AltaRica 3 Based Models for ISO 26262 Automotive Safety Mechanisms
نویسندگان
چکیده
Cars embed a steadily increasing number of Electric and Electronic Systems. The ISO 26262 defines a number of constraints, rules and requirements that the development of Automotive E/E Systems must obey in order to guaranty their Functional Safety. One of the means at hand to enhance the safety of these systems is to reinforce them with so-called Safety Mechanisms. The Standard discusses at length how to estimate the contribution of these mechanisms to Functional Safety. These calculations rely however on Fault Tree models or ad-hoc formulas that are hard to check for completeness and validity. In this article, we propose generic AltaRica 3 for Electric and Electronic Systems protected by first and second order safety mechanisms. These models are of a great help to clarify the behavior of these systems as well as to determine the domain of validity of simpler models such the above mentioned Fault Trees or ad-hoc formulas.
منابع مشابه
Using STPA in an ISO 26262 Compliant Process
ISO 26262 is the de facto standard for automotive functional safety, and every automotive Original Equipment Manufacturer (OEM), as well as their major suppliers, are striving to ensure that their development processes are ISO 26262 compliant. ISO 26262 mandates both hazard analysis and risk assessment. Systems Theoretic Process Analysis (STPA) is a relatively new hazard analysis technique, tha...
متن کاملIso 26262 Safety Cases: Compliance and Assurance
In the automotive domain, there is currently no formal requirement to produce an explicit safety case. Instead the implicit safety case for a vehicle is comprised of compliance with extensive national and international regulation and standards. With the imminent introduction of the automotive functional safety standard ISO 26262, the production of a functional safety case is now a requirement f...
متن کاملA Cost-Effective Model-Based Approach for Developing ISO 26262 Compliant Automotive Safety Related Applications
Automotive manufacturers and their suppliers increasingly need to follow the objectives of ISO 26262 as it is now state-of-the art and as it is the case that an ever increasing number of active and passive safety systems are developed within cars. This has increased the need to define a safe system development process. This paper proposes a model-based approach including automatic and certified...
متن کاملIncreasing Efficiency of ISO 26262 Verification and Validation by Combining Fault Injection and Mutation Testing with Model based Development
The rapid growth of software intensive active safety functions in modern cars resulted in adoption of new safety development standards like ISO 26262 by the automotive industry. Hazard analysis, safety assessment and adequate verification and validation methods for software and car electronics require effort but in the long run save lives. We argue that in the face of complex software developme...
متن کاملFrom Safety Requirements to Safety Monitors – Automatic Synthesis in Compliance with ISO 26262
The development of safety-critical electronic systems in the automotive domain is standardized by the ISO 26262 Road vehicles Functional safety. Depending on the concrete risk classification (Automotive Safety Integrity Level, ASIL for short), necessary safety requirements and activities are specified in order to achieve an acceptable residual risk of the system. In particular for the higher AS...
متن کامل