The electronic pdf versions of the documents found through http://www.dnv.com/ are the officially binding versions. Copyright Det Norske Veritas.

[Book] [Expand] [Collapse] [Search Forms] [Previous Section with Hits] [Next Section with Hits] [Clear Search] [Help]

Expand Search


Sec.3: Additional Requirements for Computer Based Systems [Table of Contents] B: System Software

DNV-OS-D202 Automation, Safety, and Telecommunication Systems

[-] Ch.2: Technical Provisions
[-] Sec.3: Additional Requirements for Computer Based Systems
[-] A: General Requirements

Ch.2 Sec.3
A. General Requirements

Ch.2 Sec.3
A 100   Assignment of responsibility when installing integrated systems

Ch.2 Sec.3 A
101
   There shall be one named body responsible for the integration of the total integrated system. This body shall have the necessary expertise and resources enabling a controlled integration process.

Ch.2 Sec.3
A 200   System dependency

Ch.2 Sec.3 A
201
   Where an integrated operator station is part of an essential function, back-up or emergency means of operation of the essential functions shall be provided, which to the largest extent possible shall be independent of the integrated operator station and network.

Ch.2 Sec.3
A 300   Storage devices

Ch.2 Sec.3 A
301
   The on-line operation of essential functions shall not depend on the operation of rotating bulk storage devices.

Ch.2 Sec.3 A
302
   Software and data necessary to ensure satisfactory performance of essential and important functions shall normally be stored in non-volatile memory (e.g. EPROM, EEPROM or FLASH). Exception may be given for RAM with battery backup if the following three conditions are met:
low battery voltage results in an alarm or visual indication detectable by routine inspections
battery can easily be replaced by crew personnel without danger of losing data
battery failure has no influence on performance as long as normal power supply is maintained.

Ch.2 Sec.3
A 400   Computer usage

Ch.2 Sec.3 A
401
   Computers serving essential and important functions shall only be used for purposes relevant to unit operation, taken due notice of separation between safety functions and other control/operational functions.

Ch.2 Sec.3
A 500   System response and capacity

Ch.2 Sec.3 A
501
   Systems used for automation and safety systems shall provide response times compatible with the time constants of the related equipment under control (EUC).



Ch.2 Sec.3 A
502
   System start-up and system restoration after power failures shall take place with sufficient speed to comply with the system availability requirements for the systems. The system shall revert to a pre-defined state providing an appropriate level of safety.

Ch.2 Sec.3 A
503
   System capacities shall be sufficient to provide adequate response times for all functions, taking the maximum load and maximum number of simultaneous tasks under normal and abnormal conditions for the EUC into consideration.

Ch.2 Sec.3
A 600   Temperature control

Ch.2 Sec.3 A
601
   Wherever possible, computers shall not have forced ventilation. For systems where cooling or forced ventilation is required to keep the temperature at an acceptable level, alarm for high temperature or maloperation of the temperature control function shall be provided at a manned control station.

Ch.2 Sec.3
A 700   System maintenance

Ch.2 Sec.3 A
701
   Integrated systems supporting one or more essential or important function shall be arranged to allow individual hardware and software entities to be tested, repaired and restarted without interference with the maintained operation of the remaining parts of the system.

Ch.2 Sec.3 A
702
   Essential systems shall have diagnostic facilities to support finding and repair of failures.

Ch.2 Sec.3
A 800   System access

Ch.2 Sec.3 A
801
   Access to system set-up or configuration functions for the EUC shall be protected to avoid unauthorised modifications of the system performance. For screen based systems, tools shall be available to allow easy and unambiguous modification of configuration parameters allowed to be modified under normal operation.

Ch.2 Sec.3 A
802
   Unauthorised access to essential and important systems from a position outside the unit shall not be possible. Ref. also to Ch.1 Sec.1 A405 for remote diagnostics and maintenance.
Sec.3: Additional Requirements for Computer Based Systems [Table of Contents] B: System Software