NF ISO 15998
Earth-moving machinery - Machine-control systems (MCS) using electronic components - Performance criteria and tests for functional safety
ISO 15998:2008 specifies performance criteria and tests for functional safety of safety-related machine-control systems (MCS) using electronic components in earth-moving machinery and its equipment, as defined in ISO 6165.
ISO 15998:2008 specifies performance criteria and tests for functional safety of safety-related machine-control systems (MCS) using electronic components in earth-moving machinery and its equipment, as defined in ISO 6165.
This document provides a methodology for the determination of performance levels required for earth moving machinery (EMM) as defined in ISO 6165. A Machine Control System Safety Analysis (MCSSA) determines the amount of risk reduction of hazards associated with control systems, required for Safety Control Systems (SCS). This reduction is quantified by the Machine Performance Level (MPL), the hazards are identified using the risk assessment principles as defined in ISO 12100 or by other means. NOTE 1 Step 2 as shown in Annex A demonstrates the relationship between ISO 12100 and ISO 19014 as a complementary protective measure. NOTE 2 ISO 19014 can also be used to assess the functional safety requirements of other off-road mobile machinery. For those controls determined to be safety-related, the characteristics for architecture, hardware, software environmental requirements and performance are covered by other parts in ISO 19014. ISO 19014 covers the hazards caused by the failure of a safety control system and excludes hazards arising from the equipment itself (for example, electric shock, fire, etc.). Other controls that are not safety control systems (SCS), that do not mitigate a hazard or perform a control function and where the operator would be aware of a failure, are excluded from this standard (e.g. windscreen wipers, head lights, cab light, etc.). NOTE 3 A list of safety control systems is included in Annex D. NOTE 4 Audible warnings are excluded from the requirements of diagnostic coverage.
This document specifies the minimum requirements for environmental testing of electronic and electrical components identified as safety-related parts of the control system (SRP/CS) used on earth-moving machinery (EMM) as defined in ISO 6165 and their attachments.
This document specifies general principles for software development and signal transmission requirements of safety-related parts of machine-control systems (MCS) in earth-moving machinery (EMM) and its equipment, as defined in ISO 6165. In addition, this document addresses the significant hazards as defined in ISO 12100 related to the software embedded within the machine control system. The significant hazards being addressed are the incorrect machine control system output responses from machine control system inputs. Cyber security is out of the scope of this document. NOTE For guidance on cybersecurity, see an appropriate security standard. This document is not applicable to EMM manufactured before the date of its publication.
This document provides normative tables of machine performance levels required (MPLr) by common function and type for earth-moving machinery (EMM) as defined in ISO 6165. These MPLr can then be mapped or applied to safety control systems (SCS) used to control or that affect the functions defined in the table. The MPLr in this document are determined through the machine control system safety analysis (MCSSA) process outlined in ISO 19014-1. A brief explanation of how the levels were derived and the associated assumptions are contained herein. This document is not applicable to EMM manufactured before the date of its publication.
- Avant-proposiv
- Introductionv
-
1 Domaine d'application1
-
2 Références normatives1
-
3 Termes, définitions et abréviations1
-
4 Exigences générales de sécurité4
-
5 Exigences supplémentaires relatives aux systèmes de contrôle-commande relatifs à la sécurité6
-
6 Documentation8
-
7 Essais pour les MCS relatifs à la sécurité9
- Annexe A (informative) Recommandations pour l'estimation du risque12
- Annexe B (informative) Exemple d'un schéma de défaillance d'une spécification du système18
- Annexe C (informative) Liste des composants éprouvés19
- Annexe D (informative) Recommandations pour systèmes bus pour la transmission de messages relatifs à la sécurité22
- Bibliographie34
COBAZ is the simple and effective solution to meet the normative needs related to your activity, in France and abroad.
Available by subscription, CObaz is THE modular solution to compose according to your needs today and tomorrow. Quickly discover CObaz!
Request your free, no-obligation live demo
I discover COBAZ