Page 1
800xA for Safeguard Operation System Version 6.0 Power and productivity for a better world...
Page 3
800xA for Safeguard Operation System Version 6.0...
Page 4
In no event shall ABB be liable for direct, indirect, special, incidental or consequential damages of any nature or kind arising from the use of this document, nor shall ABB be liable for incidental or consequential damages arising from use of any software or hard- ware described in this document.
Terminology........................9 Released User Manuals and Release Notes..............10 Section 1 - Introduction Product Overview ......................11 Product Scope.......................11 What you can do with 800xA for Safeguard............12 Prerequisites and Requirements ................12 Section 2 - Operation Operating Overview......................13 Start-up Sequence ......................13 Safeguard Status Monitoring ...................14 Status Object ......................14...
Page 6
Table of Contents System Synchronization ..................23 Bypass Management .................... 23 Exception Handling ..................... 24 Latched Alarms....................27 Calibration of Gas Detectors................27 Section 3 - Operator Messages Fault Finding and User Repair ..................29 Operator Messages ......................29 Index 3BNP004849-600...
Any security measures described in this User Manual, for example, for user access, password security, network security, firewalls, virus protection, etc., represent possible steps that a user of an 800xA System may want to consider based on a risk assessment for a particular application and installation. This risk...
*Feature Pack Functionality Feature Pack functionality in an existing figure is indicated using callouts. Unless noted, all other information in this User Manual applies to 800xA Systems with or without a Feature Pack installed. Warning, Caution, Information, and Tip Icons This User Manual includes Warning, Caution, and Information where appropriate to point out safety related or other important information.
Warning and Caution notices. Terminology A complete and comprehensive list of terms is included in System 800xA System Guide Functional Description (3BSE038018*). The listing includes terms and definitions that apply to the 800xA System where the usage is different from commonly accepted industry standard definitions and definitions given in standard dictionaries such as Webster’s Dictionary of Computer Terms.
PSD system Process Shut-Down system. Released User Manuals and Release Notes A complete list of all User Manuals and Release Notes applicable to System 800xA is provided in System 800xA Released User Manuals and Release Notes (3BUA000263*). System 800xA Released User Manuals and Release Notes (3BUA000263*) is updated each time a document is updated or a new document is released.
The Operator Workplace is used for process monitoring and control. It has a generic design and can be used for different process control systems. The 800xA for Safeguard is a software product that enables you to connect an Operator Workplace to Safeguard Controllers in a MasterBus 300 network.
C&E shutdown level. • Safeguard system status and control What you can do with 800xA for Safeguard The following are various configuratios which can be done using 800xA for Safeguard. • Configure the connection of the workplace to Safeguard controllers on MasterBus 300 control network.
Section 2 Operation Operating Overview The operation of Safeguard controllers and implementation of safety applications described in this section are: • Start-up and dual system synchronization • Safeguard system status monitoring • Bypass Management and exception handling (blocking, inhibit) • Calibration of Gas detectors •...
Safeguard Status Monitoring Section 2 Operation The system errors that occur during the start-up, are displayed in the status display and alarms are generated. Safeguard Status Monitoring Status Object The Safeguard Status Object is an MMCX object with configured reftype = 38 in the Safeguard controllers.
Section 2 Operation Faceplate The safety critical applications that are subject to certification by authorities require diagnostic capabilities and status visualization available to the operators during the system degraded mode time. Figure 2. A Safeguard Status Object (SG-STATUS) in the Control Structure Faceplate The Safeguard status faceplates presents the following: •...
Page 16
Faceplate Section 2 Operation • C&E communication status. Figure 3. Safeguard Status Faceplate Table 1 shows the item designations for the Faceplate are: Table 1. Faceplate Items Description Lock button Name and description Warning and alarm indication 3BNP004849-600...
Page 17
Section 2 Operation Faceplate Table 1. Faceplate Items (Continued) Description Status indication: Isolate commanded Local control Programs running I/O Error Print Blk Local net request Local net block out Dual net request Dual net block out Aspect links: Event list Alarm list Object display Object trend display...
Object Display Section 2 Operation Object Display The Object Display is similar to the faceplate and presents Safeguard system status messages in a larger, full screen frame as shown in Figure 4. This displays: • Name and description of the individual controllers. •...
Page 20
Object Display Section 2 Operation Table 2 shows the item designations for the Object Display are: Table 2. Item Designation Object Display Description Lock frame Header Side A/B Safety system messages Total / Position / Position Total No. of Messages Acknowledge mark Message position Message text line 1...
Local Panel Section 2 Operation Local Panel An alternate way of interacting with the Safeguard 400 Series controller is the local panel. The controller has a local panel switch (ISOLATE), which has three positions (0, SCA, SCB): • The middle position (0) is normal where both SCA and SCB control the outputs unless isolated for other reasons.
Section 2 Operation Operating Instructions However, there is a deviation from this behavior. The Process Graphics (PG) aspect Local Devices shows individual Program Card indications, that is, the status of SCA and SCB are displayed. It is recommended to use the System Status Viewer from Single Node Access structure because this provides clarity on the actual status in each node.
Exception Handling Section 2 Operation Exception Handling Inhibit of Inputs The gas detector inputs and the fire inputs have the possibility for setting inhibit (Set/Reset Inhibit) on individual signals from the operator dialog. The function is used to disable actions from the signals while the alarm and event reporting is retained.
Page 25
Section 2 Operation Exception Handling Figure 5. Function Selector Aspect The dialog is also used with AMPL logic when inhibit function is implemented as part of the logic. Do not use inhibited signals for prolonged periods of time as this will jeopardize the safety functions.
Page 26
Exception Handling Section 2 Operation Block Update of Inputs Blocking of inputs and outputs should never be used for safety critical signals as this will jeopardize the safety system function. Safety outputs in blocked mode are reported in the Safeguard System status display Outputs in Manual Mode If the outputs are accessible for operator control under normal operation, the use of manual mode should be given special consideration.
Section 2 Operation Latched Alarms Latched Alarms The gas detector inputs and the loop monitored digital inputs have a latched alarm in the data base. The latched alarm can be reset (Reset Latch) for individual signals from the operator dialog. Calibration of Gas Detectors The calibration of pellistor gas detectors connected to DSAI 165/DSTA 191 is performed from the operator workplace.
Page 28
Calibration of Gas Detectors Section 2 Operation 3BNP004849-600...
Fault Finding and User Repair For details on fault finding and error messages, refer to Industrial 800xA, System, 800xA for Advant Master, Configuration (3BSE030340*). Operator Messages If incorrect parameters are specified, or if other communication problems occur, an operator message is issued. The message is included in the event list. The event list must be of type ‘Operator Messages List’...
Page 30
Operator Messages Section 3 Operator Messages Dual: No response from the dual system Check if both controllers are available on the network. They might be in configuration mode. Dual: Object selected in one of the dual nodes only Check if both controllers are available on the network or if one of the controllers are in configuration mode.
Page 31
Section 3 Operator Messages Operator Messages Bypass Management: Maximum number of overrides in the system is exceeded The Safeguard system controls the number of simultaneously occurring overrides (inhibit, block, manual mode). The function is controlled by a Safeguard configuration parameter. Bypass Management: Block commands are not allowed in the system The Safeguard system controls the possibility of using the block commands in the...