Beruflich Dokumente
Kultur Dokumente
Kim Dahl
Machine safety specialist
Head of standards, Troax AB
2002 KAM, Troax DK
2006-2009 Product manager, Troax AB
2009-2012 Sales manager, Troax Nordic
2012-2015 Global sales coordinator
2015 Machine safety specialist
Content
Risk assessment
Standards
Selection of guards:
What shall be protected
Design and construction
Access to the machine
Documentation
Summary
5
Risk assessment
ISO 12100
ISO 10218
ISO 14120
ISO 13855
ISO 13857
ISO 14119
ISO 14122
7
Selection of guarding
The main criteria are:
Selection of guarding
If practicable, the risk shall be protected
by the enclosing protection.
Design of guards
Safety distance is calculated based on the
mesh size in combination with the height
of the fixed and movable guard.
Selection of fastening
The selection of fastenings
and tools shall be made in
according to the risk
assessment.
Selection of fastening
Fixed guards must be unable to
remain in place without their fixings.
Tools
Movable guards
If access is required for machine
adjustments or maintenance:
Interlocking devices
Interlocking device for movable guards,
is regulated by ISO 14119 and ISO
13849 determines the PL.
Important to remember is
the escape option
19
Verification of guards
Visual inspection
Practical tests
Measurements
Review of specifications,
drawings and documentation
21
ISO 14120
Scope:
New wording
New issues
ISO 14120
Annex C
Describes the pendulum test
23
ISO 14120
Annex B Describes projectile test
24
Summary
Reduces documentation
Board:
President: Juergen Schulin, BGN Mannheim (D)
Vice Presidents:
Carlo de Petris, INAIL Rom (I)
Dr. Peter Rdin, Suva Luzern (CH)
Secretary General: Dr. Hans-Jrgen Bischoff (D)
http://www.issa.int/de/web/prevention-machines/about
Overview Section MSS 4
Core fields of the Section MSS
http://www.springer.com/de/book/9781402082887
Overview Section MSS 5
Core fields of the Section MSS
Guideline for machine safety in Europe (only in
German)
Machinery for Europe in compliance with European
directives and standards
Summary in
English and
German
Control devices
Human factor, ergonomics and safe
machines
Stop defeating of protective devices on
machines
Explosion protection
Project to start: Digital manufacturing
Overview Section MSS 7
Project group Control Devices:
Detect and consider developments in the field of control
devices at an early stage for aspects of safety and
security on machines.
Take control devices as an important element of
machines into an integrated consideration
Co-design the international standardization if possible
and transfer new findings on an internationa level
Prepare and present expert know how practice-oriented
=> seminars => publications (safety flyers)
Overview Section MSS 8
Seminars functional safety and validation
April 24th, 2017: Hangzhou
April 26th, 2017, Seoul
Target Group:
Occupational health and safety
managers and experts. Designers of
control systems, machine/production
line builders, engineers. Test and
certification bodies concerned about
the risks associated with machines.
Overview Section MSS 9
Safety Flyers
Subjects published up to now:
Secretariat General
scholl@ivss.org
Phone: +49 621 4456 2213
Overview Section MSS 14
A NR 12 e as Normas Internacionais
AFT Aida Cristina Becker
Coordenadora CNTT NR-12
So Paulo abril 2017
CLT 1943 Ttulo II - Seco III
Segurana do trabalho
Art. 192. As partes moveis de quaisquer
mquinas ou os seus acessrios (inclusive
correias e eixos de transmisso), quando ao
alcance dos trabalhadores, devero ser
protegidas por dispositivos de segurana que
os garantam suficientemente contra qualquer
acidente.
http://www2.camara.leg.br/legin/fed/declei
/1940-1949/decreto-lei-5452-1-maio-1943-
415500-publicacaooriginal-1-pe.html
http://portal.mte.gov.br/data/files/FF8080814D5270F0014D71FF7438278E/Estrat%C3%A9gia%20Nacional%20de%20Redu%C3%A7%C3%A3o%20do
s%20Acidentes%20do%20Trabalho%202015-2016.pdf
www.hse.gov.uk/statistics/european/
NR 12 - Mquinas e Equipamentos (1978)
12.2.2. - As mquinas e os equipamentos com
acionamento repetitivo, que no tenham
proteo adequada, oferecendo risco ao
operador, devem ter dispositivos apropriados
de segurana para seu acionamento.
http://www010.dataprev.gov.br/sislex/paginas/63/mte/1978/3214.htm
DECRETO N 1.255, de 29
de setembro de 1994
Promulga a Conveno n
119, da Organizao
Internacional do Trabalho,
sobre Proteo das
Mquinas, concluda em
Genebra, em 25 de junho
de 1963
http://www.planalto.gov.br/ccivil_03/decreto/1990-1994/D1255.htm
Artigo 1
1998 CCT Metalrgicos SP- Anexo PPRPS ( mais tarde unificado com PPRMI, CCT
de tratamento de superfcie/galvnicas e estendido para todo o estado de SP.
http://www.scielo.br/scielo.php?script=sci_arttext&pid=S0102-88392003000200004
http://www.padeiros.org.br/images/noticiasimg/AMassa_Cipeiros_Nov2014.pdf
http://www.segurancaetrabalho.com.br/download/ind-panificacao.pdf
Art. 2 Consumidor toda pessoa fsica ou jurdica que adquire ou utiliza
produto ou servio como destinatrio final.
SAFE CONTROLS
INTRODUCTION TO FUNCTIONAL SAFETY (ISO 13849)
Otto Grnemann
Industrial Safety Systems
Product Marketing Services
2016 18 07
2
YOUR SPEAKER
Otto Grnemann
- Signal processing
A precise description of the required safety function is the first and most important step !
I1 L1 O1 I1 L1 O1
Power
Sensor Logic I L O
elements
I2 L2 O2 I2 L2 O2
: Resistance to faults
- The system is able to perform its function without been adversely affected by
overloads or environmental situations
: Fault Tolerance
Bathtube curve
Time t
Otto Grnemann, SICK 04.April 2017 Page 12
RELIABILITY
MTTFD
: MTTF is the inverse value of - mean time to a failure
MTTF = 1 /
: MTTF is the average time in which 63,2% of the applied systems fail
: MTTFD is the average time in which 63,2% of the applied systems fail to danger
100%
80%
63,2% 63%
60%
Faults
Fehler [%]
Sum of failures
40% F(t)=1-e-t
Failure (%)
20%
0%
0 5 10 15 20 25 30
Zeit [a]
: Therefore such elements shall be designed to withstand thiis so calle Material fatigue
: Already in 1860 A. Whler stated the basics for the scientific study of the material fatigue using a
continuous oscillation tests resulting in the so called S/N or Whler curves)
Whler curve
Load /
Tension
: After 89090 starting/landing cycles 1/3 of the cabin roof was ripped off during the flight
: Design and use errors : use at the fatigue limit and with highest number of cycles
: Micro fractures caused by oscillation where not detected during routine ultrasonic tests
: The German federal train authority shortened the inspection intervals from 300.000 to 60.000 km
BAM
Otto Grnemann, SICK 04.April 2017 Page 16
HOW DO CONTROL SYSTEMS FAIL
COMPONENT FAILURES
: Random failures
: DIVERSITY
: The resistance against dangerous failures due to common cause failures shall be taken
carefully into consideration while assessing the reliability of a SPR/CS
= =
=
Otto Grnemann, SICK 04.April 2017 Page 20
HOW DO CONTROL SYSTEMS FAIL
COMPONENT FAILURES
: Systematic failure
- Failure related to a certain cause which can only be eliminated by modification of the
design, the manufacturing process, operational procedures or other factors
: The cost of the failed mission was about 650 millions of US$
Interconnection Interconnection
INPUT LOGIC OUTPUT
: The functional safety is the engineering branch which covers the requirements and
characteristics of the safety related parts of control systems.
Otto Grnemann, SICK 04.April 2017 Page 26
FUNCTIONAL SAFETY
THE SAFETY TEMPLE
RESISTANCE
DIAGNOSTIC
STRUCTURE
RELIABILITY
PROCESS
Otto Grnemann, SICK 04.April 2017 Page 27
ISO 13849-1
RELATIONSHIPS BETWEEN THE PARAMETERS
A table with detailed values of this figure is given at Annex K of EN-ISO 13849-1
Otto Grnemann
Product Marketing Support
Tel.: +49 7681 202 5420
Otto.Goernemann@sick.de
29
17/04/2017
1
17/04/2017
approx.
IEC/ TC 64
20 ISO product- IEC ACOS
Electrical Installations &
committees
protection against electric
Shock
IEC/ TC 44
non CEN National ISO/ TC 199 non CENELEC
Electrotechnical
Mirror Safety National Mirror
EC Machinery aspects of Machinery
Committees of Machinery Committees
Working Group Safety
CLC TC 44X
national Mirror CEN TC 114 EU Machinery national Mirror
Electrotechnical
Committees Safety Directive Committees
aspects of Machinery
in CEN of Machinery 2006/42/EC in CENELEC
Safety
approx. 40 CEN
Product
Committees
CEN Advisory
Nucleus
Machinery
consistent set of standards
The machinery must then be designed and constructed taking into account
the results of the risk assessment
2
17/04/2017
The equipment covered by this part of IEC 60204 commences at the point of
connection of the supply
to the electrical equipment of the machine
Metalworking machinery
Plastics and rubber machinery
Wood machinery
Material handling machines
(robots, conveyors, transfer machines, )
Textile machines
Food machinery
Printing, paper and board machinery
Packaging machinery
Hoisting machinery
3
17/04/2017
The risks associated with the hazards relevant to the electrical equipment shall be assessed as
part of the overall requirements for risk assessment of the machine
d) Is the hoisting machine for use in mines? Yes No If a.c., number of Frequency
phases
2. Electrical supplies and related conditions (see Prospective short-circuit current at the point of supply
4.3) to the hoisting machine (kA r.m.s.) (see also item 2)
a) Anticipated voltage fluctuations (if more than 10 %) b) Type of power supply earthing (see IEC 60364-1) TN (system with TT (system with
one point directly one point directly
b) Anticipated frequency fluctuations (if more than Continuous Short time earthed, with a earthed but the
2 %) protective protective
conductor (PE) conductor (PE) of
c) Indicate possible future changes in electrical directly the hoisting
equipment that will require an increase in the electrical connected to that machine not
supply requirements point); specify if connected to that
the earthed point earth point of the
d) Specify voltage interruptions in supply if longer than is the neutral system)
specified in Clause 4 where electrical equipment has to point (centre of
maintain operation under such conditions the star) or
another point
3. Physical environment and operating conditions
IT (system that is
(see 4.4)
not directly
earthed)
4
17/04/2017
New symbols
Disconnector isolator
Disconnector circuit-breaker
5
17/04/2017
Parameters of
Power circuits conductors
Control circuits
Socket outlets Acceptable range for
I A
Parameters of
Lighting circuits protective devices tripping current I2
6
17/04/2017
Automatic disconnection
Automatic disconnection
7
17/04/2017
Interconnection of
PE terminal(s)
equipment
8
17/04/2017
GREEN-AND-YELLOW
the consequence of an insulation failure which could affect the operation of the machine
electrical disturbances to sensitive electrical equipment which could affect the operation of the
machine
induced currents from lightning which could damage the electric equipment.
Functional bonding is achieved by connection to the protective bonding circuit, but where the
level of electrical disturbances on the protective bonding circuit is not sufficiently low for proper
functioning of electrical equipment, it can be necessary to use separate conductors for protective
and functional bonding.
9
17/04/2017
10
17/04/2017
Enclosures
Heating effects
Degree of protection (at least IP22)
Doors and openings (e.g. wider than 0,9 m, opening angle >95)
11
17/04/2017
12
17/04/2017
Recommendation
BLACK AC and DC power circuits
13
17/04/2017
Patrick Gehlen
IEC/ TC44 Chairman
DE TI SR
Schuhstr. 60
91052 Erlangen, Germany
E-Mail: patrick.gehlen@siemens.com
siemens.com
14
1st Seminario Internacional
de Seguridad de Maquinaria - (SISEMAQ)
More
Design it out
Preferred
Safety function
Less
Personal protective equipment Preferred
IEC/EN 62061 and recommendations for practical use
Clause 4
The safety control system (SCS) shall be designed and constructed so that the principles of
ISO 12100 are fully taken into account.
The design of the SCS shall take into account the intended use and reasonably foreseeable
misuse of the machine
IEC/EN 62061 and recommendations for practical use
Clause 4
Integration within the risk reduction process of ISO 12100
IEC/EN 62061 and recommendations for practical use
IEC/EN 62061
Safety of machinery Functional safety of safety-related electrical, electronic and
programmable electronic control systems
Machinery sector implementation of IEC 61508, and provides a simple process for
system designers
Uses SIL (Safety Integrity Level)
Only (currently) applies to electrical technology
Focuses on documentation and provides specific requirements on fault exclusion
Relationship with EN ISO 13849 is provided via ISO 23849 (IEC 62061-1)
A non-complex subsystem designed to ISO 13849 can be used in a system
designed to IEC 62061
A non-complex subsystem designed to IEC 62061 can be used in a system
designed to ISO 13849
A complex subsystem designed to IEC 61508 can be used in a system
designed to IEC 62061 or ISO 13849
IEC/EN 62061 and recommendations for practical use
The essence in one slide: 2
1
3
IEC/EN 62061 and recommendations for practical use
Clause 4
Management of functional safety
The functional safety plan is intended to provide measures for preventing incorrect specification, implementation,
and ensuring any modification is handled correctly
IEC/EN 62061 and recommendations for practical use
Clause 4
Management of functional safety
Action plan
Documentation Audit trail
Responsibilities Who does what?
Clause 8
Validation
Clause 9
Modification
Clause 10
Documentation
IEC/EN 62061 and recommendations for practical use
Start with EN ISO 12100
ISO TR 14121-2: Helps with guidance on risk assessment and examples
of methods
Cleaning Mode - Lock the guard door when closed unless power
is OFF, motion is stopped and robot in home position
IEC/EN 62061 and recommendations for practical use
Guard Door Output Actuators
Status Status
OPEN OFF
CLOSED ON
NO CLOSED NO OFF
NO CLOSED YES OFF
NO OPEN NO OFF
NO OPEN YES OFF
YES CLOSED NO OFF
YES CLOSED YES OFF
YES OPEN NO OFF
YES OPEN YES ON
Teach Mode - Allow power for robot teaching under safe speed
conditions and with local control enabling device activated.
IEC/EN 62061 and recommendations for practical use
Go to IEC/EN 62061 Annex A Automatic Operation Mode - Prevent robot motion if
guard door is not closed.
Each subsystem must satisfy Sub system 1 Sub system 2 Sub system 3
requirements for
Systematic Integrity
See Clause 6
Convert the Control System Safety Teach Mode: Allow power for robot
Function into safety related control system teaching under safe speed conditions
and with local control enabling device
activated
Function
decomposed into Safe speed Guard door Manual local Logic Enable robot
sensing position control motion
sub-functions sensing
IEC/EN 62061 and recommendations for practical use
Teach Mode: Allow power for robot
Convert the Control System Safety teaching under safe speed conditions
and with local control enabling device
Function into safety related control system activated
Function Safe speed Guard door Manual local Logic Enable robot
decomposed into sensing position control motion
sensing
sub-functions
Safety Related Electrical Control System: Allow power for robot teaching
under safe speed conditions and with local control enabling device
activated.
IEC/EN 62061 and recommendations for practical use
Management of functional safety
Systematic Integrity
Modification
+
SUBSYSTEM
HIGH COMPLEXITY SUBSYSTEMS USE IEC 61508 OR EQUIVALENT 2 PFH
Low demand safety functions for machinery - Liaison with IEC 61511
A security risk assessment shall be carried out to identify the threats and
vulnerabilities of the safety-related control system within a defined security
context and will refer to IEC 62443 and IEC 63074 (currently in draft)
Some common clauses with ISO 13849-1 e.g. Software and Diagnostics
Thank you
PNEUMATIC SAFETY
according to ISO 13849-1
Are pneumatic
components
13849-1
dangerous?
ISO 13849
Which products to choose?
Which data is PRODUCT VALIDATION
necessary? Supplier document
Which products
can we use?
RELIABILITY DATA
Supplier document
Product validation
Validation document
B10D / MTTFD
B10 / MTBF
No reliability data
Option1:
20 million B10D for pneumatic components
(ISO 13849-1:2015 table C.1)
Hmm..No data
by the supplier?
Option2:
Use well-tried components
(ISO 13849-1:2015 clause 4.5.5)
ISO 13849-1:2015 Clause 4.5.5
well-tried components
or proven-in-use
Kinds of failures
Systematic
Random failure
hardware
failure
Common
cause
failure
hardware failure
Redundancy and diagnostics
Dump valves in action
Check valve with detection
State detection
Simple retrofitting
innovative
Safe stop horizontal
Safe stop with residual pressure release
Safe last position
SMC Brazil