PFD = 2 * λDU * TI </p></li><li><p>λDU=2378E−09failures/hr,TI=8760hr</p></li><li><p> PFD = (2 * 2378 E-09) * 8760 = 1.04 E-02 </p></li></ul><h5id="strcalculation">STRCalculation</h5><ul><li>STRSISisthesumofSTRcalculationsforeachcomponent(Table4formulas).</li></ul><h6id="examplepressuretransmitter1oo1architecture">Example:PressureTransmitter(1oo1Architecture)</h6><ul><li> STR = λS + λDD </li><li>λDD=750E−09failures/hr,λS=250E−09failures/hr</li><li> STR = (750 E-09 + 250 E-09) = 1.00 E-06 </li></ul><h5id="silratingdetermination">SILRatingDetermination</h5><ul><li>UsingTable5,basedoncomponenttype,architecture,andSFFrating.ThelowestSILratingcomponentcounts.</li></ul><h6id="examplesafetyplc">Example:SafetyPLC</h6><ul><li><p>TypeBcomponent,1oo1architecture(HFTof0).</p></li><li><p>SFF = 1 - (λDU / λ) </p></li><li><p>λDU=7E−09failures/hr</p></li><li><p>λ=λDD+λDU+λS=(509E−09)+(7E−09)+(990E−09)=1.51E−06</p></li><li><p> SFF = 1 - (7E-09 / 1.51E-06) = 1 - 0.005 = 0.995 or99.5<li><p>HFTof0andSFFof99.5</ul><h5id="prooftestingconstraints">ProofTestingConstraints</h5><ul><li>YearlyprooftestingrequiredforESDvalveandpressuretransmitter,butdesignlacksbypassforonlinetesting.</li><li>Logicsolverprooftestingcanbedoneduringplannedthree−yearshutdowns.</li></ul><h5id="conclusion">Conclusion</h5><p>TheinitialdesigndoesnotmeetPFDavg,STRSISandSILrequirements.</p><h4id="redesignverification">RedesignVerification</h4><h5id="proposedmodificationsfigure4">ProposedModifications(Figure4)</h5><ul><li>ThreepressureSIStransmitters(PZT−8A,PZT−8B,PZT−8C)in2oo3architecturewithblockvalvesforonlineprooftesting.</li><li>Twofail−closed(FC)pressureSISvalves(PZV−8AandPZV−8B)in1oo2architecturewithabypassforonlineprooftesting.</li><li>Dualredundantsolenoidsin2oo2architectureoneachESDvalve.</li><li>DualredundantsafetyPLClogicsolver(1oo2Darchitecture):<ul><li>Alarm(PZAH−8)toBPCSforhighcolumnpressure.</li><li>Alarm(PZI−8)whenaredundantpressurecomponentisinalarm.</li><li>Alarm(XZI−8)whenabypassisinplace.</li></ul></li></ul><h5id="reliabilityblockdiagramrbdfigure5">ReliabilityBlockDiagram(RBD)(Figure5)</h5><ul><li>CalculatesPFDavg,STRSIS,andoverallallowedSILrating.</li></ul><h6id="designinformation−1">DesignInformation</h6><ul><li>Pressuretransmitters:2oo3architecture,βfactorof5<li>SafetyPLC:1oo2Darchitecture,βfactorof3<li>Finalelement:1oo2architecture,βfactorof5<li>ProofTIofoneyear(8760hours)forsensorsandfinalelements.</li><li>ProofTIofthreeyears(26,280hours)forthelogicsolver.</li></ul><h5id="redesignresults">RedesignResults</h5><ul><li>Requiredriskreductionisachieved.<ul><li>PFDavgof2.70E−03(0.0027)islessthantherequired0.005(SIL2rating).</li></ul></li><li>Requiredspurioustriprateisachieved.<ul><li>STRSISof0.034failures/yrislessthantherequired0.33failures/year.</li></ul></li><li>RequiredoverallSIL2ratingisachieved.</li></ul><h5id="pfdcalculation−1">PFDCalculation</h5><ul><li>PFDavgisthesumofPFDcalculationsforeachcomponent(Table2formulas).</li></ul><h6id="examplesolenoidvalves1oo2architecture">Example:SolenoidValves(1oo2Architecture)</h6><ul><li>Doublethesolenoid′sundetectedfailurerate(λDU)from2900to5800dueto2oo2architecture.<br/> PFD = [(1-β) × (λDU ×TI)^2] / 3 + (β×λDU × TI) / 2 <br/>B=0.05<br/>λDU=5800E−09failures/hr<br/>TI=8760hr<br/> PFD = [(1-0.05)x((5800 E-09)x(8760))^2] / 3 + (0.05x(5800 E-09)x(8760)) / 2= 2.08 E-03 </li></ul><h5id="strcalculation−1">STRCalculation</h5><p>STRforthesolenoidvalvesiscalculatedassuch:<br/>λDD=0failures/hr<br/>λs=6690E−09failures/hr<br/>MTTRis72hours.<br/>B=0.05<br/>STR = (2x(6690 E-09) ((6690 E-09)+(0))x (72))+(0.05) x ((6690 E-09)+(0)) = 3.4 E-07<br/>TheSTRrateisnowdoubledbecauseofthe2001architecture;therefore,theSTRequals6.8E−7forthesolenoidvalves.</p><h5id="silrating">SILRating</h5><ul><li>TheoverallSILratingisequaltothelowestSILratingofanycomponent(Table5).</li><li>Forexample,calculatetheSILallowedfortheESDValve.Inthisexample,theESDvalveisatypeAcomponentandtheESDvalvehas1oo2architecturethatprovidesanHFTofone(1).<br/>λDU=2378E−09failures/hr<br/>λ=λDD+λDU+λs=(0)+(2378E−09)+(2153E−09)=4531E−06</li></ul><p>SFF = 1- (λDU / λ) = 1- (2378 E-09) / (4531 E-09) =1-0.525 = 0.475or48<p>AnSFFoflessthan60<h4id="srsspecifications">SRSSpecifications</h4><h5id="requiredinformationforeachsif">RequiredInformationforEachSIF</h5><ul><li>DescriptionoftheSIF(whatitdoesanditscomponents).</li><li>Commoncausefailures.</li><li>Safestatedefinition.</li><li>Prooftestintervals.</li><li>Responsetimetobringtheprocesstoasafestate.</li><li>SafetyIntegrityLevel(SIL)rating.</li><li>Processmeasurementsandtheirtrippoints.</li><li>Processoutputactionsandsuccessfuloperationcriteria.</li><li>Manualshutdownrequirements.</li><li>Informationregardingenergizingorde−energizingtotrip.</li><li>Resettingafterashutdown.</li><li>Maximumallowedspurioustriprate.</li><li>FailuremodesandSISresponsetofailures.</li><li>StartingupandrestartingtheSIS.</li><li>InterfacesbetweentheSISandanyothersystem.</li><li>Overrides/inhibits/bypassesandhowtheyarecleared.</li><li>ActionsfollowingaSISfaultdetection.</li></ul><h4id="selftest">Self−Test</h4><ol><li>WhatdoestheacronymSTRstandfor?</li><li>Listthree(3)methodsusedtocalculatetheaverageprobabilityoffailureondemand.<br/>a)<br/>b)<br/>c)</li><li>CalculatethePFDusingsimplifiedequationsgiventhefollowinginformation.<ul><li>TwoidenticalESDvalvesina1oo2architecture.</li><li>Acommoncausebetafactorof3<li>Aprooftesttimeintervalof8760hours.</li><li>Adangerousundetectedfailurerateof2050failuresperbillionhours.</li></ul></li><li>CalculatetheSTRinfailuresperyearusingsimplifiedequationsgiventhefollowinginformation.<ul><li>Alevelswitch.</li><li>Asafefailurerateof118failuresperbillionhours.</li><li>Adangerousdetectedfailurerateof131failuresperbillionhours.</li></ul></li><li>CalculatetheallowedSILratinggiventhefollowinginformation.<ul><li>Threeidenticallevelswitches(TypeA)ina2oo3architecture.</li><li>Asafefailurerateof118failuresperbillionhours.</li><li>Adangerousdetectedfailurerateof131failuresperbillionhours.</li><li>Adangerousundetectedfailurerateof24failuresperbillionhours</li></ul></li><li>UsingtheRBDinFigure6,answerthefollowingquestions.<br/>a)WhatisthePFDavgforthisSIFanditsSILrating?<br/>b)WhatistheSTRSISforthisSIFinfailuresperyear?<br/>c)WhatistheoverallallowedSILforthisSIF?</li></ol><h4id="selftestanswers">Self−TestAnswers</h4><ol><li>spurioustriprate</li><li>a)simplifiedequations<br/>b)faulttreeanalysis<br/>c)Markovanalysis</li><li>PFD=5.82E−04<br/>ThePFDfor1oo2architectureisasfollows:<br/> PFD = [(1-β) × (λDU ×TI)^2] / 3 + (β×λDU × TI) / 2 <br/>β=0.03<br/>λDU=20500E−09failures/hr<br/>TI=8760hr</li><li>STR=0.00218Failures/year<br/>TheSTRforloolarchitectureisasfollows:<br/> STR = (λS + λDD) <br/>λDDis131E−09failures/hr<br/>λis118E−09failures/hr</li><li>AllowedSILratingisSIL4.</li></ol><p>Theswitch′s2oo3architectureprovidesanHFTofone(1).<br/>λDU=24E−09failures/hr<br/>λ=λDD+λDU+λs=(131E−09)+(24E−09)+(118E−09)=273E−09<br/>SFF = 1- (λDU / λ) = 1- (24 E-09) / (273 E-09) =1-0.088 = 0.91$$ or 91%
An SFF of 90 to 99% and a HFT of one for a type A component allows for a SIL rating of four (4).
- a) PFDavg = 2.18E-03, SIL 2
b) STRSIS 0.171 failures per year
c) SIL 2