EP4500282A1 - Verfahren zur durchführung einer sicherheitsüberprüfung einer modularen sicherheitssteuerung - Google Patents
Verfahren zur durchführung einer sicherheitsüberprüfung einer modularen sicherheitssteuerungInfo
- Publication number
- EP4500282A1 EP4500282A1 EP23713645.2A EP23713645A EP4500282A1 EP 4500282 A1 EP4500282 A1 EP 4500282A1 EP 23713645 A EP23713645 A EP 23713645A EP 4500282 A1 EP4500282 A1 EP 4500282A1
- Authority
- EP
- European Patent Office
- Prior art keywords
- machine
- user
- modular
- safety
- electronic modules
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Classifications
-
- G—PHYSICS
- G05—CONTROLLING; REGULATING
- G05B—CONTROL OR REGULATING SYSTEMS IN GENERAL; FUNCTIONAL ELEMENTS OF SUCH SYSTEMS; MONITORING OR TESTING ARRANGEMENTS FOR SUCH SYSTEMS OR ELEMENTS
- G05B19/00—Program-control systems
- G05B19/02—Program-control systems electric
- G05B19/04—Program control other than numerical control, i.e. in sequence controllers or logic controllers
- G05B19/042—Program control other than numerical control, i.e. in sequence controllers or logic controllers using digital processors
-
- G—PHYSICS
- G05—CONTROLLING; REGULATING
- G05B—CONTROL OR REGULATING SYSTEMS IN GENERAL; FUNCTIONAL ELEMENTS OF SUCH SYSTEMS; MONITORING OR TESTING ARRANGEMENTS FOR SUCH SYSTEMS OR ELEMENTS
- G05B23/00—Testing or monitoring of control systems or parts thereof
- G05B23/02—Electric testing or monitoring
- G05B23/0205—Electric testing or monitoring by means of a monitoring system capable of detecting and responding to faults
- G05B23/0208—Electric testing or monitoring by means of a monitoring system capable of detecting and responding to faults characterized by the configuration of the monitoring system
- G05B23/0216—Human interface functionality, e.g. monitoring system providing help to the user in the selection of tests or in its configuration
-
- G—PHYSICS
- G05—CONTROLLING; REGULATING
- G05B—CONTROL OR REGULATING SYSTEMS IN GENERAL; FUNCTIONAL ELEMENTS OF SUCH SYSTEMS; MONITORING OR TESTING ARRANGEMENTS FOR SUCH SYSTEMS OR ELEMENTS
- G05B9/00—Safety arrangements
- G05B9/02—Safety arrangements electric
Definitions
- the present invention relates to a method for carrying out a safety check of a modular safety control, which has a plurality of electronic modules in which safety functions for the safe operation of at least a machine or technical system that is connected to the modular safety control are implemented.
- Modular safety controls are known from the prior art in different embodiments. In particular, they serve to safely convert machines or technical systems into a state that is not dangerous for people when a dangerous situation occurs.
- signal transmitters which can be, for example, emergency stop switches, emergency stop switches, light grids, light curtains, safety mats, protective door position switches, 3D laser scanners, etc.
- signal transmitters which can be, for example, emergency stop switches, emergency stop switches, light grids, light curtains, safety mats, protective door position switches, 3D laser scanners, etc.
- signal transmitters which can be, for example, emergency stop switches, emergency stop switches, light grids, light curtains, safety mats, protective door position switches, 3D laser scanners, etc.
- On the output side one or more safe output contacts of an output circuit are controlled.
- actuators such as contactors, valves, etc. are controlled via these output contacts in such a way that a machine or technical system connected to them can be brought into a state that is not dangerous for people.
- Such modular safety controls include several electronic modules that are arranged in at least one row of modules and have certain functionalities.
- the modular structure of a safety controller creates the possibility of an application-specific configuration by individually assembling several electronic modules, wiring them together and configuring them in such a way that they correspond to the modular Safety controls jointly provide the desired safety functions.
- Examples of electronic modules from which modular safety controls with very different safety functions can be built include input modules that can receive and, if necessary, process input signals from one or more signal transmitters, such as input signals from sensors or emergency command devices, and output modules that can send output signals to one or several actuators connected to it, combined input and output modules (so-called I/O modules), control modules that can control the assignment of input to output modules, as well as interface modules, communication modules, fieldbus controllers, fieldbus couplers, etc.
- I/O modules input and output modules
- control modules that can control the assignment of input to output modules, as well as interface modules, communication modules, fieldbus controllers, fieldbus couplers, etc.
- the configuration of a modular security control can be carried out by a user, for example, using a configuration tool that has a graphical user interface.
- the user is able to select the electronic modules required for the specific application of the safety control from a large number of electronic modules.
- the configuration is then saved in a configuration database as a configuration data record, which, in addition to the module information, also includes information about all safety functions of the modular safety controller.
- the electronic modules are lined up in at least one row of modules based on the configuration data set and are wired accordingly and adjusted in such a way that they can provide the functionalities required for the specific application from a safety perspective.
- it is necessary to carry out a safety check in order to be able to ensure the correct function of the safety control when it interacts with a machine or technical system connected to it.
- EP 3 499 324 A1 discloses a method for verifying a configuration of a safety controller.
- the configuration is created on an external input device, such as a computer or smartphone, and transferred to the safety controller.
- the configuration implemented in this way is displayed on the input device so that a user can confirm it.
- the configuration is divided into subconfigurations that are verified.
- the aim of the invention is to provide a method for carrying out a security check of a modular security control, by means of which the checking process can be carried out by a user in a particularly simple, intuitive and safe manner.
- a method for carrying out a safety check of a modular safety control which has a plurality of electronic modules in which safety functions for the safe operation of at least one machine that is connected to the modular safety control are implemented, comprises the steps
- Safety check of the modular safety control carried out the necessary test steps.
- the execution of all user instructions and the resulting machine interventions are automatically logged and saved and can therefore be used in
- the form of the digital test report forms at least part of a digitally accessible machine documentation.
- machine interventions should be understood to mean all reactions of the machine or technical system connected to the safety control and its actuators and signal transmitters to the execution of the user instructions specified by the test data set.
- the testing device can be, for example, a computer, in particular a portable computer, or a tablet computer or a mobile phone (smartphone).
- the testing device runs corresponding testing software, by means of which parts of the method according to the invention are carried out.
- the testing device can optionally be designed such that it can also execute a software-based configurator for configuring the modular safety control and/or can program the modular safety control.
- the at least one machine intervention that results from the execution of the user instruction in method step S4) is detected by the user and confirmed using the human-machine interface.
- the communication connection between the modular safety control and the testing device is established by scanning an optoelectronically readable code that is attached to the modular safety control using a camera the Test facility is initiated.
- the testing device is a tablet computer or a mobile phone (smartphone) with an integrated camera.
- the optoelectronically readable code can in particular be a two-dimensional code.
- the method presented here for carrying out a safety check of a modular safety control makes it possible in particular to check all potentiometer settings, wiring and safety functions of the modular safety control.
- FIG. 1 shows a schematic representation of a system for carrying out a safety check of a modular safety control
- Fig. 2 is a schematic representation that illustrates the basic sequence of the method.
- the modular safety control 1 is connected to at least one machine 2 (or technical system), which has at least one actuator 20 and at least one signal generator 21.
- An example of a machine 2 that can be operated using the modular safety controller 1 is an industrial robot.
- a machine 2 often also has several actuators 20 and several signal generators 21, which are connected to the modular safety controller 1. In many applications, several machines 2 are connected to a modular safety controller 1 and are controlled by it.
- the modular safety controller 1 has a plurality n of electronic modules 10. 1 -10. n, which are arranged in at least one row of modules and which are electrically wired to one another and connected to the machine 2.
- a The first electronic module 10.1 preferably forms a central control module of the modular safety controller 1 and is often also referred to as a head module.
- the remaining electronic modules 10.2-10. n are selected application-specifically from a variety of different electronic module types. For the remaining electronic modules 10.2-10.
- n can be, for example, input modules that can safely receive and, if necessary, process input signals from one or more signal transmitters 21, such as input signals from sensors, signaling devices or emergency command devices, and output modules that can safely output output signals to one or more actuators 20 connected to them , combined input and output modules (so-called I/O modules), which have inputs and outputs, as well as interface modules, fieldbus controllers, fieldbus couplers, etc.
- I/O modules combined input and output modules
- the number and type of electronic modules used 10. 1 -10. n depends directly on the planned application and purpose of the modular safety control 1 and in particular on the safety level to be achieved.
- the task of the modular safety controller 1 is to control the actuators connected to the modular safety controller 1 when a dangerous situation occurs, which is detected by at least one of the signal transmitters 21 - that is, by at least one of the sensors, signaling devices or emergency command devices 20 should be switched off in a safety-related manner and activated again after the dangerous situation has ended.
- the modular safety controller 1 is configured by a user depending on the intended use, preferably using a software-based configurator.
- the configuration process can be carried out, for example, using a web-based configurator.
- the configuration of the modular safety controller 1 is stored as a configuration data record in a non-volatile memory device 3 in a retrievable manner.
- the modular safety controller 1 is produced on the basis of the configuration data record, which contains all configuration information.
- the potentiometers 1 1 . 1 -1 1 . n can be preset during manufacture to simplify later installation of the modular safety controller 1 at the point of use.
- the testing device 4 can, for example, be a stationary computer or a portable computer, in particular a laptop computer, or a Be a tablet computer or a smartphone. Using the testing device 4, appropriate testing software can be executed, which supports a user in checking the safety functions of the modular safety control 1 and ensures that all safety checks to be processed are carried out, acknowledged and also logged after the tests have been completed.
- the testing device 4 can optionally be designed so that it can also execute the software-based configurator and/or program the modular safety controller 1.
- the testing device 4 has a human-machine interface 40, which enables interaction with a user who carries out the security check.
- the human-machine interface 40 has a display device 41, by means of which information and data of different types can be visualized for the user.
- the human-machine interface 40 has at least one input means 42, with which the user can make different user inputs.
- the display device 41 can be designed to be touch-sensitive - particularly when the testing device 4 is designed as a tablet computer or smartphone - so that the functions of at least one input device 42 are integrated into the display device 41.
- the configuration data set of the modular safety controller 1 is stored decentrally in a non-volatile storage device 3 designed as a cloud storage.
- the configuration data set of the modular safety controller 1 can also be stored elsewhere.
- non-volatile storage media should be mentioned, which can be integrated into the testing device 4 or via an interface can be connected to the testing device 4 at least temporarily.
- the configuration data set can be stored on a local server, which the testing device 4 can access via a wired or wireless network connection.
- the testing device 4 is designed to read and process the configuration data record, which defines the configuration of the modular safety controller 1, in order to generate a configuration-specific test data record from it.
- the test data set includes the operating inputs to be made by a user during the safety check of the modular safety controller 1, such as the settings to be made for the potentiometers of the electronic modules 10. 1 -10. n the modular safety controller 1 to carry out the safety check. If the settings of the potentiometers, which are in particular latching potentiometers, have already been made by the manufacturer of the modular safety controller 1, the test data set can include information about the target positions of the potentiometers.
- a communication connection is established between the modular safety controller 1 and the testing device 4.
- This can be a wired or wireless communication connection.
- the communication connection between the modular safety controller 1 and the testing device 4 can be established for example, by scanning an optoelectronic readable code 12, which is attached to the modular safety controller 1, using a camera 43 of the testing device 4. This makes establishing the communication connection particularly easy and intuitive.
- the test device 4 is provided with a configuration data set by accessing the memory device 3, which is processed by the test device 4 and contains information about the electronic modules 10. 1 -10. n and via the electronic modules 10. 1 -10. n implemented safety functions of the modular safety controller 1.
- the configuration data set can, for example, be stored retrievably in the non-volatile storage device 3 together with a unique identification code of the modular safety controller 1, in particular with a unique serial number.
- a test data set with a plurality of predefined user instructions to be executed sequentially is created for testing the security functions of the electronic modules 10. 1 -10. n generated.
- the test data set is generated automatically using the test device 4 from the configuration data set of the modular safety controller 1 previously read in by the storage device 3.
- the user instructions, which are to be carried out sequentially, tell the user in the manner of a digital checklist how the safety check of the modular safety control 1 should be carried out.
- step S4) one of the user instructions is visualized using the display device 41 of the human-machine interface 40.
- the relevant user instructions are issued by the user executed. The execution of this user instruction is confirmed below.
- At least some of the user instructions can include setting potentiometer positions of the electronic modules 10.1 -10n and/or reading preset potentiometer positions, in particular potentiometer settings preset by the manufacturer, of the electronic modules 10.1 -10. n and/or activating the signal transmitter 21.
- steps S4) and S5) are repeated until all user instructions and all resulting machine interventions have been confirmed.
- a digital test protocol is automatically generated by the test device 4 from the confirmations of the executed user instructions and from the resulting machine interventions.
- This test protocol is stored together with a unique identification code of the modular safety control 1, in particular with the unique serial number of the modular safety control 1, in the non-volatile storage device 3 or in another non-volatile storage means.
- the test report then forms part of the machine documentation.
- the method presented here for carrying out a safety check of the modular safety controller 1 makes it possible to check all potentiometer settings, wiring and safety functions of the modular safety controller 1.
- an exchange verification can also be carried out using the method.
Landscapes
- Engineering & Computer Science (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Automation & Control Theory (AREA)
- Human Computer Interaction (AREA)
- Safety Devices In Control Systems (AREA)
- Programmable Controllers (AREA)
Abstract
Description
Claims
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| DE102022107717.9A DE102022107717A1 (de) | 2022-03-31 | 2022-03-31 | Verfahren zur Durchführung einer Sicherheitsüberprüfung einer modularen Sicherheitssteuerung |
| PCT/EP2023/057351 WO2023186666A1 (de) | 2022-03-31 | 2023-03-22 | Verfahren zur durchführung einer sicherheitsüberprüfung einer modularen sicherheitssteuerung |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| EP4500282A1 true EP4500282A1 (de) | 2025-02-05 |
Family
ID=85775878
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| EP23713645.2A Pending EP4500282A1 (de) | 2022-03-31 | 2023-03-22 | Verfahren zur durchführung einer sicherheitsüberprüfung einer modularen sicherheitssteuerung |
Country Status (6)
| Country | Link |
|---|---|
| US (1) | US20250021059A1 (de) |
| EP (1) | EP4500282A1 (de) |
| JP (1) | JP2025510862A (de) |
| CN (1) | CN119096206A (de) |
| DE (1) | DE102022107717A1 (de) |
| WO (1) | WO2023186666A1 (de) |
Families Citing this family (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| DE102024111534A1 (de) * | 2024-04-24 | 2025-10-30 | Pilz Gmbh & Co. Kg | Verfahren zur Überprüfung einer Funktionsintegrität einer Sicherheitssteuerung |
Family Cites Families (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| EP2093845B1 (de) * | 2008-02-22 | 2012-10-03 | Sick Ag | Modulare Sicherheitssteuerung |
| EP2098926B1 (de) * | 2008-03-07 | 2011-05-11 | Sick Ag | Verfahren und Vorrichtung zum Programmieren und/oder Konfigurieren einer Sicherheitssteuerung |
| EP3499324B1 (de) | 2017-12-12 | 2021-01-27 | Sick Ag | Verfahren zur modularen verifikation einer konfiguration eines geräts |
| EP3543940A1 (de) | 2018-03-23 | 2019-09-25 | Siemens Aktiengesellschaft | Computerimplementiertes verfahren zum bereitstellen von daten, insbesondere für eine konformitätsverfolgung |
| DE102020122874A1 (de) * | 2020-09-01 | 2022-03-03 | Pilz Gmbh & Co. Kg | Verfahren zur Konfiguration einer modularen Sicherheitsschaltvorrichtung |
-
2022
- 2022-03-31 DE DE102022107717.9A patent/DE102022107717A1/de active Pending
-
2023
- 2023-03-22 JP JP2024556792A patent/JP2025510862A/ja active Pending
- 2023-03-22 WO PCT/EP2023/057351 patent/WO2023186666A1/de not_active Ceased
- 2023-03-22 EP EP23713645.2A patent/EP4500282A1/de active Pending
- 2023-03-22 CN CN202380031268.9A patent/CN119096206A/zh active Pending
-
2024
- 2024-09-27 US US18/899,038 patent/US20250021059A1/en active Pending
Also Published As
| Publication number | Publication date |
|---|---|
| DE102022107717A1 (de) | 2023-10-05 |
| JP2025510862A (ja) | 2025-04-15 |
| WO2023186666A1 (de) | 2023-10-05 |
| US20250021059A1 (en) | 2025-01-16 |
| CN119096206A (zh) | 2024-12-06 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| EP3961317B1 (de) | Verfahren zur konfiguration einer modularen sicherheitsschaltvorrichtung | |
| EP3961318B1 (de) | Verfahren zur konfiguration einer modularen sicherheitsschaltvorrichtung | |
| EP2012201B1 (de) | Verfahren zum Programmieren einer Sicherheitssteuerung | |
| EP2363770B1 (de) | Sicherheitsvorrichtung mit einer konfigurierbaren Sicherheitssteuerung | |
| EP3383598B1 (de) | Manipulatorsystem und verfahren zur identifikation von bedienvorrichtungen | |
| EP2399174A1 (de) | Verfahren und vorrichtung zum erstellen eines anwenderprogrammes für eine sicherheitssteuerung | |
| WO2020249323A1 (de) | Verfahren zum aktivieren oder deaktivieren zumindest einer hardware- und/oder softwarefunktionalität einer automatisierungskomponente | |
| DE102009019089A1 (de) | Verfahren und Vorrichtung zum Erstellen eines Anwenderprogramms für eine Sicherheitssteuerung | |
| EP2098925A1 (de) | Verfahren und Vorrichtung zum Programmieren und/oder Konfigurieren einer Sicherheitssteuerung | |
| DE102015015963B4 (de) | Formgebungsanlage sowie Verfahren zu deren Betreiben | |
| WO2020087099A1 (de) | Verfahren zum betreiben eines maschinensteuerungssystems sowie entsprechendes maschinensteuerungssystem | |
| EP2098924A1 (de) | Verfahren und Vorrichtung zum Programmieren und/oder Konfigurieren einer Sicherheitssteuerung | |
| WO2014079548A1 (de) | System zum bereitstellen eines individuell konfigurierten sicherheits-schaltrelais | |
| EP4500282A1 (de) | Verfahren zur durchführung einer sicherheitsüberprüfung einer modularen sicherheitssteuerung | |
| EP4432034B1 (de) | Verfahren und system zur erkennung einer konfiguration einer modularen sicherheitssteuerung | |
| EP3111283A1 (de) | Verfahren zur betätigung eines sicheren schaltelements einer anlage | |
| EP3732608B1 (de) | Verfahren zur rechnergestützten parametrierung eines technischen systems | |
| EP2835700A1 (de) | Verfahren zur Parametrierung eines Feldgeräts | |
| EP4321949A1 (de) | Modulare steuerungseinrichtung | |
| EP3757688B1 (de) | Verfahren zur konfiguration einer industriellen maschine | |
| EP3374924B1 (de) | Verfahren zum auslösen einer sicherheitsrelevanten funktion eines systems und system | |
| WO2006125405A2 (de) | Verfahren zum bedienen eines elektrischen gerätes einer automatisierungsanlage | |
| DE102013211582A1 (de) | Verfahren zur sicheren Parametrierung einer Automatisierungskomponente | |
| EP4138052B1 (de) | Verfahren zur inbetriebnahmevorbereitung eines steuergeräts für zutrittseinrichtungen, zutrittssystem und computerprogrammprodukt | |
| DE112021004863T5 (de) | Steuergerät |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: UNKNOWN |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: THE INTERNATIONAL PUBLICATION HAS BEEN MADE |
|
| PUAI | Public reference made under article 153(3) epc to a published international application that has entered the european phase |
Free format text: ORIGINAL CODE: 0009012 |
|
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: REQUEST FOR EXAMINATION WAS MADE |
|
| 17P | Request for examination filed |
Effective date: 20241031 |
|
| AK | Designated contracting states |
Kind code of ref document: A1 Designated state(s): AL AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HR HU IE IS IT LI LT LU LV MC ME MK MT NL NO PL PT RO RS SE SI SK SM TR |
|
| DAV | Request for validation of the european patent (deleted) | ||
| DAX | Request for extension of the european patent (deleted) | ||
| STAA | Information on the status of an ep patent application or granted ep patent |
Free format text: STATUS: EXAMINATION IS IN PROGRESS |
|
| 17Q | First examination report despatched |
Effective date: 20251118 |