Trusted Features1

Download as ppt, pdf, or txt
Download as ppt, pdf, or txt
You are on page 1of 35

Trusted Industrial Control and Safety

System

From ICS Triplex


Why Consider ICS Triplex

 Streamlined organisation specialising in Oil and


Gas operations.
 IEC 61508 is an integral part of our Business
 Proven track record in supply and support of
onshore and offshore high integrity systems.
 Support world wide
Why Consider the
Trusted Industrial Control System?

 Reduced Capital Expenditure.


 Reduced Operational Expenditure
 Designed to meet the needs of IEC 61508.
 Seamless integration with other systems.
 Ultra high reliability.
 All system requirements catered for.
 Ongoing development program.
Low Capital Expenditure

 ICS Triplex have designed the Trusted Industrial


Control System using latest technology to provide
low hardware costs
 The use of engineering tools reduces the cost of
engineering and hence the cost to the client.
 Designed for ease of integration and short contract
time scales
Low Operational Expenditure

 Full TMR, very high system availability system.


 Virtualy100% automatic fault diagnostics.
 Field loop and device integrity monitoring to
reduce maintenance requirements.
 Low spares requirements
 Modification and Upgrade by the User
Trusted Industrial Control System
General Overview
TMR Interface
For communication to
TMR Processor High Density I/O Regent Chassis
Spare Slot (low density I/O)
Spare slots

Processing,
communications
and I/O in 1 chassis

Engineering Workstation
• On-line monitoring Chassis
• Off-line simulation dimensions:
• System and I/O 19”w - 10.5”h (6U)
configuration utilities
• IEC1131 languages

Expander Interface Communications Interface


For communication to • For communications with
Expander Chassis external systems.
Trusted TMR processor

Three 32 bit RISC microprocessors (600 series)


based on a triple modular redundant architecture:

• TUV certified for safety AK6

• Hardware Implemented Fault Tolerant (HIFT)


3-2-0 operation

• Hot replaceable

• Dedicated hardware and software test regimes

• IEC1131-3 programming languages

• Automatic fault handling


Trusted Communications Interface

Intelligent, programmable protocol translation


module:
• Four serial and two Ethernet ports

• Build option for fast (100Mb) Ethernet

• Support for a wide range of protocols

• Provides interface to MMI and


Engineering Workstation

• Hot replaceable
Trusted Expansion

Expander Processor
• Up to 14 expansion chassis per
processor set

• 14 physical slots

• Up to 12 I/O slots available

• Active spare slots or single


Chassis dimensions:
centralised spare (smart slot)
19”w - 6U h

• Rack or panel mount


High Integrity I/O

Module
Digital Inputs
Latch
• 40 triplicated points
• Extensive diagnostics
Module
Status
• 1ms SOE tagging, selectable
Indicators
per channel
• Line monitoring and filtering,
selectable per channel
Input
Status
• 24Vdc and 120 Vdc modules
Indacators
• On-line replacement

Module
Latch
I/O Replacement Options

Module

• Active spare slot for ease of


replacement

or ...

• Single smart slot per chassis


for greatest savings in footprint
and cost

Active spare or ... Smart slot


I/O Replacement Options

Active spare
configuration

Slot X Smart slot

1 2
Interface

Open systems on an open highway


Operator Workstation
Reduced cost
Alarms Graphics
• No proprietary gateway

Common platform
Database
• NT, Ethernet

Standard software tools


DCS
• OPC

Gateway
Engineering Workstation

Runs on PC

• Windows NT or 95

IEC1131 TOOLSET
• Used for configuration and
application programming

Full suite of IEC1131-3


programming languages

• Off-line simulation
• On-line monitoring
• Access control
• Version history
Sequence of Event Screen
Engineering Workbench

SYSTEM ENGINEERING TOOLSET IEC1131 TOOLSET


Sales Tools Configuration Tools
Estimating Debug Tools
What .. if Application Programming Tools
System Engineering Tools
Manufacturing Information
Manufacturing Tools
Verification & Validation
Customer Care
Maintenance
Project Database
IEC 1131 - 3 Languages

 Function Block

 Ladder Diagram

 Sequential Function Chart

 Instruction List

 Structured Text
IEC1131 TOOLSET

MONITORING and SIMULATION


 On-line monitoring or off-line
simulation
 Perform complete structural and
functional tests of each program
functional module
 Trace program execution
 View status of any internal
variable
 Full logic simulation
 Manually force variables and
internal status
 Examine and debug the global
application program
IEC1131 TOOLSET

GRAPHIC DEBUGGER
 Debug entire application or
parts of it
 Quickly validate program
without connection to a TRUSTED
CONTROLLER
 Access full source level
capabilities of each graphic or
text language
 Includes:
- I/O locking
- on-line modification
Safety Layers of a Typical Process

Fire
Fire&&Gas
Gas

Shutdown
ShutdownSystem
System

Alarms
Alarms

Process
ProcessControl
Control

Process
ProcessPlant
Plant
Types of Trusted Systems available

 Emergency shutdown and Interlock


 Fire and Gas detection and Protection
 High Integrity Control
 Integrated ESD, Fire and Gas and Control
Systems Topologies available

 Single location with integral marshaling


 Single location with remote marshaling
 Multi location (distributed) with Certified Peer to
Peer communications
Technical Benefits of the
Trusted Industrial Control System

 Full TMR system


 Certified operation system
 Feature rich standard I/O modules
 Special function I/O modules
 True Sequence Of Event recording
 High levels of diagnostics to reduce installation
maintenance costs.
Feature rich Standard I/O Modules

 Triplicated analogue input used for both Digital


and analogue signals.
 Multi thresholds and actual value available on
analogues,
 Cable and device integrity monitoring on digital
inputs, hence increased maintenance data.
Increases time between field tests.
Feature rich Standard I/O Modules

 True 1mS Sequence of events. On digital inputs


and thresholded analogues.
 Digital Input filters to remove field interference.
 Adaptable filters on inputs to remove contact
bounce while retaining 1ms SOE
Feature rich Standard I/O Modules

 Only output module with Cable and device


integrity monitoring
 High speed sampling of outputs to allow device
profiling.
 Specialised modules under consideration for ESD
valve integrity checking
Specialised Systems Under
Consideration

 Boiler and Burner management


 Turbine control
 Generator Excitation and Control
Key to Reduced Cost
 Tools to help all processes
 Minimise systems complexity
 Reuse of proven designs
 Reuse of function blocks
 Standard screen layouts for Graphic User
Interface
 Question why components are needed and what
can be simplified
Effect of ICE61508
Control System Incident Occurrence By Phase

Changes After
Commissioning 20% Specification 44%

Operations &
Maintenance 15%

Installation & Design & Implementation


Commissioning 6% 15%

From ‘Out Of Control’ A compilation of incidents involving control systems, by the UK HSE
INTEGRITY
Conventional Safety System

Software

Application Software
I/O Scanning Software
Communication Software
Watchdog Software
Test Software
Diagnostic Software
Trusted ICS System

Software

Safety Application Software


Control Application Software
Trusted
I/O Scanning Software Operating
Communication Software System
Watchdog Software
Test Software

Diagnostic Software
TRUSTED Operating system

•Certified Software segregation, IEC 61508 SIL3.


•Guaranteed non-interference between tasks.
•Safe single hardware & software platform.
•Extensive savings in verification throughout lifecycle.
•Simple solution means easier to maintain.
Firewall Firewall

SIL 1 SIL 3 Non Safety


Functions Functions Functions
Cost and Risks of Specification and
Integration Reduced

 Designed from scratch to be integrated simply to


reduce errors and in as short a time as possible.
 IEC 1131 programming tools
 Flexible input and output modules which allows
cost effective changes during project time scales

You might also like