Even though standards allow sharing of the physical layer for safety and control communications, Parity Check columnist Ian Verhappen doesn't feel that too many users, if any, will mix the two systems.
By Ian Verhappen, Industrial Networking ColumnistMANY FIELDBUS organizations are developing their first fieldbus safety products. A few of these companies recently released them. These fieldbus organizations say their fieldbus safety devices comply with their appropriate safety standard. This, in turn, indicates that the device is compliant with and consistent with IEC 61508 and verified by TĆV or some other safety organization.However, the ācheck markā doesnāt mean the device itself is safety certified to a certain SIL level. The manufacturer and associated safety-certifying organizations will continue to be responsible for having their device certified to the appropriate SIL rating. Most safety fieldbus specifications are designed so devices can achieve a SIL 2 rating. With proper engineering design, a SIL 3 rating is possible.Most safety buses use a āblack-channelā model as their basis. So, rather than developing a new communications protocol from scratch, their safety protocols can add protections and other features to ensure timing/transmission and communications integrity between devices. Itās these enhancements that make the bus a āsafety busā and, in many cases, allows sharing of the infrastructure between that safety bus and conventional control communications. Even though the standards allow sharing of the physical layer for safety and control communications, I donāt feel that too many users, if any, will mix the two systems.One of the other major advantages of using a āblack-channelā model is that the physical layer for the safety network will be the same as the āstandardā protocol and, if desired, one network could contain both safety- and non-safety-related devices.This articleās accompanying figure shows how IEC 61508 requirements have been added to either end of the H1 communications channel to meet the needs of the safety system. Typical enhancements made to the device include:
Watchdog timer, which is an additional internal timer added to the device to ensure that communications occur when they are supposed to, and to verify that all the internal diagnostic functions in the device are working properly.
Cycle Redundancy Check (CRC), which is made on all messages to verify that the series of bits is not corrupted in transmission.
Transmission Sequence Check, which ensures that received data arrives in the correct order or sequence, and that itās the most current transmission. This ensures that information being received isnāt stale and from an earlier message than is expected by the system time.
FIELDBUS SAFETY EXTENSIONS
Besides these features, various protocols have additional requirements unique to their implementation.Overall, fieldbus safety system implementation likely will follow the same adoption cycle as the original network, with devices being available for some time before associated host systems can take advantage of their new functions and features. The lack of host systems/logic solvers and associated engineering tools/software supporting safety functions will be the Achilles heel that slows the adoption of safety fieldbus. I donāt know any engineer who will install a safety fieldbus system without these tools being available and certified.The device manufacturers have developed these devices to the IEC 61508 standard. However, end users installing this equipment must understand their responsibility for maintaining compliance with IEC 61511. Before installing a fieldbus safety system, be sure to work with consultants who are not only knowledgeable about fieldbus implementations, but also about safety system designs.
Ā About the Author
Ian Verhappen is an ISA Fellow and Director atICE-Pros Inc., an independent instrument and control engineering consulting firm specializing in fieldbus, process analyzer systems, and oil sands automation. Readers with questions, comments or feedback can reach him at [email protected] or through his web site www.ice-pros.com.
Carbon dioxide is increasingly recognized as a vital resource with significant economic potential. While the conversion of carbon dioxide into products is still in its infancy...
Discover our wide range of temperature transmitters that convert sensor signals from RTDs and thermocouples into stable and standardized output signals!
An innovative amine absorption-based carbon capture process enables retrofitting of existing industrial facilities to reduce emissions in hard-to-abate sectors, with advanced ...