摘要:
The present invention is capable of realizing normal control of a control device and safe operation of a control target. In the present invention, an automatic control unit 10 generates a control output that is output to a control target in response to an input 1. A safety verification control unit 20 is configured to verify safety of the control output at a plurality of verification levels, and controls the control output on the basis of the verification result. A verification level selection unit manages the state related to the normality of the automatic control unit 10, and selects the verification level of the safety of the control output in the safety verification control unit 20 in accordance with the state.
摘要:
The problem of ensuring safety and work efficiency for the actions of a control target is addressed in an environment in which different types of control systems coexist. A safety control server controls the actions of respective control targets in differing systems and includes an action adjustment unit that, for each control target of differing control systems, outputs to a control target an action adjustment instruction for adjusting the action of that control target when a contention occurs in which the action of that control target deviates from an assumed control result. An action plan adjustment unit, when the adjustment of the action satisfies a prescribed condition, adjusts an action plan indicating an action rule for achieving a function and avoiding a contention in a control target; and a safety rule adjustment unit adjusts a safety rule indicating an action rule for avoiding a contention in the control target.
摘要:
A control system includes: an operation interface generates operation amount information and priority information on the basis of an operation amount; an automatic control unit generates an automatic control output based on a predetermined input; a safety verification unit verifies the safety of the automatic control output; and an output control unit produces a control output in accordance with the automatic control output or the operation amount information on the basis of the automatic control output, the operation amount information, the priority information, and the safety verification result from the safety verification unit. The control output is generated in accordance with the automatic control output, in accordance with the operation amount information only when the control output is verified as safe by the safety verification unit, or in accordance with the operation amount information regardless of whether the control output is verified as safe by the safety verification unit.
摘要:
The present invention aims to provide a programmable device with a configuration memory that can hold the state of the occurrence abnormal situation that is difficult to assume such as a failure occurring in the programmable device due to the terrestrial radiation of the configuration memory, even during power off, in order to improve the reproducibility in device testing based on the held error information. The programmable device with the configuration memory includes: an error detection section for detecting an error in the configuration memory, and outputting the detected error as well as an address in which the error occurred, as error information; and an error information holding section provided with a non-volatile memory to store the output error information.
摘要:
An object of the present invention is to provide a high reliable/high safe programmable logic device with high error resistance. The present invention provides a programmable logic device that has a plurality of configuration memories. The configuration memories are divided into a plurality of areas and are arranged and a part of the plurality of areas is set to a high reliable area where reliability for a failure of the configuration memory is higher than reliability in the other area.
摘要:
Provided is a semiconductor device capable of reducing a penalty associated with ensuring reliability. The semiconductor device includes a latch circuit which has input/output paths of three systems or more independent from each other. The latch circuit includes a plurality of storage elements STE1 to STE3 which are provided on the input/output paths of the three systems or more, respectively, and hold input data in synchronization with a clock signal. At least one storage element (for example, STE1) of the plurality of storage elements STE1 to STE3 includes a majority decision unit (for example, 81a) executing a majority decision using data from the storage elements provided on other input/output paths different from the input/output path thereof and outputs data in which a result of the majority decision is reflected.
摘要:
A vehicle control system which can ensure high reliability, real-time processing, and expandability with a simplified ECU configuration and a low cost by backing up an error through coordination in the entire system without increasing a degree of redundancy of individual controllers beyond the least necessary level. The vehicle control system comprises a sensor controller for taking in sensor signals indicating a status variable of a vehicle and an operation amount applied from a driver, a command controller for generating a control target value based on the sensor signals taken in by the sensor controller, and an actuator controller for receiving the control target value from the command controller and operating an actuator to control the vehicle, those three controller being interconnected via a network. The actuator controller includes a control target value generating unit for generating a control target value based on the sensor signals taken in by the sensor controller and received by the actuator controller via the network when the control target value generated by the command controller is abnormal, and controls the actuator in accordance with the control target value generated by the control target value generating unit.
摘要:
A vehicle control system which can ensure high reliability, real-time processing, and expandability with a simplified ECU configuration and a low cost by backing up an error through coordination in the entire system without increasing a degree of redundancy of individual controllers beyond the least necessary level. The vehicle control system comprises a sensor controller for taking in sensor signals indicating a status variable of a vehicle and an operation amount applied from a driver, a command controller for generating a control target value based on the sensor signals taken in by the sensor controller, and an actuator controller for receiving the control target value from the command controller and operating an actuator to control the vehicle, those three controller being interconnected via a network. The actuator controller includes a control target value generating unit for generating a control target value based on the sensor signals taken in by the sensor controller and received by the actuator controller via the network when the control target value generated by the command controller is abnormal, and controls the actuator in accordance with the control target value generated by the control target value generating unit.
摘要:
A storage control unit for a storage system includes a first storage controller. The first storage controller includes: first voltage detection terminals that is connected to voltage detection lines respectively connected to first storage units, via switches; a first voltage detection circuit that is connected to each of the first voltage detection terminals and that detects a first voltage of each of the first storage units via each of the first voltage detection lines; a first voltage input terminal that a second voltage of each of second storage units that are different from the first storage units is input to; and a first voltage output terminal that is connected to the first voltage detection terminals via switches. The first voltage detection circuit is further connected to the first voltage input terminal and detects the second voltage via the first voltage input terminal.