beautypg.com

Engineering checklists – Rockwell Automation AADvance Controller Safety Manual User Manual

Page 111

background image


Document: 553630
ICSTT-RM446K-EN-P Issue: 10

_C

5-3

Description

Yes/No

Are the AADvance System Build Manual installation instructions
available for installing and commissioning the system ?

Does the application program shut down the SIL3 safety

instrumented functions if a faulty module has not been replaced
within the MTTR assumed for the system in the PFD calculations ?

Have the application programs been set up to monitor the

"discrepancy alarms" and alert the operators when a discrepancy
alarm occurs ?

Do the energize to action configurations conform to the
restrictions (defined in this safety manual)l that should be applied
when using these configurations ?

Engineering Checklists

I/O Architecture Checklist

Description

Yes/No

Has the PST been specified ?

What is the PST?

Has the fault detection time for the system been specified ?

What is the fault detection time?

Is the safety-accuracy adequate for the application?

Where the fault detection time is greater than the PST, does the
safety-related I/O configuration provide a fail-safe configuration?

Note: If not, the system topology shall be discussed with the
client to ensure that the system implementation is safe.

If the probabilities of failure on demand for each function have

been specified, has they been met?

Do the selected architectures provide solutions where there is no
single power source or distribution point of failure that could lead
the system to fail to function safely when required?

Have sensor fault conditions been taken into account?

For each of the I/O signal types, do the I/O modules provide the

correct characteristics and behavior for the intended sensor or
actuator (including minimum and maximum load requirements)?
Note: If not, have additional interfacing elements been included to

ensure that the effective signal is compatible with the selected
module type?

Has the allocation of signals to I/O modules and channels

considered each of the signals' function?