[SystemSafety] Request for references on measures to manage failures for homogeneous sensor redundancy

Peter Bernard Ladkin ladkin at causalis.com
Fri Dec 13 11:41:40 CET 2019



On 2019-12-13 08:15 , Watts Malcolm (AE-BE/ENG1-AU) wrote:
> 
> Currently, the sensors are developed according to a safety standard, and are allocated safety
> requirements. 
> 
> The team wants to understand the impact of changing to a different sensor, that may not have been
> developed in accordance with safety requirements. 

Then you are going to be out of compliance with IEC 61508 unless you can demonstrate "proven in
use", IEC 61508-2:2010 subclause 7.4.10. The first requirement in subclause 7.4.10.1 is

[begin quote]

An element shall only be regarded as proven in use when it has a clearly restricted and specified
functionality and when there is adequate documentary evidence to demonstrate that the likelihood of
any dangerous systematic faults is low enough that the required safety integrity levels of the
safety functions that use the element is achieved. Evidence shall be based on analysis of
operational experience of a specific configuration of the element together with suitability analysis
and testing.

[end quote]

which will be very difficult to satisfy.

If you have an road-vehicle application, which it sounds as if it might be, then ISO 26262 applies,
and I am not as familiar with it.

PBL

Prof. Peter Bernard Ladkin, Bielefeld, Germany
MoreInCommon
Je suis Charlie
Tel+msg +49 (0)521 880 7319  www.rvs-bi.de





-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: OpenPGP digital signature
URL: <https://lists.techfak.uni-bielefeld.de/pipermail/systemsafety/attachments/20191213/47d8b190/attachment.sig>


More information about the systemsafety mailing list