Reliability Modeling and Analysis of Reactor Protection System Based on FPGA
摘要: 为建立基于现场可编程门阵列(FPGA)的反应堆保护系统的可靠性模型,以对系统安全提供有效的分析与验证手段。本研究采用故障树、随机Petri网模型,对CANDU堆1号停堆系统(SDS1)单通道进行可靠性建模与分析。对故障树模型分析得到最小割集,以顶事件发生概率作为系统故障概率,在考虑故障检测、维修与定期试验情况下对随机Petri网模型进行仿真得到系统的拒动概率。研究结果表明,故障树和状态空间方法存在一定局限性,随机Petri网能够反映故障检测与定期试验对反应堆保护系统的影响,可以动态地反映系统可靠性,并且避免了状态空间爆炸问题。因此,本研究建立的随机Petri网模型适用于反应堆保护系统的可靠性建模。
- 反应堆保护系统 /
- 现场可编程门阵列(FPGA) /
- 可靠性 /
- 故障树 /
- 随机Petri网
Abstract: In order to establish a reactor protection system reliability model based on the field programmable gate array (FPGA) to provide effective analysis and verification methods for system safety, this study adopts the fault tree and stochastic Petri net (SPN) models to perform reliability modeling and analysis for the single channel of CANDU reactor shutdown system 1 (SDS1). The analysis by fault tree model provides the minimal cut set. With the top event probability taken as the system fault probability, and in consideration of the fault detection, maintenance and periodic testing, the probability of rejection of the system is obtained by the stochastic Petri net model simulation. The results show that both the fault tree and state space representation are limited to a certain extent, while the stochastic Petri net can reflect the impact of fault detection and periodic tests on the reactor protection system, dynamically present the system reliability, and avoid the problem of state space explosion. Therefore, the stochastic Petri net model established in this study is suitable for the reliability modeling of the reactor protection system.-
Key words:
- Reactor protection system /
- FPGA /
- Reliability /
- Fault tree /
表 1 造成停堆拒动事件的最小割集
Table 1. Minimal Cut Set Causing Shutdown Rejection Event
i 最小割集 基本事件描述 1 {X3,X2,X0} 输入模块上限比较故障;输入信号故障;输入模块时钟故障 2 {X6,X7} 使能信号故障;决策模块时钟故障 3 {X9,X10} 手动停堆故障;输出模块比较器故障 4 {X4} 决策模块比较器故障 5 {X1,X5} 决策模块上限比较故障;下限比较故障 6 {X9,X11} 手动停堆故障;与门故障 7 {X0,X2,X8} 输入模块时钟故障;输入信号故障;与门故障高输出 表 2 随机Petri网模型仿真参数
Table 2. SPN Model Simulation Parameters
参数名称 参数值 系统故障率 5.95×10−4 系统运行时间/h 10000 定期试验时间/h 2500 维修时间/h 24 -
[1] NRC. Review guidelines for field-programmable gate arrays in nuclear power plant safety system: NRC-7006[R]. USA: NRC, 2009. [2] EPRI. Guidelines on the use of field programmable gate arrays in nuclear power plant I&C systems: EPRI-2009[R]. USA: Electric Power Research Institute, 2009. [3] EPRI. Recommended approached and design criteria for application of field programmable gate arrays in nuclear power plant instrumentation and control systems: EPRI-2011[R]. USA: Electric Power Research Institute, 2011. [4] NRC. Review guidelines for field-programmable gate arrays in nuclear power plant safety systems: NRC-2010a[R]. USA: NRC, 2010. [5] SHE J, JIANG J. On the speed of response of an FPGA-based shutdown system in CANDU nuclear power plants[J]. Nuclear Engineering and Design, 2011, 246(6): 2290-2287. [6] MCNELLES P, ZENG Z C, RENGANATHAN G, et al. A comparison of fault trees and the dynamic flowgraph methodology for the analysis of FPGA-based safety systems part 1: reactor trip logic loop reliability analysis[J]. Reliability Engineering & System Safety, 2016(153): 135-150. [7] MA Z, YOSHIKAWA H, YANG M. Module level reliability performance evaluation of digital reactor protection system considering the repair and common cause failure[J]. Annals of Nuclear Energy, 2017(110): 805-817. [8] 曹枭虓,熊华胜,郭超,等. 反应堆保护系统动态可靠性建模与分析[J]. 自动化仪表,2019, 40(6): 6-10. [9] JUNG J, AHMED I. Development of field programmable gate array-based reactor trip functions using systems engineering approach[J]. Nuclear Engineering and Design, 2016, 48(4): 1047-1057. [10] 王浩. 基于FPGA的数字化仪控系统动态可靠性评价[D]. 保定: 华北电力大学, 2018. -