Search NASA⌕ Search

SEARCH · Search NASA

Results for “multiple faults”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 253 records · Page 14

A flight expert system (FLES) for on-board fault monitoring and diagnosis

The increasing complexity of modern aircraft creates a need for a larger number of caution and warning devices. But more alerts require more memorization and higher workloads for the pilot and tend to induce a higher probability of errors. Therefore, an architecture for a flight expert system (FLES) is developed to assist pilots in monitoring, diagnosing and recovering from in-flight faults. A prototype of FLES has been implemented. A sensor simulation model was developed and employed to provide FLES with airplane status information during the diagnostic process. The simulator is based on the Lockheed Advanced Concept System (ACS), a future generation airplane, and on the Boeing 737. A distinction between two types of faults, maladjustments and malfunctions, has led to two approaches to fault diagnosis. These approaches are evident in two FLES subsystems: the flight phase monitor and the sensor interrupt handler. The specific problem addressed in these subsystems has been that of integrating information received from multiple sensors with domain knowledge in order to access abnormal situations during airplane flight. Malfunctions and maladjustments are handled separately, diagnosed using domain knowledge.

Ali, Moonis↗

Simulated fault injection - A methodology to evaluate fault tolerant microprocessor architectures

A simulation-based fault-injection method for validating fault-tolerant microprocessor architectures is described. The approach uses mixed-mode simulation (electrical/logic analysis), and injects transient errors in run-time to assess the resulting fault impact. As an example, a fault-tolerant architecture which models the digital aspects of a dual-channel real-time jet-engine controller is used. The level of effectiveness of the dual configuration with respect to single and multiple transients is measured. The results indicate 100 percent coverage of single transients. Approximately 12 percent of the multiple transients affect both channels; none result in controller failure since two additional levels of redundancy exist.

Choi, Gwan S.↗

Simplified Phased-Mission System Analysis for Systems with Independent Component Repairs

Accurate analysis of reliability of system requires that it accounts for all major variations in system's operation. Most reliability analyses assume that the system configuration, success criteria, and component behavior remain the same. However, multiple phases are natural. We present a new computationally efficient technique for analysis of phased-mission systems where the operational states of a system can be described by combinations of components states (such as fault trees or assertions). Moreover, individual components may be repaired, if failed, as part of system operation but repairs are independent of the system state. For repairable systems Markov analysis techniques are used but they suffer from state space explosion. That limits the size of system that can be analyzed and it is expensive in computation. We avoid the state space explosion. The phase algebra is used to account for the effects of variable configurations, repairs, and success criteria from phase to phase. Our technique yields exact (as opposed to approximate) results. We demonstrate our technique by means of several examples and present numerical results to show the effects of phases and repairs on the system reliability/availability.

Somani, Arun K.↗

Autonomous Satellite Command and Control Through the World Wide Web

The Automated Space System Experimental Testbed (ASSET) system is a simple yet comprehensive real-world operations network being developed. Phase 3 of the ASSET Project was January-December 1997 and is the subject of this report. This phase permitted SSDL and its project partners to expand the ASSET system in a variety of ways. These added capabilities included the advancement of ground station capabilities, the adaptation of spacecraft on-board software, and the expansion of capabilities of the ASSET management algorithms. Specific goals of Phase 3 were: (1) Extend Web-based goal-level commanding for both the payload PI and the spacecraft engineer. (2) Support prioritized handling of multiple (PIs) Principle Investigators as well as associated payload experimenters. (3) Expand the number and types of experiments supported by the ASSET system and its associated spacecraft. (4) Implement more advanced resource management, modeling and fault management capabilities that integrate the space and ground segments of the space system hardware. (5) Implement a beacon monitoring test. (6) Implement an experimental blackboard controller for space system management. (7) Further define typical ground station developments required for Internet-based remote control and for full system automation of the PI-to-spacecraft link. Each of those goals are examined. Significant sections of this report were also published as a conference paper. Several publications produced in support of this grant are included as attachments. Titles include: 1) Experimental Initiatives in Space System Operations; 2) The ASSET Client Interface: Balancing High Level Specification with Low Level Control; 3) Specifying Spacecraft Operations At The Product/Service Level; 4) The Design of a Highly Configurable, Reusable Operating System for Testbed Satellites; 5) Automated Health Operations For The Sapphire Spacecraft; 6) Engineering Data Summaries for Space Missions; and 7) Experiments In Automated Health Assessment And Notification For The Sapphire Microsatellite.

Cantwell, Brian↗

2nd Generation QUATARA Flight Computer Project

Single core flight computer boards have been designed, developed, and tested (DD&T) to be flown in small satellites for the last few years. In this project, a prototype flight computer will be designed as a distributed multi-core system containing four microprocessors running code in parallel. This flight computer will be capable of performing multiple computationally intensive tasks such as processing digital and/or analog data, controlling actuator systems, managing cameras, operating robotic manipulators and transmitting/receiving from/to a ground station. In addition, this flight computer will be designed to be fault tolerant by creating both a robust physical hardware connection and by using a software voting scheme to determine the processor's performance. This voting scheme will leverage on the work done for the Space Launch System (SLS) flight software. The prototype flight computer will be constructed with Commercial Off-The-Shelf (COTS) components which are estimated to survive for two years in a low-Earth orbit.

Falker, Jay↗

Fault Detection and Correction for the Solar Dynamics Observatory Attitude Control System

The Solar Dynamics Observatory is an Explorer-class mission that will launch in early 2009. The spacecraft will operate in a geosynchronous orbit, sending data 24 hours a day to a devoted ground station in White Sands, New Mexico. It will carry a suite of instruments designed to observe the Sun in multiple wavelengths at unprecedented resolution. The Atmospheric Imaging Assembly includes four telescopes with focal plane CCDs that can image the full solar disk in four different visible wavelengths. The Extreme-ultraviolet Variability Experiment will collect time-correlated data on the activity of the Sun's corona. The Helioseismic and Magnetic Imager will enable study of pressure waves moving through the body of the Sun. The attitude control system on Solar Dynamics Observatory is responsible for four main phases of activity. The physical safety of the spacecraft after separation must be guaranteed. Fine attitude determination and control must be sufficient for instrument calibration maneuvers. The mission science mode requires 2-arcsecond control according to error signals provided by guide telescopes on the Atmospheric Imaging Assembly, one of the three instruments to be carried. Lastly, accurate execution of linear and angular momentum changes to the spacecraft must be provided for momentum management and orbit maintenance. In th~sp aper, single-fault tolerant fault detection and correction of the Solar Dynamics Observatory attitude control system is described. The attitude control hardware suite for the mission is catalogued, with special attention to redundancy at the hardware level. Four reaction wheels are used where any three are satisfactory. Four pairs of redundant thrusters are employed for orbit change maneuvers and momentum management. Three two-axis gyroscopes provide full redundancy for rate sensing. A digital Sun sensor and two autonomous star trackers provide two-out-of-three redundancy for fine attitude determination. The use of software to maximize chances of recovery from any hardware or software fault is detailed. A generic fault detection and correction software structure is used, allowing additions, deletions, and adjustments to fault detection and correction rules. This software structure is fed by in-line fault tests that are also able to take appropriate actions to avoid corruption of the data stream.

Starin, Scott R.↗

Understanding Vibration Spectra of Planetary Gear Systems for Fault Detection

An understanding of the vibration spectra is very useful for any gear fault detection scheme based upon vibration measurements. The vibration measured from planetary gears is complicated. Sternfeld noted the presence of sidebands about the gear mesh harmonics spaced at the planet passage frequency in spectra measured near the ring gear of a CH-47 helicopter. McFadden proposes a simple model of the vibration transmission that predicts high spectral amplitudes at multiples of the planet passage frequency, for planetary gears with evenly spaced planets. This model correctly predicts no strong signal at the meshing frequency when the number of teeth on the ring gear is not an integer multiple of the number of planets. This paper will describe a model for planetary gear vibration spectra developed from the ideas started in reference. This model predicts vibration to occur only at frequencies that are multiples of the planet repetition passage frequency and clustered around gear mesh harmonics. Vibration measurements will be shown from tri-axial accelerometers mounted on three different planetary gear systems and compared with the model. The model correctly predicts the frequencies with large components around the first several gear mesh harmonics in measurements for systems with uniformly and nonuniformly spaced planet gears. Measurements do not confirm some of the more detailed features predicted by the model. Discrepancies of the ideal model to the measurements are believed due to simplifications in the model and will be discussed. Fault detection will be discussed applying the understanding will be discussed.

Mosher, Marianne↗

Effects of variation in look angle and wavelength in radar images of volcanic and aeolian terrains, or now you see it, now you don't

The effects of look angle and wavelength variation in geologically applied radar images are examined and the applications of observations of these effects for the study of other planets are discussed. Seasat, SIR-A, SIR-B, and airborne radar images and multiple look angle and multiwavelength scatterometer data are used. It is found that smaller look angle radar data can provide good discrimination among certain diverse materials which are not distinguishable at larger look angles, such as subpixel fault scarps and volcanic dykes. Discriminant analyses of scatterometer data of all geological targets observed gave best results with minimum data by using all wavelengths available and small look angles. The results provide information on the nature of radar images which could be valuable in interpreting radar images of Venus.

Blom, Ronald G.↗

The use of self checks and voting in software error detection - An empirical study

The results of an empirical study of software error detection using self checks and N-version voting are presented. Working independently, each of 24 programmers first prepared a set of self checks using just the requirements specification of an aerospace application, and then each added self checks to an existing implementation of that specification. The modified programs were executed to measure the error-detection performance of the checks and to compare this with error detection using simple voting among multiple versions. The analysis of the checks revealed that there are great differences in the ability of individual programmers to design effective checks. It was found that some checks that might have been effective failed to detect an error because they were badly placed, and there were numerous instances of checks signaling nonexistent errors. In general, specification-based checks alone were not as effective as specification-based checks combined with code-based checks. Self checks made it possible to identify faults that had not been detected previously by voting 28 versions of the program over a million randomly generated inputs. This appeared to result from the fact that the self checks could examine the internal state of the executing program, whereas voting examines only final results of computations. If internal states had to be identical in N-version voting systems, then there would be no reason to write multiple versions.

Leveson, Nancy G.↗

Spacelab Life Sciences-1 electrical diagnostic expert system

The Spacelab Life Sciences-1 (SLS-1) Electrical Diagnostic (SLED) expert system is a continuous, real time knowledge-based system to monitor and diagnose electrical system problems in the Spacelab. After fault isolation, the SLED system provides corrective procedures and advice to the ground-based console operator. The SLED system updates its knowledge about the status of Spacelab every 3 seconds. The system supports multiprocessing of malfunctions and allows multiple failures to be handled simultaneously. Information which is readily available via a mouse click includes: general information about the system and each component, the electrical schematics, the recovery procedures of each malfunction, and an explanation of the diagnosis.

Kao, C. Y.↗

Spacelab Life Sciences-1 electrical diagnostics expert system

The Spacelab Life Sciences-1 (SLS-1) Electrical Diagnostic (SLED) expert system is a continuous real time knowledge-based system to monitor and diagnose electrical system problems in the Spacelab. After fault isolation, the SLED system provides corrective procedures and advice to the ground-based console operator. The SLED system updates its knowledge about the status of Spacelab every 3 seconds. The system supports multiprocessing of malfunctions and allows multiple failures to be handled simultaneously. Information which is readily available via a mouse click includes: general information about the system and each component, the electrical schematics, the recovery procedures of each malfunction, and an explanation of the diagnosis.

Kao, Cheng Y.↗

Thin-Film Embedded Sensors for Battery Health Monitoring

Hybrid or all-electric aircraft are being developed as the next generation of aircraft to both allow new forms of aviation and decrease environmental impact. Since these types of aircraft are based on high-capacity battery technology, safe operation of these batteries becomes increasingly important. In particular, the potential for battery failure due to uncontrolled chemical reactions resulting in thermal runaway, catastrophic failure, and battery fires must be addressed in order for such battery technology to have the level of safety needed for standard aviation implementation. Efforts to ensure battery safety often involve engineering solutions that seek to contain rather than prevent such events by early detection. Such approaches increase the system weight and decrease the power per unit mass provided by the battery system. Existing methods for measuring battery parameters to determine the battery state-of-health are limited. These methods include electrical measurements of the cell current and/or voltage output as well as temperature measurements taken externally on the cell surface. Such external temperature measurements are limited in their ability to provide early warning of impending battery failure. In response, an effort to develop sensors operating internal to battery for health monitoring has been ongoing in the NASA Sensor-based Prognostics to Avoid Runaway Reactions & Catastrophic Ignition (SPARRCI) project. The basic approach associated with this sensor work is the deposition of thin film sensors on the battery separator located between the anode and cathode of the battery. These thin film sensors are then monitored to determine changes in battery parameters and health. Microfabrication techniques are employed to minimize the overall impact of the sensors on battery operation through the implementation of sensors with minimal size, weight, and power consumption. The thickness of the films, which are fabricated through physical vapor deposition (sputtering), are on the order of thousands of angstroms and can have minimal surface area. Thin film sensors for system health management have been implemented for a many decades on complex components for aerospace applications. However, the application of thin films of this type on a battery separator for internal battery monitoring applications has not previously been demonstrated to our knowledge. This paper describes the development of sensors for the internal battery monitoring through the use of thin film sensor technology. Thin metal films were successfully deposited on a battery separator polymer material with good adherence and electrical continuity. Multiple types of sensors have been deposited, as well as lead connections from the sensor to the edge of the separator material. The ability of these thin film sensors immersed in electrolyte to perform multiple types of battery parameter measurements has been demonstrated. For example, a multiparameter sensor system measured multiple properties simultaneously inside of a pouch cell over a wide temperature range. Further, real time measurement of interior temperature changes in a battery pouch cell with an integrated interior temperature sensor was demonstrated. These changes include detecting a fault in the battery (shorting) in situ with rapid response time (less than a minute) corresponding to a more limited response by a temperature sensor mounted externally. Other aspects of monitoring battery health were also explored, such as real-time measurement of simulated dendrite growth/metal deposition by sensor on separator material demonstrated. Future efforts will include improvements in the durability of the sensor structure to allow introduction of the approach into standard battery fabrication techniques. Overall, this work is a step forward in providing a method to prevent catastrophic battery failures and provide a foundation for safer, lighter, and higher energy batteries for the electric aircraft industry.

thin film battery health↗

Benefits and Challenges of Model-based Software Engineering: Lessons Learned based on Qualitative and Quantitative Findings

Even though Model-based Software Engineering (MBSwE) techniques and Autogenerated Code (AGC) have been increasingly used to produce complex software systems, there is only anecdotal knowledge about the state-of-thepractice. Furthermore, there is a lack of empirical studies that explore the potential quality improvements due to the use of these techniques. This paper presents in-depth qualitative findings about development and Software Assurance (SWA) practices and detailed quantitative analysis of software bug reports of a NASA mission that used MBSwE and AGC. The mission’s flight software is a combination of handwritten code and AGC developed by two different approaches: one based on state chart models (AGC-M) and another on specification dictionaries (AGC-D). The empirical analysis of fault proneness is based on 380 closed bug reports created by software developers. Our main findings include: (1) MBSwE and AGC provide some benefits, but also impose challenges. (2) SWA done only at a model level is not sufficient. AGC code should also be tested and the models and AGC should always be kept in-sync. AGC must not be changed manually. (3) Fixes made to address an individual bug report were spread both across multiple modules and across multiple files. On average, for each bug report 1.4 modules, that is, 3.4 files were fixed. (4) Most bug reports led to changes in more than one type of file. The majority of changes to auto-generated source code files were made in conjunction to changes in either file with state chart models or XML files derived from dictionaries. (5) For newly developed files, AGC-M and handwritten code were of similar quality, while AGC-D files were the least fault prone.

Goseva-Popstojanova, Katerina↗

Analysis of the survivability of the shuttle (ALT) fault-tolerant avionics system

An extension of the Complementary-Analytic-Simulative Technique (CAST) is presented which is applicable to the Shuttle Data Processing Subsystem (DPS). A two step process was used. The first step provides models, both analytic and simulative, for analysis of the Approach-Landing Test (ALT) configuration. The ALT modeling and analysis are presented. Since CAST had already been shown to be multicomputer systems, the emphasis was placed on extending the CAST concept so it is applicable to computer systems including the multiplicity of input and output devices found in a real-time control system application. The DPS mission-critical survivability for a six-hour mission was determined to be 0.999863 for the Shuttle ALT baseline configuration. Thus it can be said that for ALT, the survivability is adequate. However, the fact that orbiting missions of up to 30 days are planned illustrates the necessity of extending the ALT work to be applicable to OFT and actual mission scenarios. The above analysis led to the evaluation of three selected options which identified two areas of possible improvement. These improvements would result from use of a recovery technique which combines roll ahead with memory copy, and increased TACAN fault detectability.

Source record↗

Evolution of a standard microprocessor-based space computer

An existing in inventory computer hardware/software package (B-1 RFS/ECM) was repackaged and applied to multiple missile/space programs. Concurrent with the application efforts, low risk modifications were made to the computer from program to program to take advantage of newer, advanced technology and to meet increasingly more demanding requirements (computational and memory capabilities, longer life, and fault tolerant autonomy). It is concluded that microprocessors hold promise in a number of critical areas for future space computer applications. However, the benefits of the DoD VHSIC Program are required and the old proliferation problem must be revised.

Fernandez, M.↗

The Manson impact structure, a possible site for a Cretaceous-Tertiary (K-T) boundary impact

The Manson impact structure, about 35 km in diameter, is the largest impact crater recognized in the United States. Its center is located near the town of Manson, 29 km west of Fort Dodge, Iowa. The structure is not well known geologically because it is covered by tens of meters of glacial deposits. What is known about the structure was learned mostly from the study of water well cuttings. At Manson the normal Phanerozoic and Proterozoic sedimentary rocks were replaced by centrally uplifted Proterozoic crystalline rocks that are representative of the normal basement: This central uplift is surrounded by completely disrupted rocks which are roughly encircled by peripherally faulted and slumped sequences of normal sedimentary strata. Radially outward normal sedimentary strata are uplifted slightly. Manson, once interpreted as a cryptovolcanic structure, is now considered an impact structure based on its circular shape, its central uplift and the presence of multiple intersecting sets of shock lamellae in quartz grains from the central uplift. The Ar-40/Ar-39 age spectrum dating results for a microcline separate from the Manson 2-A core in the central uplift is shown. This spectrum is interpreted to indicate a nearly complete degassing of the microcline at the time of the Manson impact. The remainder of the gas released climbs in age with increasing temperature of release. This pattern of the age spectrum is interpreted to represent diffusional loss due to reheating at the time of the impact and during subsequent cooling. Shocked quartz grains, present in the iridium-bearing layer at the K-T boundary throughout the world, have a significantly larger size and are more abundant in the western interior of North America than elsewhere in the world. Furthermore, shocked feldspar and granitic fragments are found at the K-T boundary in North America. These observations indicate the K-T boundary impact must have penetrated continental crust in North America.

Hartung, J. B.↗

Autonomous power expert system

The goal of the Autonomous Power System (APS) program is to develop and apply intelligent problem solving and control technologies to the Space Station Freedom Electrical Power Systems (SSF/EPS). The objectives of the program are to establish artificial intelligence/expert system technology paths, to create knowledge based tools with advanced human-operator interfaces, and to integrate and interface knowledge-based and conventional control schemes. This program is being developed at the NASA-Lewis. The APS Brassboard represents a subset of a 20 KHz Space Station Power Management And Distribution (PMAD) testbed. A distributed control scheme is used to manage multiple levels of computers and switchgear. The brassboard is comprised of a set of intelligent switchgear used to effectively switch power from the sources to the loads. The Autonomous Power Expert System (APEX) portion of the APS program integrates a knowledge based fault diagnostic system, a power resource scheduler, and an interface to the APS Brassboard. The system includes knowledge bases for system diagnostics, fault detection and isolation, and recommended actions. The scheduler autonomously assigns start times to the attached loads based on temporal and power constraints. The scheduler is able to work in a near real time environment for both scheduling and dynamic replanning.

Ringer, Mark J.↗

Autonomous power expert system

The goal of the Autonomous Power System (APS) program is to develop and apply intelligent problem solving and control technologies to the Space Station Freedom Electrical Power Systems (SSF/EPS). The objectives of the program are to establish artificial intelligence/expert system technology paths, to create knowledge based tools with advanced human-operator interfaces, and to integrate and interface knowledge-based and conventional control schemes. This program is being developed at the NASA-Lewis. The APS Brassboard represents a subset of a 20 KHz Space Station Power Management And Distribution (PMAD) testbed. A distributed control scheme is used to manage multiple levels of computers and switchgear. The brassboard is comprised of a set of intelligent switchgear used to effectively switch power from the sources to the loads. The Autonomous Power Expert System (APEX) portion of the APS program integrates a knowledge based fault diagnostic system, a power resource scheduler, and an interface to the APS Brassboard. The system includes knowledge bases for system diagnostics, fault detection and isolation, and recommended actions. The scheduler autonomously assigns start times to the attached loads based on temporal and power constraints. The scheduler is able to work in a near real time environment for both scheduling an dynamic replanning.

Ringer, Mark J.↗