12.07.2015 Views

AADvance Safety Manual - Tuv-fs.com

AADvance Safety Manual - Tuv-fs.com

AADvance Safety Manual - Tuv-fs.com

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Chapter 5 <strong>AADvance</strong> Functional <strong>Safety</strong> SystemImplementationEnergise to Action ConfigurationsCertain applications may require energize to action for inputs and/or outputs.Energize to action configurations shall only be used if the following restrictionsapply: At least two independent power sources must be used. These power sourcesmust provide emergency power for a safe process shutdown or a time spanrequired by the application. Each power source must be provided with power integrity monitoring with safetycritical input read back into the system controller or implicit power monitoringprovided by the I/O modules. Any power failure shall lead to an alarm. Unless provided implicitly in the I/O modules, all safety critical inputs and outputsmust be fitted with external line and load integrity monitoring and safety criticalread back of the line-status signals. Any line or load failure shall lead to an alarm. For SIL3 enerigize to trip applications a minimum of dual output modules shall beused.In cases where one or more outputs is used in an energize to action configuration, allthe specific requirements above shall be followed for all associated inputs.Controller Process <strong>Safety</strong> Time (PST)The Process <strong>Safety</strong> Time setting defines the maximum time that the processor willallow the outputs to remain in the ON state in the event of certain internal diagnosticfaults or systematic application faults. If the process safety time expires the system willgo to its safe state.You have to specify the PST for the whole controller, this is a top level setting that youmake once for the whole controller and is set at the processor module. I/O Individualmodules can be set at a lower PST but must not exceed this overall setting.An <strong>AADvance</strong> controller adopts a default value for process safety time (PST) =2500ms. The system integrator can use the following method to confirm whether thisis acceptable and adjust as necessary.The value of PST for the controller is governed by this equation:Document number 553630 Issue 7: February 2010 5-3

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!