ML091050332

From kanterella
Jump to navigation Jump to search
Encl. 5 to Supplemental Request for Additional Information for License Amendment Request for Reactor Protective System/Engineered Safeguards Protective System Digital Upgrade, Technical Specification Change Number 2007-09
ML091050332
Person / Time
Site: Oconee  Duke Energy icon.png
Issue date: 04/03/2009
From:
Duke Energy Carolinas
To:
Office of Nuclear Reactor Regulation
References
Download: ML091050332 (23)


Text

TSC 2007-09, Supplement 15 April 3, 2009 Page 1 Enclosure 5- Non-Proprietary AREVA NP and Duke Documents

1. AREVA NP presentation entitled TELEPERM XS On-line Self-monitoring (non-proprietary version
2. ISTec and TUV Nord Certificate No. TXS-SUE-0802-02 for the Digital Safety Instrumentation and Control System TELEPERM XS Software: Self Test, Version 2.00, dated August 14, 2002
3. OSC-8623, Revision 11, Oconee Nuclear Station Unit 1 RPS and ESFAS System Functional Description

_J1

>AREVA NP GmbH ° TELEPERMXS Self-monitoiing, NLTD-G 2008-12-08 *.}AREIVA NP nonpropnietan.y

TELE7PERM XS On-line Selfomonitorng

.

  • T-U!"111

>AREVA NP GmbH , TELEPERM XS Self-monitoting. NL TD-G 2008-12-08 @AREVA NP nonproprfeta,"y

Onine moonFeatureS

( Ovre~rview

> Self-test of CPU module: > Exception-Handler:

  • Startup self-test Cyclic self-test

> Watchdog

> Cabinetmonitoring device:

> Errordetection by the runtime environment:

> Engineered monitoringfeatures

> AREVA NP GmbH - 'TELEPERMXSSelf-monitoring, NLTD-G 200 8-12-08 © AREVA NP nonproprietary

CPU Self-test Software Purpose and structure

> Automatically checks the operabilityof CPU board hardware

> Running on each CPU IMduring startup 0 "start-upself-test" executing the full scope of implemented self-tests M cyclically during operation 0 "cyclic self-test", implemented in the self-test task (backgroundprocess)

Cyclic sequence of individual test-steps processed during phase 8 of the CPU processing cycle 0 Contains those kinds of implemented self-tests, which can be performed during cyclic operation of the CPU AREVA NP GmbH TELEPERMXS Self-monitoring. NLTD-G 2008-12-08 ýiDAREVA NP nonproprietary 4

TELEPERM XS Operation Strictly Cyclic Processing I Read Input Data

~Service Tas~ks activation of input drivers m activation of receive channels 7 Write Output-Data.

" activation of output drivers Input Checks of Messages

" activation of send channels CRC check sequence check Prepare Output Messages CRC computation 3 Function Diagram Group sequence increment Input Function 5 Function Diagram Group Output Function I Typical Cycle Time: 50 ms I

> AREVA NP GmbH TELEPERMXS Self-monitoring. NLTD-G 2008-12-08 @' AREVA NP nonproprietary 5

CPU Startup Self-test and Cyclic Self-oest Scope of tests (1)

Test startup selftest cyclic selftest type of test

_______ .1 ____ 1

_____ 1 2008-12-08 © A~FVA NP not tprophetary TEL EPERMXS Self-monitoring. NLTD-G

> AREVA NP GmbH ARE VA NP GmbH - I TELEPERMXS Self-monitoring. NLFD-G 2008-12-08 -,c.- AREVA NP nonproprietary

Startup Self-test and Cyclic Self-test Scope of tests (2)

Test startup selftest cyclic selftest type of test

+

4 4. +

.4 4. +

> AREVA NP GmbH

  • TELEPERMXS Self-monitoring, NLTD-2A 2008-12-08 ,Q AREVA NP nonproprietary

Design of Cyclic Self-test Task 2008-12-08 © ARE VA NP nonpropuietan, S ARE VA NP AREVA GmbH -

NP GmbH TELEPERMXS Self-monitoring, TEL.EPERMXS NLTD-G Self-monitoring, NLTD-G 2008-12-08 AREVA NP nonproprietary

-ýcD

Cyclic Self-tests under Interrupt Disable (DI)

DI times measured for SVE2 Self-Test Mask binary Mask HEX DI time [jis]

4 4 4.

4 4 1" 4 4 .4-2008-12-08 © ARE VA NP nonpropnetany 9

> ARE

> AREVA NP Gm~H VA NP GmbH - TELEPERM KS Self-monitoring.

TELEPERMXS NL TO-G Self-monitoring. NLTD-G 2008-12-08 AREVA NP nonproprietary

ýKD

On-line Self-monitoring Features Watchdog

  • Clocked by oscillatorthat is independent from the processorclock oscillator
  • Triggered once every processingcycle
  • In case of watchdog activation:

EM activate exception handler 2OO8~12-O8 0 ARE VA NP nonproprietary 10 ARE VA NP

> AREVA GmbH

  • PJPGmbH TELEPERMXS Seff-monitoring.

TELEPERMXS NLTD-G Self-monitoring,NLTD-G 2008-12-08 cl AREVA NP nonproprietary 10

On-line Self-monit oring Features ErrorDetection by the Runtime Environment (1)

> System errors detected during the cycle activities are indicated on the TXS service unit error codes description i

> Fault indication (errorflag) also available on the level of engineered function diagrams (via FB RTE-OUTPUT)

> The system errormessages are described in the TELEPERM XS system platform user documentation AREVA NP GmbH -,i EL-PERMXS Self-monitoring. NL TD-G 2008-12-08 AREVA NP nonpropactary 1i i

On-line Self-monitoring Features ErrorDetection by the Runtime Environment (2)

> Communication Monitorina:

2008-12-08 © ARE VA NP nonproprietaly 12

> ARE NP GmbH' VA IVP AREVA GmbH - TELEPERMXS Self-monitoring.

TELEPERMXS NLTD-G Self-monitoring. NLTD-G 2008-12-08 -3c AREVA NP nonproprietary 12

rOrion bntimenvo ErrorDetection by the Runtime Environment (3) n Features AREVA NP GmbH - TELEPERMXS Self-monitoring, NLTD-G 2008-12-08 AREIVA NP nonproprierary 13

On-line Self-monitorng Features Cabinet Monitoring Device

> BASP/WDG alarm > SBGx fan monitoring alarm r

Cabinet door monitoring alarm

-I Plug-in monitoring alarm Power supply monitoring r

> AREVA NP GmbH

  • TELEPERMXS Self-monitoring. NLTD-G 2008-12-08 ,ý(DAREVA NP nonproprietary 14

On-line Self-monitoring Features EngineeredMonitoring Features

> AREVA NP GmbH - TELEPERMXS Self-monitoring. NLTD-G 2008-12-08 AREVA NP nonpropfietary

,ýcD 15

Purpose of Self-omnitorng Features 2008-12-08 © APE VA NP non proprietan/ 16 ARE VA NP AREVA GmbH ,

NP GmbH TELEPERMXS Self-monitoring.

TELEPERMXS NLTD-G Self-monitoring, NLTD-G 2008-12-08 16

'D AREVA NP nonproprietary

Indication of Self-monitoring Features Failures

> The Runtime Environment (RTE) continuously monitors the operation of the cyclic self-test.

> The communication partners monitor the cyclic operation of the RTE, based on age monitoring of received messages.

© ARE VA NP nonproprietan/ 17 NLTD-G Self-monitoring. NL TD-G XS Self-monitoring, 2008-12-08 ARE VA NP

> AREVA GmbH -

NP GmbH TELEPERM XS TELEPERM 2008-12-08 (t,)'AREVA NP nonproprietary 17

On-line Self-omnitoring Features Cannot CorruptSafety Functions in the operating TELEPERM X.S applications, the cyclic self-test has never degradedthe safety function.

AREVA NP GmbH , TELEPERMXS Self-monitoring. NLTD-G 2008-12-08 Cc' AREVA NP nonpropfietary 18

.0-

!Srec Certificate for the Digital Safety Instrumentation and Control System TELEPERM XS Software Certificate No.: TXS-SUE-0802-02 SW-Component: Self test, V2.00 dated 29.06.2001, (List of documents, module names and versions as well as CRC sums: see appendices 1 to 3)

Manufacturer: Siemens AG, I&S IS EDM D&D Kind of Test: Type test analogous to KTA 3503 and in compliance with IEC 60880 including evaluation of the test runs performed in a test environment Test Report: "Supplementary technical test report on the type test of the Self Test for Computers of the Digital Safety I&C System TELEPERM XS", V2.00, ISTec GmbH Garching and TOV Nord Hamburg, August 2002 Requirements: see test report Orderer: Bayerisches Staatsministerium fir Landesentwicklung und Umweltfragen Main Contractor: Institut ffir Sicherheitstechnologie (ISTec) GmbH, Garching Project Management: Institut fJr Sicherheitstechnologie (ISTec) GmbH, Garching Test Laboratory: Institut fOr Sicherheitstechnologie (ISTec) GmbH, Garching TOV Nord e.V., Hamburg Test Period: September 2001 till August 2002 Test Result: The test has been passed according to the test report above.

Datum: 1 4 th August 2002 Assessor:

A. Lindner E.-U. Mainka Project Leader: ...... a y. .........

M. Kersken (ISTec)

z~

!Srec Certificate for the Digital Safety Instrumentation and Control System TELEPERM XS Software Certificate No: TXS-SUE-0802-02 Appendix 1: Development documents:

SILT-Lastenheft Selbst0berwachung V 1.00 22.06.94 Pflichtenheft Selbstuberwachung fOr Rechner in der V 2.00 19.05.00 digitalen Sicherheitsleittechnik Design-/Implementierungsunterlage Selbst0berwachung V 2.00 13.09.01 fOr Rechner in der digitalen Sicherheitsleittechnik Testspezifikation Selbst0berwachung fOr Rechner in der V 2.00 20.09.01 digitalen Sicherheitsleittechnik Erganzung Testspezifikation ,Selbst(Jberwachung for V 2.00 17.10.01 Rechner in der digitalen Sicherheitsleittechnik Testbericht SelbstUberwachung fOr Rechner in der V 1.03 06.07.01 digitalen Sicherheitsleittechnik Appendix 2: List of the C- and Assembler source files of the Self Test for Computers of the Digital I&C System TELEPERM XS with status (latest date in the file header and versions no.):

C modules: Include files:

S_BGRPO.C (15.01.98, V1.00) S_UTIL.H (15.01.98, V1.00)

S_BRUECK.C (15.01.98, V1.00) S_TEST.H (05.04.01, V2.00)

S_BWD.C (15.01.98, V1.00) S_CONFIG.H (21.02.01, V2.00)

S_CRC.C (27.03.96, V1.00)

S_EA.C (22.05.00, V2.00)

[Srec Certificate for the Digital Safety Instrumentation and Control System TELEPERM XS Software Certificate No: TXS-SUE-0802-02 C modules: C modules:

S_FLASH.C (22.05.00, V2.00) S_TIM.C (29.06.01, V2.00)

S_GEOPAR.C (27.03.96, V1.00) S_UTIL.C (15.01.98, V1.00)

S IOR.C (27.03.00, V2.00) SAKSP.C (15.01.98, V1.00)

SLED.C (15.01.98, V1.00) SAMain.C (05.04.01, V2.00)

S_NDP.C (15.01.98, V1.00) SASCC.C (15.01.98, V1.00)

S_RAM.C (15.01.98, V1.00) SAVIR.C (27.03.96, V1.00)

S_SIR.C (27.03.96, V1.00) SB_KSP.C (27.03.96, V1.00)

S_SPAD.C (15.01.98, V1.00) SBMain.C (29.06.01, V2.00)

S_SYSPO.C (13.05.97, V1.00) SB_SSC.C (05.04.01, V2.00)

S_TCount.C (29.06.00, V2.00) SZMain.C (05.04.01, V2.00)

Assembler modules A_UTIL.AH (27.03.96, V1.00)

A_UTIL.ASM (27.03.96, V1.00)

S_CPU.ASM (15.01.98, V1.00)

SBSTRT.ASM (27.03.96, V1.00)

Z

[STeC Certificate for the Digital Safety Instrumentation and Control System TELEPERM XS Software Certificate No: TXS-SUE-0802-02 Appendix 3: CRC sums and sizes in bytes: Self Test for Computers of the Digital i&C System TELEPERM XS with status (latest date in the file header and versions no.):

Modules: Version: Date: Size in bytes: CRC sums:

S_CONFIG.H V 2.00 21.02.2001 5.261 D870 S_TEST.H V 2.00 05.04.2001 38.167 OBEA S_BASIS.LNK V 2.00 29.06.2001 24.975 63FE S_CTRL.LNK V 2.00 05.04.2001 62.302 B2C5