROFIsafe (extra safety layer to Profibus) (SIL3) to ensure failsafe communication via Profibus Process Devices Failsafe I/O modules (SIL1-3) Failsafe process transmitters and actuators (fieldbus devices)

31 And based on additional principle Protected F-Islands CPU operating system CPU hardware Standard user programs Any faults in other modules, environmental factors Safety-related user program Safety-related communication frame Failsafe I/O modules SW based SW based HW/SW based

32 S7 400F F/H system - modularity, PC Standard Engineering Software F-Programming Tool Standard-CPU 417-4H F-Application Program RUN-P RUN STOP CMRES RUN-P RUN STOP CMRES Standard I/O s (ET200M) F-I/O s (ET200M) Standard-ProfibusDP ProfiSafe Protocol

33 CPU-Software Architecture Standard- User Program F-Standardblocks F-User Program F-User Blocks F -Systemblocks F-Control Blocks Program execution Program execution Communications Self tests Standard- Operating System Safety-relevant sections of the operating system F-Access protection Safety-relevant System Func. Calls Safety-relevant Self tests

34 S7-F Concept, Double processing in diverse environments" Instead of redundancy of HW, Siemens Safety System runs redundant SW on same HW. Multi-channel storage of safetycritical data in instance DBs in the CPU, e.g. as word-oriented complement COMP Multi-channel processing of the safety function in F-FBs by SP7-ASIC of the CPU n Standard operation on DATA n Multi-channel operation on COMP 0 DATA FFFF H COMP Bit-AND in bit arithmetic logic unit DATA 1 DATA COMP 0 H COMP Word-OR in ALU CPU-internal comparison in the output driver to improve error locating Error handling: disable outputs and stop CPU CPU-external comparison in receiver (F-output modules and processing F- CPUs) Error handling: safe substitute values and error message Comparison Safety-related message Copy Convert Data CRC Comparison

35 S7-F Program Concept Extensive comparison and monitoring" Time redundancy and Diversity instead of hardware redundancy Operands A, B (Bool) Operation C Result AND Encoding OR Comparison Stop At D /C Diversity Operands /A, /B (Word) Diversity Operation D = /C Diversity Result Time redundancy Time n Time redundancy and instruction diverse processing n Logical program execution and data flow monitoring n Bool and Word Operations processed in different parts of the CPU n 2 independent hardware timer

36 Programming Graphical programming CFC acc. to IEC 1131 F-Library Certified (TÜV) function blocks CFC Links are structs

37 Simplified ESD Program Overview, sample OS part ESD System Configuration, SIL3 HMI OS skjerm MB-ESD U B R Operator Station Input Status X From OS B From field B MA-ESD U B R Status Ext. Alarm HH From OS B From field B MA-ESD LB Bin Bout R ESD Function Status X Blocked from OS From ESD Function To ESD Function Blocked from Field From ESD Function To ESD Function B B B B SB-ESD U B SD OVR Output status X HW Override B Coincidence X Disable Reset X Standard program part F_MA_ESD Normal program Additional I/O diagnostic data (optional) From driver FU, parameter Q_DATA From driver FBB, parameter Q_DATA G_MB_ESD XF BUOP BBOP FE YGR BX QUALITY ACK REQ FBE RBE FUE FBC RUE RBC FUC Y RUC A R BBOS BUOS Additional I/O diagnostic data (optional) From driver FE, parameter Q_DATA From driver FU, parameter Q_DATA From driver FBB, parameter Q_DATA From F_CH_AI From F_MA_ESD Status collection for G_LB_ESD (optional) XF FE BUOP BBOP V_DATA QUALITY ACK REQ PLH PLR FBE RBE FUE RUE BHH BWH BLL BWL VAHH VWH VALL VWL BUOS BBOS Y YGR FBC RBC FUC RUC R Status collection for G_LB (optional) To F_MA_ESD From driver FE, parameter Q_DATA From driver, block from other function, Q_DATA From driver, block to other function, Q_DATA G_LB FE BCB BBYXOP BCU BBXSOP BEB BEO BCB FBXSE YGR RBXSE FBYXE RBYXE BX FBXSC BXS RBXSC BBXSOS FBYXC BBYXOS RBYXC Y R Status from LB-utilities (optional) Insrtance data block number for LB-utilities (optional) Additional diagnostic data (optional) Feedback from normal I/O G_SB_ESD XF YF YRO YGR BCH XGH BCL XGL BU XOC BO XO BC RDAE RDDE LSE BRXDOS BLSOS BY RDAC RDDC VALUE R ACK_REQ LSC QUALITY Safe program CFC Fail-safe program part F_M_DIx CHADDR Module driver Symbolic address AOS Channel driver CHADDR VALUE Channel driver CHADDR VALUE F_CH_DI F_CH_DI Q_DATA QUALITY ACK REQ QN Q QBAD QUALITY ACK REQ QN Q QBAD ESD INPUT: Q - Used for normally de-energized inputs QN - Used for normally energized inputs OPERATORS' FIELD DEVICE Module driver F_M_AI Symbolic address Fault annunciation CHADDR "0" FE F_MB_ESD FBC RBC FUC RUC R X PNLAT FBB FU RX Channel driver CHADDR VHRANGE VLRANGE VALUE ACK NEC F_CH_AI QUALITY V_DATA ACK REQ OVHRANGE OVLRANGE V QBAD FBE RBE FUE RUE A BB BU BBOS BUOS OPERATORS' FIELD DEVICE Y From G_MA_ESD To G_MA_ESD Fault annunciation X X1 NX1 X2 NX2 X3 NX3 X4 NX4 X8 NX8 RX PCYCLE PLAT PAHH PWH PALL PWL RX FE FBB FU F_SBI F_MA_ESD FBC RBC FUC RUC R Y FBE RBE FUE RUE BHH BWH BLL BWL VAHH VWH VALL VWL BUOS BBOS AHH ALL BU BB Y1 Channel driver F_CH_DO I ACK_REI To G_MA_ESD VALUE ACK_REQ QUALITY CHADDR QBAD Module driver F_M_DO CHADDR STATUS INDICATION LED's F_OR4 IN1 IN2 OUT XS X RX FBXS FBYX FE F_LB FBXSC RBXSC FBYXC RBYXC R PNLAT FBXSE RBXSE FBYXE RBYXE BBXSOS BBYXOS BX BXS BBXS BBYX Y YX OPERATORS' FIELD DEVICE XS X RX FBXS FBYX FE F_LB FBXSC RBXSC FBYXC RBYXC R PNLAT FBXSE RBXSE FBYXE RBYXE BBXSOS BBYXOS BX BXS Y BBXS BBYX YX XS X RX FBXS FBYX FE STATUS INDICATION LED's STATUS INDICATION LED's F_LB FBXSC RBXSC FBYXC RBYXC R PNLAT FBXSE RBXSE FBYXE RBYXE BBXSOS BBYXOS BX BXS BBXS BBYX Y YX Override from Matrix Override-switch via F-SM F_CH_DI Y CHADDR Q_DATA ACK REQ VALUE F_OR4 IN1 IN2 OUT QN Q QBAD Ovrr. feedback "1" "0" "0" RDAC RDDC R LSC X RX RXD PNLAT PDY XO XOC XBOC XBONC XBOF F_SB_ESD RDAE RDDE LSE BPDY BLSOS BRXDOS Y YN YBOC YBONC YBOF Channel driver F_CH_DO I ACK_REI RDAC RDDC R LSC X RX RXD PNLAT PDY XO XOC XBOC XBONC XBOF VALUE ACK_REQ QUALITY CHADDR QBAD F_SB_ESD RDAE RDDE LSE BPDY BLSOS BRXDOS Y YN YBOC YBONC YBOF Module driver CHADDR F_M_DO Matrix indicator LED's

38 Engineering tool Program Protection Read/Write protection with password Enabling of the Failsafe function of the CPU 417-4H or 414-4H CFC

39 Program protection Program Signature Signature of F-Program for TÜV Certification. Program taken out of CPU cannot be downloaded unless carrying the correct signature CFC The signature is generated by the programming tool, and is changed after every change of the program

40 Programming Comparison of existing and changed program Comparison of different F-program versions Deviations shall be checked before download of change CFC

41 S7-400H Redundancy Principle ( for increased availability) P S# C P U# D D E# A# A E# A C A# P# Synchronization, information and status exchange P S# C P U# D D E# A# A E# A A# C P# I M I M D E D A A E A A F M PROCESS

42 I/O Configuration Switching of master by use of redundant Profibus Redundant IM Profibus-DP L+ L+ IO with active backplane bus performing the switchover Target: Reduce common mode faults for the switch-over to a minimum IM IM Bus module Active backplane bus Achieved by: Very simple component does the switchover

43 Flexible Modular Redundancy Make any component redundant AI DI DO DO

44 Flexible Modular Redundancy AI DI DO

45 Flexible Modular Redundancy Make any component redundant AI DI AI DI DO DO Physically separate redundant resources

46 Flexible Modular Redundancy Make any component redundant Dual AI DI DO DO Physically separate redundant resources AI DI AI DO Mix and match redundancy Simplex AI Triple

47 Flexible Modular Redundancy Make any component redundant AI DI DO DO Dual Physically separate redundant resources AI AI Triple DI AI DO Simplex Mix and match redundancy Tolerate multiple faults with no impact on safety Safety is not dependant on redundancy; all components are SIL3-capable Redundancy only for availability; No degraded mode

48 Flexible Set-up s AI AI DI DO DO Multiple Fault Tolerant Fieldbus architecture allows system to tolerate multiple faults without interruption I/O redundancy independent of CPU redundancy All components rated for SIL3 No degraded mode Safety not dependent on redundancy AI AI DI DO DO 2oo3 AI oo2 Valves 2oo3 PT

49 Alternative setup by others Fail Safe and High Availability due to 2oo3 HW voting Sample from Triconex design

50 Input and output modules to SIL 3, 2 and 1 ET 200 M F-SM, Fail Safe Modules l SIL3, 2 or 1dependant on configuration (TÜV) SIL 3 also in single configuration for most modules SIL 3 with single or redundant bus connection ET200 isp, zone 1 l ET200 SP l Small granularity modules for Zone 1, SIL3 New, Profinet interface, SIL1 to SIL3 RUN-P RUN STOP CMRES RUN-P RUN STOP CMRES Standard SM s F-SM s

51 Architecture S7-300 Fail Safe Modules (sample) F-Digital Output, with built in redundancy, self verification and degrading Bus interface Microcontroller Dualport RAM Microcontroller Output driver Second disconnection facility Output L+ Read back V Supply If Output driver fails to bring output to safe state, 0, the microcontroller does, based on the read back, order the Second disconnection facility to shut the card down

52 S7-300 Fail Safe Modules Redundant microcontroller in each IO module Safety Integrated Level 1oo1 evaluation, SIL 2, AK 4 1oo2 evaluation, SIL 3, AK 6, internal in module Diagnose of internal and external errors mutual function checking of the microcontrollers input or output test branching of the input signals to both microcontrollers discrepancy analysis of the redundant input signals readback of the output signals and discrepancy analysis Second disconnection facility in the case of outputs Communication with CPU via Profisafe

53 S7-300 Fail Safe I/O Modules Samples of modules available n SM326F, DI DC24V 24 x SIL2, 12 x SIL3, with diagnostics interrupt n SM326F, DI NAMUR [EEx ib] 8 x SIL2, 4 x SIL3 with diagnostics interrupt n SM326F, DO DC24V/2A 10 x SIL3, current source, diagnostics interrupt n SM336F, AI 4-20mA 6 x SIL2 or 3, with diagnostics interrupt

54 Fail Safe I/O Modules Library for interfaces to field devices L + 24 VDC POWER DISTRIBUTION 10A 16A 16A 2A Library with standard, pre-verified instrument interfaces ESD MATRIX L+ 24 VDC SAFETY INPUTS AND OUTPUTS, S7 400F WITH SAFETY I/O MODULES, F- SM S AI-41F Safe analogue input, 4-20 ma, 2 Wire, SIL 2. AI-43F Safe analogue input, 4-20 ma, 3 Wire, SIL 2, current source AI-44F Safe analogue input, 4-20 ma, 3 Wire, SIL 2, high power consumpt. AI-50F Safe high available analogue input, 4-20 ma, 2 Wire, 2 oo 3. AI-51F Safe analogue input, 4-20 ma, 2 wire, to digital, SIL 2 AI-IS-41F Safe analogue input, 4-20 ma, EEx(i)(a), 2 Wire, SIL 2. AI-IS-51F Safe analogue input, EEx ib IIC, 4-20 ma, to digital, SIL 2 DI-41F Safe digital input, SIL 2 DI-42F Safe high available, digital input, SIL 2 DI-44F Safe digital input from clean contact / NAMUR, SIL2 DI-IS-41F Safe, EEx ib IIC, digital input from clean contact / NAMUR, SIL2 DI-IS-46F Safe, high available, EEx ib IIC, double clean contact/ NAMUR, SIL2 / DI-IS-46F Safe, EEx ib IIC, double clean contact /NAMUR, SIL3. DO-41F Safe, digital output, 24 V DC, 2A, SIL2 / 3 DO-41FR Safe digital output, SIL 2 with relay, SIL2 DO-RE-45F Safe, high available, digital output, 24 V DC, 2A, SIL2 /3 DO-46F Safe, digital output with manual release, 24 V DC, 2A, SIL2 /3 DI-MA-41F Safe, high available digital input from pushbutton, SIL 3 DI-MA-42F Safe, high available digital input from pushbutton, SIL 2 DI-MA-43F Safe, digital input from pushbutton, SIL 3 DI-MA-44F Safe, digital input from pushbutton, SIL 2 DI-MA-45F Safe, high available digital input from pushbutton, SIL 3 DI-MA-46F Safe, high available digital input from pushbutton, SIL 2 DI-MA-47F Safe digital input from pushbutton (with LED), open contact, SIL 2 DI-MA-48F Safe digital input from pushbutton (without LED), open contact, SIL 2 DI-MA-49F Safe digital input from pushbutton, NAMUR, SIL 2 DO-MA-41F Safe digital output to LED / LAMP, SIL2/3 DO-MA-42F Safe digital output to two LED / LAMP, SIL 2/3 DO-MA-43F Safe digital output to LED in fire fighting release pushbutton, SIL FIELD EQUIPMENT FIELD JUNCTION BOX TERMINAL RAIL DO-MA-41 OVERRIDE L- 0V 0 V distrib. 0 V distrib. FIELD TERMINATION CABINET L- 0V Hardware Typecircuit code DO-RE-45F ch ES BL00-0AA0 L+ DI 32 ch M 6ES BF00-0AB0 10 DO, SAFE 1L+ 2L+ 2L+ 3L+ 3L+ 3M 3M 2M 2M 1M Main Switch Read back 6ES BF00-0AB0 10 DO, SAFE 1L+ 2L+ 2L+ 3L+ 3L+ 3M 3M 2M 2M 1M Main Switch Read back

55 Fail Safe I/O Modules Development of interfaces to field devices Man må ofte ting i sammenheng før en oppdager at det kan være spesielle feilsituasjoner

56 Fail Safe I/O Modules Development of interfaces to field devices Det er utrolig hvor lite komplisert det skal være før noe kan gå galt (eksempel på bruk av kretsen fra foregående slide)

57 BESKRIVELSE UTSTYR ALARM ITK SKR HULDRA ITK SKR VFR NAS 0 SKR NAS 0 LIVBÅT 0 NAS 0 HELIDEKK NAS 0 SKR VFR NAS 0 MG 0 NAS 1 SKR NAS 1 SKR VFR 1 GASS I BEGGE GEN. LUFTINNTAK NAS 2 SKR NAS 2 LIVBÅT 2 NAS 2 HELIDEKK NAS 2 HJELPEUTSTYR OMRÅDE 2 GASS I EKSPL. FARLIG OMRÅDE DELUGE AKTIVERT POP SPRAY HELIDEKK AKTIVERT 2 VFR HULDRA LINK NEDE NAS 2 SKR VFR BRANN & GASS NAS 0/NAS 1 VESLEFRIKK 2 NAS 2 MG BRO NAS 2 MG NAS SYSTEM BRANN & GASS MG 2 PSD F&G 79- ES ES ES ES ES ES ES ES ES XS ES ES ES ES ES XS- 2003B 71- XS- 2051B 75- XS- 2051B 86- ES ES EY ES ES XS- 2004B 79- ES XS- 2002B 79- ES BROING BRØNN A01 A02 A03 A04 A05 A06 A07 A08 A09 A10 A11 A12 GASS EKSPORT STIGERØR KONDENSAT EKSPORT STIGERØR SEPARATOR TRYKKAVL. GASS KJØLER TRYKKAVL. GASSLINJE TRYKKAVL. ALARMHO RN KVITTERING AV ALARMER LAMPETE ST ALARM BROING SYSTEMFEIL CPU A SYSTEMFEIL CPU B I/O FEIL SSSV MASTER TILBAKE- STILL TILBAKE- STILL SPENNINGS- BORTFALL TRYKK- AVLASTNING HULDRA BRANN I EKSPL. FARLIG OMRÅDE TRYKK- AVLASTNING VESLEFRIKK TILBAKE- STILL UPS BATTERIER ISOLER UPS 48V DC TELEKOM. ISOLER UPS 230V AC TELEKOM. ISOLER GMDSS TELEKOM. ISOLER UPS 48V DC LOS/PABX ISOLER UPS 230V AC BATTERIER ISOLER KRAN 24V DC BATTERIER ISOLER GEN. 82-EG50A BATTERIER ISOLER GEN. 82-EG50B BATTERIER ISOLER GENERATOR 82-EG50A ISOLER GENERATOR 82-EG50B PSD 27- EY EY EY EY EY EY A/B 85-EY A/B 85-EY EY A/B 85-EY A/B 85-EY EY A 85-EY B 82-EY A 82-EY B ALARM BEMANN./UBEMANN. HULDRA BEMANNET Operator interface to SIL3 Man - Machine interface for daily use are the Operator Stations (but Bill Gates deliver no SIL3 solutions) Operator Stations with commands to SIL3 l l High end servers and operator stations, with redundancy and extensive diagnosis Special TÜV approved procedure for safe commands from operator stations to F-area (safe island) for SIL3 commands to controller. CAP solutions ensures HMI interface to SIL3 l l l LED elements connected to SIL3 remote I/O Necessary information for an emergency situation Necessary input elements, pushbuttons, to put the process to safe state. Often with direct interface to process. TAL NAS NAS NAS NAS NAS NAS NAS NAS ITK ITK NØDAVSTENGINGSMATRISE INNGANGER UTGANGER PROSESS ELEKTRO ITK NAS 0 NAS 1 NAS 2 TAL NAS 0 NAS 1 NAS

Siemens Safety Systems. NTNU 05.03.2012, Arnt Olav Sveen

Siemens Safety Systems. NTNU 05.03.2012, Arnt Olav Sveen Siemens Safety Systems. NTNU 05.03.2012, Arnt Olav Sveen l Historikk og bakgrunn l Applikasjoner l Krav i IEC61508 l Løsninger» Generell SIS Basis» Basis system Simatic S7 F» Programvare /programmering»

More information

Safety Integrated. SIMATIC Safety Matrix. The Management Tool for all Phases of the Safety Lifecycle. Brochure September 2010. Answers for industry.

Safety Integrated. SIMATIC Safety Matrix. The Management Tool for all Phases of the Safety Lifecycle. Brochure September 2010. Answers for industry. SIMATIC Safety Matrix The Management Tool for all Phases of the Safety Lifecycle Brochure September 2010 Safety Integrated Answers for industry. Functional safety and Safety Lifecycle Management Hazard

More information

Safety Requirements Specification Guideline

Safety Requirements Specification Guideline Safety Requirements Specification Comments on this report are gratefully received by Johan Hedberg at SP Swedish National Testing and Research Institute mailto:johan.hedberg@sp.se -1- Summary Safety Requirement

More information

Veiligheid & communicatie-niveaus

Veiligheid & communicatie-niveaus Veiligheid & communicatie-niveaus Industriële communicatie Hfst1. Actuator-sensor-niveau Hfst1. Veldniveau Hfst1. Celniveau Hfst1. Management niveau Hfst1. Vereisten communicatieniveaus Data volume Transmissietijd

More information

Selecting Sensors for Safety Instrumented Systems per IEC 61511 (ISA 84.00.01 2004)

Selecting Sensors for Safety Instrumented Systems per IEC 61511 (ISA 84.00.01 2004) Selecting Sensors for Safety Instrumented Systems per IEC 61511 (ISA 84.00.01 2004) Dale Perry Worldwide Pressure Marketing Manager Emerson Process Management Rosemount Division Chanhassen, MN 55317 USA

More information

DATA COMMUNICATION BETWEEN PROGRAMMABLE LOGIC CONTROLLERS IN THE INDUSTRIAL DISTRIBUTION APPLICATIONS

DATA COMMUNICATION BETWEEN PROGRAMMABLE LOGIC CONTROLLERS IN THE INDUSTRIAL DISTRIBUTION APPLICATIONS DATA COMMUNICATION BETWEEN PROGRAMMABLE LOGIC CONTROLLERS IN THE INDUSTRIAL DISTRIBUTION APPLICATIONS Anna BYSTRICANOVA 1, Andrej RYBOVIC 1 1 Department of Mechatronics and Electronics, Faculty of Electrical

More information

Basic Fundamentals Of Safety Instrumented Systems

Basic Fundamentals Of Safety Instrumented Systems September 2005 DVC6000 SIS Training Course 1 Basic Fundamentals Of Safety Instrumented Systems Overview Definitions of basic terms Basics of safety and layers of protection Basics of Safety Instrumented

More information

SIMATIC NET. CP 243-2 AS-Interface Master B C. Preface Contents. Technical Description and Installation Instructions Interface to the User Program

SIMATIC NET. CP 243-2 AS-Interface Master B C. Preface Contents. Technical Description and Installation Instructions Interface to the User Program Preface Contents SIMATIC NET CP 243-2 AS-Interface Master Manual Technical Description and Installation Instructions Interface to the User Program 2 in the S7-200 CPU Access to the Data of the AS-i Slaves

More information

High Availability and Safety solutions for Critical Processes

High Availability and Safety solutions for Critical Processes High Availability and Safety solutions for Critical Processes An Introduction to AADvance Subrahmanya Bhat P Sr. Systems Engineer 09 & 10 th Sep 2014 PUBLIC INFORMATION Rev 5058-CO900E 2 Agenda Process

More information

Version: 1.0 Latest Edition: 2006-08-24. Guideline

Version: 1.0 Latest Edition: 2006-08-24. Guideline Management of Comments on this report are gratefully received by Johan Hedberg at SP Swedish National Testing and Research Institute mailto:johan.hedberg@sp.se Quoting of this report is allowed but please

More information

SIL manual. Structure. Structure

SIL manual. Structure. Structure With regard to the supply of products, the current issue of the following document is applicable: The General Terms of Delivery for Products and Services of the Electrical Industry, published by the Central

More information

GE Power Controls FIELDBUS APPENDIX PROFIBUS DP. Doc. No.: ASTAT Plus PB_Appendix-v0

GE Power Controls FIELDBUS APPENDIX PROFIBUS DP. Doc. No.: ASTAT Plus PB_Appendix-v0 GE Power Controls = FIELDBUS APPENDIX PROFIBUS DP = Doc. No.: ASTAT Plus PB_Appendix-v0 Fieldbus Appendix: PROFIBUS DP 1 Fieldbus Introduction...... 2 1.1 Introduction to Profibus-DP... 2 1.2 Network Overview...

More information

Value Paper Author: Edgar C. Ramirez. Diverse redundancy used in SIS technology to achieve higher safety integrity

Value Paper Author: Edgar C. Ramirez. Diverse redundancy used in SIS technology to achieve higher safety integrity Value Paper Author: Edgar C. Ramirez Diverse redundancy used in SIS technology to achieve higher safety integrity Diverse redundancy used in SIS technology to achieve higher safety integrity Abstract SIS

More information

Introduction to PROFIBUS and PROFINET

Introduction to PROFIBUS and PROFINET Introduction to PROFIBUS and PROFINET Andy Verwer Technical Officer for PROFIBUS UK Verwer Training & Consultancy Ltd Gold distributor PROFIBUS Characteristics PROFIBUS is a bi-directional digital communication

More information

Hardware safety integrity Guideline

Hardware safety integrity Guideline Hardware safety integrity Comments on this report are gratefully received by Johan Hedberg at SP Swedish National Testing and Research Institute mailto:johan.hedberg@sp.se Quoting of this report is allowed

More information

SAFETY MANUAL SIL Switch Amplifier

SAFETY MANUAL SIL Switch Amplifier PROCESS AUTOMATION SAFETY MANUAL SIL Switch Amplifier KCD2-SR-(Ex)*(.LB)(.SP), HiC282* ISO9001 2 With regard to the supply of products, the current issue of the following document is applicable: The General

More information

SIMATIC Safety Workshop

SIMATIC Safety Workshop Experience the fast and easy way to safe machines at highest productivity Unrestricted Siemens Industry, Inc. 2014-2015 All rights reserved. - Agenda Introduction Why Machine Safety? Why Safety PLC s?

More information

Workshop PROFINET in Process Automation. Intern / Siemens AG 2014. Alle Rechte vorbehalten.

Workshop PROFINET in Process Automation. Intern / Siemens AG 2014. Alle Rechte vorbehalten. Workshop PROFINET in Process Automation siemens.com/answers Workshop: PROFINET in Process Automation Agenda PROFINET in Process Automation Requirements of the Process Industrie PROFINET - One solution

More information

PROFINET the Industrial Ethernet standard. Siemens AG 2013. Alle Rechte vorbehalten.

PROFINET the Industrial Ethernet standard. Siemens AG 2013. Alle Rechte vorbehalten. the Industrial Ethernet standard is 100% Ethernet is Ethernet Ethernet is the established standard in the IT world for fast exchange of data (IEEE 802.3) is always full duplex simultaneous communication

More information

PROFIBUS DP Diagnostics and Network Monitoring Tools

PROFIBUS DP Diagnostics and Network Monitoring Tools PROFIBUS DP Diagnostics and Network Monitoring Tools Andy Verwer Verwer Training & Consultancy Ltd Outline of Presentation Examine the types of problems that commonly occur in PROFIBUS systems. Set the

More information

Funktionale Sicherheit IEC 61508 & IEC 62443

Funktionale Sicherheit IEC 61508 & IEC 62443 Funktionale Sicherheit IEC 61508 & IEC 62443 Seite 1 PROFIsafe trifft New York PROFIsafe Senior Safety Expert Siemens AG, DF FA AS E&C-PRM3 bernard.mysliwiec@siemens.com Seite 2 Roosevelt Island Picture

More information

CPU 317-2 PN/DP: Configuring an ET. 200S as PROFINET IO device SIMATIC. PROFINET CPU 317-2 PN/DP: Configuring an ET 200S as PROFINET IO device

CPU 317-2 PN/DP: Configuring an ET. 200S as PROFINET IO device SIMATIC. PROFINET CPU 317-2 PN/DP: Configuring an ET 200S as PROFINET IO device CPU 317-2 PN/DP: Configuring an ET 200S as PROFINET IO device SIMATIC PROFINET CPU 317-2 PN/DP: Configuring an ET 200S as PROFINET IO device Introduction 1 Preparation 2 Learning units 3 Further Information

More information

PROFINET IO Diagnostics 1

PROFINET IO Diagnostics 1 PROFINET IO is a very cost effective and reliable technology. However, extensive installations can have thousands of PROFINET IO devices operating on many networks. The reliable operation of these networks

More information

6ES7 313-6BE01-0AB0 6ES7 313-5BE01-0AB0

6ES7 313-6BE01-0AB0 6ES7 313-5BE01-0AB0 4 SIMATIC S7-300 Central processing units CPU 312C to CPU 317F-2 DP CPU 317F-2 DP The failsafe CPU with a large program memory and quantity framework for demanding applications For configuration of a failsaf

More information

Efficient servicing. Easy maintenance. High level of uptime.

Efficient servicing. Easy maintenance. High level of uptime. Efficient servicing. Easy maintenance. High level of uptime. At LEVEL we believe that efficient servicing, easy maintenance and a high level of uptime must be given top priority when developing products

More information

PROFIBUS diagnostics and network monitoring

PROFIBUS diagnostics and network monitoring PROFIBUS diagnostics and network monitoring Andy Verwer Verwer Training & Consultancy Ltd Dale Fites Hitex UK www.verwertraining.com www.hitex.co.uk PROFIBUS PROFIBUS is a very reliable and cost effective

More information

Why SIL3? Josse Brys TUV Engineer j.brys@hima.com

Why SIL3? Josse Brys TUV Engineer j.brys@hima.com Why SIL3? Josse Brys TUV Engineer j.brys@hima.com Agenda Functional Safety Good planning if specifications are not right? What is the difference between a normal safety and SIL3 loop? How do systems achieve

More information

Logic solver application software and operator interface

Logic solver application software and operator interface Logic solver application software and operator interface By RJ Perry, Control Systems Consultant Correctly implemented and structured functional logic, together with operator interface displays, can improve

More information

Programmable Logic Controller PLC

Programmable Logic Controller PLC Programmable Logic Controller PLC UPCO ICAI Departamento de Electrónica y Automática 1 PLC Definition PLC is a user friendly, microprocessor based, specialized computer that carries out control functions

More information

IEC 61508 Overview Report

IEC 61508 Overview Report IEC 61508 Overview Report A Summary of the IEC 61508 Standard for Functional Safety of Electrical/Electronic/Programmable Electronic Safety-Related Systems exida Sellersville, PA 18960, USA +1-215-453-1720

More information

Safety Integrated. Safety Integrated for Process Automation. Reliable, Flexible, Easy. Technical Brochure April 2008. www.siemens.

Safety Integrated. Safety Integrated for Process Automation. Reliable, Flexible, Easy. Technical Brochure April 2008. www.siemens. Safety Integrated for Process Automation Reliable, Flexible, Easy Technical Brochure April 2008 Safety Integrated www.siemens.com/process-safety Totally Integrated Automation ERP Enterprise Resource Planning

More information

Interactive Fire Alarm System. User Guide. Loop viewer tool, LoopViewer. Protecting life, environment and property... P-ASAFE-LV/FE, Rev.

Interactive Fire Alarm System. User Guide. Loop viewer tool, LoopViewer. Protecting life, environment and property... P-ASAFE-LV/FE, Rev. Interactive Fire Alarm System User Guide Loop viewer tool, LoopViewer Protecting life, environment and property... P-ASAFE-LV/FE, Rev. A, 033105 COPYRIGHT This publication, or parts thereof, may not be

More information

SIMATIC S7-300, CPU 315-2DP CPU WITH MPI INTERFACE INTEGRATED 24 V DC POWER SUPPLY 128 KBYTE WORKING MEMORY 2

SIMATIC S7-300, CPU 315-2DP CPU WITH MPI INTERFACE INTEGRATED 24 V DC POWER SUPPLY 128 KBYTE WORKING MEMORY 2 6ES7315-2AG10-0AB0 Page 1 Product data sheet 6ES7315-2AG10-0AB0 SIMATIC S7-300, CPU 315-2DP CPU WITH MPI INTERFACE INTEGRATED 24 V DC POWER SUPPLY 128 KBYTE WORKING MEMORY 2. INTERFACE DP-MASTER/SLAVE

More information

Fiessler Programmable Safety Center. Flexible Hard- and Software concept. Available with a safe bus system or/and two counter inputs

Fiessler Programmable Safety Center. Flexible Hard- and Software concept. Available with a safe bus system or/and two counter inputs E L E K T R O N I K Appliance Description Programmable safety center FPSC Fiessler Programmable Safety Center Flexible Hard- and Software concept Available with a safe bus system or/and two counter inputs

More information

Failure Modes, Effects and Diagnostic Analysis

Failure Modes, Effects and Diagnostic Analysis Failure Modes, Effects and Diagnostic Analysis Project: Plant-STOP 9475 Company: R. STAHL Schaltgeräte GmbH Waldenburg Germany Contract No.: STAHL 13/04-027 Report No.: STAHL 13/04-027 R024 Version V1,

More information

SECTION 13421 PROGRAMMABLE LOGIC CONTROLLERS AND COMPUTER CONTROL SYSTEM PART 1 GENERAL. 1.01 Summary. A. Section Includes:

SECTION 13421 PROGRAMMABLE LOGIC CONTROLLERS AND COMPUTER CONTROL SYSTEM PART 1 GENERAL. 1.01 Summary. A. Section Includes: SECTION 13421 PROGRAMMABLE LOGIC CONTROLLERS AND COMPUTER CONTROL SYSTEM PART 1 GENERAL 1.01 Summary A. Section Includes: 1. The ISS shall furnish all labor, materials, equipment, services and incidentals

More information

SAFETY LIFE-CYCLE HOW TO IMPLEMENT A

SAFETY LIFE-CYCLE HOW TO IMPLEMENT A AS SEEN IN THE SUMMER 2007 ISSUE OF... HOW TO IMPLEMENT A SAFETY LIFE-CYCLE A SAFER PLANT, DECREASED ENGINEERING, OPERATION AND MAINTENANCE COSTS, AND INCREASED PROCESS UP-TIME ARE ALL ACHIEVABLE WITH

More information

6ES7313-5BF03-0AB0. Supply voltages Rated value 24 V DC Yes permissible range, upper limit (DC) circuit breaker type B, min. 4 A

6ES7313-5BF03-0AB0. Supply voltages Rated value 24 V DC Yes permissible range, upper limit (DC) circuit breaker type B, min. 4 A 6ES7313-5BF03-0AB0 Page 1 Product data sheet 6ES7313-5BF03-0AB0 SIMATIC S7-300, CPU 313C, COMPACT CPU WITH MPI, 24 DI/16 DO, 4AI, 2AO 1 PT100, 3 FAST COUNTERS (30 KHZ), INTEGRATED 24V DC POWER SUPPLY,

More information

DVPPF02-H2. PROFIBUS DP Slave Communication Module Application Manual

DVPPF02-H2. PROFIBUS DP Slave Communication Module Application Manual DVPPF02-H2 PROFIBUS DP Slave Communication Module Application Manual Warning Please read this instruction carefully before use and follow this instruction to operate the device in order to prevent damages

More information

Training Document for Integrated Automation Solutions Totally Integrated Automation (TIA) MODULE M1

Training Document for Integrated Automation Solutions Totally Integrated Automation (TIA) MODULE M1 Training Document for Integrated Automation Solutions Totally Integrated Automation (TIA) MODULE M1 Startup Programming of the SIMATIC S7-1200 with TIA Portal V10 T I A Ausbildungsunterlage Seite 1 von

More information

Technical Training Module ( 30 Days)

Technical Training Module ( 30 Days) Annexure - I Technical Training Module ( 30 Days) Section 1 : Programmable Logic Controller (PLC) 1. Introduction to Programmable Logic Controller - A Brief History, Need and advantages of PLC, PLC configuration,

More information

SAFETY MANUAL SIL RELAY MODULE

SAFETY MANUAL SIL RELAY MODULE PROCESS AUTOMATION SAFETY MANUAL SIL RELAY MODULE KFD0-RSH-1.4S.PS2 ISO9001 3 With regard to the supply of products, the current issue of the following document is applicable: The General Terms of Delivery

More information

A methodology For the achievement of Target SIL

A methodology For the achievement of Target SIL A methodology For the achievement of Target SIL Contents 1.0 Methodology... 3 1.1 SIL Achievement - A Definition... 4 1.2 Responsibilities... 6 1.3 Identification of Hazards and SIL Determination... 8

More information

PROFIBUS. Design and. Good Practices

PROFIBUS. Design and. Good Practices Design and Good Practices Webpage www.profibus.com.sg 3 ERP DCS MES Ethernet backbone 4 3 5 6 2 1 PA coupler PA link PA 7 8 31 Author / Title of the presentation 4 3 5 6 2 1 PA 7 8 31 DP - Principle 4

More information

Safety Manual BT50(T) Safety relay / Expansion relay

Safety Manual BT50(T) Safety relay / Expansion relay Safety Manual BT50(T) Safety relay / Expansion relay ABB Jokab Safety Varlabergsvägen 11, SE-434 39, Sweden www.abb.com/jokabsafety Read and understand this document Please read and understand this document

More information

FOUNDATION Fieldbus High Speed Ethernet Control System

FOUNDATION Fieldbus High Speed Ethernet Control System FOUNDATION Fieldbus High Speed Ethernet Control System Sean J. Vincent Fieldbus Inc. Austin, TX, USA KEYWORDS Fieldbus, High Speed Ethernet, H1, ABSTRACT FOUNDATION fieldbus is described in part by the

More information

Application of IEC 61508 and IEC 61511 in the Norwegian Petroleum Industry

Application of IEC 61508 and IEC 61511 in the Norwegian Petroleum Industry Application of IEC 61508 and IEC 61511 in the Norwegian Petroleum Industry Lars Bodsberg Research Director SINTEF, Trondheim, Norway lars.bodsberg@sintef.no http://www.sintef.no/ 30 November 2005 Delft,

More information

PROFIBUS Diagnostics and Network Monitoring Tools

PROFIBUS Diagnostics and Network Monitoring Tools PROFIBUS Diagnostics and Network Monitoring Tools Andy Verwer Verwer Training & Consultancy Ltd Dave Tomlin Hitex (UK) Ltd Outline of Presentation Briefly look at the types of problems that commonly occur

More information

Process Alarm Solutions

Process Alarm Solutions Process Alarm Solutions Reliable Supervision and Control www.selco.com SELCO flexible alarm panels for supervision and control SELCO provides efficient and reliable solutions for alarm monitoring of electrical

More information

RECOMMENDED GUIDELINES FOR THE APPLICATION OF IEC 61508 AND IEC 61511 IN THE PETROLEUM ACTIVITIES ON THE NORWEGIAN CONTINENTAL SHELF

RECOMMENDED GUIDELINES FOR THE APPLICATION OF IEC 61508 AND IEC 61511 IN THE PETROLEUM ACTIVITIES ON THE NORWEGIAN CONTINENTAL SHELF RECOMMENDED GUIDELINES FOR THE APPLICATION OF IEC 61508 AND IEC 61511 IN THE PETROLEUM ACTIVITIES ON THE NORWEGIAN CONTINENTAL SHELF No.: 070 Date effective: 1.02.2001 Revision no.: 01 Date revised: NA

More information

S7-1200 and STEP 7 Basic V10.5

S7-1200 and STEP 7 Basic V10.5 S7-1200 and STEP 7 Basic V10.5 S7-200 vs. S7-1200 Expandability S7-200 S7-1200 max. 7 Modules max. 3 Modules (CM) max. 8 Modules (SM) Page 2 Advantages of S7-1200, compared to S7-200 I/O Internal periphery

More information

APPLICATION OF IEC 61508 AND IEC 61511 IN THE NORWEGIAN PETROLEUM INDUSTRY

APPLICATION OF IEC 61508 AND IEC 61511 IN THE NORWEGIAN PETROLEUM INDUSTRY 1 of 159 APPLICATION OF IEC 61508 AND IEC 61511 IN THE NORWEGIAN PETROLEUM INDUSTRY 2 of 159 Table of content FOREWORD...5 1 INTRODUCTION...6 1.1 SCOPE AND PURPOSE OF DOCUMENT...6 1.2 RISK REDUCTION, SIS

More information

SIMATIC S7-1200 Basic Controller in the TIA Portal

SIMATIC S7-1200 Basic Controller in the TIA Portal Technical slides SIMATIC S7-1200 Basic Controller in the TIA Portal Frei verwendbar / Siemens AG 2015. Alle Rechte vorbehalten. www.siemens.com/s7-1200 SIMATIC Controller S7-1200 Efficient engineering

More information

MTCS Modular Train Control System

MTCS Modular Train Control System MTCS Modular Train Control System SIL 4 Railway Computer for Rolling Stock and Wayside Applications In Accordance with: EN 50155 EN 50121-4 EN 50129 EN 50126 EN 50128 The MTCS Approach... 4» MTCS Modular

More information

Controlling Risks Safety Lifecycle

Controlling Risks Safety Lifecycle Controlling Risks Safety Lifecycle Objective Introduce the concept of a safety lifecycle and the applicability and context in safety systems. Lifecycle Management A risk based management plan for a system

More information

Getting Started - SINAMICS Startdrive. Startdrive. SINAMICS Getting Started - SINAMICS Startdrive. Introduction 1

Getting Started - SINAMICS Startdrive. Startdrive. SINAMICS Getting Started - SINAMICS Startdrive. Introduction 1 Introduction 1 Connecting the drive unit to the PC 2 Startdrive SINAMICS Getting Started - SINAMICS Startdrive Getting Started Creating a project 3 Going online and incorporating devices 4 Commissioning

More information

Safety controls, alarms, and interlocks as IPLs

Safety controls, alarms, and interlocks as IPLs Safety controls, alarms, and interlocks as IPLs Angela E. Summers, Ph.D., P.E. SIS-TECH Solutions 12621 Featherwood Dr. Suite 120, Houston, TX 77034 Keywords: safety controls, alarms, interlocks, SIS,

More information

S7-400H SIMATIC. Fault-tolerant systems S7-400H. Preface 1 Fault-tolerant automation systems. S7-400H setup options 3.

S7-400H SIMATIC. Fault-tolerant systems S7-400H. Preface 1 Fault-tolerant automation systems. S7-400H setup options 3. SIMATIC Fault-tolerant systems System Manual 12/2010 A5E00267695-07 Preface 1 Fault-tolerant automation systems 2 setup options 3 Getting Started 4 Assembly of a CPU 41x H 5 Special functions of a CPU

More information

Ponto Series. A new concept for automation

Ponto Series. A new concept for automation Ponto Series A new concept for automation Programmable Controller Remote I/O for Field Buses Special models of I/O modules Web connection Ponto Series Programmable Controller High connectivity CPUs Direct

More information

ABB RTU560A Series CMU & Modules

ABB RTU560A Series CMU & Modules ABB RTU560A Series CMU & Modules 1KGT 150 648 V1.02 March 4, 2012 Slide 1 Contents RTU560A rack solutions March 4, 2012 Slide 2 560CSR01 Available for wall mounting and swing frame Supports redundant power

More information

CMC-PD01 PROFIBUS DP Slave Communication Card Operation Manual

CMC-PD01 PROFIBUS DP Slave Communication Card Operation Manual CMC-PD01 PROFIBUS DP Slave Communication Card Operation Manual CMC-0205820-01 Table of Content 1 Introduction to CMC-PD01... 2 1.1 Product Introduction... 2 1.2 Features... 2 2 Product Profile and Outline...

More information

PLCs and SCADA Systems

PLCs and SCADA Systems Hands-On Programmable Logic Controllers and Supervisory Control / Data Acquisition Course Description This extensive course covers the essentials of SCADA and PLC systems, which are often used in close

More information

Ring Local Area Network. Ring LANs

Ring Local Area Network. Ring LANs Ring Local Area Network Ring interface (1-bit buffer) Ring interface To station From station Ring LANs The ring is a series of bit repeaters, each connected by a unidirectional transmission link All arriving

More information

ELECTROTECHNIQUE IEC INTERNATIONALE 61508-3 INTERNATIONAL ELECTROTECHNICAL

ELECTROTECHNIQUE IEC INTERNATIONALE 61508-3 INTERNATIONAL ELECTROTECHNICAL 61508-3 ª IEC: 1997 1 Version 12.0 05/12/97 COMMISSION CEI ELECTROTECHNIQUE IEC INTERNATIONALE 61508-3 INTERNATIONAL ELECTROTECHNICAL COMMISSION Functional safety of electrical/electronic/ programmable

More information

How to read this guide

How to read this guide How to read this guide The following shows the symbols used in this Quick start guide with descriptions and examples. Symbol Description Example P oint Reference Caution [ ] This symbol explains information

More information

Redundant PROFIBUS DP network with S7-400H System and Ponto PO5063V5 Remote

Redundant PROFIBUS DP network with S7-400H System and Ponto PO5063V5 Remote Application Note NAP102 Redundant PROFIBUS DP network with Altus Sistemas de Informática S.A. Página: 1 Contents 1 Description... 3 2 Introduction... 3 3 Reference Architecture... 4 4 PROFIBUS Project...

More information

Experion PKS. The Next Frontier What is in the next release of Experion PKS? Honeywell Proprietary. 2014 Honeywell Users Group Asia Pacific

Experion PKS. The Next Frontier What is in the next release of Experion PKS? Honeywell Proprietary. 2014 Honeywell Users Group Asia Pacific 2014 Honeywell Users Group Asia Pacific 1 Experion PKS The Next Frontier What is in the next release of Experion PKS? Agenda The Orion Series - Objective A review of the strategic roadmap Experion PKS

More information

25 Years of Manufacturing Excellence. Premier Quatro Addressable Fire Alarm System. Assessed to ISO 9001: 2008

25 Years of Manufacturing Excellence. Premier Quatro Addressable Fire Alarm System. Assessed to ISO 9001: 2008 Premier Quatro Addressable Fire Alarm System Premier Quatro 4 Loop Analogue Addressable Fire Alarm Panel The Premier Quatro is the new 4 loop analogue Alarm Systems. It is available in 1, 2, 3 or 4 loop

More information

FIBER OPTIC APPLICATION IN A PROFIBUS NETWORK

FIBER OPTIC APPLICATION IN A PROFIBUS NETWORK FIBER OPTIC APPLICATION IN A PROFIBUS NETWORK Field busses are industrial control systems using Programmable Logic lers (PLC) to control and manage field devices found in industrial environments. The communication

More information

CPUs - CPU 315-2 PN/DP

CPUs - CPU 315-2 PN/DP Overview The CPU with a medium program memory and quantity framework High processing performance in binary and floating-point arithmetic Used as a central controller on production lines with central and

More information

Safety & Automation System (SAS) - How the Safety and the Automation Systems finally come together as an HMI

Safety & Automation System (SAS) - How the Safety and the Automation Systems finally come together as an HMI Safety & Automation System (SAS) - How the Safety and the Automation Systems finally come together as an HMI By Ian Nimmo President User Centered Design Services Inc. Abstract Today we have clear guidelines

More information

Overview of IEC 61508 - Design of electrical / electronic / programmable electronic safety-related systems

Overview of IEC 61508 - Design of electrical / electronic / programmable electronic safety-related systems Overview of IEC 61508 - Design of electrical / electronic / programmable electronic safety-related systems Simon Brown The author is with the Health & Safety Executive, Magdalen House, Bootle, Merseyside,

More information

Series Six Plus Programmable Controller

Series Six Plus Programmable Controller Series Six Plus Programmable Controller Gl?K-0147B June 1989 Central Processor Unit 8-Slot Rack 1l-Slot Rack General Description The Central Processor Unit (CPU) for the Series Six Plus Programmable Logic

More information

Fieldbus slave modules with I/Os, DIO

Fieldbus slave modules with I/Os, DIO 140 Fieldbus slave modules with I/Os, DIO 1534CF00 1534CH00 1534PF00 1534PH00 1536CH00 1536CL10 1536PH00 1536PL00 Order number 1534CF00 1534CH00 1534PF00 1534PH00 Figure Type SM 153, CANopen slave, DIO

More information

remote I/O future inside

remote I/O future inside remote I/O future inside Remote I/O solutions for today and tomorrow Systems with PROFIBUS DP and Ethernet Asset Management Level Control Level Ex-Interface Level Fieldbus Isolating Repeater Field Level

More information

Industrial Automation Training Academy. PLC, HMI & Drives Training Programs Duration: 6 Months (180 ~ 240 Hours)

Industrial Automation Training Academy. PLC, HMI & Drives Training Programs Duration: 6 Months (180 ~ 240 Hours) nfi Industrial Automation Training Academy Presents PLC, HMI & Drives Training Programs Duration: 6 Months (180 ~ 240 Hours) For: Electronics & Communication Engineering Electrical Engineering Instrumentation

More information

Viewpoint on ISA TR84.0.02 Simplified Methods and Fault Tree Analysis Angela E. Summers, Ph.D., P.E., President

Viewpoint on ISA TR84.0.02 Simplified Methods and Fault Tree Analysis Angela E. Summers, Ph.D., P.E., President Viewpoint on ISA TR84.0.0 Simplified Methods and Fault Tree Analysis Angela E. Summers, Ph.D., P.E., President Presented at Interkama, Dusseldorf, Germany, October 1999, Published in ISA Transactions,

More information

SIMATIC PDM software. Siemens FI 01 2001 7/1

SIMATIC PDM software. Siemens FI 01 2001 7/1 software 7 Application...7/2 Graphical user interface...7/2 Communication...7/3 Diagnostics...7/4 Technical data...7/5 Ordering data...7/5 Siemens FI 01 2001 7/1 Application, graphical user interface Application

More information

THEME Competence Matrix - Electrical Engineering/Electronics with Partial competences/ Learning outcomes

THEME Competence Matrix - Electrical Engineering/Electronics with Partial competences/ Learning outcomes COMPETENCE AREAS STEPS OF COMPETENCE DEVELOPMENT 1. Preparing, planning, mounting and installing electrical for buildings and industrial applications He/She is able to prepare and carry out simple electrical

More information

Commissioning IDENTControl Compact IC-KP2-2HB17-2V1D Profinet Protocol with a Siemens S7 PLC

Commissioning IDENTControl Compact IC-KP2-2HB17-2V1D Profinet Protocol with a Siemens S7 PLC Commissioning IDENTControl Compact IC-KP2-2HB17-2V1D Profinet Protocol with a Siemens S7 PLC Seite 1 von 19 Index of contents 1. Adjustment of communication parameter with web interface...3 2. Installation

More information

applicomio Profibus-DP

applicomio Profibus-DP BradCommunications Profibus-DP network interface cards allow deterministic I/O data acquisition for PC-based control applications. Features New! Support of Windows 32-bit and 64-bit (WoW64) Support of

More information

Is your current safety system compliant to today's safety standard?

Is your current safety system compliant to today's safety standard? Is your current safety system compliant to today's safety standard? Abstract It is estimated that about 66% of the Programmable Electronic Systems (PES) running in the process industry were installed before

More information

Firmware version: 1.10 Issue: 7 AUTODIALER GD30.2. Instruction Manual

Firmware version: 1.10 Issue: 7 AUTODIALER GD30.2. Instruction Manual Firmware version: 1.10 Issue: 7 AUTODIALER GD30.2 Instruction Manual Firmware version: 2.0.1 Issue: 0.6 Version of the GPRS transmitters configurator: 1.3.6.3 Date of issue: 07.03.2012 TABLE OF CONTENTS

More information

SIMATIC. C7-621, C7-621 AS-i Control Systems. Volume 2 Working with C7 A B C D E. Contents. User Information. Introduction. Startup.

SIMATIC. C7-621, C7-621 AS-i Control Systems. Volume 2 Working with C7 A B C D E. Contents. User Information. Introduction. Startup. Contents User Information Introduction 1 Startup 2 SIMATIC C7-621, C7-621 AS-i Control Systems Volume 2 Working with C7 Manual Controlling Controlling with the C7 CPU 3 Addessing, Parameter Assignment,

More information

RTM X42 Multi-Channel Radio Transmission Tension Monitoring and Control System

RTM X42 Multi-Channel Radio Transmission Tension Monitoring and Control System RTM X42 Multi-Channel Radio Transmission Tension Monitoring and Control System RTM X42 is an innovative system that utilizes force measuring rollers to capture the tension of individual wires or strands,

More information

SIMATIC S7-1200. It s the Interplay that makes the difference. Siemens AG 2010. All Rights Reserved.

SIMATIC S7-1200. It s the Interplay that makes the difference. Siemens AG 2010. All Rights Reserved. SIMATIC S7-1200 It s the Interplay that makes the difference SIMATIC S7-1200 Controller SIMATIC S7-1200 CPUs CPU 1211C 3 configurations per CPU Dimensions W x H x D (mm) CPU 1212C CPU 1214C DC/DC/DC, AC/DC/RLY,

More information

ASIsafe. SIRIUS Safety Integrated. Function Manual April 2008 SIRIUS. www.siemens.com/automation

ASIsafe. SIRIUS Safety Integrated. Function Manual April 2008 SIRIUS. www.siemens.com/automation ASIsafe SIRIUS Safety Integrated Function Manual April 2008 SIRIUS www.siemens.com/automation About this documentation 1 Introduction 2 SIRIUS Safety Integrated ASIsafe Safety Integrated Application Manual

More information

Practical steps for a successful. PROFIBUS Project. Presented by Dr. Xiu Ji Manchester Metropolitan University

Practical steps for a successful. PROFIBUS Project. Presented by Dr. Xiu Ji Manchester Metropolitan University Practical steps for a successful PROFIBUS Project Presented by Dr. Xiu Ji Manchester Metropolitan University Basics of PROFIBUS Content Practical steps in the design and installation stages Segmentation:

More information

DCM. Product Brochure. Diagnostic Communication Master

DCM. Product Brochure. Diagnostic Communication Master DCM Product Brochure Diagnostic Communication Master DCM The DCM Diagnostic Communication Master is the best solution for the control of actuators from a remote control room through a two-wire transmission-mode

More information

Designing a Control System for High Availability

Designing a Control System for High Availability Designing a Control System for High Availability Art Pietrzyk, TUV FSExp, Rockwell Automation Brian Root, Redundancy Marketing Manager, Process Initiative, Rockwell Automation Paul Gruhn, P.E., CFSE, Training

More information

Page 1 / 14 Groupe MOBILITECHMIOSBOX Technical Specification MWP-DT1010. Technical specifications

Page 1 / 14 Groupe MOBILITECHMIOSBOX Technical Specification MWP-DT1010. Technical specifications Page 1 / 14 Technical specifications Page 2 / 14 SUMMARY 1. GENERAL OVERVIEW 1.1 MIOS and the remote management 1.2 The MIOSBOX range 1.3 Synthesis of MIOSBOX s specificities 2. DETAILED PRESENTATION OF

More information

Company Profile. www.mioselettronica.com

Company Profile. www.mioselettronica.com Company Profile INDEX Who we are Mission How: Organization and R&D Railway Division Products References Oil & Gas Division Products References Contacts 2 WHO WE ARE MIOS Elettronica was built up in 2011

More information

DeviceNet Communication Manual

DeviceNet Communication Manual DeviceNet Communication Manual Soft-Starter Series: SSW-07/SSW-08 Language: English Document: 10000046963 / 00 03/2008 Summary ABOUT THIS MANUAL... 5 ABBREVIATIONS AND DEFINITIONS... 5 NUMERICAL REPRESENTATION...

More information

MXa SIL Guidance and Certification

MXa SIL Guidance and Certification MXa SIL Guidance and Certification SIL 3 capable for critical applications Experience In Motion Functional Safety in Plants Safety and instrumentation engineers demand that a functional safety system s

More information

1 How configure S7 PLC in the configuration tool

1 How configure S7 PLC in the configuration tool Quick Start Rev Date File Name Industrial Ethernet communication with Siemens S7-300 and S7-400 PLCs 1.1 29/01/07 QuickStart_IndusEthernet comm with Siemens S7-300 and S7-400 PLC Description Product concerned:

More information

AUTROSAFE IFG 4 A new level in integrated fire and gas detection systems

AUTROSAFE IFG 4 A new level in integrated fire and gas detection systems AUTROSAFE IFG 4 A new level in integrated fire and gas detection systems Autronica Fire and Security AS Protecting life, environment and property... Proven, reliable and now even better AutroSafe IFG 4

More information

EDI Distributor Control Interface Wiring and Setup Instructions

EDI Distributor Control Interface Wiring and Setup Instructions Universal I/O EDI Distributor Control Interface Wiring and Setup Instructions EDI UNIVERSAL I/O INTERFACE MODULE The only interface needed for EDI-V5 controls Network compatible with all older EDI controls

More information

Internet-Accessible Power Monitoring & Control Systems

Internet-Accessible Power Monitoring & Control Systems Internet-Accessible Power Monitoring & Control Systems By GE Specification Engineers Keith B. Brock, P.E. Robert P. Hansen, PhD, P.E. Introduction Accessing electrical system information from any location

More information

http://support.automation.siemens.com/ww/view/en/4067870&td=1

http://support.automation.siemens.com/ww/view/en/4067870&td=1 6ES7316-2AG00-0AB0 SIMATIC S7-300, CPU 316 Technical / CAx data nmlkji Technical Data nmlkj CAx data As of 2010-01-24 Power supply Input voltage Rated value (DC) permissible range, lower limit (DC) permissible

More information