A newer version of this document is available. Customers should click here to go to the newest version.
4.4.1. DCLSM Blind Window Control Register - DCLSM_BWCR
4.4.2. All Alarms’ Prior Alarms’ Fault Injection Register - ERRCTRL_ALL_ALARMS_PRIOR_AFI
4.4.3. INTREQ Configuration Register - ERRCTRL_INTREQ_CONF
4.4.4. Timeout Deadline and Status Register - ERRCTRL_TIMEOUT
4.4.5. Timeout Acknowledgment Register - ERRCTRL_TIMEOUT_ACK
4.4.6. Enable Key fRSmartComp Control Register - ERRCTRL_ENABLE_KEY
4.4.7. Root Fault Injection Control register - ERRCTRL_ROOT_INJ
4.4.8. Alarm Fault Injection Control register - ERRCTRL_ALARM_INJ
4.4.9. Event Mask Configuration register - ERRCTRL_MASKA and ERRCTRL_MASKB
4.4.10. Alarm Routing Configuration register - ERRCTRL_ROUTA and ERRCTRL_ROUTB
4.4.11. Error Controller PGO LOG Reset Control register - ERRCTRL_PGOLOGRST
4.4.12. PGO0 and PGO4 Configuration registers - ERRCTRL_PGO0 and ERRCTRL_PGO4
4.4.13. FN_MODEIN Control Register - ERRCTRL_FNMODEIN
4.4.14. FN_MODEOUT register - ERRCTRL_FNMODEOUT
4.4.15. All Alarms After Fault Injection - ERRCTRL_FNGIALARMS
4.4.16. Error Controller Context Register - ERRCTRL_FNGICTXT4
4.4.17. CMP Mismatch CONTEXT Registers - ERRCTRL_FNGICMPCTXT0 … ERRCTRL_FNGICMPCTXT3
4.4.18. STATISTICS registers: ERRCTRL_FNGISTAT0 and ERRCTRL_FNGISTAT4
4.4.19. State register - ERRCTRL_FNPERIPHGI4
6.7. Handling Faults (Safety Use Case)
Although the fRSmartComp primarily targets fail-safe applications, it can provide a certain degree of system availability, even after a fault. They are summarized into the Safety-related Use Cases. This sections describes these safety-related Use Cases and how they can be implemented at the system level.
fRSmartComp can enable three categories of safety Use Cases. These Use Cases are listed after including scenarios devoted to improving the solution's robustness rather than providing availability.
- Standard Fail Safe: A basic scenario where, after fault detection, a safe state is enforced.
- False Positive avoidance: Discrimination between faults occurred in the CPUs or fRSmartComp.
- Timeout on system reset or after fault detection: Critical alarm generated by fRSmartComp after a system reset or fault detection when the System Supervisor cannot access fRSmartComp for a specific duration.
Note: You must assess the use cases (except the Standard Fail Safe) based on the safety function requirements that you want to implement for the system, as well as the safety-related parameters that you plan to achieve (e.g., PFHd, PFDav, PST, fault reaction times).