Search NASASearch

SEARCH · Search NASA

Results for “Systems Engineering, Failure Prevention”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 37 records · Page 2

Space Transportation System Availability Requirements and Its Influencing Attributes Relationships

It is essential that management and engineering understand the need for an availability requirement for the customer's space transportation system as it enables the meeting of his needs, goal, and objectives. There are three types of availability, e.g., operational availability, achieved availability, or inherent availability. The basic definition of availability is equal to the mean uptime divided by the sum of the mean uptime plus the mean downtime. The major difference is the inclusiveness of the functions within the mean downtime and the mean uptime. This paper will address tIe inherent availability which only addresses the mean downtime as that mean time to repair or the time to determine the failed article, remove it, install a replacement article and verify the functionality of the repaired system. The definitions of operational availability include the replacement hardware supply or maintenance delays and other non-design factors in the mean downtime. Also with inherent availability the mean uptime will only consider the mean time between failures (other availability definitions consider this as mean time between maintenance - preventive and corrective maintenance) that requires the repair of the system to be functional. It is also essential that management and engineering understand all influencing attributes relationships to each other and to the resultant inherent availability requirement. This visibility will provide the decision makers with the understanding necessary to place constraints on the design definition for the major drivers that will determine the inherent availability, safety, reliability, maintainability, and the life cycle cost of the fielded system provided the customer. This inherent availability requirement may be driven by the need to use a multiple launch approach to placing humans on the moon or the desire to control the number of spare parts required to support long stays in either orbit or on the surface of the moon or mars. It is the intent of this paper to provide the visibility of relationships of these major attribute drivers (variables) to each other and the resultant system inherent availability, but also provide the capability to bound the variables providing engineering the insight required to control the system's engineering solution. An example of this visibility will be the need to provide integration of similar discipline functions to allow control of the total parts count of the space transportation system. Also the relationship visibility of selecting a reliability requirement will place a constraint on parts count to achieve a given inherent availability requirement or accepting a larger parts count with the resulting higher reliability requirement. This paper will provide an understanding for the relationship of mean repair time (mean downtime) to maintainability, e.g., accessibility for repair, and both mean time between failure, e.g., reliability of hardware and the system inherent availability. Having an understanding of these relationships and resulting requirements before starting the architectural design concept definition will avoid considerable time and money required to iterate the design to meet the redesign and assessment process required to achieve the results required of the customer's space transportation system. In fact the impact to the schedule to being able to deliver the system that meets the customer's needs, goals, and objectives may cause the customer to compromise his desired operational goal and objectives resulting in considerable increased life cycle cost of the fielded space transportation system.

Rhodes, Russel E.

Failure Control Techniques for the SSME

Since ground testing of the Space Shuttle Main Engine (SSME) began in 1975, the detection of engine anomalies and the prevention of major damage have been achieved by a multi-faceted detection/shutdown system. The system continues the monitoring task today and consists of the following: sensors, automatic redline and other limit logic, redundant sensors and controller voting logic, conditional decision logic, and human monitoring. Typically, on the order of 300 to 500 measurements are sensed and recorded for each test, while on the order of 100 are used for control and monitoring. Despite extensive monitoring by the current detection system, twenty-seven (27) major incidents have occurred. This number would appear insignificant compared with over 1200 hot-fire tests which have taken place since 1976. However, the number suggests the requirement for and future benefits of a more advanced failure detection system.

Taniguchi, M. H.

Explicit Finite Element Modeling of Multilayer Composite Fabric for Gas Turbine Engine Containment Systems, Phase II: Material Model Development and Simulation of Experiments - Part 3

A team consisting of Arizona State University, Honeywell Engines, Systems & Services, the National Aeronautics and Space Administration Glenn Research Center, and SRI International collaborated to develop computational models and verification testing for designing and evaluating turbine engine fan blade fabric containment structures. This research was conducted under the Federal Aviation Administration Airworthiness Assurance Center of Excellence and was sponsored by the Aircraft Catastrophic Failure Prevention Program. The research was directed toward improving the modeling of a turbine engine fabric containment structure for an engine blade-out containment demonstration test required for certification of aircraft engines. The research conducted in Phase II began a new level of capability to design and develop fan blade containment systems for turbine engines. Significant progress was made in three areas: (1) further development of the ballistic fabric model to increase confidence and robustness in the material models for the Kevlar(TradeName) and Zylon(TradeName) material models developed in Phase I, (2) the capability was improved for finite element modeling of multiple layers of fabric using multiple layers of shell elements, and (3) large-scale simulations were performed. This report concentrates on the material model development and simulations of the impact tests.

Zylon

Analysis and Testing of a Composite Fuselage Shield for Open Rotor Engine Blade-Out Protection

The Federal Aviation Administration is working with the European Aviation Safety Agency to determine the certification base for proposed new engines that would not have a containment structure on large commercial aircraft. Equivalent safety to the current fleet is desired by the regulators, which means that loss of a single fan blade will not cause hazard to the Aircraft. The NASA Glenn Research Center and The Naval Air Warfare Center (NAWC), China Lake, collaborated with the FAA Aircraft Catastrophic Failure Prevention Program to design and test lightweight composite shields for protection of the aircraft passengers and critical systems from a released blade that could impact the fuselage. In the test, two composite blades were pyrotechnically released from a running engine, each impacting a composite shield with a different thickness. The thinner shield was penetrated by the blade and the thicker shield prevented penetration. This was consistent with pre-test predictions. This paper documents the live fire test from the full scale rig at NAWC China Lake and describes the damage to the shields as well as instrumentation results.

safety

Standardization Efforts for Mechanical Testing and Design of Advanced Ceramic Materials and Components

Advanced aerospace systems occasionally require the use of very brittle materials such as sapphire and ultra-high temperature ceramics. Although great progress has been made in the development of methods and standards for machining, testing and design of component from these materials, additional development and dissemination of standard practices is needed. ASTM Committee C28 on Advanced Ceramics and ISO TC 206 have taken a lead role in the standardization of testing for ceramics, and recent efforts and needs in standards development by Committee C28 on Advanced Ceramics will be summarized. In some cases, the engineers, etc. involved are unaware of the latest developments, and traditional approaches applicable to other material systems are applied. Two examples of flight hardware failures that might have been prevented via education and standardization will be presented.

Salem, Jonathan A.

Methods used to investigate and resolve the Space Shuttle helium pressure regulator instability

The Space Shuttle main propulsion system (MPS) has seven 750-psia regulators used to purge the Space Shuttle main engines to prevent mixture between oxygen and hydrogen and to pneumatically actuate the propellant valves. Methods used to investigate the instability of the MPS regulators which caused a failure of the 750-psia regulator during a test in 1986 are discussed, with special attention given to the analytical tools and the facilities. As a result of this investigation, a well-understood regulator was designed, with excellent stability over a wide range of inlet pressures from 900 to 4500 psia, flow rates from 1 to 2000 scfm, very fast response, minimal overshoot and undershoot, and durable cycle life. Diagrams of the MPS helium system and of a new -0006 fail-safe improved-stability regulator are presented.

Hurlbert, Eric A.

Generic Health Management: A System Engineering Process Handbook Overview and Process

Health Management, a System Engineering Process, is one of those processes-techniques-and-technologies used to define, design, analyze, build, verify, and operate a system from the viewpoint of preventing, or minimizing, the effects of failure or degradation. It supports all ground and flight elements during manufacturing, refurbishment, integration, and operation through combined use of hardware, software, and personnel. This document will integrate Health Management Processes (six phases) into five phases in such a manner that it is never a stand alone task/effort which separately defines independent work functions.

Wilson, Moses Lee

Thin-Film Embedded Sensors for Battery Health Monitoring

Hybrid or all-electric aircraft are being developed as the next generation of aircraft to both allow new forms of aviation and decrease environmental impact. Since these types of aircraft are based on high-capacity battery technology, safe operation of these batteries becomes increasingly important. In particular, the potential for battery failure due to uncontrolled chemical reactions resulting in thermal runaway, catastrophic failure, and battery fires must be addressed in order for such battery technology to have the level of safety needed for standard aviation implementation. Efforts to ensure battery safety often involve engineering solutions that seek to contain rather than prevent such events by early detection. Such approaches increase the system weight and decrease the power per unit mass provided by the battery system. Existing methods for measuring battery parameters to determine the battery state-of-health are limited. These methods include electrical measurements of the cell current and/or voltage output as well as temperature measurements taken externally on the cell surface. Such external temperature measurements are limited in their ability to provide early warning of impending battery failure. In response, an effort to develop sensors operating internal to battery for health monitoring has been ongoing in the NASA Sensor-based Prognostics to Avoid Runaway Reactions & Catastrophic Ignition (SPARRCI) project. The basic approach associated with this sensor work is the deposition of thin film sensors on the battery separator located between the anode and cathode of the battery. These thin film sensors are then monitored to determine changes in battery parameters and health. Microfabrication techniques are employed to minimize the overall impact of the sensors on battery operation through the implementation of sensors with minimal size, weight, and power consumption. The thickness of the films, which are fabricated through physical vapor deposition (sputtering), are on the order of thousands of angstroms and can have minimal surface area. Thin film sensors for system health management have been implemented for a many decades on complex components for aerospace applications. However, the application of thin films of this type on a battery separator for internal battery monitoring applications has not previously been demonstrated to our knowledge. This paper describes the development of sensors for the internal battery monitoring through the use of thin film sensor technology. Thin metal films were successfully deposited on a battery separator polymer material with good adherence and electrical continuity. Multiple types of sensors have been deposited, as well as lead connections from the sensor to the edge of the separator material. The ability of these thin film sensors immersed in electrolyte to perform multiple types of battery parameter measurements has been demonstrated. For example, a multiparameter sensor system measured multiple properties simultaneously inside of a pouch cell over a wide temperature range. Further, real time measurement of interior temperature changes in a battery pouch cell with an integrated interior temperature sensor was demonstrated. These changes include detecting a fault in the battery (shorting) in situ with rapid response time (less than a minute) corresponding to a more limited response by a temperature sensor mounted externally. Other aspects of monitoring battery health were also explored, such as real-time measurement of simulated dendrite growth/metal deposition by sensor on separator material demonstrated. Future efforts will include improvements in the durability of the sensor structure to allow introduction of the approach into standard battery fabrication techniques. Overall, this work is a step forward in providing a method to prevent catastrophic battery failures and provide a foundation for safer, lighter, and higher energy batteries for the electric aircraft industry.

thin film battery health

Analysis and Testing of a Composite Fuselage Shield for Open Rotor Engine Blade-Out Protection

The Federal Aviation Administration is working with the European Aviation Safety Agency to determine the certification base for proposed new engines that would not have a containment structure on large commercial aircraft. Equivalent safety to the current fleet is desired by the regulators, which means that loss of a single fan blade will not cause hazard to the Aircraft. The NASA Glenn Research Center and The Naval Air Warfare Center (NAWC), China Lake, collaborated with the FAA Aircraft Catastrophic Failure Prevention Program to design and test lightweight composite shields for protection of the aircraft passengers and critical systems from a released blade that could impact the fuselage. LS-DYNA® was used to predict the thickness of the composite shield required to prevent blade penetration. In the test, two composite blades were pyrotechnically released from a running engine, each impacting a composite shield with a different thickness. The thinner shield was penetrated by the blade and the thicker shield prevented penetration. This was consistent with pre-test LS-DYNA predictions. This paper documents the analysis conducted to predict the required thickness of a composite shield, the live fire test from the full scale rig at NAWC China Lake and describes the damage to the shields as well as instrumentation results.

Composite

Future Issues and Approaches to Health Monitoring and Failure Prevention for Oil-Free Gas Turbines

Recent technology advances in foil air bearings, high temperature solid lubricants and computer based modeling has enabled the development of small Oil-Free gas turbines. These turbomachines are currently commercialized as small (<100 kW) microturbine generators and larger machines are being developed. Based upon these successes and the high potential payoffs offered by Oil-Free systems, NASA, industry, and other government entities are anticipating Oil-Free gas turbine propulsion systems to proliferate future markets. Since an Oil-Free engine has no oil system, traditional approaches to health monitoring and diagnostics, such as chip detection, oil analysis, and possibly vibration signature analyses (e.g., ball pass frequency) will be unavailable. As such, new approaches will need to be considered. These could include shaft orbit analyses, foil bearing temperature measurements, embedded wear sensors and start-up/coast down speed analysis. In addition, novel, as yet undeveloped techniques may emerge based upon concurrent developments in MEMS technology. This paper introduces Oil-Free technology, reviews the current state of the art and potential for future turbomachinery applications and discusses possible approaches to health monitoring, diagnostics and failure prevention.

DellaCorte, Christopher

Thruster sealing system and apparatus

A thruster nozzle sealing system and apparatus is provided for protection of spacecraft thruster motors. The system includes a sealing plug, a sealing plug insertion tool, an outer cover, an outer cover attachment, and a ferry flight attachment. The sealing plug prevents moisture from entering the thruster engine so as to prevent valve failure. The attachments are interchangeably connectable with the sealing plug. The ferry flight attachment is used during air transportation of the spacecraft, and the outer cover attachment is used during storage and service of the spacecraft. The outer cover provides protection to the thruster nozzle from mechanical damage.

Svejkovsky, Paul A.

Resilient Space Habitat Design Using Safety Controls

Space habitats will involve a complex and tightly coupled combination of hardware, software, and humans, while operating in challenging environments that pose many risks, both known and unknown. It will not be possible to design habitats that are immune to failure, nor will it be possible to foresee all possible failures. Rather than aiming for designs where ―failure is not an option,‖ habitats must be resilient to disruptions. We propose an approach to resilient design for space habitats based on the concept of safety controls from system safety engineering. We model disruptions using a state-and-trigger approach, where the space habitat is in one of three distinct states at each time instance: nominal, hazardous, or accident. We use safety controls as ways of preventing a system from entering or remaining in a hazardous or accident state. We develop a safety control option space for the habitat, from which designers can select the set of safety controls that best meet resilience, performance, and other system goals. The safety control option space is likely to be large, accordingly, we design a database that links safety controls to the applicable states and triggers. We demonstrate our approach on the early design stage of a Martian space habitat.

Safety

Lox/Gox related failures during Space Shuttle Main Engine development

Specific rocket engine hardware and test facility system failures are described which were caused by high pressure liquid and/or gaseous oxygen reactions. The failures were encountered during the development and testing of the space shuttle main engine. Failure mechanisms are discussed as well as corrective actions taken to prevent or reduce the potential of future failures.

Cataldo, C. E.

Integrated tracking of components by engineering and logistics utilizing logistics asset tracking system

The Logistics Asset Tracking System (LATS) devised by NASA contains data on Space Shuttle LRUs that are daily updated to reflect such LRU status changes as repair due to failure or modification due to changing engineering requirements. The implementation of LATS has substantially increased personnel responsiveness, preventing costly delays in Space Shuttle processing and obviating hardware cannibalization. An evaluation is presented of LATS achievements in the direction of an integrated logistical support posture.

Renfroe, Michael B.

Investigation of the I-40 Jet-Propulsion Engine in the Cleveland Altitude Wind Tunnel. V - Operational Characteristics: Operational Characteristics - 5

An investigation has been conducted in the Cleveland altitude wind tunnel to determine the operational characteristics of the I-40 jet-propulsion engine over a range of pressure altitudes from 10,000 to 50,000 feet and ram-pressure ratios from 1.00 to 1.76. Engine operational data were obtained with the engine in the standard configuration and with various modifications of the fuel system, the electrical system, and the combustion chambers. The effects of altitude and airspeed on operating speed range, starting, windmilli.ng, acceleration, speed regulation, cooling, and vibration of the standard and modified engines were determined, and damage to parts was noted. Maximum engine speed was obtainable at all altitudes and airspeeds wi th each fuel-control system investigated. The minimum idling speed was raised by increases in altitude and airspeed. The lowest minimum stable speeds were obtained with the standard configuration using 40-gallon nozzles with individual metering plugs. The engine was started normally at altitudes as high as 20,000 feet with all of the fuel systems and ignition combinations except one. Ignition at 70,000 feet was difficult and, although successful ignition occurred, acceleration was slow and usually characterized by excessive tail-pipe temperature. During windmilling investigations of the engine equipped with the standard fuel system, the engine could not be started at ram-pressure ratios of 1.1 to 1.7 at altitudes of 10,000, 20,000 and 30,000 feet. When equipped with the production barometric and Monarch 40-gallon nozzles, the engine accelerated in 12 seconds from an engine speed of 6000 rpm to 11,000 rpm at 20,000 feet and an average tail-pipe temperature of 11000 F. At the same altitude and temperature, all the engine configurations had approximately the same rate of acceleration. The Woodward governor produced the safest accelerations, inasmuch as it could be adjusted to automatically prevent acceleration blow out. The engine speed was held constant by the Woodward governor and the Edwards regulator during simulated dives and climbs at constant throttle position. The bearing cooling system was satisfactory at all altitudes and airspeeds. The engines operated without serious failure, although the exhaust cone, the tail pipe, and the airplane fuselage were damaged during altitude starts.

Golladay, Richard L.

Application of digital controls on the quiet clean short haul experimental engines

The digital control systems for the Under-the-Wing (UTW) and Over-the-Wing (OTW) engines developed on the NASA/General Electric Quiet Clean Shorthaul Experimental Engine (QCSEE) program are described. The system to control engine variables includes three major functional parts: system sensors, digital control and system actuators. One of the primary control system functions is to prevent the engine from exceeding speed or temperature limits. The UTW control system also provides fault detection and condition monitoring. The control system requirements for the OTW engine are essentially the same as the UTW engine, however the inlet Mach number control requirement is eliminated, and failure indication and corrective action and full authority digital control are added. The digital controls scheduled the engine variables and maintained engine operation within all physical limits throughout the test program of approximately 200 hours of operation and provided stable and accurate control of both engines.

Saunders, A. A., Jr.

GO/NO-GO - When is medical hazard mitigation acceptable for launch?

Medical support of spaceflight missions is composed of complex tasks and decisions that dedicated to maintaining the health and performance of the crew and the completion of mission objectives. Spacecraft represent one of the most complex vehicles built by humans, and are built to very rigorous design specifications. In the course of a Flight Readiness Review (FRR) or a mission itself, the flight surgeon must be able to understand the impact of hazards and risks that may not be completely mitigated by design alone. Some hazards are not mitigated because they are never actually identified. When a hazard is identified, it must be reduced or waivered. Hazards that cannot be designed out of the vehicle or mission, are usually mitigated through other means to bring the residual risk to an acceptable level. This is possible in most engineered systems because failure modes are usually predictable and analysis can include taking these systems to failure. Medical support of space missions is complicated by the inability of flight surgeons to provide "exact" hazard and risk numbers to the NASA engineering community. Taking humans to failure is not an option. Furthermore, medical dogma is mostly comprised of "medical prevention" strategies that mitigate risk by examining the behaviour of a cohort of humans similar to astronauts. Unfortunately, this approach does not lend itself well for predicting the effect of a hazard in the unique environment of space. This presentation will discuss how Medical Operations uses an evidence-based approach to decide if hazard mitigation strategies are adequate to reduce mission risk to acceptable levels. Case studies to be discussed will include: 1. Risk of electrocution risk during EVA 2. Risk of cardiac event risk during long and short duration missions 3. Degraded cabin environmental monitoring on the ISS. Learning Objectives 1.) The audience will understand the challenges of mitigating medical risk caused by nominal and off-nominal mission events. 2.) The audience will understand the process by which medical hazards are identified and mitigated before launch. 3.) The audience will understand the roles and responsibilities of all the other flight control positions in participating in the process of reducing hazards and reducing medical risk to an acceptable level.

Hamilton, Douglas R.

Rocket engine exhaust plume diagnostics and health monitoring/management during ground testing

The current status of a rocket exhaust plume diagnostics program sponsored by NASA is reviewed. The near-term objective of the program is to enhance test operation efficiency and to provide for safe cutoff of rocket engines prior to incipient failure, thereby avoiding the destruction of the engine and the test complex and preventing delays in the national space program. NASA programs that will benefit from the nonintrusive remote sensed rocket plume diagnostics and related vehicle health management and nonintrusive measurement program are Space Shuttle Main Engine, National Launch System, National Aero-Space Plane, Space Exploration Initiative, Advanced Solid Rocket Motor, and Space Station Freedom. The role of emission spectrometry and other types of remote sensing in rocket plume diagnostics is discussed.

Chenevert, D. J.