Search NASASearch

SEARCH · Search NASA

Results for “REDUNDANT SYSTEM”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 37 records · Page 2

The optimum cost-effective test time for redundant systems with specified reliability and confidence

This paper investigates the optimum test time to determine the number of redundant units needed to achieve high reliability with high confidence. Newly designed systems often have high initial failure rates which can be reduced by testing to find failure modes and remove them by redesign. To accurately estimate the required number of redundant units, the test time must be extended to accurately determine the failure rate. If the measured failure rate is used, there is a 50% chance that the actual hardware failure rate is higher. Using the measured failure rate gives only a 50% confidence that the failure rate and number of spares are not too low. After the test, given the measured failure rate and the desired reliability, the number of spares can be determined and the confidence in the reliability computed. Instead of accepting the reliability results of a fixed duration test, it is possible to set the requirements for both the redundant reliability and the confidence level and then compute the test time needed to minimize the total cost required to achieve these requirements. The confidence that the redundant reliability is not too low is increased by using a higher than measured failure rate to increase the number of spares. The higher number of spares increases cost. Longer test time reduces the variance in the failure rate and the increase in the number of spares, so that test cost increases and spares cost decreases. The total cost is the sum of the cost of the test time and the spares. The optimum test time produces the minimum total cost for the system failure rate, mission length, and required reliability and confidence level. Longer testing is justified by reduced cost. Some examples are given.

Harry W Jones

Power System Redundancy Design Trends for All-Electric eVTOL Quadrotors

Electrical vertical takeoff and landing (eVTOL) vehicles promise to enable a variety of new local and intraregional air transport missions. However, there are significant challenges that must be solved to enable their use. One challenge is the relatively low reliability of power components (e.g. motors, power electronic devices, and batteries). No clear development path to create reliable eVTOL power systems has been articulated in the literature, though it is generally assumed redundancy is part of the solution. This work proposes an analysis process to examine the redundancy design space and select mass optimal designs for eVTOL power systems. The process is applied to a six passenger quadrotor vehicle, and results are used to highlight redundancy design trends for this class of vehicle. This process and associated data can help vehicle designers more effectively develop eVTOLs that meet reliability requirements.

Electric vertical takeoff and landing

Power System Redundancy Design Trends for All-Electric eVTOL Quadrotors

Electrical vertical takeoff and landing (eVTOL) vehicles promise to enable a variety of new local and intraregional air transport missions. However, there are significant challenges that must be solved to enable their use. One challenge is the relatively low reliability of power components (e.g. motors, power electronic devices, and batteries). No clear development path to create reliable eVTOL power systems has been articulated in the literature, though it is generally assumed redundancy is part of the solution. This work proposes an analysis process to examine the redundancy design space and select mass optimal designs for eVTOL power systems. The process is applied to a six passenger quadrotor vehicle, and results are used to highlight redundancy design trends for this class of vehicle. This process and associated data can help vehicle designers more effectively develop eVTOLs that meet reliability requirements.

Electric vertical takeoff and landing

Hardware for Accelerating N-Modular Redundant Systems for High-Reliability Computing

A hardware unit has been designed that reduces the cost, in terms of performance and power consumption, for implementing N-modular redundancy (NMR) in a multiprocessor device. The innovation monitors transactions to memory, and calculates a form of sumcheck on-the-fly, thereby relieving the processors of calculating the sumcheck in software

Dobbs, Carl, Sr.

The design of an automated verification of redundant systems

Handbook describes design processes, presents design considerations and techniques, gives tutorial material on implementation and methodology, shows design aids, illustrates use of design aids and application samples, and identifies general practices to be adhered to or avoided.

Ford, F. A.

Design of redundant systems

Algorithmic approach is useful for analysis of systems with noisy inputs and when outputs are required in terms of statistical quantities and probabilities of signal excursions beyond desired levels. Procedure can be used with circuits, chemical processes, material design, and other systems with known transfer functions and parameter tolerances.

Doty, L. F.

Calculating parts factors for redundant systems

Method that is easily programmed simplifies calculation of parts factor. Individual module unreliabilities are computed as function of number of service intervals and service interval length. At each service interval, unreliability is sum of unreliabilities of replaced and original modules. It must be calculated for each module to obtain parts factor.

Derocher, W. L., Jr.

Multiple Fault Isolation in Redundant Systems

Fault diagnosis in large-scale systems that are products of modern technology present formidable challenges to manufacturers and users. This is due to large number of failure sources in such systems and the need to quickly isolate and rectify failures with minimal down time. In addition, for fault-tolerant systems and systems with infrequent opportunity for maintenance (e.g., Hubble telescope, space station), the assumption of at most a single fault in the system is unrealistic. In this project, we have developed novel block and sequential diagnostic strategies to isolate multiple faults in the shortest possible time without making the unrealistic single fault assumption.

Pattipati, Krishna R.

Multiple Fault Isolation in Redundant Systems

Fault diagnosis in large-scale systems that are products of modem technology present formidable challenges to manufacturers and users. This is due to large number of failure sources in such systems and the need to quickly isolate and rectify failures with minimal down time. In addition, for fault-tolerant systems and systems with infrequent opportunity for maintenance (e.g., Hubble telescope, space station), the assumption of at most a single fault in the system is unrealistic. In this project, we have developed novel block and sequential diagnostic strategies to isolate multiple faults in the shortest possible time without making the unrealistic single fault assumption.

Pattipati, Krishna R.

Redundant data management system

Redundant data management system solves problem of operating redundant equipment in real time environment where failures are detected, isolated, and switched in simple manner. System consists of quadruply-redundant computer, input/output control units, and data buses. System inherently contains failure detection, isolation, and switching function.

Hall, J. R.

Intelligent redundant actuation system requirements and preliminary system design

Several redundant actuation system configurations were designed and demonstrated to satisfy the stringent operational requirements of advanced flight control systems. However, this has been accomplished largely through brute force hardware redundancy, resulting in significantly increased computational requirements on the flight control computers which perform the failure analysis and reconfiguration management. Modern technology now provides powerful, low-cost microprocessors which are effective in performing failure isolation and configuration management at the local actuator level. One such concept, called an Intelligent Redundant Actuation System (IRAS), significantly reduces the flight control computer requirements and performs the local tasks more comprehensively than previously feasible. The requirements and preliminary design of an experimental laboratory system capable of demonstrating the concept and sufficiently flexible to explore a variety of configurations are discussed.

Defeo, P.

An analysis of redundancy management algorithms for asynchronous fault tolerant control systems

Redundancy management algorithms, commonly referred to as voters, are algorithms used in fault-tolerant control systems to vote on incoming redundant data, isolate bad signals, and output a single good value. In a synchronous environment, this algorithm is a straightforward signal-to-signal comparison with relatively low complexity. The technology of asynchronous control systems, recently realized in the Ultrareliable Fault Tolerant Control System research program at NASA Ames Research Center, requires more complex algorithms for fault detection and signal selection. A variety of algorithms used for this process, a means of testing them, and their basic performance under a simulated environment of the ultrareliable fault-tolerant control system are presented.

Davis, Gloria J.

Inter-computer communication architecture for a mixed redundancy distributed system

The triply redundant intercomputer network for the Advanced Information Processing System (AIPS), an architecture developed to serve as the core avionics system for a broad range of aerospace vehicles, is discussed. The AIPS intercomputer network provides a high-speed, Byzantine-fault-resilient communication service between processing sites, even in the presence of arbitrary failures of simplex and duplex processing sites on the IC network. The IC network contention poll has evolved from the Laning Poll. An analysis of the failure modes and effects and a simulation of the AIPS contention poll, demonstrate the robustness of the system.

Lala, Jaynarayan H.

Method and system for redundancy management of distributed and recoverable digital control system

A method and system for redundancy management is provided for a distributed and recoverable digital control system. The method uses unique redundancy management techniques to achieve recovery and restoration of redundant elements to full operation in an asynchronous environment. The system includes a first computing unit comprising a pair of redundant computational lanes for generating redundant control commands. One or more internal monitors detect data errors in the control commands, and provide a recovery trigger to the first computing unit. A second redundant computing unit provides the same features as the first computing unit. A first actuator control unit is configured to provide blending and monitoring of the control commands from the first and second computing units, and to provide a recovery trigger to each of the first and second computing units. A second actuator control unit provides the same features as the first actuator control unit.

Stange, Kent

Effectiveness of Redundant Communications Systems in Maintaining Operational Control of Small Unmanned Aircraft

NASA has been researching prototype technologies for an Unmanned Aircraft System (UAS) Traffic Management (UTM) system to facilitate enabling of safe and efficient civilian low-altitude airspace and UAS operations, in a series of Technical Capability Levels (TCL) activities that are increasingly complex. In TCL1, completed in 2015, visual line-of-sight operations such as agriculture, firefighting and infrastructure monitoring were addressed with a focus on geofencing and operations scheduling. Technologies and requirements needed for beyond visual line-of-sight (BVLOS) operations in sparsely populated areas were examined in TCL2 in 2016, and those for operations over moderately populated areas in TCL3 in 2017 and 2018. TCL4 will build on the earlier TCLs and focus on technologies and requirements for operations in higher-density urban areas for tasks such as news gathering, package delivery and for managing large-scale contingencies. This paper describes a communications test conducted in TCL3 and discusses insights gained from the test. In the test, operators were directed to equip UAS with redundant Command and Control (C2) communications systems, send a maneuver command to Unmanned Aircraft (UA) via the primary system, then verify execution of the sent command. This exercise was repeated with each redundant system. The test was designed to assess effectiveness of redundant C2 systems in maintaining operational control of UA. Several UAS were configured with varying arrangements to achieve redundancy, including two identical radio modems using the same frequency band, WiFi and Long-Term Evolution (LTE) cellular modems, etc. From the test, digital data such as time maneuver command sent, time maneuver verified, etc., were collected. Descriptions of methods to detect loss of C2 communications and contingency steps for such event were collected and assessed. The final paper will include a detailed analysis of the collected data leading to the following insights. First, effectiveness of redundant C2 systems depends on several factors, such as operational environment and communications service availability. For example, use of two identical point-to-point radio to connect operator and UA on the same frequency band can be effective in mitigating radio malfunction when operating in an environment where possibility of Radio Frequency (RF) interference is low, such as over open plains. However, the same arrangement may not be effective where high level of RF transmissions in broad spectrum ranges can be expected, such as over or near urban areas. For redundant systems that consist of external communications services, such as cellular and satellite communications network, redundancy is maintained only in the areas where more than one services are available. Therefore, UAS operators should have the means to plan for and monitor the performance of external communications services they are relying on to control UA. Second, communications performance needs, such as the minimum data transfer rate and the maximum tolerable latency, should be assessed to reflect the potential hazard that can come from loss of UA control. For example, UA operations over desolate area pose less hazard to people than operations over densely populated area and performance need for the former would be less than the latter.

Jung, Jaewoo