CN104360916A - Main and spare synchronization method based on data synchronization - Google Patents

Main and spare synchronization method based on data synchronization Download PDF

Info

Publication number
CN104360916A
CN104360916A CN201410668432.XA CN201410668432A CN104360916A CN 104360916 A CN104360916 A CN 104360916A CN 201410668432 A CN201410668432 A CN 201410668432A CN 104360916 A CN104360916 A CN 104360916A
Authority
CN
China
Prior art keywords
synchronous
data
standby
mark
export
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201410668432.XA
Other languages
Chinese (zh)
Other versions
CN104360916B (en
Inventor
王庆胜
王军伟
杜建新
袁亮
邱磊
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
SHANGHAI FITSCO INTELLIGENT TRAFFIC CONTROL CO Ltd
Original Assignee
SHANGHAI FITSCO INTELLIGENT TRAFFIC CONTROL CO Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by SHANGHAI FITSCO INTELLIGENT TRAFFIC CONTROL CO Ltd filed Critical SHANGHAI FITSCO INTELLIGENT TRAFFIC CONTROL CO Ltd
Priority to CN201410668432.XA priority Critical patent/CN104360916B/en
Publication of CN104360916A publication Critical patent/CN104360916A/en
Application granted granted Critical
Publication of CN104360916B publication Critical patent/CN104360916B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The invention discloses a main and spare synchronization method based on data synchronization. The method comprises the following steps that a main system and a spare system are set to be in an interlocking relationship; before each synchronization period starts, the spare system sends data to the main system; the main system judges whether the received spare system data is synchronous or not, if the data is asynchronous, asynchronous marks are output, and asynchronous data is sent to the spare system; if the data is synchronous, synchronous marks are output, and calculation results are output; if the spare system receives the synchronous marks, the synchronous marks are output, main seizing marks are output, and the spare system simultaneously outputs the asynchronous marks; if the spare system receives the asynchronous marks and the synchronous data sent by the main system, the spare system outputs different marks after synchronizing the synchronous data of the main system, and the calculation results are not output. The main and spare synchronization method solves the problems that in the real-time industrial automation control field, the redundancy switching synchronous data quantity is great, so the period time is short, and the data synchronization failure or synchronization error can be caused.

Description

Based on the main standby synchronous method of data syn-chronization
Technical field
The present invention relates to computer realm, particularly relate to the main standby synchronous method based on data syn-chronization for fail-safe computer in a kind of real-time industrial Automated condtrol.
Background technology
Redundancy switch be compare main flow at present fail-safe computer structure in for improving common point of method of system availability, its typical structure (takes advantage of 2oo2 fail-safe computer framework for 2) as shown in Figure 1.Two covers 2 are had to get 2 systems as seen from Figure 1 in this structure.The automatic/hand change-over switch of switch boards is relied on to realize the hot-swap that whole 2 take advantage of system between main preparation system.Certainly also have some security systems to adopt the strategy of cold standby, but cold standby strategy have a lot of shortcomings in Industry Control real-time system, can not improve the availability of whole system, seldom adopt.
Hot-backup system has following two kinds of way of outputs usually:
One, when principal series is working properly, switch boards exports the result of calculation of principal series; When principal series breaks down, switch boards exports the result of calculation of standby system;
Two, only there iing principal series working properly, and standby system and the data of principal series, when state is inconsistent, only export principal series data.When standby system and the data of principal series, during state consistency, now standby system enters synchronous regime, and switch boards exports principal series and the standby output being simultaneously.
The first switches the availability that redundancy approach can improve system, maintainability.But the safety problem that system random fault is brought cannot be avoided, namely need to ensure the completely the same of input, cause input incorrect if there is random disturbance, active and standby system simultaneous faults may be had influence on.This just needs to consider that these disturb during system, and increases tolerance.It is all semaphore (be all 0 and 1 can represent) that this mode can be used on input usually, does not have in the system of analog quantity, such as, interlocking system in track traffic signal.
It is follow principal series that the second switches redundant fashion because synchronous strategy is standby, and therefore have certain difference in software process, decrease the system failure because random disturbance causes, be therefore widely used field, such as, onboard system in track traffic signal.The existing method basic ideas that the second switches redundant fashion are (as shown in Figure 2):
Export after two system (main, standby two are) starts and drive principal series relay, because two system exists interlocked relationship, that is, in the same cycle, only have one to be can be principal series, other one be must be standby system; Two systems gather the relay of switch boards, obtain the active and standby system state that this is and the other side is.Whether principal series is relatively standby be the data of coming is data consistent with this, if unanimously, then exports synchronous mark, otherwise exports asynchronous mark, and send this data being.Finally drive principal series relay; Standby system receives the data that principal series is come, if asynchronous, adopt the data of principal series to run as input, does not export result of calculation; If synchronous, run this coefficient certificate, and drive principal series relay, finally result of calculation is exported.Switch boards then adopt or relation to process the result of calculation of active and standby system, that is, as long as have one to be that output then exports.Can find out that standby system needs each cycle transmission synchrodata to principal series from step shown in Fig. 2, whether principal series needs the data of the standby system of each cycle judgement synchronous, and output synchronous regime and synchrodata are to standby system.In this process, it is crucial that the selection of synchrodata and synchronization policy.Less for needing synchronous data volume between two system, the system that the cycle is longer, this redundancy switching mode can meet its needs.But comparatively large for data volume, the system that the cycle is shorter, this redundancy switching mode can cause data can not be sent completely in one-period, causes data synchronization errors/failure of data synchronization.
Summary of the invention
The technical problem to be solved in the present invention is to provide the existing redundancy switching mode of a kind of energy improvement cannot be sent completely the main standby synchronous method based on data syn-chronization causing data synchronization errors/failure of data synchronization in one-period inter-sync data.
The technical problem to be solved in the present invention is to provide a kind of can improvement because redundancy switches synchrodata amount greatly, and cycle length is short, causes the main standby synchronous method based on data syn-chronization of failure of data synchronization or timing error.
For solving the problems of the technologies described above, the main standby synchronous method based on data syn-chronization provided by the invention, comprises the following steps:
1) arranging active and standby two is interlocked relationship;
2), before starting each synchronizing cycle, standby system sends data to principal series;
3) principal series judges whether the standby coefficient received is according to synchronous, if asynchronous, export asynchronous mark and sends synchrodata to standby system, if synchronous, export synchronous mark and export result of calculation;
4) if standby system receives synchronous mark, export synchronous mark and export and rob main mark, standby system exports result of calculation;
5) if standby system receives the synchrodata that asynchronous mark and principal series send, then standby is export asynchronous mark after synchronous principal series synchrodata, does not export checkout result.
The synchronous Data Placement of needs, based on the main standby synchronous method of data syn-chronization, is secure data and non-secure data by another kind provided by the invention.Secure data comprises state value and has influence on safe not by the value that the input of phase this week calculates, such as some quantity of states, time and count value; Non-secure data comprises intermediate temporary variable, and have the value postponing and tolerate, the value that such as can be calculated by quantity of state and input, is comprised the following steps:
1) arranging active and standby two is interlocked relationship;
2) be secure data and non-secure data by data according to predefine regular partition;
3), before starting each synchronizing cycle, standby system transmission secure data and non-secure data are to principal series;
4) principal series judge to receive standby be non-secure data whether in the tolerance preset, if exceed tolerance, export asynchronous mark and send synchrodata to standby system, if in tolerance, exporting judgement symbol "Yes";
5) principal series judge to receive standby be whether secure data consistent with principal series secure data, if inconsistent, export asynchronous mark and send synchrodata to standby system, if consistent, output judgement symbol "Yes";
6) by step 4) and step 5) judgement symbol carry out the judgement of "AND" relation, if "True" then exports synchronous mark, if "false" then exports asynchronous mark and send synchrodata to standby system;
7) if standby system receives synchronous mark, export synchronous mark and export and rob main mark, standby system exports result of calculation simultaneously;
8) if standby system receives the synchrodata that asynchronous mark and principal series send, then standby is export asynchronous mark after synchronous principal series synchrodata, does not export result of calculation.
The present invention is for solving because redundancy switches synchrodata amount greatly in real-time industrial automation control area, and cycle length is short, causes the redundancy switching problem of failure of data synchronization or timing error.The present invention proposes the main standby synchronous method based on data, synchrodata only need be chosen in the output of each cycle, decreases the size of data volume.The present invention takes advantage of in structure 2 and have employed identical input source, and decides by vote, and therefore two be the input obtained is all correct.But two is owing to have employed follow-up strategy, namely two be between do not require the stringent synchronization of task level, therefore two inputs being allow poor if having time, avoid the interference that random fault produces.And the standby data that have employed principal series when tying up to asynchronous and come, what accelerate with principal series is synchronous, thus substantially increases the efficiency of state synchronized.Under active and standby system synchronous regime, because active and standby system exports result of calculation simultaneously, when principal series breaks down, principal series cuts off and exports, and for being be in rob major state, will rob main success, and result of calculation is exported, thus reduces the response time of switching.
Accompanying drawing explanation
Below in conjunction with accompanying drawing and embodiment, the present invention is further detailed explanation:
Fig. 1 is that one typical 2 takes advantage of 2oo2 system architecture schematic diagram.
Fig. 2 is that a kind of existing active and standby system runs sequential chart.
Fig. 3 is the schematic diagram one of first embodiment of the invention.
Fig. 4 is the schematic diagram two of first embodiment of the invention.
Fig. 5 is the schematic diagram three of first embodiment of the invention.
Fig. 6 is the schematic diagram four of first embodiment of the invention.
Fig. 7 is the schematic diagram of second embodiment of the invention.
Embodiment
Shown in figure 3, be divided into two states from the operational mode of system; One is init state; One is running status.In init state, internal system not runs business logic but internal data is carried out initialization, and initialized data are exported.
Shown in figure 4, the state under running, the software module input of internal system had the input of this cycle outside, output (comprising state value), the output of other modules and the static data of inside in upper cycle.
Shown in figure 5, can see that the system based on data realizes being the outside input according to this cycle and the output (including state value and the calculated value of software inhouse) in upper cycle from analysis above, thus calculate the result in this cycle.
Active and standby system switching based on data syn-chronization should from software design stage, and Fig. 1-5 is the software development flow based on data stream, describes the classification of data.Data can be divided three classes in fact as we can see from the figure:
Static data: the data carried in software, as long as this part ensures active and standby system, software is identical versions of data, be do not need synchronous;
Input data: the input data of each cycle in real-time system, this part is outside input, can ensure that active and standby system obtains inputting the consistance of data, therefore also do not need synchronous by the voting mechanism of outside;
Export data: in real-time system, each cycle must export data, this part is that software calculates according to outside input, and because the opportunity processed in software there are differences, and some state is continuous print, and therefore this part is the key of synchrodata.
By above analysis, the selection of synchrodata is to export data, comprises inner state value, calculated value.This part data is through labor, some only can be needed just to obtain data according to input value to get rid of outside synchrodata, continuous print state value is then safe synchrodata, needs accumulative calculated value to be then the non-security synchrodata that can arrange tolerance.
Shown in figure 6, first embodiment of the invention, comprises step:
1) arranging active and standby two is interlocked relationship;
2), before starting each synchronizing cycle, standby system sends data to principal series;
3) principal series judges whether the standby coefficient received is according to synchronous, if asynchronous, export asynchronous mark and sends synchrodata to standby system, if synchronous, export synchronous mark and export result of calculation;
4) if standby system receives synchronous mark, export synchronous mark and export and rob main mark, standby system exports result of calculation simultaneously;
5) if standby system receives the synchrodata that asynchronous mark and principal series send, then standby is export asynchronous mark after synchronous principal series synchrodata, does not export checkout result.
As shown in Figure 7, the second embodiment provided by the invention, comprises the following steps:
1) arranging active and standby two is interlocked relationship;
2) be secure data and non-secure data by data according to predefine regular partition;
Secure data comprises state value and has influence on safe not by the value that the input of phase this week calculates, such as some quantity of states, time and count value; Non-secure data comprises intermediate temporary variable, has the value postponing and tolerate, the value that such as can be calculated by quantity of state and input;
3), before starting each synchronizing cycle, standby system transmission secure data and non-secure data are to principal series;
4) principal series judge to receive standby be non-secure data whether in the tolerance preset, if exceed tolerance, export asynchronous mark and send synchrodata to standby system, if in tolerance, exporting judgement symbol "Yes";
5) principal series judge to receive standby be whether secure data consistent with principal series secure data, if inconsistent, export asynchronous mark and send synchrodata to standby system, if consistent, output judgement symbol "Yes";
6) by step 4) and step 5) judgement symbol carry out the judgement of "AND" relation, if "True" then exports synchronous mark, if "false" then exports asynchronous mark and send synchrodata to standby system;
7) if standby system receives synchronous mark, export synchronous mark and export and rob main mark, standby system exports result of calculation simultaneously;
8) if standby system receives the synchrodata that asynchronous mark and principal series send, then standby is export asynchronous mark after synchronous principal series synchrodata, does not export result of calculation.
Below through the specific embodiment and the embodiment to invention has been detailed description, but these are not construed as limiting the invention.Without departing from the principles of the present invention, those skilled in the art also can make many distortion and improvement, and these also should be considered as protection scope of the present invention.

Claims (2)

1. based on a main standby synchronous method for data syn-chronization, it is characterized in that, comprise the following steps:
1) arranging active and standby two is interlocked relationship;
2), before starting each synchronizing cycle, standby system sends data to principal series;
3) principal series judges whether the standby coefficient received is according to synchronous, if asynchronous, export asynchronous mark and sends synchrodata to standby system, if synchronous, export synchronous mark and export result of calculation;
4) if standby system receives synchronous mark, export synchronous mark and export and rob main mark, standby system exports result of calculation simultaneously;
5) if standby system receives the synchrodata that asynchronous mark and principal series send, then standby is export asynchronous mark after synchronous principal series synchrodata, does not export result of calculation.
2. based on a main standby synchronous method for data syn-chronization, it is characterized in that, comprise the following steps:
1) arranging active and standby two is interlocked relationship;
2) be secure data and non-secure data by data according to predefine regular partition;
3), before starting each synchronizing cycle, standby system transmission secure data and non-secure data are to principal series;
4) principal series judge to receive standby be non-secure data whether in the tolerance preset, if exceed tolerance, export asynchronous mark and send synchrodata to standby system, if in tolerance, exporting judgement symbol "Yes";
5) principal series judge to receive standby be whether secure data consistent with principal series secure data, if inconsistent, export asynchronous mark and send synchrodata to standby system, if consistent, output judgement symbol "Yes";
6) by step 4) and step 5) judgement symbol carry out the judgement of "AND" relation, if "True" then exports synchronous mark, if "false" then exports asynchronous mark and send synchrodata to standby system;
7) if standby system receives synchronous mark, export synchronous mark and export and rob main mark, standby system exports result of calculation simultaneously;
8) if standby system receives the synchrodata that asynchronous mark and principal series send, then standby is export asynchronous mark after synchronous principal series synchrodata, does not export result of calculation.
CN201410668432.XA 2014-11-20 2014-11-20 Main standby synchronous method based on data syn-chronization Active CN104360916B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410668432.XA CN104360916B (en) 2014-11-20 2014-11-20 Main standby synchronous method based on data syn-chronization

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410668432.XA CN104360916B (en) 2014-11-20 2014-11-20 Main standby synchronous method based on data syn-chronization

Publications (2)

Publication Number Publication Date
CN104360916A true CN104360916A (en) 2015-02-18
CN104360916B CN104360916B (en) 2018-01-09

Family

ID=52528180

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410668432.XA Active CN104360916B (en) 2014-11-20 2014-11-20 Main standby synchronous method based on data syn-chronization

Country Status (1)

Country Link
CN (1) CN104360916B (en)

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105681131A (en) * 2016-02-26 2016-06-15 上海富欣智能交通控制有限公司 Main-backup system and parallel outputting method thereof
CN108011698A (en) * 2017-11-13 2018-05-08 北京全路通信信号研究设计院集团有限公司 A kind of RSSP-I safety communicating method synchronous based on double systems
CN109005246A (en) * 2018-09-12 2018-12-14 北京中电普华信息技术有限公司 A kind of synchronous method of data, apparatus and system
CN111400111A (en) * 2020-03-12 2020-07-10 北京交大思诺科技股份有限公司 Safe computer platform with standby machine out-of-step state
WO2021035867A1 (en) * 2019-08-27 2021-03-04 北京东土科技股份有限公司 Redundancy control method for main and standby controllers
CN113050498A (en) * 2021-03-23 2021-06-29 北京和利时系统工程有限公司 Data synchronization method for zone controller in CBTC (communication based train control) system
CN113132496A (en) * 2021-06-17 2021-07-16 北京全路通信信号研究设计院集团有限公司 Double-system data synchronization method, device and system of RSSP-I protocol

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101192971A (en) * 2006-11-23 2008-06-04 中兴通讯股份有限公司 Detection method for master/slave data consistency
CN101917283A (en) * 2010-07-22 2010-12-15 北京交通大学 Two-channel hot standby system and method for realizing two-channel hot standby
CN101945002A (en) * 2009-07-03 2011-01-12 中兴通讯股份有限公司 Method and equipment for quickly comparing data of main board with data of standby board
US20130086293A1 (en) * 2010-10-01 2013-04-04 Imerj LLC Systems and methods for docking portable electronic devices
CN103841210A (en) * 2014-03-21 2014-06-04 上海富欣智能交通控制有限公司 Adjustable main system and spare system data synchronization method

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101192971A (en) * 2006-11-23 2008-06-04 中兴通讯股份有限公司 Detection method for master/slave data consistency
CN101945002A (en) * 2009-07-03 2011-01-12 中兴通讯股份有限公司 Method and equipment for quickly comparing data of main board with data of standby board
CN101917283A (en) * 2010-07-22 2010-12-15 北京交通大学 Two-channel hot standby system and method for realizing two-channel hot standby
US20130086293A1 (en) * 2010-10-01 2013-04-04 Imerj LLC Systems and methods for docking portable electronic devices
CN103841210A (en) * 2014-03-21 2014-06-04 上海富欣智能交通控制有限公司 Adjustable main system and spare system data synchronization method

Cited By (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105681131A (en) * 2016-02-26 2016-06-15 上海富欣智能交通控制有限公司 Main-backup system and parallel outputting method thereof
CN105681131B (en) * 2016-02-26 2019-03-05 上海富欣智能交通控制有限公司 Main preparation system and its parallel output method
CN108011698A (en) * 2017-11-13 2018-05-08 北京全路通信信号研究设计院集团有限公司 A kind of RSSP-I safety communicating method synchronous based on double systems
CN109005246A (en) * 2018-09-12 2018-12-14 北京中电普华信息技术有限公司 A kind of synchronous method of data, apparatus and system
CN109005246B (en) * 2018-09-12 2021-10-01 北京国电通网络技术有限公司 Data synchronization method, device and system
WO2021035867A1 (en) * 2019-08-27 2021-03-04 北京东土科技股份有限公司 Redundancy control method for main and standby controllers
CN111400111A (en) * 2020-03-12 2020-07-10 北京交大思诺科技股份有限公司 Safe computer platform with standby machine out-of-step state
CN111400111B (en) * 2020-03-12 2024-02-27 北京交大思诺科技股份有限公司 Safe computer platform with standby machine out-of-step state
CN113050498A (en) * 2021-03-23 2021-06-29 北京和利时系统工程有限公司 Data synchronization method for zone controller in CBTC (communication based train control) system
CN113132496A (en) * 2021-06-17 2021-07-16 北京全路通信信号研究设计院集团有限公司 Double-system data synchronization method, device and system of RSSP-I protocol

Also Published As

Publication number Publication date
CN104360916B (en) 2018-01-09

Similar Documents

Publication Publication Date Title
CN104360916A (en) Main and spare synchronization method based on data synchronization
CN104898620B (en) A kind of redundancy control system and control method based on Ethernet
CN105278516B (en) A kind of implementation method of the reliable fault-tolerant controller of dual redundant switching value PLC control system
CN103455005B (en) Controller redundancy and switching method
CN104238435B (en) Triple-redundancy control computer and fault-tolerant control system
CN110361979B (en) Safety computer platform in railway signal field
CN201909961U (en) Redundancy control system
CN105388890A (en) Safety computer system for train control
CN111352338B (en) Dual-redundancy flight control computer and redundancy management method
CN104268037A (en) Hot redundancy interlocking subsystem and main and standby switching method thereof
CN107390511A (en) For the method for the automated system for running redundancy
CN106627668B (en) Multiply the two train supervision server systems and control method for taking two frameworks based on two
CN105539522A (en) Train operation monitoring device based on double 2-vote-2 safety computer structure and method for train operation monitoring device
US20160292106A1 (en) Bus Participant Device and Method for Operating a Bus Subscriber Device
CN102955903B (en) A kind of disposal route of safety critical information of rail transit computer control system
CN102621938A (en) Triple redundancy control system in process control and method thereof
CN110351174A (en) A kind of safety computer platform of module redundancy
CN110376876A (en) A kind of safety computer platform that double systems are synchronous
CN108073105B (en) Safety P L C device based on heterogeneous dual-processor redundant structure and implementation method
CN104176066A (en) Redundancy control system and method of train shield gate
CN105182961B (en) Four remaining signal monitoring means of votings and equipment
CN109634171B (en) Dual-core dual-lock-step two-out-of-two framework and safety platform thereof
CN101931519A (en) Triple-modular redundancy implementation method based on synchronous communication exchange
CN104394018B (en) The online exchange method of master/backup system data in a kind of communication equipment and main control plate thermal redundancy
CN105334729A (en) Method for redundancy switch of two independent PLC systems in railway locomotive depot signal control

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant