Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Simulink model”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 127 records · Page 7

Dynamic Modeling of Off-Nominal Operation in Advanced Life Support Systems

System failures, off-nominal operation, or unexpected interruptions in processing capability can cause unanticipated instabilities in Advanced Life Support (ALS) systems, even long after they are repaired. Much current modeling assumes ALS systems are static and linear, but ALS systems are actually dynamic and nonlinear, especially when failures and off nominal operation are considered. Modeling and simulation provide a way to study the stability and time behavior of nonlinear dynamic ALS systems under changed system configurations or operational scenarios. The dynamic behavior of a nonlinear system can be fully explored only by computer simulation over the full range of inputs and initial conditions. Previous simulations of BIO-Plex in SIMULINK, a toolbox of Matlab, were extended to model the off-nominal operation and long-term dynamics of partially closed physical/chemical and bioregenerative life support systems. System nonlinearity has many interesting potential consequences. Different equilibrium points may be reached for different initial conditions. The system stability can depend on the exact system inputs and initial conditions. The system may oscillate or even in rare cases behave chaotically. Temporary internal hardware failures or external perturbations in ALS systems can lead to dynamic instability and total ALS system failure. Appropriate control techniques can restore reliable operation and minimize the effects of dynamic instabilities due to anomalies or perturbations in a life support system.

Jones, Harry↗

Certifying Auto-Generated Flight Code

Model-based design and automated code generation are being used increasingly at NASA. Many NASA projects now use MathWorks Simulink and Real-Time Workshop for at least some of their modeling and code development. However, there are substantial obstacles to more widespread adoption of code generators in safety-critical domains. Since code generators are typically not qualified, there is no guarantee that their output is correct, and consequently the generated code still needs to be fully tested and certified. Moreover, the regeneration of code can require complete recertification, which offsets many of the advantages of using a generator. Indeed, manual review of autocode can be more challenging than for hand-written code. Since the direct V&V of code generators is too laborious and complicated due to their complex (and often proprietary) nature, we have developed a generator plug-in to support the certification of the auto-generated code. Specifically, the AutoCert tool supports certification by formally verifying that the generated code is free of different safety violations, by constructing an independently verifiable certificate, and by explaining its analysis in a textual form suitable for code reviews. The generated documentation also contains substantial tracing information, allowing users to trace between model, code, documentation, and V&V artifacts. This enables missions to obtain assurance about the safety and reliability of the code without excessive manual V&V effort and, as a consequence, eases the acceptance of code generators in safety-critical contexts. The generation of explicit certificates and textual reports is particularly well-suited to supporting independent V&V. The primary contribution of this approach is the combination of human-friendly documentation with formal analysis. The key technical idea is to exploit the idiomatic nature of auto-generated code in order to automatically infer logical annotations. The annotation inference algorithm itself is generic, and parametrized with respect to a library of coding patterns that depend on the safety policies and the code generator. The patterns characterize the notions of definitions and uses that are specific to the given safety property. For example, for initialization safety, definitions correspond to variable initializations while uses are statements which read a variable, whereas for array bounds safety, definitions are the array declarations, while uses are statements which access an array variable. The inferred annotations are thus highly dependent on the actual program and the properties being proven. The annotations, themselves, need not be trusted, but are crucial to obtain the automatic formal verification of the safety properties without requiring access to the internals of the code generator. The approach has been applied to both in-house and commercial code generators, but is independent of the particular generator used. It is currently being adapted to flight code generated using MathWorks Real-Time Workshop, an automatic code generator that translates from Simulink/Stateflow models into embedded C code.

Denney, Ewen↗

Proceedings of the Second NASA Formal Methods Symposium

This publication contains the proceedings of the Second NASA Formal Methods Symposium sponsored by the National Aeronautics and Space Administration and held in Washington D.C. April 13-15, 2010. Topics covered include: Decision Engines for Software Analysis using Satisfiability Modulo Theories Solvers; Verification and Validation of Flight-Critical Systems; Formal Methods at Intel -- An Overview; Automatic Review of Abstract State Machines by Meta Property Verification; Hardware-independent Proofs of Numerical Programs; Slice-based Formal Specification Measures -- Mapping Coupling and Cohesion Measures to Formal Z; How Formal Methods Impels Discovery: A Short History of an Air Traffic Management Project; A Machine-Checked Proof of A State-Space Construction Algorithm; Automated Assume-Guarantee Reasoning for Omega-Regular Systems and Specifications; Modeling Regular Replacement for String Constraint Solving; Using Integer Clocks to Verify the Timing-Sync Sensor Network Protocol; Can Regulatory Bodies Expect Efficient Help from Formal Methods?; Synthesis of Greedy Algorithms Using Dominance Relations; A New Method for Incremental Testing of Finite State Machines; Verification of Faulty Message Passing Systems with Continuous State Space in PVS; Phase Two Feasibility Study for Software Safety Requirements Analysis Using Model Checking; A Prototype Embedding of Bluespec System Verilog in the PVS Theorem Prover; SimCheck: An Expressive Type System for Simulink; Coverage Metrics for Requirements-Based Testing: Evaluation of Effectiveness; Software Model Checking of ARINC-653 Flight Code with MCP; Evaluation of a Guideline by Formal Modelling of Cruise Control System in Event-B; Formal Verification of Large Software Systems; Symbolic Computation of Strongly Connected Components Using Saturation; Towards the Formal Verification of a Distributed Real-Time Automotive System; Slicing AADL Specifications for Model Checking; Model Checking with Edge-valued Decision Diagrams; and Data-flow based Model Analysis.

Munoz, Cesar↗

Simulink-Based Simulation Architecture for Evaluating Controls for Aerospace Vehicles (SAREC-ASV)

The Simulation Architecture for Evaluating Controls for Aerospace Vehicles (SAREC-ASV) is a Simulink-based approach to providing an engineering quality desktop simulation capability for finding trim solutions, extracting linear models for vehicle analysis and control law development, and generating open-loop and closed-loop time history responses for control system evaluation. It represents a useful level of maturity rather than a finished product. The layout is hierarchical and supports concurrent component development and validation, with support from the Concurrent Versions System (CVS) software management tool. Real Time Workshop (RTW) is used to generate pre-compiled code for substantial component modules, and templates permit switching seamlessly between original Simulink and code compiled for various platforms. Two previous limitations are addressed. Turn around time for incorporating tabular model components was improved through auto-generation of required Simulink diagrams based on data received in XML format. The layout was modified to exploit a Simulink "compile once, evaluate multiple times" capability for zero elapsed time for use in trimming and linearizing. Trim is achieved through a Graphical User Interface (GUI) with a narrow, script definable interface to the vehicle model which facilitates incorporating new models.

Christhilf, David m.↗

A Multibody Slosh Analysis for the Lunar Reconnaissance Orbiter

The Lunar Reconnaissance Orbiter (LRO) undergoes a series of thruster maneuvers to attain lunar orbit. The first of the series of lunar orbit insertion (LOI) maneuvers is crucial to the success of the mission. Therefore, it is important to characterize the disturbances acting on the spacecraft during this phase of the mission. This paper focuses on the internal disturbance force caused by fuel slosh and its impact on attitude control. During the first LOI maneuver (LOI-1), approximately 50% of the total fuel mass is used or roughly 25% of the spacecraft s wet mass, during the 38-minute burn. The forces imparted on the spacecraft from the fuel are dependent on the fill level of the two fuel tanks. During LOI-1, the fill level in both tanks varies greatly and thus so does the disturbance level caused by the fuel. It is therefore necessary to account for the time-varying mass properties of the spacecraft and the effects of the varying fuel levels during the entire 38-minute maneuver. Two simulations are developed in Mathworks s Simulink to analyze the fuel slosh effect. The first model, a baseline model, is a rigid body dynamics model where the fuel slosh is not modeled. The second is a multibody model, developed using a multibody dynamics toolbox, where each of the two fuel tanks and the remaining spacecraft body are treated as separate rigid bodies. The simulations are executed in a piece-wise fashion to account for the time-varying mass properties, and to accommodate the multibody toolbox. Disturbances caused by fuel slosh during both lunar and mission orbit insertions will be analyzed through simulation of different dynamics models. Results of the analysis will show the effects of the slosh disturbance on the spacecraft s attitude.

Shah, Neerav↗

Dynamical Modeling and Control Simulation of a Large Flexible Launch Vehicle

This paper presents dynamical models of a large flexible launch vehicle. A complete set of coupled dynamical models of propulsion, aerodynamics, guidance and control, structural dynamics, fuel sloshing, and thrust vector control dynamics are described. Such dynamical models are used to validate NASA s SAVANT Simulink-based program which is being used for the preliminary flight control systems analysis and design of NASA s Ares-1 Crew Launch Vehicle. SAVANT simulation results for validating the performance and stability of an ascent phase autopilot system of Ares-1 are also presented.

Du, Wei↗

An Introduction to Transient Engine Applications Using the Numerical Propulsion System Simulation (NPSS) and MATLAB

This document outlines methodologies designed to improve the interface between the Numerical Propulsion System Simulation framework and various control and dynamic analyses developed in the Matlab and Simulink environment. Although NPSS is most commonly used for steady-state modeling, this paper is intended to supplement the relatively sparse documentation on it's transient analysis functionality. Matlab has become an extremely popular engineering environment, and better methodologies are necessary to develop tools that leverage the benefits of these disparate frameworks. Transient analysis is not a new feature of the Numerical Propulsion System Simulation (NPSS), but transient considerations are becoming more pertinent as multidisciplinary trade-offs begin to play a larger role in advanced engine designs. This paper serves to supplement the relatively sparse documentation on transient modeling and cover the budding convergence between NPSS and Matlab based modeling toolsets. The following sections explore various design patterns to rapidly develop transient models. Each approach starts with a base model built with NPSS, and assumes the reader already has a basic understanding of how to construct a steady-state model. The second half of the paper focuses on further enhancements required to subsequently interface NPSS with Matlab codes. The first method being the simplest and most straightforward but performance constrained, and the last being the most abstract. These methods aren't mutually exclusive and the specific implementation details could vary greatly based on the designer's discretion. Basic recommendations are provided to organize model logic in a format most easily amenable to integration with existing Matlab control toolsets.

Matlab↗

Modeling of a Stewart Platform for Analyzing One Directional Dynamics for Spacecraft Docking Operations

A one-directional dynamic model of a Stewart Platform was developed to assist NASA in analyzing the dynamic response in spacecraft docking operations. A simplified mechanical drawing was created, capturing the physical structure's main features. A simplified schematic diagram was developed in a lumped mass model from the mechanical drawing. Three differential equations were derived according to the schematic diagram. A Simulink diagram was created using MATLAB to represent the three equations. System parameters, including spring constants and masses, are derived in detail from the physical system. The model can be used for further analysis via computer simulation in predicting dynamic response in its main docking direction, i.e., up-and-down motion.

Stewart Platform↗

Developing a Multi-Lingual Autocoding Interface for the MAVERIC-II Dynamics Simulator

Simulation model development in certain high-level languages such as Python, MATLAB, or Simulink are unparalleled by their convenience and rapid turnover time. However, legacy simulation engines often depend on more traditional languages such as FORTRAN or C/C++. The NASA Marshall Aerospace Vehicle Representation in C version II (MAVERIC-II) is a modular, legacy-derived computer program used for high-fidelity, 6 degree-of-freedom (6dof) simulation for aerospace vehicle flights and analyses of guidance and control performance with built-in mathematical modeling of environmental effects such as wind, atmosphere, and gravity as well as dispersion capability for Monte Carlo analysis. MAVERIC-II is modular in the sense that each component software element of the simulation engine may be supplanted for a higher or lower fidelity version. The design flow of the development of these models is often performed in high-level languages as mentioned previously, which must then be translated into C or C++ code to be integrated into MAVERIC-II. We propose a unified method of autocoding and interfacing between several languages and MAVERIC-II, which may be generalized further to any type of 6dof simulation engine.

Mason Nixon↗

Developing a Multilingual Auto-coding Interface Control for the MAVERIC-II Dynamics Simulator

Simulation model development in certain high-level languages such as Python, MATLAB, or Simulink are unparalleled by their convenience and rapid turnover time. However, legacy simulation engines often depend on more traditional languages such as FORTRAN or C/C++. The NASA Marshall Aerospace Vehicle Representation in C version II (MAVERIC-II) is a modular, legacy-derived computer program used for high-fidelity, 6 degree-of-freedom (6DOF) simulation for aerospace vehicle flights and analyses of guidance and control performance with built-in mathematical modeling of environmental effects such as wind, atmosphere, and gravity as well as dispersion capability for Monte Carlo analysis. MAVERIC-II is modular in the sense that each component software element of the simulation engine may be supplanted for a higher or lower fidelity version. The design flow of the development of these models is often performed in high-level languages as mentioned previously, which must then be translated into C or C++ code to be integrated into MAVERIC-II. Using principles of model-based design, we propose a unified method of auto-coding and interfacing between several languages and MAVERIC-II, which may be generalized further to any type of 6DOF simulation engine.

Mason Nixon↗

Runtime Monitoring with R2U2 for Aircraft Systems with Neural Networks

R2U2 (Realizable, Responsive, Unobtrusive Unit) is a hardware-supported tool and framework for real-time system monitoring and software health management of cyber-physical systems. During system operation, R2U2 continuously monitors properties about safety, performance, and security of the vehicle and its vital components and can perform diagnostic reasoning. Efficient observers for past-time and future-time Metric Temporal Logic, fast reasoners for Bayesian Networks, and model-based prognostics algorithms are key components of R2U2 and designed for minimal computational footprint. R2U2 has been implemented in software supporting ROS, NASA's cFS/cFE, and Simulink and as an FPGA configuration. The synergistic combination of monitors and observers in R2U2 makes it possible to design powerful models for system runtime monitoring, diagnostics, software health management, prognostics, and security monitoring. In this presentation, I will give a detailed overview of the R2U2 architecture and its features and will discuss the application of R2U2 for safety-monitoring of a neural-network based autonomous centerline tracking system (ACT) for autonomous aircraft.

Runtime Monitoring↗

Propellant Slosh Analysis for the Solar Dynamics Observatory

The Solar Dynamics Observatory (SDO) mission, part of the Living With a Star program, is a geosynchronous satellite with tight pointing requirements. Due to a large amount of liquid propellant, a detailed slosh analysis is required to ensure the tight pointing budget can be satisfied. Much of the high fidelity slosh analysis and simulation has been performed via computational fluid dynamics. Even though this method of simulation is very accurate, it requires significant computational effort and specialized knowledge, limiting the ability of the SDO project to access fluid dynamics simulations at will. Furthermore, it is very difficult to incorporate most of these models into simulations of the overall spacecraft and its environment. Ultimately, the effects of the propellant slosh on the attitude stability and pointing performance of the entire spacecraft are of great interest to attitude control engineers. Equivalent mechanical models, such as models that approximate the fluid slosh effects by analogy to the movements of a point-mass pendulum, are important tools in simulating propellant slosh dynamics as part of the entire attitude determination and control system. This paper describes some of the current methods used to analyze and model slosh. It focuses on equivalent mechanical models and their incorporation into control-based analysis tools such as Simulink. The SDO mission is used as the case study for this work.

Mason, Paul A. C.↗

Developing A Dependable Multi-Agent Rover Swarm Using cFS

The future of space exploration lies in cooperative autonomous systems. Ensuring their high integrity remains a challenge. The Robust Software Engineering group at NASA Ames Research Center has been developing the Troupe project to explore the challenges with developing and assuring high integrity of cooperative autonomous robotic systems. In particular, Troupe aims to develop a swarm of autonomous rovers capable of mapping unknown terrain and assure their high integrity using the advanced V&V tools developed in the group. In this paper, we present the evolution of the design of Troupe. We focus on the lessons learned in developing and assuring the rover swarm using core Flight System (cFS). In particular, we discuss the benefits and challenges in applying model-based development to develop the rover swarm.

space systems↗

Developing A Dependable Multi-Agent Rover Swarm Using cFS

The future of space exploration lies in cooperative autonomous systems. Ensuring their high integrity remains a challenge. The Robust Software Engineering group at NASA Ames Research Center has been developing the Troupe project to explore the challenges with developing and assuring high integrity of cooperative autonomous robotic systems. In particular, Troupe aims to develop a swarm of autonomous rovers capable of mapping unknown terrain and assure their high integrity using the advanced V&V tools developed in the group. In this paper, we present the evolution of the design of Troupe. We focus on the lessons learned in developing and assuring the rover swarm using core Flight System (cFS). In particular, we discuss the benefits and challenges in applying model-based development to develop the rover swarm.

space systems↗

2024 Incubator Final Report: Active Hybrid Mooring

This Incubator project has defined and developed a representation of an active hybrid mooring (AHM) system in Simulink to assess whether the speed and accuracy of AHM is sufficient to warrant further investigation in a larger project. We first built a representative mooring system for the VolturnUS-S 15MW floating offshore wind turbine (FOWT) in 1,000-meter water depth to provide baseline loads and displacements needed in the AHM system, with the results showing off-the-shelf actuators would be practical. We then defined model configurations for the numerical and physical substructures, using standalone MoorDyn v2 with a novel input strategy and chained hydraulic actuators represented in Simulink Simscape, respectively. The remainder of the project has focused on verifying the existing models for speed and accuracy against OpenFAST simulations, increasing their complexity to enable six degree of freedom (6DOF) operation, and connecting the numerical and physical substructures into a single holistic model. The verification phase of the project has shown promising results, though further refinement is needed to resolve accuracy discrepancies and for robust performance across a wider range of metocean conditions. The numerical model we developed is computationally stable and operates faster than real time using a time step of 0.01 seconds or shorter, indicating the model is likely fast enough for our AHM design to operate successfully. Additionally, the Simscape model of a hydraulic actuator operates with less than 0.3% relative error when actuating mooring loads from an OpenFAST simulation of the VolturnUS-S 1,000-meter mooring system. The aforementined refinements will be performed in the next year as a Continuing Incubator, with key remaining tasks include programming the predictor-corrector loop to minimize movement error, testing against more complex nonlinear wave cases, and expanding to enable loads from connected shared mooring lines.

17 WIND ENERGY↗

Simulating the dynamic interaction of a robotic arm and the Space Shuttle remote manipulator system

Industrial robots are usually attached to a rigid base. Placing the robot on a compliant base introduces dynamic coupling between the two systems. The Vehicle Emulation System (VES) is a six DOF platform that is capable of modeling this interaction. The VES employs a force-torque sensor as the interface between robot and base. A computer simulation of the VES is presented. Each of the hardware and software components is described and Simulink is used as the programming environment. The simulation performance is compared with experimental results to validate accuracy. A second simulation which models the dynamic interaction of a robot and a flexible base acts as a comparison to the simulated motion of the VES. Results are presented that compare the simulated VES motion with the motion of the VES hardware using the same admittance model. The two computer simulations are compared to determine how well the VES is expected to emulate the desired motion. Simulation results are given for robots mounted to the end effector of the Space Shuttle Remote Manipulator System (SRMS). It is shown that for fast motions of the two robots studied, the SRMS experiences disturbances on the order of centimeters. Larger disturbances are possible if different manipulators are used.

Garrahan, Steven L.↗

Verification of the Generalized Aerospace Simulation in Simulink (R)

NASA uses six-degrees-of-freedom (6-DOF) simulations tools to design, test, develop Guidance Navigation and Control (GN&C) software, and certify vehicle performance prior to flight. Therefore, it is critical that the 6-DOF tools used for vehicle design and certification are validated. The focus of this work is the vali-dation of the NASA Marshall Space Flight Center 6-DOF “GeneraLized Aero-space Simulation in Simulink” (GLASS) framework tool. The GLASS tool framework is currently used to support NASA GN&C insight for the Human Landing System (HLS) project, simulating vehicle dynamics during lunar descent and as-cent. The GLASS framework utilizes the off-the-shelf Mathworks ® Simscape Multibody® toolbox to model vehicle multi-body dynamics. NASA’s Engineering and Safety Center (NESC) provides a set of 6-DOF simulation verification “check cases” that are available to any user needing to verify 6-DOF tools. The check cases contain seventeen atmospheric and twenty-six orbital test scenarios are provided to validate equations of motion, environmental models (e.g., atmosphere, gravitation, and geodesy) and tool propagators. This paper compares GLASS 6-DOF simulation results against the NESC check cases’ results via simulation-to-simulation comparisons. The comparisons demonstrate that GLASS simulation results are “in family” with the outputs of the applicable NASA NESC check cases and verifies the GLASS core framework dynamics and the correct implementation of the check case scenario models.

6-Dof↗