Search NASA⌕ Search

SEARCH · Search NASA

Results for “Safety II”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 73 records · Page 4

FUELEAP Model-Based System Safety Analysis

NASA researchers, in a partnership with Boeing, are investigating a fuel-cell powered variant of the X-57 “Maxwell” Mod-II electric propulsion aircraft, which is itself derived from a stock Tecnam P2006T. The “Fostering Ultra-Efficient Low-Emitting Aviation Power” (FUELEAP) project will replace the X-57 power subsystem with a hybrid Solid-Oxide Fuel Cell (SOFC) system to increase the potential range of the electric-propulsion aircraft while dramatically improving efficiency and emissions over stock internal-combustion engines. Our FUELEAP safety analysis faces two primary challenges. First, the Part 23 certificated Tecnam P2006T is undergoing significant modifications to host the hybrid electric-propulsion system, and the challenge is to assure that the safety inherent in the stock aircraft (and subsequently in X-57 Mod-II) is not compromised by changes in avionics, aircraft structural loading, weight and balance, or other considerations. Secondly, because the SOFC power system has little (if any) relevant in-service precedent, our challenge is to assure that we identify and mitigate all reasonably plausible hazards introduced by unique FUELEAP equipage. We are investigating and utilizing Model-Based Safety Analysis (MBSA) methods to help us address these FUELEAP safety challenges. We captured aircraft-level system hazard conditions using instances of a SysML hazard block via aircraft-level Functional Hazard Analysis (FHA). Then, using SysML models of the FUELEAP architecture, we related the hazard conditions to initiating system events and possible mitigations, such as design architecture modifications or operational constraints. We are continuing to define our approach to MBSA by developing a component-by-component inventory of local failure modes and tracing their possible contribution to hazard conditions. Finally, we are applying an argument-based approach to FUELEAP assurance. Through a FUELEAP “safety case,” we are providing an explicit argument for FUELEAP safety by associating assurance evidence with overarching safety claims through a structured argument.

Woodham, Kurt P.↗

Bayesian Deep Learning for Segmentation for Autonomous Safe Planetary Landing

Hazard detection is critical for enabling autonomous landing on planetary surfaces. Current state-of-the-art methods leverage traditional computer vision approaches to automate the identification of safe terrain from input digital elevation models (DEMs). However, performance for these methods can degrade for input DEMs with increased sensor noise. In the last decade, deep learning techniques have been developed for various applications. Nevertheless, their applicability to safety-critical space missions has often been limited due to concerns regarding their outputs’ reliability. In response to these limitations, this paper proposes an application of the Bayesian deep learning segmentation method for hazard detection. The developed approach enables reliable, safe landing site detection by i) generating simultaneously a safety prediction map and its uncertainty map via Bayesian deep learning and semantic segmentation, and ii) using the uncertainty map to filter out the uncertain pixels in the prediction map so that the safe site identification is performed only based on the certain pixels (i.e., pixels for which the model is certain about its safety prediction). Experiments are presented with simulated data based on a Mars HiRISE digital terrain model by varying uncertainty threshold and noise levels to demonstrate the performance of the proposed approach.

Kento Tomita↗

CEV OME/RCS Flow Health Monitor: Status Review

I. Primary purpose: detect propellant valve leakage: a) Reduce launch propellant mass by reducing leakage loss . margins, b) Improve safety by reducing risk of propellant ice build up in thruster. II. Secondary objectives: a) Wetness sensor to detect that lines have been flooded. b) Monitor engine performance (timing, mix ratio). c) Use in GSE as valve leakage monitor.

Youngquist, Robert↗

International Space Station (ISS) External Thermal Control System (ETCS) Loop A Pump Module (PM) Jettison Options Assessment

On December 11, 2013, the International Space Station (ISS) experienced a failure of the External Thermal Control System (ETCS) Loop A Pump Module (PM). To minimize the number of extravehicular activities (EVA) required to replace the PM, jettisoning the faulty pump was evaluated. The objective of this study was to independently evaluate the jettison options considered by the ISS Trajectory Operations Officer (TOPO) and to provide recommendations for safe jettison of the ETCS Loop A PM. The simulation selected to evaluate the TOPO options was the NASA Engineering and Safety Center's (NESC) version of Program to Optimize Simulated Trajectories II (POST2) developed to support another NESC assessment. The objective of the jettison analysis was twofold: (1) to independently verify TOPO posigrade and retrograde jettison results, and (2) to determine jettison guidelines based on additional sensitivity, trade study, and Monte Carlo (MC) analysis that would prevent PM recontact. Recontact in this study designates a propagated PM trajectory that comes within 500 m of the ISS propagated trajectory. An additional simulation using Systems Tool Kit (STK) was run for independent verification of the POST2 simulation results. Ultimately, the ISS Program removed the PM jettison option from consideration. However, prior to the Program decision, the retrograde jettison option remained part of the EVA contingency plan. The jettison analysis presented showed that, in addition to separation velocity/direction and the atmosphere conditions, the key variables in determining the time to recontact the ISS is highly dependent on the ballistic number (BN) difference between the object being jettisoned and the ISS.

Murri, Daniel G.↗

Synthesis from Design Requirements of a Hybrid System for Transport Aircraft Longitudinal Control

Volume I of this report presents a new method for synthesizing hybrid systems directly from design requirements, and applies the method to design of a hybrid system for longitudinal control of transport aircraft. The resulting system satisfies general requirement for safety and effectiveness specified a priori, enabling formal validation to be achieved. Volume II contains seven appendices intended to make the report accessible to readers with backgrounds in human factors, fli ght dynamics and control. and formal logic. Major design goals are (1) system desi g n integrity based on proof of correctness at the design level, (2), significant simplification and cost reduction in system development and certification, and (3) improved operational efficiency, with significant alleviation of human-factors problems encountered by pilots in current transport aircraft. This report provides for the first time a firm technical basis for criteria governing design and certification of avionic systems for transport aircraft. It should be of primary interest to designers of next-generation avionic systems.

Hynes, Charles S.↗

Synthesis from Design Requirements of a Hybrid System for Transport Aircraft Longitudinal Control

Volume I of this report presents a new method for synthesizing hybrid systems directly from desi gn requirements, and applies the method to design of a hybrid system for longitudinal control of transport aircraft. The resulting system satisfies general requirement for safety and effectiveness specified a priori, enabling formal validation to be achieved. Volume II contains seven appendices intended to make the report accessible to readers with backgrounds in human factors, flight dynamics and control, and formal logic. Major design goals are (1) system design integrity based on proof of correctness at the design level, (2) significant simplification and cost reduction in system development and certification, and (3) improved operational efficiency, with significant alleviation of human-factors problems encountered by pilots in current transport aircraft. This report provides for the first time a firm technical basis for criteria governing design and certification of avionic systems for transport aircraft. It should be of primary interest to designers of next-generation avionic systems.

Hynes, Charles S.↗

Vehicle Integrated Propulsion Research Tests

Overview of the Vehicle Integrated Propulsion Research Tests in the Vehicle Systems Safety Technologies project. This overview covers highlights of the completed VIPR I and VIPR II tests and also covers plans for the VIPR III test.

Sensors↗

Exploring Digital Transformation for NASA Nuclear Flight Safety

The U.S. National Aeronautics and Space Administration’s (NASA)’s Nuclear Flight Safety discipline is exploring opportunities to combine incremental advancements in many contributing areas in a way that produces a transformative change for how work is performed. More specifically, after providing some general NASA and space nuclear policy background, the authors will describe concepts and efforts that enable: (i) the use of objectives-d riven approaches (in concert with internal and external constraints) to establish a mission risk posture; (ii) the use of that risk posture in the planning process to risk-inform the selection of Safety and Mission Success (S&MS) methods and models; (iii) use of model-based and machine-assisted techniques to manage the complex and ponderous amount of information and interfaces that typify spaceflight efforts; (iv ) the means by which that infrastructure can directly feed an assurance case (including use of systems modelling language, ontological formulation, and semantic web technology) so as to address known weaknesses in our ability to communicate and manage that complexity; and (v) use of that case-assured framework to demonstrate that one did the adequate and sufficient S&MS work and that the S&MS work was done competently.

Donald Helton↗

Deep Impact Delta II Launch Vehicle Cracked Thick Film Coating on Electronic Packages Technical Consultation Report

The Deep Impact spacecraft was launched on a Boeing Delta II rocket from Cape Canaveral Air Force Station (CCAFS) on January 12, 2005. Prior to the launch, the Director of the Office of Safety and Mission Assurance (OS&MA) requested the NASA Engineering and Safety Center (NESC) lead a team to render an independent opinion on the rationale for flight and the risk code assignments for the hazard of cracked Thick Film Assemblies (TFAs) in the E-packages of the Delta II launch vehicle for the Deep Impact Mission. The results of the evaluation are contained in this report.

Cameron, Kenneth D.↗

Guidance Modifications and Enhancements for Space Launch System Block-1 in Support of Artemis I and Beyond

NASA is currently building the Space Launch System (SLS) Block-1 launch vehicle for the Artemis I test flight. Design of the Artemis II mission, which will use theBlock-1 vehicle to take astronauts around the moon for the first time in decades, is also underway. The Guidance, Navigation, and Controls (GN&C) algorithms will be largely similar for the two missions. However, the extensive simulation and testing campaign for Artemis I has revealed opportunities for improvements in the GN&C algorithms, allowing more effective use of the capabilities of the SLS vehicle, and enhancing safety for the astronauts aboard. This paper will de-scribe several planned algorithm updates for the Artemis II mission. The updates enhance the Powered Explicit Guidance (PEG) algorithm and auxiliary guidance algorithms.

Matt Hawkins↗

Nuclear Safety [Vol. 36, No. 1, January-June 1995]

Nuclear Safety is a journal that covers significant issues in the field of nuclear safety. Its primary scope is safety in the design, construction, operation, and decommissioning of nuclear power reactors worldwide and the research and analysis activities that promote this goal, but it also encompasses the safety aspects of the entire nuclear fuel cycle, including fuel fabrication, spent-fuel processing and handling, and nuclear waste disposal, the handling of fissionable materials and radioisotopes, and the environmental effects of all these activities. Table of Contents for this issue follows. THE CHORNOBYL ACCIDENT: 1 The Chornobyl Accident Revisited, Part II: The State of the Nuclear Fuel Located Within the Chornobyl Sarcophagus, A A. Borovoi and A. R. Sich; GENERAL SAFETY CONSIDERATIONS: 33 Nuclear Power Safety in Central and Eastern Europe, R. Wilson; 46 Safety of Nuclear Power Reactors in the Former Eastern European Countries, S. Chakraborty; 53 Technical Note: On the Definition of Common-Cause Failures, H. Paula; ACCIDENT ANALYSIS: 58 Modeling and Analysis of Core-Debris Recriticality During Hypothetical Severe Accidents in the Advanced Neutron Source Reactor, S.-H. Kim, V. Georgevich, D. B. Simpson, C. O. Slater, and R. P. Taleyarkhan; 68 Ignitability of Hydrogen/Oxygen/Diluent Mixtures in the Presence of Hot Surfaces, R. K. Kumar and G. W. Koroll; 94 Coupled RELAP5 and CONTAIN Accident Analysis Using PVM, K. A. Smith, A. J. Baratta, and G. E. Robinson; CONTROL AND INSTRUMENTATION: 109 Application of Fuzzy Logic in Nuclear Reactor Control Part I: An Assessment of State-of-the-Art, A. S. Heger, N. K. Alang-Rashid, and M. Jamshidi; DESIGN FEATURES: 122 Twenty-Third DOE/NRC Nuclear Air-Cleaning and Treatment Conference, R. R. Bellamy, J. J. Hayes, and M. W. First; ENVIRONMENTAL EFFECTS: 135 Atmospheric Dispersion and the Radiological Consequences of Normal Airborne Effluents from a Nuclear Power Plant, D. Fang, C. Z. Sun, and L. Yang; 142 Calculation of Distribution Coefficients for Radionuclides in Soils and Sediments, I. Puigdomenech and U. Bergstrom: OPERATING EXPERIENCES: 155 Reactor Shutdown Experience, Compiled by J. W. Cletcher; U.S. NUCLEAR REGULATORY COMMISSION INFORMATION AND ANALYSES: 158 Operating Experience Feedback Report—Reliability of Safety-Related Steam Turbine-Driven Standby Pumps Used in U.S. Commercial Nuclear Power Plants, J. R. Boardman; 166 Turbine Building Hazards, H. L Ornstein; RECENT DEVELOPMENTS: 169 Reports, Standards, and Safety Guides, D. S. Queener; 175 Proposed Rule Changes as of Dec. 31,1994; ANNOUNCEMENTS: 32 Harvard School of Public Health In-Place Filter Testing Workshop; 134 International Conference on Advances in the Operational Safety of Nuclear Power Plants; 193 30th Tennessee Industries Week; 193 DOE Technical Standards Program 1995 Workshop; 194 Multiphase Flow Experiments and Instrumentation; 180 The Authors; 185 Indexes to Nuclear Safety, Volumes 34 and 35.

11 NUCLEAR FUEL CYCLE AND FUEL MATERIALS↗

A Formal Basis for Safety Case Patterns

By capturing common structures of successful arguments, safety case patterns provide an approach for reusing strategies for reasoning about safety. In the current state of the practice, patterns exist as descriptive specifications with informal semantics, which not only offer little opportunity for more sophisticated usage such as automated instantiation, composition and manipulation, but also impede standardization efforts and tool interoperability. To address these concerns, this paper gives (i) a formal definition for safety case patterns, clarifying both restrictions on the usage of multiplicity and well-founded recursion in structural abstraction, (ii) formal semantics to patterns, and (iii) a generic data model and algorithm for pattern instantiation. We illustrate our contributions by application to a new pattern, the requirements breakdown pattern, which builds upon our previous work

Formal Methods↗

The PIP-II dedicated RFPI system final design

The Radio Frequency Protection Interlock (RFPI) system main responsibility is to collect predefined set of signals and to protect each RF station. In case of safety limits violations from any of this input signals the RFPI has to instantenously drop permits for the LLRF or RF amplifier (eq. Solid State Amplifier - SSA or klystron) operation.This paper presents an overview of the final design of the RFPI system dedicated for Proton Improvement Plan II (PIP-II) at Fermilab.

Cichalewski, Wojciech [Lodz, Tech. U.; Lodz U.]↗

The Spacecraft Fire Experiment (Saffire) - Objectives, Development and Status

Since 2012, the Spacecraft Fire Experiment (Saffire) has been under development by the Spacecraft Fire Safety Demonstration (SFS Demo) project that is funded by NASA's Advanced Exploration Systems Division in the Human Exploration and Operations Mission Directorate. The overall objective of this project is to reduce the uncertainty and risk associated with the design of spacecraft fire safety systems for NASA's exploration missions. This is accomplished by defining, developing, and conducting experiments that address gaps in spacecraft fire safety knowledge and capabilities identified by NASA's Fire Safety System Maturation Team. This paper describes the three Spacecraft Fire Experiments (Saffire-I, -II, and -III) that were developed at NASA-GRC and that will conduct a series of material flammability tests in low-gravity and at length scales that are realistic for a spacecraft fire. The experiments will be conducted in Orbital ATK's Cygnus vehicle after it has unberthed from the International Space Station. The tests will be fully automated with the data downlinked at the conclusion of the test and before the Cygnus vehicle reenters the atmosphere. The objectives of these experiments are to (1) determine how rapidly a large scale fire grows in low-gravity and (2) investigate the low-g flammability limits compared to those obtained in NASA's normal gravity material flammability screening test. The hardware for these experiments has been completed and is awaiting their respective launches, all planned for 2016. This paper will review the objectives of these experiments and how they address several of the knowledge gaps for NASA's exploration missions. The hardware development will be discussed including several novel approaches that were taken for testing and evaluation of these series payloads. The status of the missions and operational status will also be presented.

combustion↗

Spacecraft Observatory Benchmark Problem for Optical Disturbance Rejection

Since mid-1980s NASA has launched several first-generation interplanetary observatory missions. A salient feature of these missions has been the mounting of the optical payload on top of a large flexible space structure. This imposes challenging control-structure interaction problems (CSI) that have been studied over several decades. The Dec. 2021 launch of the James Webb Telescope marks the latest example of such a mission. One way to encourage development of novel control methods is to provide a benchmark problem for researchers. By the mid-2000s, there were a few well-known benchmark problems developed by the control community with a focus on CSI applications. However, in the past 15 years, the control challenges in optical observation missions have shifted from CSI to line-of-sight (LOS) precision pointing. This is because popular designs of the second-generation (Gen II) space earth missions have eliminated the large structure interface by mounting the optical payload directly on top of a rigid bus platform. The focus now is to achieve accurate pointing with maximum rejection of the surrounding disturbances. The NASA Safety and Engineering Center (NESC) has tasked T he Aerospace Corporation to develop a Benchmark Problem to study the challenging control issues that Gen II observatory missions encounter. This software tool is to be released as a public domain platform aimed at government, academic, and industry researchers. The focus of this benchmark problem is for researchers to design a set of innovative payload control laws with the maximum Optical Disturbance Rejection (ODR) capability to meet a set of pre-defined μrad-level of LOS jitter requirements. This paper describes the development of the benchmark problem. Aerospace/NASA will provide an integrated LOS plant model and disturbance/command profiles for users to run their design and simulation with as well as a user’s guide describing the required interfaces. The Aerospace Corp is also working to develop a hardware fast steering mirror testbed for users to demonstrate their innovative design in real hardware, if so desired.

Spacecraft Observatory Benchmark Problem↗

Analysis of WakeVAS Benefits Using ACES Build 3.2.1

The FAA and NASA are currently engaged in a Wake Turbulence Research Program to revise wake turbulence separation standards, procedures, and criteria to increase airport capacity while maintaining or increasing safety. The research program is divided into three phases: Phase I near term procedural enhancements; Phase II wind dependent Wake Vortex Advisory System (WakeVAS) Concepts of Operations (ConOps); and Phase III farther term ConOps based on wake prediction and sensing. This report contains an analysis that evaluates the benefits of a closely spaced parallel runway (CSPR) Phase I ConOps, a single runway and CSPR Phase II ConOps and a single runway Phase III ConOps. A series of simulation runs were performed using the Airspace Concepts Evaluation System (ACES) Build 3.21 air traffic simulator to provide an initial assessment of the reduction in delay and cost savings obtained by the use of a WakeVAS at selected U.S. airports. The ACES simulator is being developed by NASA Ames Research Center as part of the Virtual Airspace Modelling and Simulation (VAMS) program.

Smith, Jeremy C.↗

Analysis of Wake VAS Benefits Using ACES Build 3.2.1: VAMS Type 1 Assessment

The FAA and NASA are currently engaged in a Wake Turbulence Research Program to revise wake turbulence separation standards, procedures, and criteria to increase airport capacity while maintaining or increasing safety. The research program is divided into three phases: Phase I near term procedural enhancements; Phase II wind dependent Wake Vortex Advisory System (WakeVAS) Concepts of Operations (ConOps); and Phase III farther term ConOps based on wake prediction and sensing. The Phase III Wake VAS ConOps is one element of the Virtual Airspace Modelling and Simulation (VAMS) program blended concepts for enhancing the total system wide capacity of the National Airspace System (NAS). This report contains a VAMS Program Type 1 (stand-alone) assessment of the expected capacity benefits of Wake VAS at the 35 FAA Benchmark Airports and determines the consequent reduction in delay using the Airspace Concepts Evaluation System (ACES) Build 3.2.1 simulator.

Smith, Jeremy C.↗

NASA's Integrated Space Transportation Plan

Abstract NASA's Integrated Space Transportation Plan (ISTP) is the basis of the agency's new Space Launch Initiative (SLI). ISTP was developed to provide a structured methodology and framework to enable the next generation of reusable launch systems which will operate at orders of magnitude lower operating costs and higher levels of reliability and safety. Created in the fall of 1999, ISTP is the culmination of a series of Space Transportation Architecture Studies (STAS I, II, and III) which identified requirements, developed candidate architectures, and identified sets of technologies required to enable those architectures. The studies were conducted as a partnership between NASA and industry. Both new designs and shuttle-derived concepts were examined. Architectures were identified for 2" Generation Reusable Launch Vehicles (RLV), which would reach first operational capability in 2010, and 3rd Generation RLV, which will become operational in the 2025 timeframe, Second Generation RLV's have a goal of placing payloads in low earth orbit (LEO) at a cost of S 1,000/Ibm, and a safety goal of 1/10000 probability of loss of crew, The Third Generation RLV launch system will deliver payloads to LEO at $ 100/Ibm and approach airline-like reliability and safety, with a 1/ 10(exp 6) probability of loss of crew.

Anderson, David M.↗