08.02.2014 Views

SIMATIC PCS 7 process control system

SIMATIC PCS 7 process control system

SIMATIC PCS 7 process control system

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Configuration versions for failsafe <strong>system</strong>s<br />

Failsafe<br />

Single-channel configuration<br />

AS 414F/<br />

AS 417F<br />

Failsafe and fault-tolerant<br />

Configuration with a redundant<br />

CPU and single-channel I/Os<br />

AS 414FH/<br />

AS 417FH<br />

Configuration with a redundant<br />

CPU and redundant I/Os<br />

AS 414FH/<br />

AS 417FH<br />

PROFIBUS DP<br />

ET 200M F modules<br />

ET 200M ET 200M<br />

IM 153<br />

Disconnecting module<br />

Design versions for failsafe <strong>system</strong>s<br />

PROFIBUS DP<br />

2 x<br />

IM 153<br />

Disconnecting<br />

module<br />

PROFIBUS DP<br />

Disconnecting module,<br />

redundant<br />

F modules<br />

redundant<br />

Failsafe automation <strong>system</strong>s<br />

The failsafe <strong>SIMATIC</strong> <strong>PCS</strong> 7 automation <strong>system</strong>s are available<br />

in two design versions:<br />

■ As single-channel AS 414F/AS 417F (with only one CPU)<br />

■ As fault-tolerant AS 414FH/AS 417FH (with redundant<br />

CPU)<br />

The failsafe AS 414 F/FH and AS 417 F/FH automation <strong>system</strong>s<br />

are able to <strong>process</strong> standard and safety functions on one <strong>system</strong>.<br />

Mutual influencing is prevented in that the failsafe and<br />

standard program components are strictly separated and that<br />

the data exchange is carried out by special conversion blocks.<br />

In association with the failsafe signal modules of the ET<br />

200M/S distributed I/O <strong>system</strong>, failsafe automation <strong>system</strong>s<br />

detect faults in the <strong>process</strong> as well as their own internal faults,<br />

and automatically set the plant to a safe state when a fault is<br />

detected.<br />

The safety functions configured by the user by means of CFC<br />

(Continuous Function Chart, see section on engineering) or<br />

with the Safety Matrix are <strong>process</strong>ed twice by completely redundant<br />

command <strong>process</strong>ing in different <strong>process</strong>or sections<br />

of a CPU. Faults detected when subsequently comparing the<br />

results do not lead to a CPU stop since the standard functions<br />

continue to run without being influenced.<br />

S7 F Systems with failsafe block library<br />

The S7 F Systems engineering tool permits parameterization<br />

of the AS CPU and the failsafe signal modules.<br />

It supports configuration by means of functions for:<br />

■ Comparison of failsafe programs<br />

■ Recognition of changes in the failsafe program using the<br />

checksum<br />

■ Separation of standard and failsafe functions.<br />

Access to the failsafe functions can be password-protected.<br />

The failsafe block library integrated in S7 F Systems contains<br />

predefined function blocks for generation of failsafe applications<br />

with the CFC or the Safety Matrix based on it. The certified<br />

failsafe blocks are extremely robust and intercept programming<br />

errors such as division by zero or out-of-range<br />

values. They save the necessity for performing diverse programming<br />

tasks for detecting and reacting to errors.<br />

Engineering of failsafe <strong>system</strong>s<br />

Process safety 51

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!