Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Tolerant”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 109 records · Page 6

Fuel containment and damage tolerance in large composite primary aircraft structures

Technical problems related to fuel containment and damage tolerance of composite material wings for transport aircraft was investigated. The major tasks are the following: (1) the preliminary design of damage tolerant wing surface using composite materials; (2) the evaluation of fuel sealing and lightning protection methods for a composite material wing; and (3) an experimental investigation of the damage tolerant characteristics of toughened resin graphite/epoxy materials. The design concepts investigated for the upper and lower surfaces of a composite wing for a transport aircraft are presented and the relationship between weight savings and the design allowable strain used within the analysis is discussed. Experiments which compare the fuel sealing characteristics of bolt-bonded joints and bolted joints sealed with a polysulphide sealant are reviewed. Data from lightning strike tests on stiffened and unstiffened graphite/epoxy panels are presented. A wide variety of coupon tests were conducted to evaluate the relative damage tolerance of toughened resin graphite/epoxies. Data from these tests are presented and their relevance to the wing surface design concepts are discussed.

Griffin, C. F.↗

Study of fault tolerant software technology for dynamic systems

The major aim of this study is to investigate the feasibility of using systems-based failure detection isolation and compensation (FDIC) techniques in building fault-tolerant software and extending them, whenever possible, to the domain of software fault tolerance. First, it is shown that systems-based FDIC methods can be extended to develop software error detection techniques by using system models for software modules. In particular, it is demonstrated that systems-based FDIC techniques can yield consistency checks that are easier to implement than acceptance tests based on software specifications. Next, it is shown that systems-based failure compensation techniques can be generalized to the domain of software fault tolerance in developing software error recovery procedures. Finally, the feasibility of using fault-tolerant software in flight software is investigated. In particular, possible system and version instabilities, and functional performance degradation that may occur in N-Version programming applications to flight software are illustrated. Finally, a comparative analysis of N-Version and recovery block techniques in the context of generic blocks in flight software is presented.

Caglayan, A. K.↗

A fault-tolerant software strategy for digital systems

Techniques developed for producing fault-tolerant software are described. Tolerance is required because of the impossibility of defining fault-free software. Faults are caused by humans and can appear anywhere in the software life cycle. Tolerance is effected through error detection, damage assessment, recovery, and fault treatment, followed by return of the system to service. Multiversion software comprises two or more versions of the software yielding solutions which are examined by a decision algorithm. Errors can also be detected by extrapolation from previous results or by the acceptability of results. Violations of timing specifications can reveal errors, or the system can roll back to an error-free state when a defect is detected. The software, when used in flight control systems, must not impinge on time-critical responses. Efforts are still needed to reduce the costs of developing the fault-tolerant systems.

Hitt, E. F.↗

Ultrareliable fault-tolerant control systems

It is demonstrated that fault-tolerant computer systems, such as on the Shuttles, based on redundant, independent operation are a viable alternative in fault tolerant system designs. The ultrareliable fault-tolerant control system (UFTCS) was developed and tested in laboratory simulations of an UH-1H helicopter. UFTCS includes asymptotically stable independent control elements in a parallel, cross-linked system environment. Static redundancy provides the fault tolerance. A polling is performed among the computers, with results allowing for time-delay channel variations with tight bounds. When compared with the laboratory and actual flight data for the helicopter, the probability of a fault was, for the first 10 hr of flight given a quintuple computer redundancy, found to be 1 in 290 billion. Two weeks of untended Space Station operations would experience a fault probability of 1 in 24 million. Techniques for avoiding channel divergence problems are identified.

Webster, L. D.↗

Cardiovascular dynamics associated with tolerance to lower body negative pressure

The purpose of this investigation was to identify cardiovascular responses associated with tolerance to lower body negative pressure (LBNP). Eighteen men, ages 29-51 years, were categorized as high (HT) or low (LT) LBNP-tolerant based on a graded presyncopal-limited LBNP exposure criterion of -60 mm Hg relative to ambient pressure. Groups were matched for physical characteristics and pre-LBNP cardiovascular measurements, with the exceptions of greater (p less than 0.05) end-diastolic volume and cardiac output in the HT group. During peak LBNP, cardiac output was similar in both groups, although the HT group displayed a greater heart rate (p less than 0.05). In both groups, venous return appeared to limit cardiac output resulting in decreased arterial pressure. Tolerance to LBNP did not appear solely dependent on the absolute amount of blood pooled in the legs since the HT group demonstrated a greater (p less than 0.05) peak LBNP-induced increase in midthigh-leg volume. Greater tolerance to LBNP was associated with a larger pre-LBNP cardiac output reserve and higher compensatory increases in heart rate and peripheral resistance.

Sather, T. M.↗

Study of fault-tolerant software technology

Presented is an overview of the current state of the art of fault-tolerant software and an analysis of quantitative techniques and models developed to assess its impact. It examines research efforts as well as experience gained from commercial application of these techniques. The paper also addresses the computer architecture and design implications on hardware, operating systems and programming languages (including Ada) of using fault-tolerant software in real-time aerospace applications. It concludes that fault-tolerant software has progressed beyond the pure research state. The paper also finds that, although not perfectly matched, newer architectural and language capabilities provide many of the notations and functions needed to effectively and efficiently implement software fault-tolerance.

Slivinski, T.↗

A conceptual basis for the design of damage-tolerant structural systems

Researchers define damage-tolerant structural systems as those systems which not only have adeqate intact strength to withstand initial failure but also adequate residual strength to minimize the possibility of, and hence the consequences of, further failure. The incorporation of damage tolerance cannot be done in total isolation of the function being required of the system and the costs associated with obtaining improved damage tolerance. The approach, therefore, is to formulate multiple-objective, multi-level decision support problems (DSP), the solutions of which represent a compromise between higher costs and higher damage tolerance. Mulitple-objective decision support problems are easily solved in the linear domain. These formulations, however, include both linear and nonlinear constraints and goals, which in the past, have not been considered due to the resulting complexity. Here, researchers: (1) present a complete discussion and description of decision support problems; (2) identify what further research needs to be done in order to obtain information that is required but not known for solving problems using these models; and (3) identify what needs to be done to implement this prototype method in practice.

Mistree, F.↗

Evaluation of reliability modeling tools for advanced fault tolerant systems

The Computer Aided Reliability Estimation (CARE III) and Automated Reliability Interactice Estimation System (ARIES 82) reliability tools for application to advanced fault tolerance aerospace systems were evaluated. To determine reliability modeling requirements, the evaluation focused on the Draper Laboratories' Advanced Information Processing System (AIPS) architecture as an example architecture for fault tolerance aerospace systems. Advantages and limitations were identified for each reliability evaluation tool. The CARE III program was designed primarily for analyzing ultrareliable flight control systems. The ARIES 82 program's primary use was to support university research and teaching. Both CARE III and ARIES 82 were not suited for determining the reliability of complex nodal networks of the type used to interconnect processing sites in the AIPS architecture. It was concluded that ARIES was not suitable for modeling advanced fault tolerant systems. It was further concluded that subject to some limitations (the difficulty in modeling systems with unpowered spare modules, systems where equipment maintenance must be considered, systems where failure depends on the sequence in which faults occurred, and systems where multiple faults greater than a double near coincident faults must be considered), CARE III is best suited for evaluating the reliability of advanced tolerant systems for air transport.

Baker, Robert↗

Fault-free performance validation of fault-tolerant multiprocessors

A validation methodology for testing the performance of fault-tolerant computer systems was developed and applied to the Fault-Tolerant Multiprocessor (FTMP) at NASA-Langley's AIRLAB facility. This methodology was claimed to be general enough to apply to any ultrareliable computer system. The goal of this research was to extend the validation methodology and to demonstrate the robustness of the validation methodology by its more extensive application to NASA's Fault-Tolerant Multiprocessor System (FTMP) and to the Software Implemented Fault-Tolerance (SIFT) Computer System. Furthermore, the performance of these two multiprocessors was compared by conducting similar experiments. An analysis of the results shows high level language instruction execution times for both SIFT and FTMP were consistent and predictable, with SIFT having greater throughput. At the operating system level, FTMP consumes 60% of the throughput for its real-time dispatcher and 5% on fault-handling tasks. In contrast, SIFT consumes 16% of its throughput for the dispatcher, but consumes 66% in fault-handling software overhead.

Czeck, Edward W.↗

Analysis of typical fault-tolerant architectures using HARP

Difficulties encountered in the modeling of fault-tolerant systems are discussed. The Hybrid Automated Reliability Predictor (HARP) approach to modeling fault-tolerant systems is described. The HARP is written in FORTRAN, consists of nearly 30,000 lines of codes and comments, and is based on behavioral decomposition. Using the behavioral decomposition, the dependability model is divided into fault-occurrence/repair and fault/error-handling models; the characteristics and combining of these two models are examined. Examples in which the HARP is applied to the modeling of some typical fault-tolerant systems, including a local-area network, two fault-tolerant computer systems, and a flight control system, are presented.

Bavuso, Salvatore J.↗

Effect of longitudinal physical training and water immersion on orthostatic tolerance in men

The effect of six months of moderately intense aerobic training on 60-deg head-up tilt tolerance was assessed before and after 6 hrs of water-immersion deconditioning by comparing the orthostatic and fluid-electrolyte-endocrine responses of five male subjects before and after these tests. It was found that six months of training has no significant effect on 60-deg head-up tilt tolerance. Thus, during pretraining, the water immersion tilt-tolerance was found to decrease from about 74 min before to 34 min after water immersion, while during posttraining, water immersion tilt tolerance decreased from 74 min to 44 min. Fluid-electrolyte-endocrine responses were also essentially the same during all four tilts. Plasma volume decreased by 9.0 to 12.6 percent; plasma sodium and osmotic concentrations were unchanged; and serum protein and plasma renin activity increased.

Greenleaf, J. E.↗

Study of a unified hardware and software fault-tolerant architecture

A unified architectural concept, called the Fault Tolerant Processor Attached Processor (FTP-AP), that can tolerate hardware as well as software faults is proposed for applications requiring ultrareliable computation capability. An emulation of the FTP-AP architecture, consisting of a breadboard Motorola 68010-based quadruply redundant Fault Tolerant Processor, four VAX 750s as attached processors, and four versions of a transport aircraft yaw damper control law, is used as a testbed in the AIRLAB to examine a number of critical issues. Solutions of several basic problems associated with N-Version software are proposed and implemented on the testbed. This includes a confidence voter to resolve coincident errors in N-Version software. A reliability model of N-Version software that is based upon the recent understanding of software failure mechanisms is also developed. The basic FTP-AP architectural concept appears suitable for hosting N-Version application software while at the same time tolerating hardware failures. Architectural enhancements for greater efficiency, software reliability modeling, and N-Version issues that merit further research are identified.

Lala, Jaynarayan↗

Hardware and software fault tolerance - A unified architectural approach

The loss of hardware fault tolerance which often arises when design diversity is used to improve the fault tolerance of computer software is considered analytically, and a unified design approach is proposed to avoid the problem. The fundamental theory of fault-tolerant (FT) architectures is reviewed; the current status of design-diversity software development is surveyed; and the FT-processor/attached-processor (FTP/AP) architecture developed by Lala et al. (1986) is described in detail and illustrated with diagrams. FTP/AP is shown to permit efficient implementation of N-version FT software while still tolerating random hardware failures with very high coverage; the reliability is found to be significantly higher than that of conventional majority-vote N-version software.

Lala, Jaynarayan H.↗

Tolerating failures of continuous-valued sensors

One aspect of fault tolerance in process control programs is the ability to tolerate sensor failure. A methodology for transforming a process control program that cannot tolerate sensor failures onto one that can is presented. Issues addressed include modifying specifications in order to accommodate uncertainty in sensor values and averaging sensor values in a fault tolerant manner. In addition, a hierarchy of sensor failure models is identified, and both the attainable accuracy and the run-time complexity of sensor averaging with respect to this hierarchy is discussed.

Marzullo, Keith↗

Effect Of Bed Rest On Tolerance To Acceleration

Report describes experimental comparative study of tolerance of aerobically fit men and sedentary men to +Gz acceleration. Designed to confirm or deny previous observations that long-term aerobic training reduces tolerance to acceleration. Data accumulated in study showed decrease in tolerance to acceleration caused by deconditioning effect of bed rest more pronounced in fit men than in sedentary men. Suggests physically fit people need additional measures to reduce loss of tolerance to acceleration during microgravity exposure.

Goldwater, Danielle J.↗

Evaluating the effect of accuracy ratios on the percent of calibrations which are out of tolerance

The standard practice in calibration laboratories across the country, including the Measurement Standards and Calibration Laboratory (MSCL) at the Johnson Space Center, is to use accuracy ratios to determine if instruments are in-tolerance rather than computing the actual uncertainty associated with the instruments. In the past, the accepted practice was to use an accuracy ratio of 10:1, but then state of the art advanced to the point where the 10:1 ratio could no longer be maintained, and the ratio was arbitrarily lowered to 4:1. It is now becoming increasingly difficult to maintain the 4:1 accuracy ratio, and in some cases 1:1 is the best that can be achieved. However, the effect of using these small accuracy ratios on the number of mistakes made in classifying instruments as in or out of tolerance is completely unknown. In order to assess the effect of using accuracy ratios in calibration, a simulation program was written to compute the proportion of instruments determined to be out of tolerance which were actually in, denoted by alpha, and the proportion of instruments determined to be in-tolerance which were actually out, denoted by beta. This was done for accuracy ratios of 1:1 and 10:1, for one to five progressive calibrations, under varying standard and instrument conditions. Selected results are presented and explained.

Navard, Sharon E.↗

A verified design of a fault-tolerant clock synchronization circuit: Preliminary investigations

Schneider demonstrates that many fault tolerant clock synchronization algorithms can be represented as refinements of a single proven correct paradigm. Shankar provides mechanical proof that Schneider's schema achieves Byzantine fault tolerant clock synchronization provided that 11 constraints are satisfied. Some of the constraints are assumptions about physical properties of the system and cannot be established formally. Proofs are given that the fault tolerant midpoint convergence function satisfies three of the constraints. A hardware design is presented, implementing the fault tolerant midpoint function, which is shown to satisfy the remaining constraints. The synchronization circuit will recover completely from transient faults provided the maximum fault assumption is not violated. The initialization protocol for the circuit also provides a recovery mechanism from total system failure caused by correlated transient faults.

Miner, Paul S.↗

Probabilistic evaluation of on-line checks in fault-tolerant multiprocessor systems

The analysis of fault-tolerant multiprocessor systems that use concurrent error detection (CED) schemes is much more difficult than the analysis of conventional fault-tolerant architectures. Various analytical techniques have been proposed to evaluate CED schemes deterministically. However, these approaches are based on worst-case assumptions related to the failure of system components. Often, the evaluation results do not reflect the actual fault tolerance capabilities of the system. A probabilistic approach to evaluate the fault detecting and locating capabilities of on-line checks in a system is developed. The various probabilities associated with the checking schemes are identified and used in the framework of the matrix-based model. Based on these probabilistic matrices, estimates for the fault tolerance capabilities of various systems are derived analytically.

Nair, V. S. S.↗