Size: px
Start display at page:

Download ""

Transcription

1

2

3

4

5

6 Application Subsystem Component Logical View Physical View Computational Node Comm. Network Physical View

7 A B

8

9

10

11

12

13 1 A 2 B 3 C 4 D 5 E 6 1 real-time (a) 6 period 1 A C 4 D 5 4 E 5 (b) B Stable State 1 Start of Cycle A Observation of Sensor Input 2 Start of Transmission of Sensor Data B Transmission of Input Data 3 Start of Processing of Control Algorithm C Processing of Control Algorithm 4 Termination of Processing D Transmission of Output Data 5 Start of Output to Actuators E Output Operation at the Actuator 6 Termination of Output Operation Computational or Comm. Activity

14

15

16 Past Future π state is only defined during intervall Δ Δ π Time

17 A B C D E period 1 4 A C B E D 4 real-time 5

18

19

20 Multi-Cluster Systems Distributed System Multi-Core Processor Hypervisor

21

22 Picture: TTA Group

23

24

25

26

27

28

29 Goossens, K.; Dielissen, J.; Radulescu, A.: Aethereal network on chip: concepts, architectures, and implementations. In Design & Test of Computers, IEEE 22 (5), pp

30 Trusted Subsystem Trusted Resource Manager (TRM) Component Network Interface Application-Specific Subsystem Component Network Interface Time-Triggered Network-on-Chip Component Network Interface Network Interface Network Interface Network Interface Network Interface Component Component Component Component

31 TT-NoC and Network Interface Trusted Resource Manager Fault Containment in the Time Domain Global time allows coordination of sending activities No dynamic arbitration or temporal dependencies between components Transmission times are under control of the communication interface. Fault Containment in the Value Domain Assignment of dedicated slots to each component as basis for protecting data integrity of messages Network interface ensures that components write only during assigned slots Addressing under control of communication interface The TRM rejects new schedules if collisions would occur (e.g., mutual overwriting of messages). Assertions can be specified (e.g., to guarantee temporal properties of safety-relevant messages).

32

33

34

35

36 SME Univ. Industry Research O. Thales SA France ONERA France Alstom Wind S.L. Spain Ikerlan Spain STMicroelectronics France SINTEF Norway TÜV Rheinland Germany Fortiss Germany TTTech Austria Universität Siegen Germany RealTime-At-Work France TU Kaiserslautern Germany Virtual Open Systems France UPV Spain FENTISS Spain TEI Greece

37 MPSOC Network-on-a-Chip Network-on-a-Chip Network-on-a-Chip

38

39

40 HEALTHCARE AVIONICS WIND POWER Avionic Flight Control Service (Safety Critical, Class A) Entertainment / Multimedia (Not Safety-Relevant) PID Pilot Controls Controller Services of APEX Diagnosis Service Secure and Fault-Tolerant. Services of IEC I/O Service Domain-Independent Core Services for Mixed-Criticality Systems Global Time. Communication Base. Robustness Services Timely and Secure for TSP Sensors Timely and Secure Execution for TSP Storage Integrated Resource Management for TSP Different implementation choices at chip-level and cluster level

41 System Component Optional Service System Component Optional Service Application Component Application Component DREAMS SYSTEM OF NETWORKED MULTI-CORE CHIPS Off-Chip Network System Node Off-Chip GW Off-Chip Network Node Node Node Node System Node: Global Res. Manager (GRM) Application Tile Application Tile Application Tile OS DRAL DREAMS Virtualization Layer Network Interface Processor Cores OS DRAL Optional Service (MW) OS DRAL Optional Service (MW) OS DRAL Local Resource Mngmt. Tile: System Core Memory GW On-Chip Interconnect Tile: System Core I/O Tile: System Core Off-Chip/On-Chip GW Application Services Optional Platform Services Core Services Fault-tolerant global time Timely & secure exec. for TSP Timely & secure communication for TSP Integrated resource management for TSP

42 Criticality Domain Application Subsystem Component Messagebased Interface Message Logical View Physical View Physical View Cluster Node Off-Chip Network Tile Partition NoC

43

44 EN Furnaces EN / 8 / 9 Railways ISO Earth Moving Equipment ISO Automotive IEC Medical IEC Nuclear IEC Process Ind IEC Functional Safety Standard ISO Machinery IEC Machinery ISO Lifts EN ATEX IEC Electrical Drivers

45 DREAMS System of Networked Multi-Core Chips DREAMS Chip DREAMS Chip DREAMS Chip DREAMS Chip Off-Chip Networks GRM Configuration of Resources by GRM Linking Interface (Interaction between Components) DREAMS Chip Processor Core or Processor Cluster MON LRM LRS NI Processor Cfg. (Task Scheduling) Network Cfg. (Msg. Scheduling) Processor Core or Processor Cluster MON LRM LRS NI Processor Cfg. (Task Scheduling) Network Cfg. (Msg. Scheduling) NoC Global Resource Management Cfg. MON NI LRM LRS Memory (e.g., DRAM) Network Cfg. (Msg. Scheduling) Configuration for Memory Scheduling MON NI LRM LRS I/O (e.g., DRAM) Network Cfg. (Msg. Scheduling) Configuration for I/O Scheduling NI Gateway Core Network Cfg.

46 6/17/2016

47 Cross-Domain Embedded System Architecture Security Safety-Critical Multi-Core Architec. and Certification Development Methods Resource Management & Dynamic Reconfiguration Mixed-Criticality at Chip-Level Product Lines Real-Time Modeling and Timing Analysis Other Mixed-Criticality Projects Call 10 PROXIMA CONTREX Networks of Excellence HYCON HIPEAC EMSIG Embedded Components Processor cores for different criticalities (e.g., PPC, ARM) Hypervisors and OS for different criticalities (e.g., XtratuM, pikeos, KVM) On-chip and off-chip networks for different criticalities (e.g., Spidergon, TTNoC, TTE) Simulation and timing analysis tools (e.g., OPNET, RTaW-Sim) Integrate existing components for different criticalities Research and development closing technolo-gical gaps (e.g., end-to-end communication with time and space partitioning, modular safety-case for mixed-critiality product lines) Integration and consolidation of existing components (e.g., hypervisors, off-chip/on-chip networks, models) Demonstration in multiple domains Horizontal activities Interface to Related Projects Technological result: DREAMS Architecture Results of Horizontal Actions Cross-domain architectural style for mixed-criticality systems Platform of networked multicore chips Modelling and develop-ment methods for mixed-critiality systems and product lines Certification methods Industrial Demonstrators in three domains Mixed-criticality community Standards Roadmaps Awareness and expertise through training GENESYS ACROSS OVERSEE TERESA ARAMIS RECOMP CESAR CRYSTAL Actors FRESCOR DiVA CERTAIN- TY MULTI- PARTES MoSiS VARIES PEGASE TIMMO- 2-USE RECOMP TRESCCA SAFECER VERDE SCARLETT VIRTICAL

48 SAFEPOWER Background: App.N App.4 App.3 App.2 App.1 App.1 App.2 App.1 App.2 App.N Federated Architecture Multiple interconnected single-core Processors Integrated Architecture Partitioned single-core Processor Integrated Architecture Multicore Processor Real-time, partioning, reliability, security, etc. +Low Power

49 Application Railway Mixed-Criticality and Low-Power Use Case Aerospace Mixed-Criticality and Low-Power Use Case Cross-Domain SAFEPOWER Public Demonstrator WP4 WP2 SAFEPOWER Architectural Services SAFEPOWER Architecture 1. Power-aware adapti ve execution service for CERTS 2. Power-aware adapti ve communication service for CERTS 3. Power, energy and temperature extensions of health monit ors 4. Power, energy and temperature adaptat ion services for CERTS Architectural Properties 1. Key Properties for CRTES such real-time, time/space partitioning, reliability and security + 2. Low power, energy and temperature WP2 SW Hypervisor with low-power techniques for safety-critical systems (e.g., XtratuM extension) Low-power scheduling services Platform 3 (Virtual or Physical) Platform 2 (Virtual or Physical) Platform 1 (Virtual or Physical) Low-power fault-tolerance services Health and resource monit oring Security Services WP3 Safety/ Security Standards e.g., Power-aware board with power, energy and temperature measurement and management HW Power/energy scaling (DVFS, multivoltage, etc.) Low-power on-chip network for safety-critical systems (e.g., extended TTNoC, extended Nostrum) Core peripheral gating Low-power monitoring and diagnostic HW Processor cores (e.g., ARM, LEO N) Input/ output

50 Increased payload fraction with low-power mixed criticality systems Autonomous object controllers on the railway signalling network. Public Demonstrator

51

Towards a European Strategy for Cyber Physical Systems

Towards a European Strategy for Cyber Physical Systems Towards a European Strategy for Cyber Physical Systems Concertation Workshop on Mixed Criticality Systems and Multicore Distributed REal time Architecture for Mixed criticality Systems (DREAMS) Roman Obermaisser

More information

Smarter and safer in an increasingly complex world European Mixed-Criticality Cluster

Smarter and safer in an increasingly complex world European Mixed-Criticality Cluster Smarter and safer in an increasingly complex world European Mixed-Criticality Cluster Roman Obermaisser (Univ. Siegen) Kim Grüttner (OFFIS) Francisco J. Cazorla (BSC) Arjan Geven (TTTech) Motivation Modern

More information

Distributed IMA with TTEthernet

Distributed IMA with TTEthernet Distributed IMA with thernet ARINC 653 Integration of thernet Georg Gaderer, Product Manager Georg.Gaderer@tttech.com October 30, 2012 Copyright TTTech Computertechnik AG. All rights reserved. Introduction

More information

First GENESYS Architectures Implemented in the INDEXYS Project

First GENESYS Architectures Implemented in the INDEXYS Project Project n 100021 First GENESYS Architectures Implemented in the INDEXYS Project An Overview on the Technical Project Contents and Status Quo Andreas Eckel, TTTech Computertechnik AG CROSS FUNDING-PROVIDER

More information

Hypervisor Market Overview. Franz Walkembach. for GENIVI AMM, April 19 th, 2018 (Munich) SYSGO AG Public

Hypervisor Market Overview. Franz Walkembach. for GENIVI AMM, April 19 th, 2018 (Munich) SYSGO AG Public Franz Walkembach for GENIVI AMM, April 19 th, 2018 (Munich) SYSGO AG Public 2018-04-19 1 What you can expect Quick introduction of SYSGO AG What are the market trends for hypervisor? Market size and main

More information

Mixed-Criticality Systems based on a CAN Router with Support for Fault Isolation and Selective Fault-Tolerance

Mixed-Criticality Systems based on a CAN Router with Support for Fault Isolation and Selective Fault-Tolerance IFAC 2014 Mixed-Criticality Systems based on a Router with Support for Fault Isolation and Selective Fault-Tolerance Roland Kammerer 1, Roman Obermaisser², Mino Sharkhawy 1 1 Vienna University of Technology,

More information

EMC2. Prototyping and Benchmarking of PikeOS-based and XTRATUM-based systems on LEON4x4

EMC2. Prototyping and Benchmarking of PikeOS-based and XTRATUM-based systems on LEON4x4 EMC2 Prototyping and Benchmarking of PikeOS-based and XTRATUM-based systems on LEON4x4 Introduction Multi-core architectures will be adopted in the next generations of avionics and aerospace systems. Integrated

More information

SCAlable & ReconfigurabLe Electronics platforms and Tools SCARLETT

SCAlable & ReconfigurabLe Electronics platforms and Tools SCARLETT SCAlable & ReconfigurabLe Electronics platforms and Tools SCARLETT From the Integrated Modular Avionics the First Generation architecture to the Distributed Modular Electronics solution Page 1 Collaborative

More information

Developing deterministic networking technology for railway applications using TTEthernet software-based end systems

Developing deterministic networking technology for railway applications using TTEthernet software-based end systems Developing deterministic networking technology for railway applications using TTEthernet software-based end systems Project n 100021 Astrit Ademaj, TTTech Computertechnik AG Outline GENESYS requirements

More information

Dependable Computer Systems

Dependable Computer Systems Dependable Computer Systems Part 6b: System Aspects Contents Synchronous vs. Asynchronous Systems Consensus Fault-tolerance by self-stabilization Examples Time-Triggered Ethernet (FT Clock Synchronization)

More information

New ARMv8-R technology for real-time control in safetyrelated

New ARMv8-R technology for real-time control in safetyrelated New ARMv8-R technology for real-time control in safetyrelated applications James Scobie Product manager ARM Technical Symposium China: Automotive, Industrial & Functional Safety October 31 st 2016 November

More information

MASP Chapter on Safety and Security

MASP Chapter on Safety and Security MASP Chapter on Safety and Security Daniel Watzenig Graz, Austria https://artemis.eu MASP Chapter on Safety & Security Daniel Watzenig daniel.watzenig@v2c2.at Francois Tuot francois.tuot@gemalto.com Antonio

More information

Riccardo Mariani, Intel Fellow, IOTG SEG, Chief Functional Safety Technologist

Riccardo Mariani, Intel Fellow, IOTG SEG, Chief Functional Safety Technologist Riccardo Mariani, Intel Fellow, IOTG SEG, Chief Functional Safety Technologist Internet of Things Group 2 Internet of Things Group 3 Autonomous systems: computing platform Intelligent eyes Vision. Intelligent

More information

Hardware-Software Codesign. 1. Introduction

Hardware-Software Codesign. 1. Introduction Hardware-Software Codesign 1. Introduction Lothar Thiele 1-1 Contents What is an Embedded System? Levels of Abstraction in Electronic System Design Typical Design Flow of Hardware-Software Systems 1-2

More information

TU Wien. Fault Isolation and Error Containment in the TT-SoC. H. Kopetz. TU Wien. July 2007

TU Wien. Fault Isolation and Error Containment in the TT-SoC. H. Kopetz. TU Wien. July 2007 TU Wien 1 Fault Isolation and Error Containment in the TT-SoC H. Kopetz TU Wien July 2007 This is joint work with C. El.Salloum, B.Huber and R.Obermaisser Outline 2 Introduction The Concept of a Distributed

More information

Diagnosis in the Time-Triggered Architecture

Diagnosis in the Time-Triggered Architecture TU Wien 1 Diagnosis in the Time-Triggered Architecture H. Kopetz June 2010 Embedded Systems 2 An Embedded System is a Cyber-Physical System (CPS) that consists of two subsystems: A physical subsystem the

More information

Semantics-Based Integration of Embedded Systems Models

Semantics-Based Integration of Embedded Systems Models Semantics-Based Integration of Embedded Systems Models Project András Balogh, OptixWare Research & Development Ltd. n 100021 Outline Embedded systems overview Overview of the GENESYS-INDEXYS approach Current

More information

Deterministic Ethernet & Unified Networking

Deterministic Ethernet & Unified Networking Deterministic Ethernet & Unified Networking Never bet against Ethernet Mirko Jakovljevic mirko.jakovljevic@tttech.com www.tttech.com Copyright TTTech Computertechnik AG. All rights reserved. About TTTech

More information

ESA ADCSS Deterministic Ethernet in Space Avionics

ESA ADCSS Deterministic Ethernet in Space Avionics ESA ADCSS 2015 Deterministic Ethernet in Space Avionics Bülent Altan Strategic Advisor with Jean-Francois Dufour, Christian Fidi and Matthias Mäke-Kail Copyright TTTech Computertechnik AG. All rights reserved.

More information

What Software Requires from Multicore for Certification - overview for the domains avionics, medical in comparison to automotive,...

What Software Requires from Multicore for Certification - overview for the domains avionics, medical in comparison to automotive,... What Software Requires from Multicore for Certification - overview for the domains avionics, medical in comparison to automotive,... Matthias Pruksch Motivation Collision Avoidance System [1] Mobile Diagnosis

More information

What are Embedded Systems? Lecture 1 Introduction to Embedded Systems & Software

What are Embedded Systems? Lecture 1 Introduction to Embedded Systems & Software What are Embedded Systems? 1 Lecture 1 Introduction to Embedded Systems & Software Roopa Rangaswami October 9, 2002 Embedded systems are computer systems that monitor, respond to, or control an external

More information

Automotive Networks Are New Busses and Gateways the Answer or Just Another Challenge? ESWEEK Panel Oct. 3, 2007

Automotive Networks Are New Busses and Gateways the Answer or Just Another Challenge? ESWEEK Panel Oct. 3, 2007 Automotive Networks Are New Busses and Gateways the Answer or Just Another Challenge? ESWEEK Panel Oct. 3, 2007 Automotive Networks complex networks hundreds of functions 50+ ECUs (Electronic Control Unit)

More information

Taking the Right Turn with Safe and Modular Solutions for the Automotive Industry

Taking the Right Turn with Safe and Modular Solutions for the Automotive Industry Taking the Right Turn with Safe and Modular Solutions for the Automotive Industry A Time-Triggered Middleware for Safety- Critical Automotive Applications Ayhan Mehmet, Maximilian Rosenblattl, Wilfried

More information

SIMPLIFYING THE CAR. Helix chassis. Helix chassis. Helix chassis WIND RIVER HELIX CHASSIS WIND RIVER HELIX DRIVE WIND RIVER HELIX CARSYNC

SIMPLIFYING THE CAR. Helix chassis. Helix chassis. Helix chassis WIND RIVER HELIX CHASSIS WIND RIVER HELIX DRIVE WIND RIVER HELIX CARSYNC W I N D R I V E R H E L I X C H A S S I S SIMPLIFYING THE WIND RIVER HELIX CHASSIS Helix Chassis brings together software, technologies, tools, and services to help automotive manufacturers unify, simplify,

More information

Integration of Mixed Criticality Systems on MultiCores: Limitations, Challenges and Way ahead for Avionics

Integration of Mixed Criticality Systems on MultiCores: Limitations, Challenges and Way ahead for Avionics Integration of Mixed Criticality Systems on MultiCores: Limitations, Challenges and Way ahead for Avionics TecDay 13./14. Oct. 2015 Dietmar Geiger, Bernd Koppenhöfer 1 COTS HW Evolution - Single-Core Multi-Core

More information

An Encapsulated Communication System for Integrated Architectures

An Encapsulated Communication System for Integrated Architectures An Encapsulated Communication System for Integrated Architectures Architectural Support for Temporal Composability Roman Obermaisser Overview Introduction Federated and Integrated Architectures DECOS Architecture

More information

ARTEMIS Call 2013, project Embedded multi-core systems for mixed criticality applications in dynamic and changeable real-time environments

ARTEMIS Call 2013, project Embedded multi-core systems for mixed criticality applications in dynamic and changeable real-time environments Embedded multi-core systems for mixed criticality applications in dynamic and changeable real-time environments Project Acronym: Grant agreement no: 621429 Deliverable no. and title D4.1 Mixed Criticalities

More information

SUCCESSFULL MULTICORE CERTIFICATION WITH SOFTWARE-PARTITIONING Efficient Implementation for DO-178C, EN 50128, ISO 26262

SUCCESSFULL MULTICORE CERTIFICATION WITH SOFTWARE-PARTITIONING Efficient Implementation for DO-178C, EN 50128, ISO 26262 Sven Nordhoff, SYSGO AG, Klein-Winternheim, Germany ABSTRACT The usage of multi-core processors (MCPs) in modern systems is state-of-the art and will also come to reality in safetycritical domains like

More information

TU Wien. Shortened by Hermann Härtig The Rationale for Time-Triggered (TT) Ethernet. H Kopetz TU Wien December H. Kopetz 12.

TU Wien. Shortened by Hermann Härtig The Rationale for Time-Triggered (TT) Ethernet. H Kopetz TU Wien December H. Kopetz 12. TU Wien 1 Shortened by Hermann Härtig The Rationale for Time-Triggered (TT) Ethernet H Kopetz TU Wien December 2008 Properties of a Successful Protocol 2 A successful real-time protocol must have the following

More information

FLUID COMPUTING. ARC FORUM, India Ricky Watts Director of Industrial Solutions, Wind River IN A SOFTWARE-DEFINED WORLD

FLUID COMPUTING. ARC FORUM, India Ricky Watts Director of Industrial Solutions, Wind River IN A SOFTWARE-DEFINED WORLD FLUID COMPUTING IN A SOFTWARE-DEFINED WORLD ARC FORUM, India Ricky Watts Director of Industrial Solutions, Wind River Chemical Sector Commercial Building Sector Communications Sector Critical Manufacturing

More information

SoC Communication Complexity Problem

SoC Communication Complexity Problem When is the use of a Most Effective and Why MPSoC, June 2007 K. Charles Janac, Chairman, President and CEO SoC Communication Complexity Problem Arbitration problem in an SoC with 30 initiators: Hierarchical

More information

November 16, TTTech Computertechnik AG / TTTech Auto AG Copyright TTTech Auto AG. All rights reserved

November 16, TTTech Computertechnik AG / TTTech Auto AG Copyright TTTech Auto AG. All rights reserved Future Mobility Approaches and Required Developments for On-board Networks and ADAS Computers Andreas ECKEL, Teamlead Grants Jan RADKE, Cooperation Manager TTTech Computertechnik AG / TTTech Auto AG November

More information

EagleEye TSP Porting to HWIL Configuration (RTB)

EagleEye TSP Porting to HWIL Configuration (RTB) EagleEye TSP Porting to HWIL Configuration (RTB) Final project presentation 12.12.2017 Presenter: Dharma Teja Srungavruksham Overview_ Background Team Goals Execution Results Future Background_ EagleEye

More information

Evaluation of DREAMS resource management solutions on a mixed-critical demonstrator

Evaluation of DREAMS resource management solutions on a mixed-critical demonstrator Evaluation of DREAMS resource management solutions on a mixed-critical demonstrator Gerhard Fohler, Gautam Gala, Daniel Gracia Pérez, Claire Pagetti To cite this version: Gerhard Fohler, Gautam Gala, Daniel

More information

Design of embedded mixed-criticality CONTRol systems under consideration of EXtra-functional properties

Design of embedded mixed-criticality CONTRol systems under consideration of EXtra-functional properties EMC2 Project Conference Paris, France Design of embedded mixed-criticality CONTRol systems under consideration of EXtra-functional properties Funded by the EC under Grant Agreement 611146 Kim Grüttner

More information

Mixed Criticality in Control Systems

Mixed Criticality in Control Systems Preprints of the 19th World Congress The International Federation of Automatic Control Mixed Criticality in Control Systems Alfons Crespo Alejandro Alonso Marga Marcos Juan A. de la Puente Patricia Balbastre

More information

RazorMotion - The next level of development and evaluation is here. Highly automated driving platform for development and evaluation

RazorMotion - The next level of development and evaluation is here. Highly automated driving platform for development and evaluation RazorMotion - The next level of development and evaluation is here Highly automated driving platform for development and evaluation RazorMotion Highly automated driving platform for development and evaluation

More information

Security and Performance Benefits of Virtualization

Security and Performance Benefits of Virtualization Security and Performance Benefits of Virtualization Felix Baum mentor.com/embedded Android is a trademark of Google Inc. Use of this trademark is subject to Google Permissions. Linux is the registered

More information

What functional safety module designers need from IC developers

What functional safety module designers need from IC developers What functional safety module designers need from IC developers Embedded Platforms Conference Microcontrollers and Peripherals Nov 9 th 2016 14:50 15:30 TOM MEANY Introduction This presentation gives a

More information

The ACROSS MPSoC A New Generation of Multi-Core Processors designed for Safety-Critical Embedded Systems

The ACROSS MPSoC A New Generation of Multi-Core Processors designed for Safety-Critical Embedded Systems The ACROSS MPSoC A New Generation of Multi-Core Processors designed for Safety-Critical Embedded Systems Christian El Salloum, Martin Elshuber, Oliver Höftberger, Haris Isakovic, Armin Wasicek {christian.el-salloum,

More information

A Look Ahead. Dependable Embedded Systems. Outline. H. Kopetz. July Encapsulated Execution Environments. Automotive Requirements

A Look Ahead. Dependable Embedded Systems. Outline. H. Kopetz. July Encapsulated Execution Environments. Automotive Requirements Dependable Embedded Systems A Look Ahead 1 H. Kopetz July 2003 Outline 2 Introduction Hardware Developments Automotive Requirements Encapsulated Execution Environments Conclusion Introduction 3 Dependable

More information

Overview of Potential Software solutions making multi-core processors predictable for Avionics real-time applications

Overview of Potential Software solutions making multi-core processors predictable for Avionics real-time applications Overview of Potential Software solutions making multi-core processors predictable for Avionics real-time applications Marc Gatti, Thales Avionics Sylvain Girbal, Xavier Jean, Daniel Gracia Pérez, Jimmy

More information

AS-i 3.0 PROFIBUS Gateways with integrated Safety Monitor

AS-i 3.0 PROFIBUS Gateways with integrated Safety Monitor AS-i 3.0 Gateways AS-i 3.0 Gateways 2 / 1 AS-i Master, Slave 1 AS-i Safety Monitor for 2 AS-i networks Operation using a single Monitor configuration! Monitor processes safety slaves on two AS-i networks

More information

HOMEPLANE Home Media Platform and Networks

HOMEPLANE Home Media Platform and Networks HOMEPLANE Home Media Platform and Networks funded by the German Federal Ministry of Economics and Technology Home Media Platform and Networks Simply Works Enhanced WLAN for multimedia distribution Automatic

More information

Software Verification for Low Power, Safety Critical Systems

Software Verification for Low Power, Safety Critical Systems Software Verification for Low Power, Safety Critical Systems 29 Nov 2016, Simon Davidmann info@imperas.com, Imperas Software Ltd. Page 1 Software Verification for Low Power, Safety Critical Systems Page

More information

Ein Modell - viele Zielsysteme

Ein Modell - viele Zielsysteme Ein Modell - viele Zielsysteme Automatische Codegenerierung aus MATLAB und Simulink Dr.-Ing. Daniel Weida 2015 The MathWorks, Inc. 1 Industry trends Code generation is expanding rapidly C C++ VHDL Verilog

More information

Addressing Complexity in Connected & Autonomous Vehicles (and in fact everything else )

Addressing Complexity in Connected & Autonomous Vehicles (and in fact everything else ) Addressing Complexity in Connected & Autonomous Vehicles (and in fact everything else ) 25.04.2018 Contents 1 Context and Background 2 The Architecture 3 SOA & SOA++ 4 SOA Connectivity Models 5 Summary

More information

T500 DUALTACH. JAQUET T500 DualTach. 2 channel measurement & monitoring instrument 2 CHANNEL TACHOMETER I N C H A R G E O F S P E E D.

T500 DUALTACH. JAQUET T500 DualTach. 2 channel measurement & monitoring instrument 2 CHANNEL TACHOMETER I N C H A R G E O F S P E E D. 1-08 T500 DUALTACH 2 CHANNEL TACHOMETER JAQUET T500 DualTach 2 channel measurement & monitoring instrument JAQUET T500 DualTach 2 channel measurement and monitoring instrument for demanding machine protection

More information

CORBA in the Time-Triggered Architecture

CORBA in the Time-Triggered Architecture 1 CORBA in the Time-Triggered Architecture H. Kopetz TU Wien July 2003 Outline 2 Hard Real-Time Computing Event and State Messages The Time Triggered Architecture The Marriage of CORBA with the TTA Conclusion

More information

A Fault Management Protocol for TTP/C

A Fault Management Protocol for TTP/C A Fault Management Protocol for TTP/C Juan R. Pimentel Teodoro Sacristan Kettering University Dept. Ingenieria y Arquitecturas Telematicas 1700 W. Third Ave. Polytechnic University of Madrid Flint, Michigan

More information

An Introduction to TTEthernet

An Introduction to TTEthernet An Introduction to thernet TU Vienna, Apr/26, 2013 Guest Lecture in Deterministic Networking (DetNet) Wilfried Steiner, Corporate Scientist wilfried.steiner@tttech.com Copyright TTTech Computertechnik

More information

AS-i 3.0 PROFIBUS Gateways with integrated Safety Monitor

AS-i 3.0 PROFIBUS Gateways with integrated Safety Monitor AS-i 3.0 Gateways AS-i 3.0 Gateways 2 / 1 AS-i Master, Slave 1 AS-i Safety Monitor for 2 s Operation using a single Monitor! Monitor processes safety slaves on two s Coupling between the two networks superfluous

More information

Communication Patterns in Safety Critical Systems for ADAS & Autonomous Vehicles Thorsten Wilmer Tech AD Berlin, 5. March 2018

Communication Patterns in Safety Critical Systems for ADAS & Autonomous Vehicles Thorsten Wilmer Tech AD Berlin, 5. March 2018 Communication Patterns in Safety Critical Systems for ADAS & Autonomous Vehicles Thorsten Wilmer Tech AD Berlin, 5. March 2018 Agenda Motivation Introduction of Safety Components Introduction to ARMv8

More information

AS-i 3.0 Gateways, PROFIsafe via PROFIBUS or PROFINET

AS-i 3.0 Gateways, PROFIsafe via PROFIBUS or PROFINET via PROFI or PROF AS-i 3.0 Gateways, via PROF or PROFI 22 / 1 Master, PROF / PROFI Slave AS-i Safety input slaves report via AS-i Safety output slaves switch via Up to 32 release circuits up to 6 CAT4,

More information

SPIDER: A Fault-Tolerant Bus Architecture

SPIDER: A Fault-Tolerant Bus Architecture Formal Methods Group NASA Langley Research Center lee.s.pike@nasa.gov May 11, 2005 Motivation Safety-critical distributed x-by-wire applications are being deployed in inhospitable environments. Failure

More information

Multicore platform towards automotive safety challenges

Multicore platform towards automotive safety challenges Multicore platform towards automotive safety challenges Romuald NOZAHIC European Application Engineer mentor.com/automotive Android is a trademark of Google Inc. Use of this trademark is subject to Google

More information

Virtual Hardware ECU How to Significantly Increase Your Testing Throughput!

Virtual Hardware ECU How to Significantly Increase Your Testing Throughput! Virtual Hardware ECU How to Significantly Increase Your Testing Throughput! Elektrobit Tech Day Jason Niatas Synopsys Inc. July 27, 2017 2017 Synopsys, Inc. 1 Agenda Automotive electronic evolution and

More information

DEPENDABLE PROCESSOR DESIGN

DEPENDABLE PROCESSOR DESIGN DEPENDABLE PROCESSOR DESIGN Matteo Carminati Politecnico di Milano - October 31st, 2012 Partially inspired by P. Harrod (ARM) presentation at the Test Spring School 2012 - Annecy (France) OUTLINE What?

More information

Safety Architecture Patterns

Safety Architecture Patterns Tutorial: Safety Architecture Patterns Philip Koopman, Ph.D. These tutorials are a simplified introduction, and are not sufficient on their own to achieve system safety. You are responsible for the safety

More information

Reaching for the sky with certified and safe solutions for the aerospace market

Reaching for the sky with certified and safe solutions for the aerospace market www.tttech.com/aerospace Reaching for the sky with certified and safe solutions for the aerospace market More about our certified and safe products inside Advancing safe technologies, improving human lives

More information

Workshop on In Vehicle Network using CAN By

Workshop on In Vehicle Network using CAN By Workshop on In Vehicle Network using CAN By Modern CAR Modern CAR INTRODUCTION 1. Controller Area Network (CAN) was initially created by German automotive system supplier Robert Bosch in the mid-1980s.

More information

Introduction to Adaptive AUTOSAR. Dheeraj Sharma July 27, 2017

Introduction to Adaptive AUTOSAR. Dheeraj Sharma July 27, 2017 Introduction to Adaptive AUTOSAR Dheeraj Sharma July 27, 2017 Overview Software Platform and scope of Adaptive AUTOSAR Adaptive AUTOSAR architecture and roadmap EB Adaptive Platform and Prototyping solution

More information

Scalable and Flexible Software Platforms for High-Performance ECUs. Christoph Dietachmayr Sr. Engineering Manager, Elektrobit November 8, 2018

Scalable and Flexible Software Platforms for High-Performance ECUs. Christoph Dietachmayr Sr. Engineering Manager, Elektrobit November 8, 2018 Scalable and Flexible Software Platforms for High-Performance ECUs Christoph Dietachmayr Sr. Engineering Manager, November 8, Agenda A New E/E Architectures and High-Performance ECUs B Non-Functional Aspects:

More information

FlexRay The Hardware View

FlexRay The Hardware View A White Paper Presented by IPextreme FlexRay The Hardware View Stefan Schmechtig / Jens Kjelsbak February 2006 FlexRay is an upcoming networking standard being established to raise the data rate, reliability,

More information

Operating Systems, Concurrency and Time. real-time communication and CAN. Johan Lukkien

Operating Systems, Concurrency and Time. real-time communication and CAN. Johan Lukkien Operating Systems, Concurrency and Time real-time communication and CAN Johan Lukkien (Courtesy: Damir Isovic, Reinder Bril) Question Which requirements to communication arise from real-time systems? How

More information

Safety and Security for Automotive using Microkernel Technology

Safety and Security for Automotive using Microkernel Technology Informationstag "Das Automobil als IT-Sicherheitsfall" Berlin, 11.05.2012 Safety and Security for Automotive using Microkernel Technology Dr.-Ing. Matthias Gerlach OpenSynergy TwoBirds withonestone Safety

More information

PROFINET The leading communication system

PROFINET The leading communication system Titel einer Beispielpräsentation PROFINET The leading communication system Proven and future-oriented PROFINET 2 3 4 Market & Applications PROFINET overview 0 Reasons for PROFINET Industrie 4.0 and PROFINET

More information

Applying MILS to multicore avionics systems

Applying MILS to multicore avionics systems Applying MILS to multicore avionics systems Eur Ing Paul Parkinson FIET Principal Systems Architect, A&D EuroMILS Workshop, Prague, 19 th January 2016 2016 Wind River. All Rights Reserved. Agenda A Brief

More information

The Integration of a Prototype Pitch Control Application with IMA2G Devices

The Integration of a Prototype Pitch Control Application with IMA2G Devices AUTOMATYKA/ AUTOMATICS 2013 Vol. 17 No. 1 http://dx.doi.org/10.7494/automat.2013.17.1.93 S³awomir Samolej*, Tomasz Rogalski**, Grzegorz Kopecki**, Andrzej Tomczyk** The Integration of a Prototype Pitch

More information

Industrial Embedded Systems - Design for Harsh Environment - Dr. Alexander Walsch

Industrial Embedded Systems - Design for Harsh Environment - Dr. Alexander Walsch Industrial Embedded Systems - Design for Harsh Environment - Dr. Alexander Walsch alexander.walsch@ge.com WS 2011/12 Technical University Munich (TUM) Introduction - Our Backgrounds O&G Energy Sensor systems

More information

AS-i 3.0 Gateways, PROFIsafe via PROFIBUS or PROFINET

AS-i 3.0 Gateways, PROFIsafe via PROFIBUS or PROFINET safe via or AS-i 3.0 Gateways, safe via or 2 / 1 Master, / Slave AS-i Safety input slaves report via safe AS-i Safety output slaves switch via safe Up to 32 release circuits up to 6 CAT4, SIL 3 safe output

More information

BUILDING FUNCTIONAL SAFETY PRODUCTS WITH WIND RIVER VXWORKS RTOS

BUILDING FUNCTIONAL SAFETY PRODUCTS WITH WIND RIVER VXWORKS RTOS BUILDING FUNCTIONAL SAFETY PRODUCTS WITH WIND RIVER VXWORKS RTOS Alex Wilson Director, Market Development 2017 WIND RIVER. ALL RIGHTS RESERVED. For over 30 years, Wind River has helped the world's technology

More information

AS-i 3.0 PROFIBUS Gateways with integrated Safety Monitor

AS-i 3.0 PROFIBUS Gateways with integrated Safety Monitor AS-i 3.0 Gateways 2 / 1 AS-i Master, Slave 1 AS-i Safety Monitor for 2 s Operation using a single Monitor! Monitor processes safety slaves on two s Coupling between the two networks superfluous Up to 32

More information

Safety-critical embedded systems, fault-tolerant control systems, fault detection, fault localization and isolation

Safety-critical embedded systems, fault-tolerant control systems, fault detection, fault localization and isolation Fault detection in safety-critical embedded systems nomen VERBER i, MA TJAl COLNARIC i, AND WOLFGANG A. HALANG 2 JUniversity of Maribor, Faculty of Electrical Engineering and Computer Science, 2000 Maribor,

More information

16 Time Triggered Protocol

16 Time Triggered Protocol 16 Time Triggered Protocol [TTtech04] (TTP) 18-549 Distributed Embedded Systems Philip Koopman October 25, 2004 Significant material drawn from: Prof. H. Kopetz [Kopetz] TTP Specification v 1.1 [TTTech]

More information

Consolidation of IT and OT based on Virtualization and Deterministic Ethernet

Consolidation of IT and OT based on Virtualization and Deterministic Ethernet Consolidation of IT and OT based on Virtualization and Deterministic Ethernet Wilfried Steiner wilfried.steiner@tttech.com https://at.linkedin.com/in/wilfriedsteiner Smart Factories of the Future will

More information

Alexandre Esper, Geoffrey Nelissen, Vincent Nélis, Eduardo Tovar

Alexandre Esper, Geoffrey Nelissen, Vincent Nélis, Eduardo Tovar Alexandre Esper, Geoffrey Nelissen, Vincent Nélis, Eduardo Tovar Current status MC model gradually gaining in sophistication Current status MC model gradually gaining in sophistication Issue Safety-related

More information

Embedded System Design

Embedded System Design ĐẠI HỌC QUỐC GIA TP.HỒ CHÍ MINH TRƯỜNG ĐẠI HỌC BÁCH KHOA KHOA ĐIỆN-ĐIỆN TỬ BỘ MÔN KỸ THUẬT ĐIỆN TỬ Embedded System Design : Embedded System Overview 1. What is an embedded system? 2. Embedded system models

More information

European Standardization & Digital Transformation. Ashok GANESH Director Innovation ETICS Management Committee

European Standardization & Digital Transformation. Ashok GANESH Director Innovation ETICS Management Committee European Standardization & Digital Transformation Ashok GANESH Director Innovation ETICS Management Committee 2017-04-26 CEN-CENELEC Members Austria Estonia Hungary Malta Slovakia Belgium Finland Netherlands

More information

Enabling Increased Safety with Fault Robustness in Microcontroller Applications

Enabling Increased Safety with Fault Robustness in Microcontroller Applications Enabling Increased Safety with Fault Robustness in Microcontroller Applications Wayne Lyons ARM 110 Fulbourn Road Cambridge CB1 9NJ, England Abstract All safety-critical or high-reliability applications

More information

10 th AUTOSAR Open Conference

10 th AUTOSAR Open Conference 10 th AUTOSAR Open Conference Dr. Moritz Neukirchner Elektrobit Automotive GmbH Building Performance ECUs with Adaptive AUTOSAR AUTOSAR Nov-2017 Major market trends and their impact Trends Impact on E/E

More information

QUO VADIS RFID TECHNOLOGY?

QUO VADIS RFID TECHNOLOGY? QUO VADIS RFID TECHNOLOGY? EMERGING RFID TECHNOLOGY ROADMAP O. Vermesan, SINTEF, Oslo, Norway D. Grosso, Montalbano Technology, Genova,, Italy F. Dell'Ova,, ST Microelectronics, Rousset,, France C. Prior,

More information

Sensor Network Applications and In-Network Processing

Sensor Network Applications and In-Network Processing EE360: Lecture 16 Outline Sensor Network Applications and In-Network Processing Announcements 2nd summary due today 12am (1 day extension possible) Project poster session March 15 5:30pm (3 rd floor Packard)

More information

Wireless Sensor Networks. Application Domains. Crosslayer Protocol Design in Sensor Networks. Technology Thrusts. Wireless Sensor Networks

Wireless Sensor Networks. Application Domains. Crosslayer Protocol Design in Sensor Networks. Technology Thrusts. Wireless Sensor Networks EE360: Lecture 16 Outline Sensor Network Applications and In-Network Processing Announcements 2nd summary due today 12am (1 day extension possible) Project poster session March 15 5:30pm (3 rd floor Packard)

More information

Applying Multi-core and Virtualization to Industrial and Safety-Related Applications

Applying Multi-core and Virtualization to Industrial and Safety-Related Applications White Paper Wind River Hypervisor and Operating Systems Intel Processors for Embedded Computing Applying Multi-core and Virtualization to Industrial and Safety-Related Applications Multi-core and virtualization

More information

Next-Generation Distributed Satellite Bus Information Systems

Next-Generation Distributed Satellite Bus Information Systems What s Coming on Spacecraft: Next-Generation Distributed Satellite Bus Information Systems L. H. Miller, M. M. Gorlick, D. L. Wangerin, C. A. Landauer The Aerospace Corporation 29 February 2012 The Aerospace

More information

HW isolation for automotive environment BoF

HW isolation for automotive environment BoF HW isolation for automotive environment BoF Michele Paolino m.paolino@virtualopensystems.com AGL All Member Meeting 2016, 2016-09-07, Munich, Germany http://www.tapps-project.eu/ Authorship and sponsorship

More information

FUNCTIONAL SAFETY FOR INDUSTRIAL AUTOMATION

FUNCTIONAL SAFETY FOR INDUSTRIAL AUTOMATION FUNCTIONAL SAFETY FOR INDUSTRIAL AUTOMATION 2017.11 The term Functional Safety has become a topic of great interest. Functional Safety generally means that malfunctions of the operating systems or applications

More information

Communication (III) Kai Huang

Communication (III) Kai Huang Communication (III) Kai Huang Ethernet Turns 40 12/17/2013 Kai.Huang@tum 2 Outline Bus basics Multiple Master Bus Network-on-Chip Examples o SPI o CAN o FlexRay o Ethernet Basic OSI model Real-Time Ethernet

More information

Simplify rich applications & hard real-time

Simplify rich applications & hard real-time Boards & Solutions Conference 2012 Simplify rich applications & hard real-time F&S Elektronik Systeme GmbH Untere Waldplätze 23 D-70569 Stuttgart Tel. (+49)(0)711 123722-0 Speaker: Dipl.Ing.(FH) Martin

More information

Protocols for Aerospace Control Systems A Comparison of AFDX, ARINC 429, CAN, and TTP

Protocols for Aerospace Control Systems A Comparison of AFDX, ARINC 429, CAN, and TTP Protocols for Aerospace Controls Page 1 Protocols for Aerospace Control Systems A Comparison of AFDX, ARINC 429, CAN, and TTP A number of new and existing data buses are being proposed for use by aircraft

More information

Functional Safety and Safety Standards: Challenges and Comparison of Solutions AA309

Functional Safety and Safety Standards: Challenges and Comparison of Solutions AA309 June 25th, 2007 Functional Safety and Safety Standards: Challenges and Comparison of Solutions AA309 Christopher Temple Automotive Systems Technology Manager Overview Functional Safety Basics Functional

More information

ELEC 5260/6260/6266 Embedded Computing Systems

ELEC 5260/6260/6266 Embedded Computing Systems ELEC 5260/6260/6266 Embedded Computing Systems Spring 2019 Victor P. Nelson Text: Computers as Components, 4 th Edition Prof. Marilyn Wolf (Georgia Tech) Course Web Page: http://www.eng.auburn.edu/~nelsovp/courses/elec5260_6260/

More information

Autonomous Driving From Fail-Safe to Fail-Operational Systems

Autonomous Driving From Fail-Safe to Fail-Operational Systems Autonomous Driving From Fail-Safe to Fail-Operational Systems Rudolf Grave December 3, 2015 Agenda About EB Automotive Autonomous Driving Requirements for a future car infrastructure Concepts for fail-operational

More information

Adaptive AUTOSAR. Ready for Next Generation ECUs V

Adaptive AUTOSAR. Ready for Next Generation ECUs V Adaptive AUTOSAR Ready for Next Generation ECUs V0.4 2017-10-18 Introduction Being Prepared for the Next-Generation of ECUs Additional, high performance ECUs hosting applications for upcoming use cases

More information

Don t Be the Developer Whose Rocket Crashes on Lift off LDRA Ltd

Don t Be the Developer Whose Rocket Crashes on Lift off LDRA Ltd Don t Be the Developer Whose Rocket Crashes on Lift off 2015 LDRA Ltd Cost of Software Defects Consider the European Space Agency s Ariane 5 flight 501 on Tuesday, June 4 1996 Due to an error in the software

More information

AUTOBEST: A microkernel-based system (not only) for automotive applications. Marc Bommert, Alexander Züpke, Robert Kaiser.

AUTOBEST: A microkernel-based system (not only) for automotive applications. Marc Bommert, Alexander Züpke, Robert Kaiser. AUTOBEST: A microkernel-based system (not only) for automotive applications Marc Bommert, Alexander Züpke, Robert Kaiser vorname.name@hs-rm.de Outline Motivation AUTOSAR ARINC 653 AUTOBEST Architecture

More information

AS-i 3.0 Gateways, PROFIsafe via PROFIBUS or PROFINET

AS-i 3.0 Gateways, PROFIsafe via PROFIBUS or PROFINET safe via BUS or NET AS-i 3.0 Gateways, safe via NET or BUS 2 / 1 Master, NET / BUS Slave AS-i Safety input slaves report via safe AS-i Safety output slaves switch via safe Up to 32 release circuits up

More information

The CAN Bus From its Early Days to CAN FD By Friedhelm Pickhard (ETAS/P)

The CAN Bus From its Early Days to CAN FD By Friedhelm Pickhard (ETAS/P) By Friedhelm Pickhard (ETAS/P) 1 ETAS Introduction to ETAS Group ETAS Group Corporate Profile Founded 1994 Shareholder Headquarters 100 % Robert Bosch GmbH Stuttgart, Germany 18 additional offices worldwide

More information

S1.1: RESEARCH AND DEVELOPMENT IN EUROPE FOR COMPETITIVE MANUFACTURING. Competitiveness of Industry by means of Cross Fertilisation

S1.1: RESEARCH AND DEVELOPMENT IN EUROPE FOR COMPETITIVE MANUFACTURING. Competitiveness of Industry by means of Cross Fertilisation S1.1: RESEARCH AND DEVELOPMENT IN EUROPE FOR COMPETITIVE MANUFACTURING Competitiveness of Industry by means of Cross Fertilisation STORYLINE: FOCUS ON KEY ENABLERS FOR DISTRIBUTED INDUSTRIALS SYSTEMS HOW

More information