S32K324 C40_IP Flash Array integrity Check

取消
显示结果 
显示  仅  | 搜索替代 
您的意思是: 

S32K324 C40_IP Flash Array integrity Check

408 次查看
Daniel_Wax
NXP Employee
NXP Employee

Tesla Motors has hired BCS to create an ASIL-D steering angle monitor.

They are working on safety (100 pin package) and had some questions

 

I was looking at the Static FMEDA 

Daniel_Wax_1-1701109175504.png

 

regarding the Flash Array Integrity Check (FlashAI_CHECK):

Daniel_Wax_2-1701109512964.png

 

 

 

 

And have some questions I hope you could help me with:

 

  1. It seems like the FlashAI_CHECK is trying to prevent the same effects as other potential failures. In column E we have different failures, but all share the same effects. Shouldn’t it be enough to cover the effects once?
  2. Looking at the column E for the FlashAI_CHECK, refers to voltage read. Seems to me that is related to the voltage used internally by the MCU to read the Flash. Is the Flash memory powered by a single source or are there different?

 

 

标签 (1)
0 项奖励
1 回复

344 次查看
ehtesham_khan
NXP Employee
NXP Employee

Hi Daniel Wax,

1. Different failure modes in a flash generally have same effects which are erroneous access to flash memory and wrong instruction accessed. We apply safety mechanisms for a failure mode, not for the effects. Multiple failure modes can have same effects. For getting the sufficient diagnostic coverage, the corresponding safety mechanisms must be applied. Having single safety mechanism will not be sufficient. 

2. Read voltage is the internally generated supply which is used to read the correct values of the flash memory block. This supply, V25, is internally generated by VDD_HV_A / VDD_HV_B. For more details, refer to the power management chapter in Reference Manual.

Regards,
Ehtesham

0 项奖励