33th Congress of the International Council of the Aeronautical Sciences

02 - Systems Engineering and Integration

A FAULT INTEGRATOR BASED VOTE&MONITOR DESIGN FOR GRACEFULL DEGRADATION IN MULTIPLE REDUNDANT SAFETY CRITICAL SYSTEMS

M.E.A. Enes¹, E. Tugrul¹, M. Yuce¹, N. Sever¹, E. Yigit¹, T. Inal¹; ¹Turkish Aerospace, Turkey

Vote and monitor functions are one of the most critical part of the design especially on safety critical multiple redundant systems. Monitoring functions monitor the systems health and welfare during operation in order to make sure that the system is supplied with healthy information during normal, degraded, erroneous and faulty operation. Voting functions are a part of monitoring functions which allows the system to select correct inputs with rigor which adds additional robustness to the system. These two cannot be separated nor they can be compared as they work coherently fulfill the single top purpose of redundancy management for multiple redundant safety critical systems. Fault integrators have been employed in such designs for quite long time. Fault integrator design may vary from system to system. In this study, we developed a novel fault integrator to monitor the validity of the inputs for such safety critical aircraft systems.


View Paper