摘要:
A system and method for providing fault detection capability is provided which comprises a first node (2). The first node (2) comprises a first processing subsystem (5) generating data (14) to be transmitted. The first node (2) has a fault supervisor unit (13) adapted to gather and process fault indications arising in the first node (2). The first processing subsystem (5) and the fault supervisor unit are both integrated in the first node (2). The first node (2) is structured such that, when no fault indications are detected by the fault supervisor unit (13), the fault supervisor unit (13) provides a first key (15) as a validity key, and, when at least one fault indication is detected by the fault supervisor unit (13), the fault supervisor unit (13) provides a second key (16) as the validity key, and the data (14) to be transmitted are encrypted by overlaying the respective validity key (15; 16) on the data.
摘要:
The invention relates to a system for providing fault tolerance for at least one micro controller unit, hereinafter called MCU (10). The MCU receives information from at least one sensor (11) coupled to the MCU (10) and outputs information to at least one actuator (12) coupled to the MCU (10). To provide a system for controlling or influencing the fault tolerance or the error processing of at least one MCU without requiring a replication of software or hardware components and which is able to react differently on various events it is proposed to include a System Supervision unit (200), hereinafter called SSU (200), in the MCU (10). The SSU (200) reacts on error reports included in information (301, 302, 303, 325) received at the SSU (200); wherein the SSU (200) is adapted to switch into one of a plurality of predetermined states based on the information (301, 302, 303) received and based on a state history of the MCU (10); and to output at least one instruction to the MCU (10) or to an external control device (230) coupled to the MCU (10) to control at least the MCU (10) and/or the connected devices (11, 12) based on the new state into which the SSU is switched. Such system could be easily adapted to the respective application.
摘要:
The present invention relates to a clock supervision unit (100) and an electronic system clocked by at least one clock (c*) and using the clock supervision unit (100). The clock supervision unit (100) analyzes the at least one clock (c*) based on a monitor clock (m*) provided together with the at least one clock (c*) or separately to the clock supervision unit (100). The clock supervision unit (100) at least comprises an activity unit (210), a deviation unit (220) and an auxiliary clock generator (240). The auxiliary clock generator (240) outputs an auxiliary clock (a*). The activity unit (210) detects the presence of the monitor clock (m*) based on the auxiliary clock (a*) and the presence of the auxiliary clock (a*) based on the monitor clock (m*). The deviation unit (220) detects clock faults in the monitor clock (m*) based on the auxiliary clock (a*). With the clock supervision unit (100) according to the present invention, the at least one clock (c*) can be supervised in more detail and it is possible to react on different clock faults in the at least one clock c* with different error handling procedures, e.g. by initiating a shutdown of the devices controlled by the electronic system.
摘要:
The invention relates to a time triggered network used in particular in an automotive network having a plurality of clusters. Each cluster (A-X) includes a plurality of nodes (11). For saving time during startup a cluster coupler unit (10) in a time triggered network is proposed, wherein the network comprises a plurality of communication clusters (A-X) each having a plurality of nodes (11), the communication clusters (A-X) are compatible to each another in cycle length, slot length and frame length, wherein a cluster coupler unit (10) being connected to at least two communication clusters (A-X), the cluster coupler unit (10) includes as many protocol engines (12) as communication clusters are connected, each protocol engine (12) having at least one receiving input (RXD) and one transmitting output (TXD), wherein a synchronization logic (20) is connected to at least one of the receiving inputs (RXD) and/or the transmitting outputs (TXD) of the protocol engines (12), wherein the synchronization logic (20) distributes information from incoming/ outgoing signals, which is used for synchronizing the connected communication clusters (A-X) during startup.
摘要:
In order to further develop a communication system (400) as well as a corresponding communication method in such way that a protection of the communication medium (300, 310) from timing failures of a communication controller (120) of a node (100), in particular a limited protection of the communication channel (300, 310) from illegal transmissions in the time domain, can be achieved without providing any bus guardian, it is proposed to prevent any transmission of the node (100) during phases with high susceptibility to illegal transmission, in particular during the communication startup of the communication system (400).
摘要:
A system and method for providing fault detection capability is provided which comprises a first node (2). The first node (2) comprises a first processing subsystem (5) generating data (14) to be transmitted. The first node (2) has a fault supervisor unit (13) adapted to gather and process fault indications arising in the first node (2). The first processing subsystem (5) and the fault supervisor unit are both integrated in the first node (2). The first node (2) is structured such that, when no fault indications are detected by the fault supervisor unit (13), the fault supervisor unit (13) provides a first key (15) as a validity key, and, when at least one fault indication is detected by the fault supervisor unit (13), the fault supervisor unit (13) provides a second key (16) as the validity key, and the data (14) to be transmitted are encrypted by overlaying the respective validity key (15; 16) on the data.