Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Safety parameters”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 55 records · Page 3

Trade Space Analyses: Balancing Crew and Mission Design Parameters

In 2020, the Associate Administrator for Human Exploration and Operations and the Agency’s Federated Board requested an assessment to develop a methodology for trade space analysis comparing crew size for Mars missions against mission design parameters. The NASA Engineering and Safety Center (NESC) conducted an assessment to develop a methodology for systematic, repeatable trade space analysis for crew size and developed an initial set of human performance models and a list of candidate crew tasks for NASA’s first mission to Mars. This report contains the results of the NESC assessment.

Humans to Mars↗

Trade Space Analyses: Balancing Crew and Mission Design Parameters-Candidate Mars Master Task List

In 2020, the Associate Administrator for Human Exploration and Operations and the Agency’s Federated Board requested an assessment to develop a methodology for trade space analysis comparing crew size for Mars missions against mission design parameters. The NASA Engineering and Safety Center (NESC) conducted an assessment to develop a methodology for systematic, repeatable trade space analysis for crew size and developed an initial set of human performance models and a list of candidate crew tasks for NASA’s first mission to Mars. This report contains list of candidate crew tasks for Mars.

Crew Duties and Tasks↗

Investigating Surveillance Performance for UAS Detect-and-Avoid Systems

Most unmanned aircraft systems will be required to be equipped with a detect-and-avoid system that is capable of maintaining appropriate separation from other aircraft. One of the critical components of detect-and-avoid systems is a surveillance system that identifies potential threat aircraft in real time and tracks these aircraft so that their future trajectories may be used to predict conflicts. The performance of the detect-and-avoid system generally depends on technical parameters of the surveillance system, such as the surveillance range. The quantitative requirements for detect-and-avoid systems will be determined to meet safety metrics for the operation of unmanned aircraft systems in the National Airspace System. This study employs a sensor model comprised of the surveillance range, and horizontal and vertical fields of regard that mainly characterize the overall performance of a surveillance system. In this study, potential metrics for evaluating the performance of a surveillance system were investigated through fast-time simulation with a traffic scenario that included both proposed unmanned aircraft flights and historical visual flight rule aircraft tracks. Using the simulation results, an overall analysis of encounter geometry highlights the encounter characteristics that relate surveillance parameters to safety metrics and detect-and-avoid system performance. Then, given several candidate surveillance volumes, performance and safety metrics are derived; these metrics include the ratio of undetected and late-detected violations and the time to violation at first detection. These example metrics demonstrate the utility of the database of encounters created in this work, a database which will be useful in the derivation of required detect-and-avoid surveillance system requirements.

Lee, Seung Man↗

Preliminary design study of a regenerative life support system information management and display system

The instrumentation requirements for a regenerative life support systems were studied to provide the earliest possible indication of a malfunction that will permit degradation of the environment. Four categories of parameters were investigated: environmental parameters that directly and immediately influence the health and safety of the cabin crew; subsystems' inputs to the cabin that directly maintain the cabin environmental parameters; indications for maintenance or repair; and parameters useful as diagnostic indicators. A data averager concept is introduced which provides a moving average of parameter values that is not influenced by spurious changes, and is convenient for detecting parameter rates of change. A system is included to provide alarms at preselected parameter levels.

Parker, C. D.↗

Selection of wires and circuit protective devices for STS Orbiter vehicle payload electrical circuits

Electrical designers of Orbiter payloads face the challenge of determining proper circuit protection/wire size parameters to satisfy Orbiter engineering and safety requirements. This document is the result of a program undertaken to review test data from all available aerospace sources and perform additional testing to eliminate extrapolation errors. The resulting compilation of data was used to develop guidelines for the selection of wire sizes and circuit protection ratings. The purpose is to provide guidance to the engineering to ensure a design which meets Orbiter standards and which should be applicable to any aerospace design.

Gaston, Darilyn M.↗

Sensor technology for smart structures

Advanced aerospace structures are discussed that will very likely be fabricated with integral sensors, actuators, and microprocessors for monitoring and dynamic control of configuration. The concept of 'smart structures' integrates fiber-optic sensor technology with advanced composite materials, whereby the optical fibers are embedded in a composite material and provide internal sensing capability for monitoring parameters which are important for the safety, performance, and reliability of the material and the structure. Along with other research facilities, NASA has initiated a cooperative program to design, fabricate, and test composite trusses, tubes, and flat panels with embedded optical fibers for testing and developing prototype smart structures. It is shown that fiber-optic sensor technology can be combined with advanced material and structure concepts to produce a new class of materials with internal sensors for health monitoring of structures.

Rogowski, R. S.↗

Design for an integrated discipline operations control center for Space Station Freedom

This paper presents selected features of a human factors oriented plan for a Space Station Freedom (SSF) ground Discipline Operations Center (DOC) that is integrated with other work areas used by multidisciplinary life scientists. This combined facility is referred to as an integrated DOC or IDOC. This plan is based upon the assumption that there will be a constantly changing array of specialized equipment and procedures used by life sciences principal investigators (PI) on the ground which must be linked to SSF through various DOC systems. Other sites will also be able to communicate with SSF (Anon., 1992). It is also assumed that cost reduction will be a major design consideration and that one integrated structure will be less expensive to build and operate than two separate ones. Since both the DOC personnel and PIs will need to communicate with the flight crew aboard SSF, the general interconnect architecture of the PIs' communication linkage is considered here. Key human factor design elements of this plan include: a candidate facility layout which accommodates three (3), multipurpose, rapidly reconfigurable work areas (suites) and consequent user traffic flow considerations, a multimedia telecommunications support capability, functional (human) traffic flow, optimized internal illumination and acoustics requirements, selected volumetric and safety requirements, and other architectural design parameters.

Haines, Richard F.↗

Diffusion Flame Extinction in a Low Strain Flow

Diffusion flames are of great interest in fire safety and many industrial processes. Many parameters significantly affect the flame structure, shape and stability, of particular importance are the constraints imposed by geometrical boundaries. Physical boundaries determine the characteristics of the flow, affect heat, fuel, and oxidizer transport from and towards the flame and can act as heat sinks or heat sources. As a result, the existence of a flame, its shape and nature are intimately related to the geometrical characteristics of the environment that surrounds it. The counter-flow configuration provides a constant strain flow, therefore, is ideal to study the structure of diffusion flames. Most studies have concentrated on the high velocity, high strain limit, since buoyantly induced instabilities will disintegrate the planar flame as the velocity decreases. Only recently, experimental studies in micro-gravity conditions have begun to explore the low strain regimes. The main objective of these on-going studies is to determine the effect of radiative heat losses and variable strain on the structure and radiation-induced extinction of diffusion flames. For these programs, size, geometry, and experimental conditions have been chosen to keep the flame unaffected by the physical boundaries. Whether is the burning of condensed or gaseous fuels, for most real situations the boundaries impose a significant effect on the nature of the flame. There is, therefore, a need to better understand the effect that geometrical constraints (i.e. flow nonperpendicular to a fuel surface, heat losses to the boundaries, etc.) might have on the final characteristics of a diffusion flame. Preliminary experiments have shown that, in the absence of gravity, and depending on the distance from the flame to the boundary, three characteristically different regimes can be observed. Close to the boundary, the flame is parabolic, very thin and blue, almost soot-less. Diffusion is the main mechanism controlling fuel transport to the reaction zone, conduction towards the inlets is the main source of heat losses. As the distance increases the flame becomes linear and thickens, remaining blue at the oxidizer side and turning yellow at the fuel side. Here, convection brings fuel and oxidizer together and the reaction occurs in the viscous layer formed between the fuel and oxidizer streams. This region corresponds to the characteristic counter-flow flame where conduction and convection become negligible forms of heat losses and radiation becomes dominant. The flame in the third (mixed) region, between the two others, results from the combination of the scenarios presented above.

Sutula, Jason↗

Technology test bed engine real-time failure control

The Real-Time Failure Control (RTFC) program involves development of a failure detection algorithm, for the Space Shuttle Main Engine (SSME). This failure detection approach is signal-based and entails monitoring SSME measurement signals based on predetermined as well as on-line computed mean and standard deviation values. Twenty-four engine measurements are monitored in the algorithm and provisions are made to add more parameters if needed. Each of the first values of every measurement signal at the algorithm start is checked against safety limits placed around a pre-computed engine-to-engine mean value (MV) with a bandwidth equal to a given multiple of the pre-computed standard deviation (SD). If several parameters are out of the bounds of these limits a failure is signaled. During the first two seconds (after algorithm start) a moving average (MA) and a SD is computed on-line in real-time. The moving average of each parameter is computed by averaging the incoming signal measurement with the four most recent previous signal measurements. The moving average is updated at every sampling interval (40 msec) and is checked against a similar safety band around the initial signal value for each parameter. If several anomalies are registered, a failure is signaled by the algorithm. At the end of the two-second interval the MA is fixed as the mean value for the rest of the algorithm operation and a safety band is placed above and below this value equal to a multiple of the computed SD. However, the safety band is adjusted by adjusting the mean value when propellant tank repressurization and venting take place. 'Influence Coefficients' are used to make the necessary adjustments to the safety limits of those parameters that are affected by repressurization and venting or valve closure and opening. The MA is, in both cases, continuously updated and checked against the safety band. Once more, if several parameters exceed the limits a failure is signaled. At the start of every scheduled power transient the algorithm is stopped. It is re-initiated after two seconds from the termination of the power transient and the process is repeated. The final report is divided into four major sections. The most encompassing of all is the discussion section that has sub-sections on: (1) RTFC algorithm development, (2) RTFC simulations; (3) RTFC current limitations; and (4) enhancements planned for.

Panossian, Hagop V.↗

Investigating Detect-and-Avoid Surveillance Performance for Unmanned Aircraft Systems

Most unmanned aircraft systems will be required to be equipped with a Detect-and-Avoid (DAA) system with a surveillance component. The surveillance performance requirements of the DAA system to detect and track intruder aircraft will depend on the encounter geometries that unmanned aircraft are expected to have with other aircraft in the airspace. This presentation shows the analysis of the encounter geometries that were simulated using historical low-altitude traffic data and some proposed UAS missions. This analysis suggests how the overall safety and performance of a surveillance system may relate to surveillance parameters such as surveillance range, horizontal and vertical fields or regard. This study proposed and investigated potential safety and performance metrics for evaluating the performance of a surveillance system, such as the ratio of undetected and late-detected separation violations, and the time to violation at first detection for given sets of surveillance parameters.

UAS↗

Evaluation of Sensor Uncertainty Mitigation Methods for Detect-and-Avoid Systems

The impact of sensor noise on the performance of Detect-And-Avoid (DAA) systems can be reduced by implementing various mitigation schemes. This paper evaluates two such methods. One of them is the Sensor Uncertainty Mitigation (SUM) method, implemented in the Detect and Avoid Alerting Logic for Unmanned Systems (DAIDALUS) algorithm, a reference implementation in the DAA minimum operational performance standards. The second method is the Virtual Intruder State Aggregation (VISA), which averages multiple subsequent intruder states extrapolated to the current (most recent) time into a single ``aggregated`` intruder state. The VISA method can be used either individually as a sensor noise mitigation method in its own right, or in combination with DAIDALUS SUM. The performance of these methods is evaluated using three safety and operational suitability metrics and compared with a baseline configuration using static safety buffers. A large number of encounters representative of low-speed unmanned aircraft against non-cooperative manned aircraft, not equipped with a broadcasting transponder or ADS-B out system, are simulated and evaluated. An air-to-air radar model produces representative sensor noise for the DAA system. Results show that increasing the DAIDALUS SUM parameters for horizontal and vertical uncertainty improves the safety metric at the cost of increasing the number of actionable alerts leading to increased workload. A range of SUM parameters is recommended as suitable values for the type of operations considered for this work. VISA was found to be almost as effective as other noise mitigation methods even when it was used alone. Combining VISA with DAIDALUS SUM achieved the best performance among all investigated methods used with DAIDALUS. General trends and optimal SUM configurations were found to be nearly the same for two large and very different encounter data sets.

Detect-and-Avoid Systems↗

SP-100 space nuclear power system

A baseline design concept for a 100 kWe nuclear reactor space power system is described. The concept was developed under contract from JPL as part of a joint program of the DOE, DOD, and NASA. The major technical and safety constraints influencing the selection of reactor operating parameters are discussed. A lithium-cooled compact fast reactor was selected as the best candidate system. The material selected for the thermoelectric conversion system was silicon germanium (SiGe) with gallium phosphide doping. Attention is given to the improved safety of the seven in-core control rod configuration.

Given, R. W.↗

An Approach for Defining IASMS Services, Functions, and Capabilities

Assuring safety in the NAS with the inclusion of new entrants, such as Advanced Air Mobility (AAM), will require overcoming unique safety challenges that result from combining innovative technologies with novel airspace concepts for moving people and cargo using autonomous vehicles. The focus of the In-time Aviation Safety Management System (IASMS) is to overcome AAM’s safety assurance challenges. The IASMS Concept of Operations (ConOps) describes an interconnected set of services, functions, and capabilities (SFCs) designed to manage operational risks, identify unknown risks, and inform system designs. This paper describes an approach for defining SFCs based on technology trends in research, assessment of known and unknown risks in voluntary safety reports, and causal and contributing factors in aviation accidents and incidents. This approach would identify potential SFCs that further expand the Monitor, Assess, and Mitigate (M-A-M) functionality that represents the enabling framework of the IASMS. Safety implications that will result from integration of AAM in the transformation of the National Airspace System (NAS) were addressed in National Academies committees reports on AAM and IASMS. Development of a ConOps for IASMS was a top recommendation and can be represented as a reframing of safety assurance that builds on real-time alerting such as the Traffic Alert and Collision Avoidance System, and adds the more encompassing in-time temporal parameter in recognition of the different timelines for collecting and assessing safety data for risk mitigations. For example, mining for safety trends from data sources such as the Aviation Safety Information Analysis and Sharing system occurs over a longer time period. Research on AAM operations poses that SFCs can be designed to monitor the safety margin appropriate for AAM including with regards to the distance between current flight parameters and nominal ideal conditions. These in-time comparisons will become more complex as the density of operations increases at least in certain areas and can include planned and actual 4D trajectory, and in-time comparisons having implications on conflict modeling and prediction including expected and actual departure time, fix/waypoint crossing times, and arrival time. These comparisons would be integrated as part of SFCs that redefine and inform new safety margin. An increased safety margin improves management of operational risks while reducing the potential for anomalies. An increased safety margin also has implications for operator confidence in the certainty of its operations and trust in automation. Technology trends in research could be used to refine existing SFCs and define needs for additional SFCs that provide safety improvements to the design and operation of vehicles, airspace design, and operator performance requirements. NASA is developing innovative approaches to safeguard against major accidents and incidents that have occurred in the NAS and those anticipated with the inclusion of envisioned AAM operations. The innovations use operational performance data to monitor, detect, and predict flight variations exceeding safe nominal patterns, such as would be caused by navigational error, severe weather complications, or hijacking of UAS controls. These innovative approaches have high potential to prevent accidents and incidents in the new AAM era. It is anticipated that elements of the innovations will evolve into SFCs for the IASMS. Voluntary safety reports can be monitored to identify anomalies related to design or operational performance risks. Reports could be periodically monitored and assessed for specific topics. Reports might serve as weak signals or precursors indicative of emergent risk such as when combined with other safety information. The architecture could include SFCs that are based on voluntary safety reports recognizing the periodic temporal nature of data analysis. As previously mentioned, aviation accidents with their causal and contributing precursors can inform the need for SFCs in the IASMS. Accidents and incidents at San Francisco International Airport such as Asiana 214 and Air Canada 759 illustrate how combinations of different factors lead to increased risk. These types of precursors and different factors have implications on the types of SFCs that could be needed to monitor and manage different sources and types of design and operational risk. Continuing to assure the safety of AAM as designs and operations gain in complexity can be accompanied by defining SFCs that also increase in complexity. These SFCs can leverage information from findings and recommendations synthesized across on-going research, voluntary safety reports, and accident and incident reports. These SFCs can serve to refine accuracy of algorithms and resolve limitations with current practices. The IASMS architecture represents the framework for the SFCs and their critical role in safety assurance.

In-Time Aviation Safety Management System↗

An Interoperability Consideration in Selecting Domain Parameters for Elliptic Curve Cryptography

Elliptic curve cryptography (ECC) will be an important technology for electronic privacy and authentication in the near future. There are many published specifications for elliptic curve cryptosystems, most of which contain detailed descriptions of the process for the selection of domain parameters. Selecting strong domain parameters ensures that the cryptosystem is robust to attacks. Due to a limitation in several published algorithms for doubling points on elliptic curves, some ECC implementations may produce incorrect, inconsistent, and incompatible results if domain parameters are not carefully chosen under a criterion that we describe. Few documents specify the addition or doubling of points in such a manner as to avoid this problematic situation. The safety criterion we present is not listed in any ECC specification we are aware of, although several other guidelines for domain selection are discussed in the literature. We provide a simple example of how a set of domain parameters not meeting this criterion can produce catastrophic results, and outline a simple means of testing curve parameters for interoperable safety over doubling.

Ivancic, Will↗

Applying Sensor Uncertainty Mitigation Schemes to Detect-and-Avoid Systems

Impact of sensor noise on the performance of Detect-And-Avoid (DAA) systems can be reduced by implementing various mitigation schemes. This paper evaluates the Sensor Uncertainty Mitigation (SUM) method, implemented in the Detect and Avoid Alerting Logic for Unmanned Systems (DAIDALUS) algorithm, a reference implementation in the DAA minimum operational performance standards. DAIDALUS SUM performance is evaluated using a few safety and operational suitability metrics and compared with more traditional approaches using static safety buffers. A large number of encounters representative of low-speed unmanned aircraft against non-cooperative manned aircraft are simulated and evaluated. An air-to-air radar model produces representative sensor noise for the DAA system. Results show that increasing the tunable parameters for horizontal and vertical uncertainty in DAIDALUS SUM improves the safety metric at the cost of increasing the number of system alerts leading to increased workload. A range of SUM parameters is recommended as suitable values for the type of operations considered for this work. General trends and optimal SUM configurations were found to be nearly the same for two large and very different encounter data sets.

detect and avoid↗

Fog dispersion

A study of economically viable techniques for dispersing warm fog at commercial airports is presented. Five fog dispersion techniques are examined: evaporation suppression, downwash, mixing, seeding with hygroscopic material, thermal techniques, and charged particle techniques. Thermal techniques, although effective, were found to be too expensive for routine airport operations, and detrimental to the environment. Seeding or helicopter downwash are practical for small-scale or temporary fog clearing, but are probably not useful for airport operations on a routine basis. Considerable disagreement exists on the capability of charged particle techniques, which stems from the fact that different assumptions and parameter values are used in the analytical models. Recommendations resulting from the review of this technique are listed, and include: experimental measurements of the parameters in question; a study to ascertain possible safety hazards, such as increased electrical activity or fuel ignition during refueling operations which could render charged particle techniques impractical; and a study of a single charged particle generator.

Frost, W.↗

Thunderstorm hazards flight research - Program overview

The NASA thunderstorm hazards research program, designed to study the effects of lightning strikes on the design and operation of aircraft, is described. An all-weather F-106B is instrumented to document the EM characteristics of direct and nearby strikes, measure the field parameters and analyze the ambient atmospheric content, and film the strikes; X-ray detectors are also on board, along with instrumentation for determining the frequency of visible light waveforms. Data is either recorded on-board or sent by telemetry to base, while ground based telemetry is used to direct the pilot and craft into regions of optimal lightning activity. The sensing apparatus is described, and ongoing programs to correlate different storm parameters are reviewed, along with operational procedures and safety precautions. Continued use of the craft through 152 storms and 16 direct hits, with no fatalities or circuit breaker throw, confirms the ability of metal skinned aircraft to withstand lightning strikes; data gathered from flights during 1980 are provided.

Deal, P. L.↗