Search NASA⌕ Search

SEARCH · Search NASA

Results for “System and Safety Analysis”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 37 records · Page 2

Simulation of the National Aerospace System for Safety Analysis

Work started on this project on January 1, 1999, the first year of the grant. Following the outline of the grant proposal, a simulator architecture has been established which can incorporate the variety of types of models needed to accurately simulate national airspace dynamics. For the sake of efficiency, this architecture was based on an established single-aircraft flight simulator, the Reconfigurable Flight Simulator (RFS), already developed at Georgia Tech. Likewise, in the first year substantive changes and additions were made to the RFS to convert it into a simulation of the National Airspace System, with the flexibility to incorporate many types of models: aircraft models; controller models; airspace configuration generators; discrete event generators; embedded statistical functions; and display and data outputs. The architecture has been developed with the capability to accept any models of these types; due to its object-oriented structure, individual simulator components can be added and removed during run-time, and can be compiled separately. Simulation objects from other projects should be easy to convert to meet architecture requirements, with the intent that both this project may now be able to incorporate established simulation components from other projects, and that other projects may easily use this simulation without significant time investment.

Pritchett, Amy↗

The SAS4A/SASSYS-1 Version 5.8 Safety Analysis Code System

SAS4A/SASSYS-1 is a software simulation tool used to perform deterministic analysis of anticipated events as well as design basis and beyond design basis accidents for advanced nuclear reactors. Detailed, mechanistic models of steady-state and transient thermal, hydraulic, kinetic, and mechanical phenomena are employed to describe the response of the reactor core, the reactor primary and secondary coolant loops, the reactor control and protection systems, and the balance-of-plant to accidents caused by changes in coolant flow, loss of heat rejection, or reactivity insertion. The consequences of single and double-fault accidents can be modeled, including fuel and coolant heating, fuel and cladding mechanical behavior, core reactivity feedbacks, coolant loop performance including natural circulation, and decay heat removal. Analyses are typically terminated upon demonstration of reactor and plant shutdown to permanently coolable conditions, or upon violation of design basis margins. The objective of the analysis is to quantify accident consequences as measured by the transient behavior of system performance parameters, such as fuel and cladding temperatures, reactivity, and cladding strain. Originally developed for analysis of sodium cooled reactors with oxide fuel clad by stainless steel, the models were subsequently extended and specialized to metallic fuel clad with advanced alloys and to several other coolant options, including lead, LBE, and water.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

Probabilistic Causal Analysis for System Safety Risk Assessments in Commercial Air Transport

Aviation is one of the critical modes of our national transportation system. As such, it is essential that new technologies be continually developed to ensure that a safe mode of transportation becomes even safer in the future. The NASA Aviation Safety Program (AvSP) is managing the development of new technologies and interventions aimed at reducing the fatal aviation accident rate by a factor of 5 by year 2007 and by a factor of 10 by year 2022. A portfolio assessment is currently being conducted to determine the projected impact that the new technologies and/or interventions may have on reducing aviation safety system risk. This paper reports on advanced risk analytics that combine the use of a human error taxonomy, probabilistic Bayesian Belief Networks, and case-based scenarios to assess a relative risk intensity metric. A sample case is used for illustrative purposes.

Luxhoj, James T.↗

Guidance for Designing Safety into Urban Air Mobility: Hazard Analysis Techniques

The national airspace system is exceptionally safe, specifically in terms of commercial air traffic operations. The introduction of innovative aircraft (such as electric vertical takeoff and landing vehicles) undergoing novel operations (such as for an urban air passenger carrying mission) is a potential disruptor to the current means of regulating and ensuring the safety of air travel. The aviation industry and associated regulatory bodies are adapting their approaches to assuring system safety to enable these new paradigms. However, any system safety analysis requires that a hazard assessment be performed. In this work, we consider the Functional Hazard Assessment (FHA) and Systems Theoretic Process Analysis (STPA) techniques for hazard assessment and evaluate whether they can be used in a complementary fashion for regulatory approval purposes. We perform an FHA and an STPA on an electric vertical takeoff and landing (eVTOL) vehicle undergoing an urban air mobility (UAM) passenger carrying reference scenario and present excerpts of this analysis. We then draw parallels between the techniques and highlight elements where they naturally reinforce to each other’s results, specifically in the consideration of hazard severity with respect to flight phases, the design of hazard mitigations, and the applicability of the results to all types of regulatory approvals (e.g., type certification, operational approval, and crew training).

Mallory S Graydon↗

Demonstration of a Safety Analysis on a Complex System

For the past 17 years, Professor Leveson and her graduate students have been developing a theoretical foundation for safety in complex systems and building a methodology upon that foundation. The methodology includes special management structures and procedures, system hazard analyses, software hazard analysis, requirements modeling and analysis for completeness and safety, special software design techniques including the design of human-machine interaction, verification, operational feedback, and change analysis. The Safeware methodology is based on system safety techniques that are extended to deal with software and human error. Automation is used to enhance our ability to cope with complex systems. Identification, classification, and evaluation of hazards is done using modeling and analysis. To be effective, the models and analysis tools must consider the hardware, software, and human components in these systems. They also need to include a variety of analysis techniques and orthogonal approaches: There exists no single safety analysis or evaluation technique that can handle all aspects of complex systems. Applying only one or two may make us feel satisfied, but will produce limited results. We report here on a demonstration, performed as part of a contract with NASA Langley Research Center, of the Safeware methodology on the Center-TRACON Automation System (CTAS) portion of the air traffic control (ATC) system and procedures currently employed at the Dallas/Fort Worth (DFW) TRACON (Terminal Radar Approach CONtrol). CTAS is an automated system to assist controllers in handling arrival traffic in the DFW area. Safety is a system property, not a component property, so our safety analysis considers the entire system and not simply the automated components. Because safety analysis of a complex system is an interdisciplinary effort, our team included system engineers, software engineers, human factors experts, and cognitive psychologists.

Leveson, Nancy↗

Manned space flight nuclear system safety. Volume 3: Reactor system preliminary nuclear safety analysis. Part 1: Reference Design Document (RDD)

The Reference Design Document, of the Preliminary Safety Analysis Report (PSAR) - Reactor System provides the basic design and operations data used in the nuclear safety analysis of the Rector Power Module as applied to a Space Base program. A description of the power module systems, facilities, launch vehicle and mission operations, as defined in NASA Phase A Space Base studies is included. Each of two Zirconium Hydride Reactor Brayton power modules provides 50 kWe for the nominal 50 man Space Base. The INT-21 is the prime launch vehicle. Resupply to the 500 km orbit over the ten year mission is provided by the Space Shuttle. At the end of the power module lifetime (nominally five years), a reactor disposal system is deployed for boost into a 990 km high altitude (long decay time) earth orbit.

Source record↗

Gas-Cooled High-Temperature Pebble-Bed Reactor Reference Plant Model Updates

This work presents the latest improvements to, and investigations performed with, the pebble-bed high-temperature gas-cooled reactor (PB-HTGR) reference plant models for the United States Nuclear Regulatory Commission. These models serve as the foundation for the future development of detailed design evaluation models based on license applications. The reference plant models have been developed with the Comprehensive Reactor Analysis Bundle, or BlueCRAB, which is the code suite proposed for non-light-water reactor systems safety analysis. It incorporates various simulation tools developed by the Nuclear Energy Advanced Modeling and Simulation program, including the Griffin code for reactor physics, the Pronghorn and SAM codes for core thermal fluids, the BISON code for solid conduction and fuel performance, and the SAM code for system analysis. The primary objective of the work that was performed was to assess BlueCRAB’s level of readiness for modeling a PB-HTGR. To do so, we first developed numerical models in BlueCRAB that include the key physics for this technology to ensure an adequate level of fidelity for modeling PB-HTGR core performance and for performing multiphysics simulations for equilibrium core conditions and different accident scenarios. Then we simulated transient scenarios, including depressurized and pressurized loss of forced cooling accidents, over-cooling, and control rod withdrawal events with delayed and prompt supercritical reactivity insertions. The analysis in this report includes comparisons of the 2D thermal fluid porous media models in Pronghorn and SAM, and comparisons of coupled SAM/Griffin/SAM and coupled Pronghorn/Griffin for depressurized and pressurized loss of forced cooling, over-cooling, and control rod withdrawal events. In addition, we compare 3D, 2D, and 0D/PKE neutronic models for the two control rod withdrawal scenarios with coupled Pronghorn/Griffin. The comparisons show that the BlueCRAB models lead to physically intuitive solutions for the scenarios examined. The changes in the various scalar and vector fields, such as neutron flux, power, temperature, density, pressure, and velocity, are within the expected ranges, and their distributions can be explained by the system response of the transients and the geometric and material variations. Several comparisons suggest that the porous media models in Pronghorn and SAM can lead to similar solutions, even though they are based on different methodologies. This work further highlights the need for flexible tools with various levels of fidelity to cover the breadth and depth of needs that may arise in future technical evaluations of the PB-HTGR. We believe that the BlueCRAB capabilities will be a significant asset for confirmatory analyses in order to resolve important safety questions.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

Manned space flight nuclear system safety. Volume 3: Reactor system preliminary nuclear safety analysis. Part 2: Accident Model Document (AMD)

The Accident Model Document is one of three documents of the Preliminary Safety Analysis Report (PSAR) - Reactor System as applied to a Space Base Program. Potential terrestrial nuclear hazards involving the zirconium hydride reactor-Brayton power module are identified for all phases of the Space Base program. The accidents/events that give rise to the hazards are defined and abort sequence trees are developed to determine the sequence of events leading to the hazard and the associated probabilities of occurence. Source terms are calculated to determine the magnitude of the hazards. The above data is used in the mission accident analysis to determine the most probable and significant accidents/events in each mission phase. The only significant hazards during the prelaunch and launch ascent phases of the mission are those which arise form criticality accidents. Fission product inventories during this time period were found to be very low due to very limited low power acceptance testing.

Source record↗

In-space propellant systems safety. Volume 1: Executive summary

Safety problems connected with in-space propellant logistics operations are considered. Safety considerations resulting from the system safety analysis in the trade studies and evaluations of alternate operating concepts in the systems operations analysis are presented.

Source record↗

In-space propellant logistics. Volume 1: Executive summary

The study addresses the systems and operational problems associated with the transport, transfer, and storage of cryogenic propellants in low earth orbits. The safety problems connected with in-space propellant logistics operations are also considered.Correlation between the two projects was maintained by including safety considerations, resulting from the system safety analysis, in the trade studies and evaluations of alternate operating concepts in the systems operations analysis.

Source record↗

Bayesian Statistics and Uncertainty Quantification for Safety Boundary Analysis in Complex Systems

The analysis of a safety-critical system often requires detailed knowledge of safe regions and their highdimensional non-linear boundaries. We present a statistical approach to iteratively detect and characterize the boundaries, which are provided as parameterized shape candidates. Using methods from uncertainty quantification and active learning, we incrementally construct a statistical model from only few simulation runs and obtain statistically sound estimates of the shape parameters for safety boundaries.

Active Learning↗

System safety in Stirling engine development

The DOE/NASA Stirling Engine Project Office has required that contractors make safety considerations an integral part of all phases of the Stirling engine development program. As an integral part of each engine design subtask, analyses are evolved to determine possible modes of failure. The accepted system safety analysis techniques (Fault Tree, FMEA, Hazards Analysis, etc.) are applied in various degrees of extent at the system, subsystem and component levels. The primary objectives are to identify critical failure areas, to enable removal of susceptibility to such failures or their effects from the system and to minimize risk.

Bankaitis, H.↗

Software Safety Analysis of a Flight Guidance System

This document summarizes the safety analysis performed on a Flight Guidance System (FGS) requirements model. In particular, the safety properties desired of the FGS model are identified and the presence of the safety properties in the model is formally verified. Chapter 1 provides an introduction to the entire project, while Chapter 2 gives a brief overview of the problem domain, the nature of accidents, model based development, and the four-variable model. Chapter 3 outlines the approach. Chapter 4 presents the results of the traditional safety analysis techniques and illustrates how the hazardous conditions associated with the system trace into specific safety properties. Chapter 5 presents the results of the formal methods analysis technique model checking that was used to verify the presence of the safety properties in the requirements model. Finally, Chapter 6 summarizes the main conclusions of the study, first and foremost that model checking is a very effective verification technique to use on discrete models with reasonable state spaces. Additional supporting details are provided in the appendices.

Butler, Ricky W.↗

A Framework for Assessment of Aviation Safety Technology Portfolios

The programs within NASA's Aeronautics Research Mission Directorate (ARMD) conduct research and development to improve the national air transportation system so that Americans can travel as safely as possible. NASA aviation safety systems analysis personnel support various levels of ARMD management in their fulfillment of system analysis and technology prioritization as defined in the agency's program and project requirements. This paper provides a framework for the assessment of aviation safety research and technology portfolios that includes metrics such as projected impact on current and future safety, technical development risk and implementation risk. The paper also contains methods for presenting portfolio analysis and aviation safety Bayesian Belief Network (BBN) output results to management using bubble charts and quantitative decision analysis techniques.

Jones, Sharon M.↗

Study of solid rocket motor for space shuttle booster, volume 2, book 2

A technical analysis of the solid propellant rocket engines for use with the space shuttle is presented. The subjects discussed are: (1) solid rocket motor stage recovery, (2) environmental effects, (3) man rating of the solid propellant rocket engines, (4) system safety analysis, (5) ground support equipment, and (6) transportation, assembly, and checkout.

Source record↗

Spaceflight Ground Support Equipment Reliability & System Safety Data

Presented were Reliability Analysis, consisting primarily of Failure Modes and Effects Analysis (FMEA), and System Safety Analysis, consisting of Preliminary Hazards Analysis (PHA), performed to ensure that the CoNNeCT (Communications, Navigation, and Networking re- Configurable Testbed) Flight System was safely and reliably operated during its Assembly, Integration and Test (AI&T) phase. A tailored approach to the NASA Ground Support Equipment (GSE) standard, NASA-STD-5005C, involving the application of the appropriate Requirements, S&MA discipline expertise, and a Configuration Management system (to retain a record of the analysis and documentation) were presented. Presented were System Block Diagrams of selected GSE and the corresponding FMEA, as well as the PHAs. Also discussed are the specific examples of the FMEAs and PHAs being used during the AI&T phase to drive modifications to the GSE (via "redlining" of test procedures, and the placement of warning stickers to protect the flight hardware) before being interfaced to the Flight System. These modifications were necessary because failure modes and hazards were identified during the analysis that had not been properly mitigated. Strict Configuration Management was applied to changes (whether due to upgrades or expired calibrations) in the GSE by revisiting the FMEAs and PHAs to reflect the latest System Block Diagrams and Bill Of Material. The CoNNeCT flight system has been successfully assembled, integrated, tested, and shipped to the launch site without incident. This demonstrates that the steps taken to safeguard the flight system when it was interfaced to the various GSE were successful.

Fernandez, Rene↗

Observations and reflections

The aspects of software as well as hardware in application of system safety to nuclear safety, consumer product safety, rail transit safety, auto safety, petroleum safety, and advanced surface transport safety are emphasized. The possibility of product liability as a forcing function to stimulate adoption of system safety analysis is projected.

Jerome Lederer↗