Search NASA⌕ Search

SEARCH · Search NASA

Results for “defeater”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

70 records · Page 4

Diverse Redundant Systems for Reliable Space Life Support

Reliable life support systems are required for deep space missions. The probability of a fatal life support failure should be less than one in a thousand in a multi-year mission. It is far too expensive to develop a single system with such high reliability. Using three redundant units would require only that each have a failure probability of one in ten over the mission. Since the system development cost is inverse to the failure probability, this would cut cost by a factor of one hundred. Using replaceable subsystems instead of full systems would further cut cost. Using full sets of replaceable components improves reliability more than using complete systems as spares, since a set of components could repair many different failures instead of just one. Replaceable components would require more tools, space, and planning than full systems or replaceable subsystems. However, identical system redundancy cannot be relied on in practice. Common cause failures can disable all the identical redundant systems. Typical levels of common cause failures will defeat redundancy greater than two. Diverse redundant systems are required for reliable space life support. Three, four, or five diverse redundant systems could be needed for sufficient reliability. One system with lower level repair could be substituted for two diverse systems to save cost.

life support↗

Methods and Costs to Achieve Ultra Reliable Life Support

A published Mars mission is used to explore the methods and costs to achieve ultra reliable life support. The Mars mission and its recycling life support design are described. The life support systems were made triply redundant, implying that each individual system will have fairly good reliability. Ultra reliable life support is needed for Mars and other long, distant missions. Current systems apparently have insufficient reliability. The life cycle cost of the Mars life support system is estimated. Reliability can be increased by improving the intrinsic system reliability, adding spare parts, or by providing technically diverse redundant systems. The costs of these approaches are estimated. Adding spares is least costly but may be defeated by common cause failures. Using two technically diverse systems is effective but doubles the life cycle cost. Achieving ultra reliability is worth its high cost because the penalty for failure is very high.

deep space life support↗

Common Cause Failure Modeling

Common Cause Failures (CCFs) are a known and documented phenomenon that defeats system redundancy. CCFS are a set of dependent type of failures that can be caused by: system environments; manufacturing; transportation; storage; maintenance; and assembly, as examples. Since there are many factors that contribute to CCFs, the effects can be reduced, but they are difficult to eliminate entirely. Furthermore, failure databases sometimes fail to differentiate between independent and CCF (dependent) failure and data is limited, especially for launch vehicles. The Probabilistic Risk Assessment (PRA) of NASA's Safety and Mission Assurance Directorate at Marshal Space Flight Center (MFSC) is using generic data from the Nuclear Regulatory Commission's database of common cause failures at nuclear power plants to estimate CCF due to the lack of a more appropriate data source. There remains uncertainty in the actual magnitude of the common cause risk estimates for different systems at this stage of the design. Given the limited data about launch vehicle CCF and that launch vehicles are a highly redundant system by design, it is important to make design decisions to account for a range of values for independent and CCFs. When investigating the design of the one-out-of-two component redundant system for launch vehicles, a response surface was constructed to represent the impact of the independent failure rate versus a common cause beta factor effect on a system's failure probability. This presentation will define a CCF and review estimation calculations. It gives a summary of reduction methodologies and a review of examples of historical CCFs. Finally, it presents the response surface and discusses the results of the different CCFs on the reliability of a one-out-of-two system.

Hark, Frank↗

Common Cause Failure Modeling in Space Launch Vehicles

Common Cause Failures (CCFs) are a known and documented phenomenon that defeats system redundancy. CCFs are a set of dependent type of failures that can be caused for example by system environments, manufacturing, transportation, storage, maintenance, and assembly. Since there are many factors that contribute to CCFs, they can be reduced, but are difficult to eliminate entirely. Furthermore, failure databases sometimes fail to differentiate between independent and dependent CCF. Because common cause failure data is limited in the aerospace industry, the Probabilistic Risk Assessment (PRA) Team at Bastion Technology Inc. is estimating CCF risk using generic data collected by the Nuclear Regulatory Commission (NRC). Consequently, common cause risk estimates based on this database, when applied to other industry applications, are highly uncertain. Therefore, it is important to account for a range of values for independent and CCF risk and to communicate the uncertainty to decision makers. There is an existing methodology for reducing CCF risk during design, which includes a checklist of 40+ factors grouped into eight categories. Using this checklist, an approach to produce a beta factor estimate is being investigated that quantitatively relates these factors. In this example, the checklist will be tailored to space launch vehicles, a quantitative approach will be described, and an example of the method will be presented.

Hark, Frank↗

Primary Objective Grating Astronomical Telescope

It has been 370 years since a seventeenth century French mathematician, Mersenne, presciently sketched out an astronomical telescope based on dual parabolic reflectors. Since that time the concept of the primary objective has been virtually unchanged. Now a new class of astronomical telescope with a primary objective grating (POG) has been studied as an alternative. The POG competes with mirrors, in part, because diffraction gratings provide the very chromatic dispersion that mirrors defeat. The resulting telescope deals effectively with long-standing restrictions on multiple object spectroscopy (MOS). Other potential benefits include unprecedented apertures and collection areas. The new design also favors space deployment as a gossamer membrane. The inventor, Tom Ditto, first discovered that higher-order diffraction images contain hidden depth cues, for which he was granted a seminal range finding patent in 1987. Subsequently, he invented and patented 3D localizers, profilometers and microscopes using POGs. The POG telescope was placed in the public domain to expedite research. The function of a telescopes primary objective is to collect flux and to deliver images. Both functions dictate that size matters, and bigger is better. For that reason, there has been a steady push over the past century to ramp up the size of the primary mirror. However, for every doubling of mirror diameter, the elapsed time between initial effort and first light has also doubled. Meanwhile, costs escalated beyond the mirror alone, because larger instruments required larger enclosures and better pointing mechanisms. One key catalog of observation, spectrographic data, is far more difficult to amass than two-dimensional imagery. While the number of observable objects has increased with mirror size, the capacity to take spectra has not increased proportionately. In the best of circumstances, spectrograms are available for one per cent of the all objects surveyed. Spectroscopy was a historical afterthought introduced in the nineteenth century shortly after the invention of the diffraction grating and over a century after Newtons 1670 telescope. Spectroscopy is generally accomplished using a diffraction grating as the disperser in the secondary. The light being delivered to the spectrograph is first captured by a primary mirror which provides no chromatic magnification by itself. Sizeable spectrographs could not be deployed while diffraction gratings were rare commodities scribed using mechanical ruling engines that produced one grating line at a time. Today diffraction gratings are commonplace. Their recent availability is a product of both the invention of holography and the mass replication of surface microstructures. Holography permits all lines in a grating to be made simultaneously in a single photographic exposure. Holograms can then be reproduced by embossing processes. The improvement in replication is analogous to how Gutenberg changed the availability of books. The masters may be expensive, but the copies are not. Computer science is another technology that emerged in the second half of the twentieth century without which our proposed spectrographic instrument could not function due to the complexity of image processing required in data reduction. The employment of very large diffraction gratings as primary objectives for astronomical telescopes requires a novel

spectroscopy↗

Guidelines for Safe, High Performing Li-Ion Battery Designs for Manned Vehicles

New design features and test methods are in development at NASA to take advantage of the newest high power and energy dense commercial Li-ion cell designs and to achieve passively thermal runaway (TR) propagation resistant (PPR) designs for manned missions requiring high power/voltage. The goal is to minimize the parasitic mass and volume of the battery components; thus reaching a balance between high battery specific power (W/kg) and energy (Wh/kg) as well as power (W/L) and energy density (Wh/L). Current 18650 cell designs achieve greater than 275 Wh/kg, greater than 725 Wh/L, but present high risks of side wall breaching during TR which can defeat many other safety features resulting in nearly immediate TR propagation. This work seeks to better understand the phenomena of cell side wall breaches and to determine the effectiveness of promising battery design features for achieving safe, high performing battery designs for high voltage/power applications.

Darst, John J.↗

Driving Design Factors for Safe, High Power Batteries for Space Applications

Final Document is attached. New design features and test methods are in development at NASA to take advantage of the newest high power and energy dense commercial Li-ion cell designs and to achieve passively thermal runaway (TR) propagation resistant (PPR) designs for manned missions requiring high power/voltage. The goal is to minimize the parasitic mass and volume of the battery components; thus reaching a balance between high battery specific power (W/kg) and energy (Wh/kg) as well as power (W/L) and energy density (Wh/L). Current 18650 cell designs achieve greater than 275 Wh/kg, greater than 725 Wh/L, but present high risks of side wall breaching during TR which can defeat many other safety features resulting in nearly immediate TR propagation. This work seeks to better understand the phenomena of cell side wall breaches and to determine the effectiveness of promising battery design features for achieving safe, high performing battery designs for high voltage/power applications.

Li-ion↗

An Investigation of a Mixer-Ejector Nozzle for Jet Noise Reduction

An experimental study is conducted assessing the performance of an ejector together with an 8:1 aspect ratio rectangular nozzle with the eventual goal of noise reduction for jet engines. Wall static pressure and Pitot probe surveys are conducted to evaluate the performance of the ejector, and sound pressure level measurements are made to assess the impact on noise radiation. It is found that addition of vortex generating tabs at the lip of the nozzle causes large increases in secondary flow entrainment. The baseline ejector (without tabs) often encounters flow resonance with accompanying tones. The tabs have the additional benefit of eliminating those tones. In most cases tried so far, pockets of high-speed fluid remain unmixed. Since jet noise scales as velocity to the eighth power, such ‘hot spots’ defeat the noise reduction goal. In some cases, there is a reduction in noise amplitudes in the mid-frequency range (5-30 kHz), however, an increase occurs on the low frequency end apparently due to flow unsteadiness. This together with a high frequency noise increase caused by the tabs results in minimal reductions in the overall sound pressure level. The focus of ongoing and future efforts is to achieve sufficient mixing and desirable noise reduction while keeping the hard-ware short and lightweight.

Zaman, K. B. M. Q.↗

Supporting Crew Autonomy in Deep Space Exploration: Preliminary Onboard Capability Requirements and Proposed Research Questions. Technical Report of the Autonomous Crew Operations Technical Interchange Meeting

Communication delays are a critical challenge posed by long duration deep space exploration. Space missions historically have relied on an ever-present Mission Control Center (MCC) to direct operations in near real-time. As unanticipated anomalies that defeat fault detection and resolution systems do arise, the lack of real-time communication will significantly weaken what the MCC support represents: a reliable safety net for the flight crew through its deep and diverse areas of expertise and investigative resources. As a consequence, future space vehicles and habitats need to be equipped with capabilities to support the flight crew to operate with little or no ground support. Considerations must be given to vehicle and mission designs that will fortify the traditionally ground-centered safety net and forge new support systems, when communication delays exist. In August 2018, NASA’s Human Research Program, through its Human Factors and Behavioral Performance Element, convened a Technical Interchange Meeting (TIM) on Autonomous Crew Operations at NASA Ames Research Center. The goal of the meeting was to gather input from NASA centers, industry, academia, and branches of the Department of Defense (DoD) to address how intelligent technologies can be applied to augment onboard capabilities to support crew anomaly response. The TIM featured 24 presentations by 29 speakers and hosted a total of 59 attendees, including 43 from 5 NASA centers (Ames, Johnson, Langley, Marshall, and Jet Propulsion Lab) and 4 from the DoD (3 from Army Research Lab and 1 from Naval Postgraduate School), with remaining attendees from academia (e.g., UC Davis, CMU) and industry (e.g., IBM, Siemens). Discussions were centered around three themes: standards and guidelines, lessons learned in analog environments, and technologies. To help provide a framework for discussion, a concept matrix describing anomaly response processes was created prior to the TIM (Figure 1, page 6). The matrix captures the steps involved (monitoring and detection, diagnosis, solution development and evaluation, solution implementation and verification, resolution documentation) as well as the resources and capabilities required to support these steps (data, knowledge, analysis, synthesis, resource management). A wallpaper size printout of the matrix was utilized at the TIM to solicit attendee inputs along the three themes; the activity garnered 108 submissions of ideas. Overall, what emerged from TIM discussions was a picture of mismatch between crew anomaly response needs and support that can be provided by existing intelligent technologies. The needs are broad, spanning multiple steps and processes/resources, with many of which lacking support from existing technologies, such as knowledge management throughout the steps of problem solving (especially in resolution documentation) and manpower management. The solutions provided by existing intelligent technologies are specific to the steps/processes that they are designed to support and constrained to solving only problems similar to those that have occurred before. What is lacking from technologies is typically made up by humans, specifically their complex critical thinking, creative problem solving, and domain expertise. In the end, the TIM highlighted the pressing need to support responses to onboard anomalies during autonomous crew operations, particularly those that have eluded the system tests, inspection, and other assurance processes. Such anomalies can potentially threaten crew and vehicle safety, as well as significantly impact overall operations with additional workload. These fairly rare events are difficult to anticipate and prepare for, given the state-of-the-art in intelligent technologies. This is true even for anomalies that stem from “unknown knowns”—cases in which there is sufficient external information to characterize the problem but the overall pattern fails to be recognized by the problem solver, or in which the internal knowledge needed to solve a problem is held tacitly and potentially accessible by the problem solver but not articulated. It follows that the ability to tackle anomalies lies not only with the availability of relevant information and knowledge but also their accessibility in times of need. To that end, we propose research questions along the following three broad themes: • How intelligent technologies can help make relevant knowledge and information available? • How intelligent technologies can help make relevant knowledge and information accessible? • How intelligent technologies can help support the crew operating as a team in anomaly response processes?

autonomous crew operations↗

CFD Simulation of an Inward-Turning Supersonic Inlet Unstart at Flight Mach Number 1.7

Interest in inward-turning supersonic inlets renewed during NASA’s Commercial Supersonic Technology Project, as a means of reducing disturbances caused by propulsion integration. Inward-turning designs have the potential to greatly reduce the strength of shock waves emanating outward from the nacelle, and therefore their contribution to the overall sonic boom signature. For top-mounted, or over-wing installations, disturbances to aircraft aerodynamics are reduced. The nature of the inward-turning geometry results in a boundary-layer thickening effect, opposite that of the familiar thinning of an outward-turning cone boundary-layer. The application of a small amount of boundary-layer bleed at the throat has been shown to alleviate the negative effects of the boundary-layer on subsonic diffuser performance. Boundary-layer bleed, however, comes at the expense of increased complexity, and external disturbances at bleed exits that would partially defeat the purpose of the inward-turning scheme. Vortex generators were proposed as an alternative to bleed, and an initial CFD study of their effectiveness in this application forms the basis of the present work. A source-term model in the Wind-US CFD code was used to model the effects of an array of vortex generators placed at the entrance to the subsonic diffuser. Baseline results with no vortex generators compared favorably to previously reported results with no bleed at back-pressures near the design point, but stability margin in the present case was limited by a curious non-linear phenomena similar to unstart in mixed-compression inlets. While some improvement was noted with vortex generators, their effectiveness was diminished by the limited stability margin. A time-accurate calculation was subsequently performed to better understand this process. Results of this calculation are presented and instantaneous solutions compared with steady-state, subcritical results previously reported. The stability margin limitation is attributed to the use of a constant-pressure outflow boundary condition, which differed from that used in the prior simulations.

Pre-Compressor Cooling, Water Injection, Hypersoni↗

The Dark Side of Pluto

During its departure from Pluto, New Horizons used its LORRI camera to image a portion of Pluto's southern hemisphere that was in a decades-long seasonal winter darkness, but still very faintly illuminated by sunlight reflected by Charon. Recovery of this faint signal was technically challenging. The bright ring of sunlight forward-scattered by haze in the Plutonian atmosphere encircling the nightside hemisphere was severely overexposed, defeating the standard smeared-charge removal required for LORRI images. Reconstruction of the overexposed portions of the raw images, however, allowed adequate corrections to be accomplished. The small solar elongation of Pluto during the departure phase also generated a complex scattered-sunlight background in the images that was three orders of magnitude stronger than the estimated Charon-light flux (the Charon-light flux is similar to the flux of moonlight on Earth a few days before first quarter). A model background image was constructed for each Pluto image based on principal component analysis applied to an ensemble of scattered-sunlight images taken at identical Sun−spacecraft geometry to the Pluto images. The recovered Charon-light image revealed a high-albedo region in the southern hemisphere. We argue that this may be a regional deposit of N2 or CH4 ice. The Charon-light image also shows that the south polar region currently has markedly lower albedo than the north polar region of Pluto, which may reflect the sublimation of N2 ice or the deposition of haze particulates during the recent southern summer.

Pluto↗

NASA Space Flight Program and Project Management Handbook

This handbook is the companion document to NPR 7120.5F, NASA Space Flight Program and Project Management Requirements. It represents the accumulation of knowledge on managing program and projects derived from NASA’s human, robotic, and scientific missions. It incorporates the “corporate knowledge” for existing and future NASA space flight programs and projects, including NASA’s Artemis missions to establish a sustainable human presence on the Moon through collaboration with commercial and international partners, NASA’s James Webb Space Telescope (JWST) mission, and NASA’s robotic missions on Mars. The practices discussed have evolved as a function of NASA’s core values of safety, integrity, teamwork, excellence, and inclusion, and may also prove a resource for other agencies, the private sector, and academia. The knowledge gained from the Agency’s victories and defeats, including the checks and balances and initiatives to better control cost and risk, provides a foundation for continuing an exciting and healthy space program. This handbook provides implementation guidance for NPR 7120.5F and includes the changes and updates to key procedural requirements in NPR 7120.5F since NPR 7120.5E. The goal of the NPR requirements is to ensure programs and projects are developed and successfully executed in the most cost-effective and efficient manner possible. This handbook provides context, rationale, and explanation to facilitate the application of requirements and to pass on some of the hard-won best practices and lessons learned.

Tracy L Osborne↗

ISS External Microorganisms: A Planetary Protection Experiment to Inform Requirements for Crewed Missions to Mars

We have developed, tested, and flown a caddy capable of collecting aseptic samples from external surfaces of the ISS (International Space Station). The sampling caddy is certified for use during US EVA (extra vehicular activity) and was launched to ISS in the summer of 2023. We are scheduled to collect samples from 6 locations outside ISS during an EVA in May of 2024. We will freeze these samples at -80°C on orbit and return them to Earth. We will then extract and sequence any DNA collected during the EVA using next generation sequencing technologies to characterize the community composition and function of each sample. Measuring the type and quantity of microbes present on the exterior of ISS will allow us to address knowledge gap 2B, “Acceptable levels of microbial/organic releases from humans and support systems” described in a 2019 COSPAR report. Collecting data about microbial release from current crewed vehicles will inform requirements for acceptable leak rates for future crewed missions to Mars. The sampling kit consists of eight commercially available, sterile, DNA free, macrofoam swabs ( 23 mm. diameter ) installed in custom aluminum end effectors. Each end effector is housed in and individual aluminum canister. Each canister contains a 0.2 μm Teflon filter to allow the interior volume to accommodate pressure changes without permitting microbial contaminants to enter the sterile interior volume. A handle repurposed from the space shuttle tile repair kit is used to remove the end effector from the sample canister, collect a sample by swabbing a surface and then replace the end effector in its canister. The canisters and end effectors were cleaned and assembled on Earth. Prior to installing the sterile swab the canisters and end effectors were sterilized in an autoclave at 134°C, 215 kPA, for 7 min.. The final assembly occurred in a sterilized class II biosafety cabinet. We will collect six samples from the 1) airlock vestibule, 2) airlock thermal cover, 3) a gap in the micrometeorite shielding near the airlock, 4) a handrail near the airlock, 5) the CDRA (Carbon Dioxide Removal Assembly) vent, and 6) the VES (Vacuum Exhaust System) vent. The remaining two swabs will be reserved as controls. One swab will be exposed during the EVA without touching any surfaces to act as a blank. The final swab will remain sealed until the entire sampling kit is returned to earth. Based on previously published results from the Russian segment, we hypothesize that there will be detectable microbes at some or all of these locations. Ground-based testing of this sampling caddy confirms that the swabs remain sterile as the canisters transition in and out of vacuum. We were able to retrieve, viable bacterial and fungal cells as well as DNA from samples collected from US space suits during vacuum chamber tests lasting as long as seven hours. Based on these results and feedback from the test subjects the sampling caddy was modified to improve ergonomics and meet US EVA safety requirements. Bayonet probes were added to the sides of the sample kit as alternate mounting points. Additional locking features were added to the end effector and the filter stack to prevent inadvertent release during use. The opening mechanism was changed from one where the end effector was rocked laterally to defeat a ball detent to a twist-to-open threaded closure for similar reasons. Demonstrating, this sampling caddy’s effectiveness during a US EVA will allow us to address knowledge gaps identified in COSPAR reports and begin to define planetary protection requirements for life support systems on crewed missions to mars. This kit could also be used to collect contamination control samples during Artemis missions to verify requirements and could be easily modified for robotic sample collection.

Planetary Protection↗

ISS External Microorganisms: Collecting Planetary Protection Samples During Extravehicular Activity

We have developed, tested, and flown a caddy capable of collecting aseptic samples from external surfaces of the ISS (International Space Station). The sampling caddy is certified for use during US EVA (extra vehicular activity) and was launched to ISS in the summer of 2023. We are scheduled to collect samples from 6 locations outside ISS during an EVA in May of 2024. We will freeze these samples at -80°C on orbit and return them to Earth. We will then extract and sequence any DNA collected during the EVA using next generation sequencing technologies to characterize the community composition and function of each sample. Measuring the type and quantity of microbes present on the exterior of ISS will allow us to address knowledge gap 2B, “Acceptable levels of microbial/organic releases from humans and support systems” described in a 2019 COSPAR report. Collecting data about microbial release from current crewed vehicles will inform requirements for acceptable leak rates for future crewed missions to Mars. The sampling kit consists of eight commercially available, sterile, DNA free, macrofoam swabs ( 23 mm. diameter ) installed in custom aluminum end effectors. Each end effector is housed in and individual aluminum canister. Each canister contains a 0.2 μm Teflon filter to allow the interior volume to accommodate pressure changes without permitting microbial contaminants to enter the sterile interior volume. A handle repurposed from the space shuttle tile repair kit is used to remove the end effector from the sample canister, collect a sample by swabbing a surface and then replace the end effector in its canister. The canisters and end effectors were cleaned and assembled on Earth. Prior to installing the sterile swab the canisters and end effectors were sterilized in an autoclave at 134°C, 215 kPA, for 7 min.. The final assembly occurred in a sterilized class II biosafety cabinet. We will collect six samples from the 1) airlock vestibule, 2) airlock thermal cover, 3) a gap in the micrometeorite shielding near the airlock, 4) a handrail near the airlock, 5) the CDRA (Carbon Dioxide Removal Assembly) vent, and 6) the VES (Vacuum Exhaust System) vent. The remaining two swabs will be reserved as controls. One swab will be exposed during the EVA without touching any surfaces to act as a blank. The final swab will remain sealed until the entire sampling kit is returned to earth. Based on previously published results from the Russian segment, we hypothesize that there will be detectable microbes at some or all of these locations. Ground-based testing of this sampling caddy confirms that the swabs remain sterile as the canisters transition in and out of vacuum. We were able to retrieve, viable bacterial and fungal cells as well as DNA from samples collected from US space suits during vacuum chamber tests lasting as long as seven hours. Based on these results and feedback from the test subjects the sampling caddy was modified to improve ergonomics and meet US EVA safety requirements. Bayonet probes were added to the sides of the sample kit as alternate mounting points. Additional locking features were added to the end effector and the filter stack to prevent inadvertent release during use. The opening mechanism was changed from one where the end effector was rocked laterally to defeat a ball detent to a twist-to-open threaded closure for similar reasons. Demonstrating, this sampling caddy’s effectiveness during a US EVA will allow us to address knowledge gaps identified in COSPAR reports and begin to define planetary protection requirements for life support systems on crewed missions to mars. This kit could also be used to collect contamination control samples during Artemis missions to verify requirements and could be easily modified for robotic sample collection.

Planetary Protection↗

Operational Experience and Development of a Reliability Model for the ATR Demineralizer System (Slides)

The Advanced Test Reactor (ATR) is a light water reactor with aluminum clad driver fuel. Strict limits are implemented on pH, conductivity, and filterable solids to assure the performance of the driver fuel limit corrosion of the primary coolant system (PCS) pressure boundary components. A bypass demineralizer system is used to maintain PCS coolant within allowable bands for each of the aforementioned variables. Unlike many other reactors, the ATR does not have a filtration system. As such, failure of ion exchange resin in the bypass demineralizer can defeat the purpose of the system and result in high filterable solids in the PCS. Power operations with high filterable solids is prohibited by a technical safety requirement. This paper discusses recent failures of the ATR bypass demineralizer system. The testing and analysis done to deduce the cause of the failures is covered, as well as short term mitigative steps that were taken. To prevent the likelihood of future issues, historical data from the ATR and industry is used to develop a reliability model of the ATR bypass demineralizer system. Evidence of radiolytic decomposition of ion exchange resin was found in the cause investigation. As such, special attention is given to ion exchange resin failure due to high radiation environments. The reliability model is used to develop the ATR testing and maintenance program. Specifically, limits on resin service life are discussed.

21 - SPECIFIC NUCLEAR REACTORS AND ASSOCIATED PLAN↗

The Friendly Argument Notation (FAN)

This document defines and explains through examples the Friendly Argument Notation (FAN). FAN builds on previous work investigating text-based ways to express arguments [2, 3]. Its primary intended use is for creating and evaluating arguments about safety-critical systems, especially the types of arguments common within safety and assurance cases [4], but nothing in its design constrains its use to that domain. Compared to existing notations commonly used within this domain (for example [6]), FAN corresponds more closely to traditional argument concepts (for example [1]), allows greater flexibility in expression, provides for including counter-arguments, and requires less knowledge of computer-science-specific concepts. Only time and use will determine how beneficial these differences are in practice. This paper concentrates on showing how FAN looks to someone who is using it manually to develop or assess arguments. A later document will concentrate on providing the information necessary for software tools to be created for FAN.

arugment↗