Rockwell Automation AADvance Controller Safety Manual User Manual
Page 9

Document: 553630
ICSTT-RM446K-EN-P Issue: 10
_C
ix
SIL3 Architectures ............................................................................................................................................. 3-7
SIL3 Fail-safe I/O, Fault Tolerant Processor .......................................................................................... 3-7
SIL3 Fault Tolerant I/O Architectures .................................................................................................. 3-10
SIL3 TMR Input and Processor, Fault Tolerant Output ................................................................... 3-12
Planned Certified Configurations ................................................................................................................. 3-14
Internal Diagnostics ......................................................................................................................................... 3-16
Safety Networks............................................................................................................................................... 3-16
SNCP Safety Networks ............................................................................................................................ 3-16
Configuring SNCP Safety Network ....................................................................................................... 3-18
Configuring Variable Bindings ................................................................................................................. 3-19
Peer-to-Peer ................................................................................................................................................ 3-20
Chapter 4
AADvance Functional Safety System Implementation ....................... 4-1
General Design Measures for Functional Safety ......................................................................................... 4-2
I/O Modules................................................................................................................................................... 4-2
Energize to Action Configurations .......................................................................................................... 4-3
Controller Process Safety Time (PST) .................................................................................................... 4-4
Industrial Functional Safety Standards ........................................................................................................... 4-6
NFPA 85 Requirements .............................................................................................................................. 4-6
NFPA 86 Requirements .............................................................................................................................. 4-7
EN 50156 ....................................................................................................................................................... 4-7
BS EN 54 Requirements ............................................................................................................................. 4-8
EN54 section 7.12 Dependencies on More Than One Alarm Signal .............................................. 4-9
UL 508 .......................................................................................................................................................... 4-11
Field Configurations ........................................................................................................................................ 4-12
Line Monitoring .......................................................................................................................................... 4-12
Digital Input Field Loop Circuits ............................................................................................................ 4-12
Recommended Field Circuit for Digital Outputs ............................................................................... 4-15
Analogue Input Field Loop Circuits ....................................................................................................... 4-16
Recommended Circuit for Analogue Outputs .................................................................................... 4-17
Sensor Configurations .................................................................................................................................... 4-20
HART .................................................................................................................................................................. 4-21
Actuator Configurations ................................................................................................................................ 4-23
Calculations of Probability of Failure upon Demand, .............................................................................. 4-23
Processor Functional Safety Configuration ............................................................................................... 4-24
Processor Safety Functions ...................................................................................................................... 4-24
Reaction to faults in the processor module ........................................................................................ 4-24
Recovery Mode .......................................................................................................................................... 4-25
Processor Module Locking Screw safety Function ............................................................................ 4-25
Processor Module Access Port .............................................................................................................. 4-25
I/O Module Safety Functions ......................................................................................................................... 4-25
I/O Module Safety Related Parameters ................................................................................................ 4-26
I/O Module Start-Up and Locking Screw Safety Function................................................................ 4-26
I/O Module Process Safety Time (PST) ................................................................................................ 4-27
Input Module Safety Functions ................................................................................................................ 4-27
Reactions to faults in the input modules .............................................................................................. 4-28