Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Common Cause Failure”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 91 records · Page 5

Regulation of sarcomere formation and function in the healthy heart requires a titin intronic enhancer

Heterozygous truncating variants in the sarcomere protein titin (TTN) are the most common genetic cause of heart failure. To understand mechanisms that regulate abundant cardiomyocyte (CM) TTN expression, we characterized highly conserved intron 1 sequences that exhibited dynamic changes in chromatin accessibility during differentiation of human CMs from induced pluripotent stem cells (hiPSC-CMs). Homozygous deletion of these sequences in mice caused embryonic lethality, whereas heterozygous mice showed an allele-specific reduction in Ttn expression. A 296 bp fragment of this element, denoted E1, was sufficient to drive expression of a reporter gene in hiPSC-CMs. Deletion of E1 downregulated TTN expression, impaired sarcomerogenesis, and decreased contractility in hiPSC-CMs. Site-directed mutagenesis of predicted binding sites of NK2 homeobox 5 (NKX2-5) and myocyte enhancer factor 2 (MEF2) within E1 abolished its transcriptional activity. In embryonic mice expressing E1 reporter gene constructs, we validated in vivo cardiac-specific activity of E1 and the requirement for NKX2-5- and MEF2-binding sequences. Moreover, isogenic hiPSC-CMs containing a rare E1 variant in the predicted MEF2-binding motif that was identified in a patient with unexplained dilated cardiomyopathy (DCM) showed reduced TTN expression. Together, these discoveries define an essential, functional enhancer that regulates TTN expression. Manipulation of this element may advance therapeutic strategies to treat DCM caused by TTN haploinsufficiency.

Kim, Yuri↗

High Reliability Requires More than Providing Spares

It is sometimes optimistically hoped that a space life support system can be kept working throughout a long duration mission by repairing failed components, as long as sufficient spares are flown. It is usually assumed that the components have constant known failure rates. Then the needed numbers of spares can be computed to have any particular probability that all failed components can be replaced by available spares. This approach can provide high reliability if its favorable assumptions, including constant known failure rates, are satisfied. Other favorable assumptions are that the failures are statistically independent, repair will be successful without causing further failures, and all failures are due to internal component failures. These assumptions are not usually justified. The failure rates may be estimates that are inadequately verified because of insufficient testing. Failure rates may change due to materials substitutions, manufacturing changes, redesigns to fix failures, and new failures caused by redesigns. Failures that are not statistically independent may result from one common cause, such as a design or manufacturing error or a cascade of cause and effect, possibly caused by an external event such as a power outage. Repair may be unsuccessful or cause damage. Many failures occur at component interfaces or at the overall systems level, not within isolated components. Other failures causes are completely external to the system, due to assembly, maintenance, and operational errors or to unexpected environmental challenges. Replacement with sufficient spares can compensate for expected internal component failures but may not be able to cope with unpredictable design and manufacturing flaws, human errors, and environmental impacts. Reliability estimates based on providing sufficient spares to compensate for expected failures may be far too high. They are essentially upper bounds on reliability that might be approached if many frequent but often unconsidered failure causes can be eliminated.

spares↗

Apollo experience report: The problem of stress-corrosion cracking

Stress-corrosion cracking has been the most common cause of structural-material failures in the Apollo Program. The frequency of stress-corrosion cracking has been high and the magnitude of the problem, in terms of hardware lost and time and money expended, has been significant. In this report, the significant Apollo Program experiences with stress-corrosion cracking are discussed. The causes of stress-corrosion cracking and the corrective actions are discussed, in terminology familiar to design engineers and management personnel, to show how stress-corrosion cracking can be prevented.

Johnson, R. E.↗

Cyber-Threat Assessment for the Air Traffic Management System: A Network Controls Approach

Air transportation networks are being disrupted with increasing frequency by failures in their cyber- (computing, communication, control) systems. Whether these cyber- failures arise due to deliberate attacks or incidental errors, they can have far-reaching impact on the performance of the air traffic control and management systems. For instance, a computer failure in the Washington DC Air Route Traffic Control Center (ZDC) on August 15, 2015, caused nearly complete closure of the Centers airspace for several hours. This closure had a propagative impact across the United States National Airspace System, causing changed congestion patterns and requiring placement of a suite of traffic management initiatives to address the capacity reduction and congestion. A snapshot of traffic on that day clearly shows the closure of the ZDC airspace and the resulting congestion at its boundary, which required augmented traffic management at multiple locations. Cyber- events also have important ramifications for private stakeholders, particularly the airlines. During the last few months, computer-system issues have caused several airlines fleets to be grounded for significant periods of time: these include United Airlines (twice), LOT Polish Airlines, and American Airlines. Delays and regional stoppages due to cyber- events are even more common, and may have myriad causes (e.g., failure of the Department of Homeland Security systems needed for security check of passengers, see [3]). The growing frequency of cyber- disruptions in the air transportation system reflects a much broader trend in the modern society: cyber- failures and threats are becoming increasingly pervasive, varied, and impactful. In consequence, an intense effort is underway to develop secure and resilient cyber- systems that can protect against, detect, and remove threats, see e.g. and its many citations. The outcomes of this wide effort on cyber- security are applicable to the air transportation infrastructure, and indeed security solutions are being implemented in the current system. While these security solutions are important, they only provide a piecemeal solution. Particular computers or communication channels are protected from particular attacks, without a holistic view of the air transportation infrastructure. On the other hand, the above-listed incidents highlight that a holistic approach is needed, for several reasons. First, the air transportation infrastructure is a large scale cyber-physical system with multiple stakeholders and diverse legacy assets. It is impractical to protect every cyber- asset from known and unknown disruptions, and instead a strategic view of security is needed. Second, disruptions to the cyber- system can incur complex propagative impacts across the air transportation network, including its physical and human assets. Also, these implications of cyber- events are exacerbated or modulated by other disruptions and operational specifics, e.g. severe weather, operator fatigue or error, etc. These characteristics motivate a holistic and strategic perspective on protecting the air transportation infrastructure from cyber- events. The analysis of cyber- threats to the air traffic system is also inextricably tied to the integration of new autonomy into the airspace. The replacement of human operators with cyber functions leaves the network open to new cyber threats, which must be modeled and managed. Paradoxically, the mitigation of cyber events in the airspace will also likely require additional autonomy, given the fast time scale and myriad pathways of cyber-attacks which must be managed. The assessment of new vulnerabilities upon integration of new autonomy is also a key motivation for a holistic perspective on cyber threats.

Complex Networks↗

Life prediction of aging aircraft wiring systems

The program goal is to develop a computerized life prediction model capable of identifying present aging progress and predicting end of life for aircraft wiring. A summary is given in viewgraph format of progress made on phase 1 objectives, which were to identify critical aircraft wiring problems; relate most common failures identified to the wire mechanism causing the failure; assess wiring requirments, materials, and stress environment for fighter aircraft; and demonstrate the feasibility of a time-temperature-environment model.

Slenski, George↗

Contamination and Radiation Effects on Nonlinear Crystals for Space Laser Systems

Space Lasers are vital tools for NASA s space missions and military applications. Although, lasers are highly reliable on the ground, several past space laser missions proved to be short-lived and unreliable. In this communication, we are shedding more light on the contamination and radiation issues, which are the most common causes for optical damages and laser failures in space. At first, we will present results based on the study of liquids and subsequently correlate these results to the particulates of the laser system environment. We present a model explaining how the laser beam traps contaminants against the optical surfaces and cause optical damages and the role of gravity in the process. We also report the results of the second harmonic generation efficiency for nonlinear optical crystals irradiated with high-energy beams of protons. In addition, we are proposing to employ the technique of adsorption to minimize the presence of adsorbing molecules present in the laser compartment.

Abdeldayem, Hossain A.↗

A Prognostic Launch Vehicle Probability of Failure Assessment Methodology for Conceptual Systems Predicated on Human Causal Factors

Create an improved method to calculate reliability of a conceptual launch vehicle system prior to fabrication by using historic data of actual root causes of failures. While failures have unique "proximate causes", there are typically a finite amount of common "root causes". Heretofore launch vehicle reliability evaluation typically hardware-centric statistical analyses, while most root causes of failures are been shown to be human-centric. A method based on human-centric root causes can be used to quantify reliability assessments and focus proposed actions to mitigate problems. Existing methods have been optimistic in their projections of launch vehicle reliability compared to actuals. Hypothesis: reliability of a conceptual launch vehicle can be more accurately evaluated based on a rational, probabilistic approach using past failure assessment teams' findings predicated on human-centric causes."Human Reliability Analysis Methods Selection Guidance for NASA"Chandler F.T., et al., NASA HQ/OSMA study group, July 2006. Outside HRA experts from academia, other federal labs, and the private sector. 50 system reliability methods considered, fourteen selected for further study, four finally selected as best suited for human spaceflight. Probabilistic Risk Analysis (PRA) + Human Reliability Analysis (HRA) enabled incorporating effects and probabilities of human errors. While four down-selected methods deemed appropriate for failure assessment, it did not appear that these methods could be concisely applied to perform major system-wide assessment of probability of failure of a conceptual design without becoming unwieldy."Engineering a Safer World", Detailed, comprehensive study external to NASA Leveson N. G., MIT, 2011.Systems-Theoretic Accident Model and Processes (STAMP). All-encompassing accident model based on systems theory analyzed accidents after they occurred and created approaches to prevent occurrence in developing systems not focused on failure prevention per se, but rather reducing hazards by influencing human behavior through use of constraints, hierarchical control structures, and process models to improve system safetySystem Theoretic Process Analysis (STPA) addresses predictive part of problem (a "hazard analysis"). Includes all causal factors identified in STAMP: "...design errors, software flaws, component interaction accidents, cognitively complex human decision-making errors, and social organizational and management factors contributing to accidents" can guide design process rather than require it to exist before-hand did not appear capable of concise application for system-wide assessment of probability of failure of a conceptual design without becoming unwieldy.

Williams, Craig H.↗

Productivity in an evolutionary space station

Space station productivity is treated from a systems point of view, considering the functions and attributes of space station development, formation, and operation that affect productivity. An optimum planning method is needed to assure that the station will have mission flexibility, technology advancement, maintainability, and evolutionary capability. Advanced technology will be designed into the housekeeping and utility functions of the station. Greater risk taking may be allowed into designs if the potential benefits of the advanced system support the risk, and if the system can be buffered from causing a failure cascade throughout the station. A common data base is needed to store and track all designs, developments, and changes in the station subsystems. Systems that can be automated and free the human inhabitants for more productive work are favored, as are modular components that are highly fault-free. Human control must also be possible, especially during check-out and verification, and also for teaching the automated systems new or modified tasks.

Anderson, J. L.↗

Proposed system safety design and test requirements for the microlaser ordnance system

Safety for pyrotechnic ignition systems is becoming a major concern for the military. In the past twenty years, stray electromagnetic fields have steadily increased during peacetime training missions and have dramatically increased during battlefield missions. Almost all of the ordnance systems in use today depend on an electrical bridgewire for ignition. Unfortunately, the bridgewire is the cause of the majority of failure modes. The common failure modes include the following: broken bridgewires; transient RF power, which induces bridgewire heating; and cold temperatures, which contracts the explosive mix away from the bridgewire. Finding solutions for these failure modes is driving the costs of pyrotechnic systems up. For example, analyses are performed to verify that the system in the environment will not see more energy than 20 dB below the 'No-fire' level. Range surveys are performed to determine the operational, storage, and transportation RF environments. Cryogenic tests are performed to verify the bridgewire to mix interface. System requirements call for 'last minute installation,' 'continuity checks after installation,' and rotating safety devices to 'interrupt the explosive train.' As an alternative, MDESC has developed a new approach based upon our enabling laser diode technology. We believe that Microlaser initiated ordnance offers a unique solution to the bridgewire safety concerns. For this presentation, we will address, from a system safety viewpoint, the safety design and the test requirements for a Microlaser ordnance system. We will also review how this system could be compliant to MIL-STD-1576 and DOD-83578A and the additional necessary requirements.

Stoltz, Barb A.↗

Facilitating Data Collection of Maintenance Events to Populate the Hydrogen Component Reliability Database (HyCReD)

The Hydrogen Component Reliability Database (HyCReD) is a collaborative project between the National Renewable Energy Laboratory, the University of Maryland, and hydrogen stakeholders to improve safety and reliability for hydrogen facilities by implementing component reliability data taxonomies that support hydrogen infrastructure failure rate analysis. The project aims to quantify failure rates of hydrogen components through high-quality data collection and analysis on root causes and maintenance needed. HyCReD provides a common database for cataloging hydrogen component failures which exists for reliability research in many other mature industries [2]. The database fills a gap for the hydrogen community by providing a scientifically rigorous approach to quantitative risk assessment (QRA), prognostic health management (PHM), and reliability-centered maintenance (RCM) analysis. High level results will be aggregated and anonymized to protect company sensitive information; detailed results will be used to help address issues of hydrogen components. These advanced analytics will support accelerated deployment of hydrogen infrastructure by enabling better: design and safety of projects (safety codes and standards development), infrastructure reliability and cost (component failure rates, maintenance protocols), and component R&D needs (robust supply chain). A key to a successful HyCReD implementation is facilitating the ease of reporting and data quality in the database that can be used for analysis. Maintenance data was a previously identified gap in initial efforts to populate and validate the database taxonomies [3]. Collection of maintenance data will be instrumental in identifying failure modes and rates, identifying incipient component failures or reduced performance, cataloging best practices for maintenance routines and methods for prognostic health management, and quantifying the risk and effect of different failure modes. Several key priorities are identified for streamlined data collection to achieve quality and detailed failure data: Applicability, Ease of Use, Accessibility, and Information Security. The HyCReD team has now begun deployment of the database to several companies and groups that have signed non-disclosure agreements to facilitate the data collection of failures in industry hydrogen refueling station infrastructure. This paper will provide an update into the process of HyCReD deployment including the development of a coding guide for facility personnel to reference and ensure data quality and consistency from one station to another as well as implementation of contextually dependent data fields of system taxonomy and formatted entries to provide ease of use. The goal is to communicate the lessons learned from the roll-out to technicians and engineers in the field, and the addition of need for high level of security to protect all stakeholders.

29 ENERGY PLANNING, POLICY, AND ECONOMY↗

​​Hydrogen Transportation and Distributed Energy Systems Seismic Risk Assessment for Cascadia Subduction Zone Airport Facilities​

Portland International Airport in Oregon is exploring operating a fleet of 28 fuel cell electric buses to support airport operations and possibly provide backup power during outages. In this report, we evaluate the risk of hydrogen deployment at an airport considering the potential for seismic activity. We present a seismic risk assessment for pressurized piping for a generic hydrogen refueling station at the airport. Only pressurized piping was considered in the risk analysis because of its vulnerability and availability of fragility information unlike the other components. Seismic capacity of other components should be included as more information becomes available. To characterize the seismic hazard, we considered the initiating event frequency of a Cascadia Subduction Zone earthquake event based on data from the literature. Seismic stressors that translate to the site from an earthquake event are expressed as peak ground acceleration. Site disturbance is characterized as a function of soil conditions, represented by different shear wave velocity values, which affect how seismic waves propagate and impact structures. Pipe fragility curves as a function of seismic capacity were used to correlate ground acceleration and failure probability. These fragility characteristics were combined with site-specific soil conditions to calculate the probability of pipe rupture during a seismic event. It should be noted that multiple simultaneous failures due to an earthquake event as a common cause are not considered. Some epistemic uncertainties such as self-exciting shocks, aftershocks, and the time variant nature of the ground motion are not considered either.

08 HYDROGEN↗

Spaceflight Over the Last Ten Years: Failures and Fix-ups 2013 - 2022 RAMS XV Conference

This project is an overview and analysis of the past ten years (2013 – present) in global spaceflight, highlighting the orbital launches of countries, particularly the failures that occurred, the reasons they occurred, and a breakdown of the related statistics and background information. The analysis is conducted from a perspective of reliability and maintainability engineering and Probabilistic Risk Assessment (PRA) to formulate a quantifiable understanding of the data and how it is pertinent to Safety and Mission Assurance (SMA) in spaceflight. There is a breakdown by country or group, timelines, and number of launches. The failures over the years are categorized, all given a broad analysis of subsystem failures and details of events. A few failures are given a more in-depth analysis of root causes and failure modes determined by their unique or common nature. The data is retrieved from online, publicly available sources.

Quinn Slaugenhoupt↗

A Multifunctional Coating for Autonomous Corrosion Control

Corrosion is a destructive process that often causes failure in metallic components and structures. Protective coatings are the most commonly used method of corrosion control. However, progressively stricter environmental regulations have resulted in the ban of many commercially available corrosion protective coatings due to the harmful effects of their solvents or corrosion inhibitors. This work concerns the development of a multifunctional, smart coating for the autonomous control of corrosion. This coating is being developed to have the inherent ability to detect the chemical changes associated with the onset of corrosion and respond autonomously to control it. The multi-functionality of the coating is based on microencapsulation technology specifically designed for corrosion control applications. This design has, in addition to all the advantages of other existing microcapsules designs, the corrosion controlled release function that allows the delivery of corrosion indicators and inhibitors on demand only when and where they are needed. Corrosion indicators as well as corrosion inhibitors have been incorporated into the microcapsules, blended into several paint systems, and tested for corrosion detection and protection efficacy.

Calle, Luz M.↗

A Multifunctional Smart Coating for Autonomous Corrosion Control

Corrosion is a destructive process that often causes failure in metallic components and structures. Protective coatings are the most commonly used method of corrosion control. However, progressively stricter environmental regulations have resulted in the ban of many commercially available corrosion protective coatings due to the harmful effects of their solvents or corrosion inhibitors. This work concerns the development of a multifunctional, smart coating for the autonomous control of corrosion. This coating is being developed to have the inherent ability to detect the chemical changes associated with the onset of corrosion and respond autonomously to control it. The multi-functionality of the coating is based on micro-encapsulation technology specifically designed for corrosion control applications. This design has, in addition to all the advantages of other existing microcapsules designs, the corrosion controlled release function that allows the delivery of corrosion indicators and inhibitors on demand only when and where needed. Corrosion indicators as well as corrosion inhibitors have been incorporated into microcapsules, blended into several paint systems, and tested for corrosion detection and protection efficacy. This

Calle, Luz Marina↗

Implementation and test of an automated control hunting fault correction algorithm in a fault detection and diagnostics tool

Control hunting due to improper proportional–integral–derivative (PID) parameters in the building automation system (BAS) is one of the most common faults identified in commercial buildings. It can cause suboptimal performance and early failure of heating, ventilation, and air conditioning (HVAC) equipment. Commercial fault detection and diagnostics (FDD) software represents one of the fastest growing market segments in smart building technologies in the United States. Implementation of PID retuning procedures as an auto-correction algorithm and integration into FDD software has the potential to mitigate control hunting across a heterogeneous portfolio of buildings with different BAS in a scalable way. This paper presents the development, implementation, and field testing of an automated control hunting fault correction algorithm based on lambda tuning open-loop rules. The algorithm was developed in a commercial FDD software and successfully tested among nine variable air volume boxes in an office building in the United States. The paper shows the feasibility of using FDD tools to automatically correct control hunting faults, discusses scalability considerations, and proposes a path forward for the HVAC industry and academia to further improve this technology.

32 ENERGY CONSERVATION, CONSUMPTION, AND UTILIZATI↗

A Technical Evaluation of Self-Protection Dose Rates in U.S. Domestic Nuclear Security Policy

U.S. nuclear security policy uses radiation self-protection as a basis for reducing material attractiveness, but existing dose-rate criteria may not reflect the time scales of theft or sabotage. This report evaluates whether the commonly cited 1 Gy/h at 1 m criterion can plausibly cause adversary task failure during short-duration malicious acts.

Fritchie, Jacob Wesley [Sandia National Laboratori↗

Delamination durability of composite materials for rotorcraft

Delamination is the most commonly observed failure mode in composite rotorcraft dynamic components. Although delamination may not cause immediate failure of the composite part, it often precipitates component repair or replacement, which inhibits fleet readiness, and results in increased life cycle costs. A fracture mechanics approach for analyzing, characterizing, and designing against delamination will be outlined. Examples of delamination problems will be illustrated where the strain energy release rate associated with delamination growth was found to be a useful generic parameter, independent of thickness, layup, and delamination source, for characterizing delamination failure. Several analysis techniques for calculating strain energy release rates for delamination from a variety of sources will be outlined. Current efforts to develop ASTM standard test methods for measuring interlaminar fracture toughness and developing delamination failure criteria will be reviewed. A technique for quantifying delamination durability due to cyclic loading will be presented. The use of this technique for predicting fatigue life of composite laminates and developing a fatigue design philosophy for composite structural components will be reviewed.

Obrien, T. Kevin↗

Implementation and Qualifications Lessons Learned for Space Flight Photonic Components

This slide presentation reviews the process for implementation and qualification of space flight photonic components. It discusses the causes for most common anomalies for the space flight components, design compatibility, a specific failure analysis of optical fiber that occurred in a cable in 1999-2000, and another ExPCA connector anomaly involving pins that broke off. It reviews issues around material selection, quality processes and documentation, and current projects that the Photonics group is involved in. The importance of good documentation is stressed.

Ott, Melanie N.↗