Hello TI Support!
We are currently working on a safety project.
The Hercules controller is used in this safety application with real-time requirements.
Certification should be SIL3 according to 61508.
We have read the safety manual (document number SPNU551A) and found much information about possible test measures for all the different parts of the controller.
In the application, real-time means, that actions have to be performed every 40 us!
Therefore, we are afraid, that we will have trouble with different CPU and SRAM tests during runtime.
- Every CPU test needs at least 15,xx us and after this, we have a processor reset and need additional time to come back to the state before reset.
- SRAM test needs at least 2,6 ms per block?!
- SRAM ECC can be used, but it is not written, if this is sufficient for SIL3. It is not written, what DC is reached.
- It is also not written, if the SRAM ECC must be tested and how this can be done.
In appendix B.3 it is written, that the “Definition of MCU safety requirements” is performed by TI.
Therefore my question is, how this definition is performed?
What information do you need from us?
Or can you tell us, what minimum tests must be performed to achieve SIL3?
Or are there any other documents? (Our customer has a NDA with you...)
Kind regards and thanks in advance,
Andreas Rickert