<?xml version="1.0" encoding="utf-8"?>
<?xml-stylesheet href="client.xsl" type="text/xsl"?>
<article article-type="other">
<front>
<journal-meta>
<journal-id/>
<issn/>
<banner>
<href>banner.jpg</href>
<size width="100%"/>
</banner>
</journal-meta>
<doi>0883-cd</doi>
<article-meta>
<title-group>
<article-title>Approach for Evaluation of Software Failure Modes in Software-based I&amp;C Systems in Nuclear Power Plants</article-title>
</title-group>

<author>Herv&#233; Mbonjo<sup>a</sup> and Ewgenij Piljugin<sup>b</sup></author>

<aff>Department of Electrical and I&amp;C Systems, Gesellschaft f&#252;r Anlagen- und Reaktorsicherheit (GRS) gGmbH, Germany</aff>

<email><a href="mailto:herve.mbonjo@grs.de"><sup>a</sup>herve.mbonjo@grs.de</a></email>

<email><a href="mailto:ewgenij.piljugin@grs.de"><sup>b</sup>ewgenij.piljugin@grs.de</a></email>

</article-meta></front>
<body>
<abstract>
<title>ABSTRACT</title>
<p>This paper presents an approach for the evaluation of software failures in software-based I&amp;C (Instrumentation and Control) systems and/or equipment of NPPs (Nuclear Power Plants) based on Software Failure Mode and Effect Analysis (SFMEA). The presented approach is focused on application software of a generic software-based I&amp;C system i.e. the part of the software of a programmable equipment of an I&amp;C system which implements the I&amp;C application specific functions (ICF). Generally, the ICF will be designed and generated by means of functional block diagrams of the underlying I&amp;C system. The presented SFMEA approach considers the elementary function blocks (e.g. Boolean operators, delay modules, comparator modules) as the lowest abstraction level of the generic application software. The elementary function blocks are usually part of the engineering software of the I&amp;C system platform and are implemented as individual software modules of a software library. The results obtained from the FMEA (Failure Mode and Effect Analysis) of elementary function blocks for an exemplary I&amp;C system platform depict that the status of the input and output signals and the changeable parameters of elementary function blocks can contribute to software failure modes.</p>
<p><italic>Keywords: </italic>I&amp;C system, Software failure, SFMEA, I&amp;C functions, Common Cause Failures, CCF, Elementary function blocks, Fault injection.</p>
</abstract>
<fpdf>
<href>pdflogo.jpg</href>
<hpdf>0883</hpdf>
</fpdf>
</body>
</article>