
Nyt sikkerhedskoncept for Toshiba MCU'er
Toshiba annoncerer nyt sikkerhedskoncept for microcontrollere til SIL3 and ASILD level applikationer (in english).
Toshiba Electronics Europe (TEE) has announced a microcontroller that can be certified to Safety Integrity Level 3 (SIL3) and Automotive SIL D (ASILD) while significantly reducing associated system cost and performance overheads.
The Toshiba SIL3/ASILD implementation delivers a more cost-effective solution than alternative methods owing to the fact that it has a smaller chip size, smaller program requirement and better performance than conventional dual-core lock-step methods.
It is based on a hardware architecture that reduces both effort of safety mechanisms and their detection latency. Detailed diagnostic information and the ability to configure the reaction according to the severity of the error allow new system concepts to be implemented targeting higher availability.
TEE worked closely with Yogitech SpA, a company specialized in functional safety, and utilized Yogitech’s fRMethodology based assessment flow and library of Intellectual Properties (fRIPs) in its solution.
Approved by TÜV SÜD, the fRMethodology is a 'white box' approach and it was used to do functional safety analysis and safety-oriented exploration of the Toshiba Target microcontroller unit (MCU) in compliance with IEC 61508 or ISO 26262.
The MCU was split into sensitive zones, failure rates were computed and used to calculate safety metrics (for example, to compute the diagnostic coverage) and to decide chip architecture. A detailed validation was done by using fault injection. The fRIPs, certified by TÜV SÜD, are small hardware supervisors designed with architectural and functional diversity with respect to the MCU sub-block (e.g. CPU, memory) that they supervise. Further peripheral functions on the chip are monitored by Toshiba’s own hardware diagnostic circuits.
Functional safety related system components generally employ duplicated CPU cores (homogenous redundancy): a “mission” core to run the application software and an identical 'monitor' core to guard the system against dangerous faults in the mission core.
A conventional dual-core lock-step SIL3/ASILD approach has to add further protective features, such as a guard ring, separate supply voltage, synthesis and timing diversity, which increase the chip and program size significantly and impact the system performance. Moreover, homogenous redundancy is very much prone to systematic faults.
The fRMethodology enabled Yogitech to identify critical zones in the mission core, allowing the specification of a monitor core that executes the same instructions as the mission core while excluding unnecessary operations. This process led to the implementation of a diverse and optimized monitor core (the fRCPU), eliminating unnecessary hardware overheads, avoiding systematic faults and also significantly reducing the possibility of common cause failures. The fRCPU version implemented by Toshiba in the MCU is for the ARM Cortex-M3 and it has a gate count up to 58% smaller than is used for the mission core.
The run-time supervision guaranteed by fRCPU hardware leads to high diagnostic coverage for transient faults while the short detection latency (achieved thanks to a dedicated interface between the ARM Cortex-M3 and fRCPU) allows fail operational reactions. There are also special measures on chip to avoid latent faults; for example through built-in self test of supervisor circuits or 'scrub and repair' function against bit-flips in memories.
The Toshiba TSB-TC SIL3/ASILD test chip is available now for evaluation by selected partners. It has received Technical Report I from TÜV SÜD for SIL3 functional safety operation. In addition to typical automotive peripheral functions like FlexRayTM and CAN, it offers an operating temperature range of minus 40 to plus 125 degrees Celsius.
Relaterede nyheder
- • Enery Micro klar med nye starterkits
- • Hurtigere kodeudvikling til Renesas RL78 applikationer
- • Lettere tilgang til Microchip familie af C-kompilere
- • IAR er klar med support af ARM Cortex-M0+
- • Renesas annoncerer 'grøn' RL78 designkonkurrence
- • 8-bit MCU'er med avancerede digitale og analoge funktioner
- • Ny generation af wireless MCU'er
- • Renesas lancerer 12 nye medlemmer af 'RX' familien
- • 32-bit MCU'er er optimeret til digital power kontrol
- • ARM lancerer Cortex-M0+ processoren
- • Atmel udvider AVR-serien af MCU'er
- • Gratis software til ARM Cortex-M3 motion-applikationer
- • Microchip udvider 32-bit familien med low-cost enheder i små pakninger
- • TI lancerer ultra low-power MCU-platform med FRAM-hukommelse
- • Fleksible og 'udvikler-venlige' mixed-signal 32-bit MCU'er
Seneste nyheder
- • Kontron satser stort på den nyeste Intel Core i7 processorteknologi
- • LG demonstrerer 55 tommer OLED tv i Europa
- • Exova Metech tilbyder nu kalibrering af ESD pistoler
- • Mouser udbygger med leverandør af antenner til M2M applikationer
- • EBV-magasin om funktionel sikkerhed
- • Bluetooth audiomodul til trådløse højttalersystemer
- • Techno-Matic i nyt forretningsområde
- • Årets Elektropris er uddelt
- • Første SAR A/D-konverter med SPICE model
- • Premier Farnell får ny chef
- • Step-down konverter opererer med 96 procent effektivitet
- • Maxwell Technologies hos Digi-Key
- • Højeffektive DC/DC-konvertere i brick-format
- • Farnell udvider med GNSS/GPS receivere
- • Fuld HD LCD-modul med stor betragningsvinkel
- • Ny teknologi skræmmer fugle væk fra markerne
- • Silicon Labs køber 2,4 GHz specialisten Ember
- • Touch platform emulerer fysiske trykknapper
- • AMD udvider APU platformen med ny R-serie
- • Ericsson klar med ny generation af powermoduler
- • Første 4 Gbit LPDDR'er i 20nm teknologi
- • SemiSouth sampler første 650V SiC JFETs
- • Digi-Key i globalt samarbejde med t-Global Technology
- • austriamicrosystems bliver til 'ams'
- • Find spændende apps til OrCAD og Allegro på nettet