Specification of Health Monitoring, No.850, 2021-11
AUTOSAR R21-11記事一覧はこちら。
AUTOSAR 21-11,200文書読んだ。2022年5月にFO, AP, CP 全部到達。
AUTOSAR R21-11(0) 仕様ダウンロード一覧。単語帳。参考文献資料作成
用語(terms)
Term | Description |
---|---|
Alive Indication | An indication of a Supervised Entity to signal its aliveness by calling a checkpoint used for Alive Supervision. |
Alive Supervision | Kind of supervision that checks if a Supervised Entity executed in a correct frequency. |
Checkpoint | A point in the control flow of a Supervised Entity where the activity is reported. |
Deadline Supervision | Kind of supervision that checks if the execution time between two Checkpoints is within minimum/maximum time limit. |
Final Checkpoint | The ending Checkpoint of a Graph. There can be zero or more Final Checkpoints for each Graph. |
Global Supervision Status | Status that summarizes the Local Supervision Status of all Supervised Entities of a software subsystem. |
Graph | A set of Checkpoints connected through Transitions, where at |
least one of Checkpoints is an Initial Checkpoint. There is a path (through Transitions) between any two Checkpoints of the Graph. | |
Health Channel | Channel providing information about the health status of a (sub)system. This might be the Global Supervision Status of an application, the result any test routine or the status reported by a (sub)system (e.g. voltage monitoring, OS kernel, ECU status, ...). |
Health Channel Supervision | Kind of supervision that checks if the health indicators registered by the supervised software are within the tolerances/limits. |
Health Monitoring | Supervision of the software behaviour for correct timing and sequence. |
Health Status | A set of states that are relevant to the supervised software (e.g. a Voltage State, an application state, the result of a RAM monitoring algorithm). |
Health Status Supervision | Check if the health indicators registered by the supervised software are within the tolerances/limits. |
Initial Checkpoint | The starting Checkpoint of a Graph. There can be one or more Initial Checkpoints for each Graph. |
Logical Supervision | Kind of online supervision of software that checks if the software (Supervised Entity or set of Supervised Entities) is executed in the sequence defined by the programmer (by the developed code). |
Local Supervision Status | Status that represents the current result of Alive Supervision, Deadline Supervision and Logical Supervision of a single Supervised Entity. |
Machine | see [3] AUTOSAR Glossary |
Platform Health Management | Health Monitoring for the Adaptive Platform |
Supervised Entity | A whole or part of a software component type which is included in the supervision. A Supervised Entity denotes a collection of Checkpoints within the corresponding software component type. A software component type can include zero, one or more Supervised Entities. A Supervised Entity may be instantiated multiple times, in which case each instance is independently supervised. |
Supervision Mode | An overall state of a microcontroller or virtual machine or state of a Function Group (in case of Adaptive Platform). Modes are mutually exclusive. A mode can be e.g. Startup, Shutdown, Low power. |
Health Indicator | Health Indicator provides an evaluation metric of current system performance with regard to safety requirements. |
System Health Monitor(SHM) | System Health Monitor is responsible for monitoring the health of a (Sub)-system. It provides Health Indicators that can be used for system wide error handling across several Classic, Adaptive and any third party platforms. |
Local Health Monitor | Local Health Monitor gathers health information of the platform on which it is deployed. |
Health Indicator Interface | Health Indicator Interface is an interface used for communication of Health Indicators using a standardized service field. |
SE | Supervised Entity. |
SOTIF | Safety Of The Intended Functionality [4]. |
Performance | The Performance rates the performance with respect to malfunctioning behavior. |
Reliability | Reliability evaluates how much to trust the system due to uncertainties. |
英日
日本語は仮訳
T.B.D.
参考(reference)
[1] ISO 26262:2018 (all parts) – Road vehicles – Functional Safety
http://www.iso.org
[2] Requirements on Health Monitoring
AUTOSAR_RS_HealthMonitoring
[3] Glossary
AUTOSAR_TR_Glossary
[4] ISO/PAS 21448:2019 – Road vehicles – Safety of the intended functionality
http://www.iso.org
[5] Explanation of System Health Monitoring
AUTOSAR_EXP_SystemHealthMonitoring
[6] Specification of Watchdog Manager
AUTOSAR_SWS_WatchdogManager
[7] Specification of Platform Health Management
AUTOSAR_SWS_PlatformHealthManagement