Vecmocon_Technology_FUSA_BM.../commons/table_05-D8.measures

10 lines
2.3 KiB
XML

<?xml version="1.1" encoding="UTF-8"?>
<safety:MeasureCatalog xmi:version="2.0" xmlns:xmi="http://www.omg.org/XMI" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:safety="http://www.ikv.de/medini/metamodels/SafetyModel/1.0" xmi:id="_l8q-ME9BEeC1A4_enB0KXA" mediniIdentifier="_l8q-ME9BEeC1A4_enB0KXA" name="P-5 Table D.8 - Program sequence monitoring / Clock">
<collectionType href="http://www.ikv.de/medini/metamodels/SafetyModel/1.0#//SafetyMechanism"/>
<measures xsi:type="safety:SafetyMechanism" xmi:id="_o2yl8k9BEeC1A4_enB0KXA" mediniIdentifier="_o2yl8k9BEeC1A4_enB0KXA" id="ISO26262-5: D.2.7.1" name="Watch-dog with separate time base without time-window" maxDC="LOW" notes="-"/>
<measures xsi:type="safety:SafetyMechanism" xmi:id="_o2yl809BEeC1A4_enB0KXA" mediniIdentifier="_o2yl809BEeC1A4_enB0KXA" id="ISO26262-5: D.2.7.2" name="Watch-dog with separate time base and time-window" maxDC="MEDIUM" notes="Depends on time restriction for the time-window"/>
<measures xsi:type="safety:SafetyMechanism" xmi:id="_o2yl9E9BEeC1A4_enB0KXA" mediniIdentifier="_o2yl9E9BEeC1A4_enB0KXA" id="ISO26262-5: D.2.7.3" name="Logical monitoring of program sequence" maxDC="MEDIUM" notes="Only effective against clock failures if external temporal events influence the logical program flow. Provides coverage for internal hardware failures (such as interrupt frequency errors) that can cause the software to run out of sequence."/>
<measures xsi:type="safety:SafetyMechanism" xmi:id="_o28W8E9BEeC1A4_enB0KXA" mediniIdentifier="_o28W8E9BEeC1A4_enB0KXA" id="ISO26262-5: D.2.7.4" name="Combination of temporal and logical monitoring of program sequence" maxDC="HIGH" notes="-"/>
<measures xsi:type="safety:SafetyMechanism" xmi:id="_o28W8U9BEeC1A4_enB0KXA" mediniIdentifier="_o28W8U9BEeC1A4_enB0KXA" id="ISO26262-5: D.2.7.5" name="Combination of temporal and logical monitoring of program sequences with time dependency" maxDC="HIGH" notes="Provides coverage for internal hardware failures that can cause the software to run out of sequence. When implemented with asymmetrical designs, provides coverage regarding communication sequence between main and monitoring device. &#xD;&#xA;NOTE: Method to be designed to account for execution jitter from interrupts, CPU loading, etc. "/>
</safety:MeasureCatalog>