BS IEC 60880-2:2000 pdf download-Software for computers important to safety for nuclear power plant

01-18-2022 comment

BS IEC 60880-2:2000 pdf download-Software for computers important to safety for nuclear power plant.
4.1.1.2 Rationale for defence against CCF due to software The rationale for defence against software faults is that any software fault will remain in the system or channel concerned until detected and corrected, and can cause failure if a specific signal trajectory challenges it. If two or more systems or channels implementing different lines of defence for the same PIE (see 5.3.1.5 of IEC 61513) contain the fault, and are exposed to specific signal trajectories within a sensitive time period, both (or all) systems or channels can fail, which is called a CCF. A more detailed description of these conditions is given in clause A.1. The potential for CCF due to software should therefore be considered during design. If postulated conditions of CCF can be foreseen, design changes and defence features, including software diversity, may be needed for protection against CCF due to software. The degree of improvement of defence against CCF and improvement in reliability that can be achieved by diversity cannot be quantified. Judgement is required based on an evaluation of the qualitative reliability which the software can achieve. If human errors are made before software design starts, they may lead to faults of require- ments and potential system failures against which software engineering alone cannot provide a defence. Defence against such CCF is discussed at the system level in 5.3.1.5 of IEC 61513. If human errors are made during the software engineering process, they may lead to software faults and potential system failures. Where such faults lead to the failure of more than one line of protection the failures are considered to be CCFs due to software.
4.1.2 Design of software against CCF The basic, and most important, defence against CCF due to software is to produce software of the highest quality, i.e. as error-free as possible. The extent of coverage of self-monitoring features, such as for data plausibility, parameter range checking, and loop timing etc. as addressed by 4.8, 5.1 and A.2.8 in IEC 60880 is a further important factor in limiting the potential for CCF due to software. Requirements to achieve highly reliable software with self-monitoring features are given in IEC 60880 and the following paragraphs of this standard. The use of well-developed software engineering methods with software tool support for software development and verification can help to reduce the number of human design decisions and so potentially reduce the number of faults in the developed software.

Download Link Download
PS: If you don't mind, please turn off your ad blocker.
AS/NZS IEC 60601.1.3:2015 pdf download-Medical electrical equipment Part 1.3: General requirements for basic safety and essential performance— Collateral Standard: Radiation protection in diagnostic X-ray equipment IEC standards free download

AS/NZS IEC 60601.1.3:2015 pdf download-Medical electrical equipment Part 1.3: General requirements for basic safety and essential performance— Collateral Standard: Radiation protection in diagnostic X-ray equipment

AS/NZS IEC 60601.1.3:2015 pdf download-Medical electrical equipment Part 1.3: General requirements for basic safety and essential performance— Collateral Standard: Radiation protection in diagnostic X-ray equipment. 5.2.4 Instructions for use Additionally to the requirements of the general standard...
   Read More
AS/NZS IEC 60947.4.2:2015 pdf download-Low-voltage switchgear and controlgear Part 4.2: Contactors and motor- starters—AC semiconductor motor controllers and starters IEC standards free download

AS/NZS IEC 60947.4.2:2015 pdf download-Low-voltage switchgear and controlgear Part 4.2: Contactors and motor- starters—AC semiconductor motor controllers and starters

AS/NZS IEC 60947.4.2:2015 pdf download-Low-voltage switchgear and controlgear Part 4.2: Contactors and motor- starters—AC semiconductor motor controllers and starters. 3.3 Terms and definitions concerning a.c. semiconductor motor controllers and starters 3.3.1 semiconductor switching device switching device designed...
   Read More
AS/NZS IEC 60947.5.5:2015 pdf download-Low-voltage switchgear and controlgear Part 5.5: Control circuit devices and switching elements—Electrical emergency stop device with mechanical latching function IEC standards free download

AS/NZS IEC 60947.5.5:2015 pdf download-Low-voltage switchgear and controlgear Part 5.5: Control circuit devices and switching elements—Electrical emergency stop device with mechanical latching function

AS/NZS IEC 60947.5.5:2015 pdf download-Low-voltage switchgear and controlgear Part 5.5: Control circuit devices and switching elements—Electrical emergency stop device with mechanical latching function. 4.3 Additional requirements for trip wire switches Information provided by the manufacturer shall include:...
   Read More
AS/NZS IEC 60947.5.6:2015 pdf download-Low-voltage switchgear and controlgear Part 5.6: Control circuit devices and switching elements—DC interface for proximity sensors and switching amplifiers (NAMUR) IEC standards free download

AS/NZS IEC 60947.5.6:2015 pdf download-Low-voltage switchgear and controlgear Part 5.6: Control circuit devices and switching elements—DC interface for proximity sensors and switching amplifiers (NAMUR)

AS/NZS IEC 60947.5.6:2015 pdf download-Low-voltage switchgear and controlgear Part 5.6: Control circuit devices and switching elements—DC interface for proximity sensors and switching amplifiers (NAMUR). 6 Product information Characteristic product data shall be stated by the manufacturer together...
   Read More

LEAVE A REPLY

Anonymous netizen Fill in information