Professional Documents
Culture Documents
5.1 SIRIUS position switches 5/2 9.1 G120 drive inverter 9/2
5.2 SIRIUS Emergency Stop 5/7 Overview 9/2
5.3 SIRIUS command and signaling devices 5/8 Benefits 9/3
5.4 SIRIUS safety relays 5/11 Applications 9/4
3TK2845 “2x monitored start” 5/11 Functions 9/5
3TK2845 “agreement button” 5/12 Integration 9/8
3TK2845 “mechanical lock” 5/14 Technical data 9/9
3TK2845 “solenoid lock” 5/16
5.5 ASIsafe 5/18 10 References
5.6 Safety Motorstarter ET 200 Solutions 5/21 refer to the Safety Integrated System Manual, 5th Edition
Safety Motorstarter Solution Local 5/24
Safety Motorstarter ET 200pro Solution Local 5/25 11 Appendix
Safety Motorstarter Solution PROFIsafe 5/28 11.1 Terminology and abbreviations 11/2
Safety Motorstarter Solution PROFIsafe for PROFINET 5/29 11.2 References 11/6
11.3 Contact – Internet, Hotlines 11/6
6 Fail-Safe Optical Sensors 11.4 Seminars available for safety technology,
6.1 Switching strips SIMATIC FS100 6/2 Standards and Directives 11/7
6.2 Light barriers SIMATIC FS200 6/2 11.5 Index 11/19
Important note:
The products described here have been developed to realize safety-
relevant functions as part of a complete plant or machine. Generally,
a complete safety-relevant system includes sensors, evaluation units,
signaling devices and concepts for safe shutdown and stopping. The
manufacturer of a plant or machine is responsible for ensuring the
correct overall function. Siemens AG, its local offices and affiliated
companies (in the following “known as Siemens“) is not in a position
to guarantee all of the properties and features of a complete plant or
machine which Siemens did not design.
Siemens does not accept any liability for recommendations which are
given or implied in this Manual. It is important that all of the associated
product documentation is carefully observed in order to correctly use
the products. This Manual shall neither become a part of nor modify
any prior or existing agreement, commitment or relationship. The sales
contract contains the entire obligation of Siemens. The warranty
contained in the contract between the parties is the sole warranty of
Siemens. Any statements contained in this Manual neither create new
warranties nor modify the existing warranty.
Foreword
Fail-Safe Communications
using Standard Fieldbuses 4
Fail-Safe Controls 7
Fail-Safe Drives 9
References
refer to the Safety Integrated System Manual, 5th Edition 10
Appendix 11
4 Fail-Safe Communications
using Standard Fieldbuses
PROFINET – the new standard for Data transfer using TCP/IP or UDP/IP Distributed field devices can be inte-
automation protocols is completely adequate for grated just the same as existing field
control sequences that are not critical bus systems using proxy technology.
PROFINET has been developed by the from a time perspective. Process data The system fulfills all requirements
PROFIBUS User Organization PNO. This that is critical from a time perspective - regarding installation technology suit-
means that it is a non-proprietary, open e.g. cyclic net data or event-controlled able for industrial environments, sim-
standard based on Industrial Ethernet. alarms - require, on the other hand, ple network administration and diag-
PROFINET consequentially uses Fast real-time data transfer. PROFINET uses nostics, protection against unautho-
Ethernet with data transfer rates of an optimized real-time communications rized access and just recently, also fail-
100 Mbit/s and switching technology, channel that with cycle times in the safe communications using conven-
utilizes established IT standards such range of between one and ten milli- tional Industrial Ethernet components
as TCP/IP - and is offering extensive seconds reaches a performance that (refer to Fig. 4/1).
functions for configuration, diagnos- is comparable with any of the field
tics as well as accessing process data buses available in the market.
via the Internet. PROFINET Isochronous Real-Time (IRT)
with a cycle time under one milli-
second with a jitter accuracy of less
than one microsecond is available for
especially sophisticated tasks such as
clock cycle synchronous motion control
applications.
Integrating existing networks The use of the proxy concept simplifies At the same time, it is the Ethernet
the integration of existing fieldbus node with PROFINET communications
PROFINET also allows existing PROFIBUS systems but at the same time main- (Fig. 4/2).
networks and other fieldbus systems taining a high degree of transparency.
with either standard as well as fail-safe On Ethernet, a proxy is the represen- In addition to proxies that are hard
communications to be integrated. This tative for one or several fieldbus wired, proxies with wireless LAN con-
allows composite systems to be config- devices (e.g. connected to PROFIBUS). nectivity can also be used on Industrial
ured comprising fieldbus and Ethernet- It ensures transparent communications Ethernet, which permits completely
based sub-systems as well as a gradual between the networks and, for instance, new automation solutions.
transition to PROFINET. Not only this, it transfers cyclic data to the fieldbus
helps to protect investments that have devices. As PROFIBUS master, a proxy
buses - allowing them to also be used coordinates data transfer between
for fail-safe communications. PROFIBUS nodes and devices.
Fig. 4/2
Fail-safe communications via PROFIsafe for PROFIBUS and PROFINET
Fig. 4/3
Diagnostics index assignment for PLC interrogation
As a result of the wide variety of actuators, enclosures and contact systems that are required
in the field, SIRIUS 3SE position switches are convincing in almost every application.
With positively opening contacts.
Versions with dimensions, mounting points and characteristic values are available that are
in compliance with Standards EN 50041 to EN 50047.
As a result of their significantly lower switching distance and precise switching points, our
short-stroke switches ensure safety-relevant shutdown even for extremely short actuation travel.
A wide variety of enclosures and actuator versions are available to monitor protective doors.
Thanks to the multiple mechanically coded actuators, it is not possible to simply bypass the
protective devices.
With positively opening contacts.
Locking mechanism:
Position switches with separate actuator and locking mechanism keep a protective door inter-
locked until the operating zone can be entered without incurring any danger. An electrical
signal, e.g. from a standstill (zero speed) monitor controls the interlocking solenoids and
therefore releases the protective door.
Hinge-mounted switches
Versions with a standard enclosure acc. to EN 50047 that are mechanically connected to the
hinge axis as well as hinge-mounted switches with already mounted hinge are available.
With positively opening contacts.
The NC contacts already open at protective door opening angles of 4 degrees and
issue the shutdown command. For versions with snap-action contacts, the signaling
command (NO contact) is simultaneously issued with the shutdown command (NC contact).
Magnetically-operated switches
Design Examples
• Hinge-mounted switches:
Compact contact unit that is directly
mounted on the hinged axis or with
already pre-assembled hinge.
4. Magnetically-operated switches:
Technical data
Cable-operated switches are, depending on the length of cable required, available in various
designs. Cable lengths of up to 100 m are possible. Different contacts are available for each
design.
In order that the state of the cable-operated switch is still visible at a distance, the switch can
be equipped with an LED signal display.
Extensive range of accessories.
Available elements:
Steady-light, flash, rotating beacon, repeated light flash and siren elements
Colors: Red, yellow, green, blue, clear (white)
Devices are connected using screw and Cage Clamp terminals.
Up to 5 elements can be mounted in each signaling column.
Various acoustic modules up to 105 dB are available.
8WD signaling columns can be directly connected to the AS-Interface bus system through
the ASI module that can be integrated - even using A/B technology.
Downtimes can be minimized using the new GSM radio element thus increasing productivity.
When the individual signal elements are energized, the GSM element sends an appropriate
SMS to a cellular telephone. Easy to commission without any programming costs. The GSM
frequency of either 900 or 1800 MHz means that it can be used in all of the usual European
networks.
Description
Description
Description
Application
Cascading input:
Description
Application
Cascading input:
Safety monitors
Emergency Stop devices can be directly connected using the Standard ASI Interface with
safety-relevant communications.
This applies to Emergency Stop devices from the range of SIRIUS 3SB3 command devices
that are mounted in front panels and for mounting in an enclosure. An Emergency Stop
device mounted in a front panel can be directly connected to the AS-Interface via a safety
module.
Various AS-Interface capable enclosures equipped with 3SB3 command devices can be
implemented with safety-relevant connection for an Emergency Stop.
Command and signaling devices can be arranged in enclosures according to customer
specifications. These can be configured using a configurator that can be found under the
following link:
http://www.siemens.de/sirius-befehlen
SIRIUS position switches can be directly connected using the standard AS-Interface with
safety-relevant communications. There is a direct connection available for this purpose,
that is mounted onto the position switch thread. This means that the components for
the safety functions no longer have to be conventionally wired.
SIMATIC sensors
The light curtains and light grids, Category 4 according to EN 954-1 offer active optical
protection for persons at machines.They can be optionally directly connected to AS-Interface
in a safety-relevant fashion.
SIMATIC sensors
The laser scanner is an optical electro-sensitive protective device to secure hazardous areas.
It has a radius of up to 4 m. The AS-Interface version permits a direct safety-relevant connection
to be established.
The compact K45F safety module is equipped with 2 safety-relevant inputs for electro-
mechanical transmitters and sensors.
In operation up to Category 2 according to EN 954-1, both inputs can be separately used.
However, the module has a 2-channel input if Category 4 is required.
The compact K60F safety module is equipped with 2 safety-relevant inputs for electro-
mechanical transmitters and sensors.
Both inputs can be separately used in operation up to Category 2 according to EN 954-1.
However, the module has a 2-channel input if Category 4 is required. The module also
has two non-safety-relevant outputs. K60F is available in two versions:
• Power supply for the outputs via the yellow cable
• Auxiliary power supply for the outputs via the black cable (Vaux.)
The safety SlimLine Module S22.5F has 2 “safety” inputs for electro-mechanical sensors
and allows safety-relevant signals to be connected to ASIsafe in local electrical cabinets
and boxes.
Both inputs can be separately used for operation up to Category 2. The module has a
2-channel input if Category 4 is required.
Two S22.5F module versions have been recently included in the range, which in addition
to the two safety-relevant inputs, also have two standard outputs. They are either supplied
from the yellow AS-Interface cable or via the auxiliary voltage from the black 24 V DC cable.
The safety SlimLine modules S22.5F are suitable for use in control cabinets and local electrical
enclosures. They have removable terminals for simple installation/replacement.
AS-Interface Analyser V2
The new AS-Interface Analyser is the ideal supplement for local diagnostics of the AS-Interface
Networks.
The quality and function of an AS-Interface installation can be completely checked using the
analyser - this significantly speeds-up commissioning. Monitoring, evaluating and preventive
investigation of the AS-Interface network are simpler and more detailed.
An LED display directly at the unit allows the network to be monitored without having to
use a note-book. Further, the analog I/O signals and the state of the safety slaves are now
displayed. Preventive diagnostics is simplified as a result of the newly introduced "common error
signal". Thanks to the further optimized operator navigation, users with somewhat less ex-
perience can start to use the “Expert Mode”.
Transline 2000
The basic and comprehensive AS-i diagnostics is now supported by the HMIpro operator soft-
ware TRANSLINE 2000 package.
It is now possible to simply engineer the system in a standard way as pre-configured screens
are being integrated - and now also taken into account ASIsafe Slaves. Users are provided with
a fast overview from where they can call-up detailed information about all of the plant and
system components.
All of the diagnostic functions of the AS-i bus can be displayed at any time on the HMI screen
via the control (PLC) and graphically displayed next to the master diagnostics (when slaves fail,
etc.).
Overview applications with reference to individ- costs, wiring and equipment - but also
ual machines or complete plants. This where availability and flexibility counts.
As part of the SIMATIC ET 200 distrib- is true for the production as well as for
uted I/O system, all motor starters are the process industry. The direct or re-
integrated into the existing automation versing motor starter for ET 200S and
system via PROFIBUS or PROFINET. for ET 200pro can be combined with
The finely modular system architecture safety systems. They are used wherever
guarantees optimum integration of all it is decisive to reduce engineering
• Direct and reversing starters • Direct and reversing starters In addition to all of the features of Motor-
• Power range up to 12 A / 5.5 kW • Low number of versions as a result starter High Feature, ET 200S Motorstar-
• Self-establishing power bus of the wide range overload protection ter Failsafe also offer:
ET 200S up to 40 A • Selective motor protection concept
ET 200pro up to 25 A that can be parameterized via the bus • Intrinsically safe, based on a self-moni-
• Remote reset toring function certified by the German
• Power fed via Technical Inspectorate (TÜV) and inter-
PROFIBUS/PROFINET nal redundant shutdown in compliance
• Power range with Category 4 acc. to EN 954-1 and
ET 200S to 16 A / 7.5 kW SIL 3 acc. to IEC 61508
ET 200pro to 12 A / 5.5 kW
• Self-establishing power bus: • Assigned to one of 6 safety-relevant
ET 200S up to 50 A shutdown groups
ET 200pro up to 25 A
• Short-circuit strength, ET 200S:
Coordination type, Category 2
• Extensive diagnostic functions
ET 200pro Station with motor starters ET 200pro Station with motor starters ET 200pro Station with motor starters
Standard and High Feature Standard and High Feature Failsafe
The Safety Motorstarter ET 200 Solu- • Safety modules concept that takes into account
tions allow motors to be shutdown in • Motorstarter Standard trends in automation technology
a safety-relevant fashion and are pre- • Motorstarter High Feature and the appropriate standards - and
destined for all applications up to • Motorstarter Failsafe (ET 200S) is also accepted in the field. This is
Category 4 according to EN 954-1 or the reason that two different multi-
SIL 3 according to IEC 61508. They The topmost objective is to offer an functional safety concepts are avail-
comprise: optimum and highly effective safety able:
Fig. 5/3
Integrating external safety circuits
Mounting dimensions (W x H x D) in mm
• Direct and reversing starters mm 110 x 230 x 170 110 x 230 x 150
Permissible ambient temperature
• in operation oC -25 ... +55
• during storage oC -40 ... +70
Permissible position in use Any
Vibration strength acc. to IEC 60068, Part 2-6 2g
Shock strength acc. to IEC 60068, Part 2-27 Semi-sinusoidal 15 g/11 ms
Current drain
• from the auxiliary circuit L+/M (U1) mA Approx. 20
• from the auxiliary circuit A1/A2 (U2) –
Rated operating current for power bus Io A 25 16
Rated operating voltage Vo V 400
Approval DIN VDE 0106, Part 101 V to 500
CSA and UL-listed V to 600
Connection cross-sections
Power infeed mm2 max. 6 x 4
Degree of protection IP 65
Shock hazard protection Safe to finger touch
Degree of pollution 3, IEC 60664 (IEC 61131)
Rated withstand voltage strength Vpulse kV 6
Rated insulating voltage VI V 400
Rated operating current for starter Io
AC-1/2/3 at 40 oC
• at 400 V A 25 16
• at 500 V A 25 16
Rated short-circuit interrupting capacity kA 50 at 400 V
Coordination type acc. to IEC 60947-4-1 2
Protective separation between main
and auxiliary circuits V 400, acc. to DIN VDE 0106. Part 101
Switching times at 0.85 ... 1.1 x Vo
• Closing delay ms – 25 ... 100
• Opening delay ms – 7 ... 10
Device functions
• Group diagnostics Yes, can be parameterized
Device displays
• Group fault SF-LED (red)
Crushing edges at many machines and Electro-sensitive light barriers are espe- The LS4 laser scanner is an optical dis-
other pieces of equipment represent cially suitable if there is little space tance sensor to flexibly secure hazar-
a risk of hazard. In situations such as when securing access to hazardous dous zones. It emits safe laser pulses
these, the best form of security is rub- zones, dangerous locations or access and by evaluating reflections, the scan-
ber switching strips, that stop the po- points. These light barriers have an ner detects persons and objects and
tentially hazardous motion in a fail-safe IP65 degree of protection and in Cate- responds corresponding to the pro-
fashion. They can also prevent injury by gory 2 have a range of up to 150 m. grammed protective fields.
acting as a buffer. The light barriers, Category 4 with a
range of 60 m are equipped with infra-
The rubber profile (signal transmitter) red light whose frequency is modulated
is optically monitored using a fail-safe and have an integrated dust monito-
send/receive sensor, that is inserted in ring function. In conjunction with addi-
the profile from the outside. It can be tional evaluation units, start/restart in-
cut to size on-site so that it can be used hibit, contactor monitoring or muting
for applications of any length. functions are possible.
Light curtains 3RG78 41 for Cate- Light curtains 3RG78 43 with inte-
gory 2 acc. to EN 954-1 grated evaluation for Category 2
acc. to EN 954-1, developed acc.
• Resolution 30, 55 and 80 mm, to EN 61508 (SIL 2), suitable for
• Protective field heights from 150 mm risk assessment acc. to prEN ISO
to 1800 mm, 13489
• Host and guest devices can be
cascaded for higher protective • Resolutions 20, 30, 40 and 90 mm
field heights or lengths - or for • Protective field heights from 150 to
angled arrangements 1800 mm
Resolution Protective field heights Beam number Beam clearance Resolution Protective field heights
14 mm 150 to 1800 mm Light grid, 500 mm 20 mm 150 to 1800 mm
2-beam
30 mm 150 to 1800 mm Light grid, 400 mm 30 mm 150 to 1800 mm
3-beam
50 mm 450 to 1800 mm Light grid, 300 mm 40 mm 150 to 1800 mm
4-beam
90 mm 750 to 3000 mm Transceiver, 500 mm 50 mm 300 to 1800 mm
2-beam
80 mm 450 to 1800 mm
90 mm 150 to 1800 mm
Fail-safe SIMATIC controls fulfill all The previous range of fail-safe CPUs
important Standards and regulations has been expanded by two new S7-
and are certified by the German 300 CPUs with integrated PROFINET
Technical Inspectorate (TÜV). interface.
Comparison of the various families of I/O Data transfer rate PN 100 Mbit/s
Packaging technology ET 200S S7-300 with central and/or distributed fail-safe S7-400 with
I/O distributed
fail-safe
I/O
Range of applications Distributed Medium performance range Medium to upper Top performance
applications performance range range
in the lower per-
formance range
RAM 64 KB 192 KB 256 KB 512 KB 1.4 MB data
1.4 MB code
Load memory 64 KB - 8 MB 256 KB integr.
(plug-in) 64 KB - 8 MB
Flag bits 2 KBit 16 KBit 64 KBit 128 KBit
FB/FC/DB 512/512/511 2048/2048/1023 2048/2048/2047 2048/2048/4095
Fail-safe I/O Up to 28 Up to 320 > 500 > 1000
I/O address 244 Byte / 2 KB / 2 KB 8 KB / 8 KB 16 KB / 16 KB
range I/O 244 Byte
Process image I/O 128 Byte / 384 Byte / 384 Byte 1 KB / 1 KB 16 KB / 16 KB
128 Byte
Interfaces MPI / DP MPI and MPI / MPI / DP and MPI / DP and MPI / DP and MPI / DP and
DP PN DP PN DP
No. of bus devices 32 125 124 and 128 125 124 and 128 125
Dimensions 60 x 120 x 75 40 x 125 x 130 80 x 125 x 130 25 x 290 x 219
Main Order No. 151-7FA.. 315-6FF.. 315-2FH.. 317-6FF.. 317-2FJ.. 416-2FK..
6ES7
Shared I/O
Fail-safe Digital input Digital output Power module PM Power module PM Power module PM
ET 200S modules 4/8 F-DI 24 V DC 4 F-DO 24 V DC PM-D F 24 V DC PM-E F pp 24 V DC PM-E F pm 24 V DC
No. of 4 (2-channel for 4 for 24 V/2 A 6 shutdown groups 2 relays Up to 2 SIL 3 outputs
inputs/outputs SIL 3 sensors) each 3A (total current 10 A) for 24 V/2 A,
8 (1-channel for (total current 5 A) 2 relays (total current 10 A)
SIL 2 sensors)
Input or 24 V DC 24 V DC 24 V DC 24 V DC 24 V DC
output voltage
Main Order No. 6ES7 138-4FA..-.... 6ES7 138-4FB..-.... 3RK1903-3BA..-.... 6ES7 138-4CF4.-.... 6ES7 138-4CF..-....
No. of inputs
2-channel for SIL 3 sensors 8 4
1-channel for SIL 2 sensors 16 8
Input voltage 24 V DC
No. of outputs – 4 P/M switching SIL3
Output current – 24 V DC / 2 A
Main Order No. 6ES7 148-4FA..-.... 6ES7 148-4FC..-....
Fig.8/1
SINUMERIK 840D powerline with SIMODRIVE 611 digital, SINUMERIK 840D sl with SINAMICS S120
Overview
The new SINUMERIK 840D sl offers a SINUMERIK 840D sl is integrated in the SINUMERIK 840D sl distinguishes itself
high degree of modularity, openness, SINAMICS S120 drive converter system as a result of its flexibility, highest dy-
flexibility, a standard and unified struc- and is supplemented by the SIMATIC namic performance, precision and the
ture for operator control, programming S7-300 automation system. It is a new, fact that it can be optimally integrated
and visualization. No only this, it also digital complete system admirably suit- into networks.
provides a system platform with lead- ed for the medium and upper perform-
ing-edge functions for almost all tech- ance ranges.
nologies.
Fig. 8/2
Connecting sensors/ actuators with the fail-safe PROFIsafe I/O
9.1 G120 drive inverter By suitably combining the various In conjunction with a Safety Control
Control Units with the wide range Unit (this is identified by the “-F” type
of Power Modules, a drive solution supplement), a drive is transformed
is obtained that is optimized both for into a Safety Integrated Drive.
Overview the application and in terms of cost.
This has a fail-safe closed-loop control
The SINAMICS G120 drive inverter is The PM240 Power Module (with inte- function for induction motors in various
a modular system for standard drives. grated braking chopper, prepared for control modes (V/f, FCC, vector control
resistor braking) as well as the PM250 with and without encoders).
Every SINAMICS G120 comprises a Power Module (suitable for regenerat-
Power Module (PM), a Control Unit ing into the line supply) are suitable The fail-safe drive inverter has four
(CU) and a Basic Operator Panel (BOP). for use in safety-relevant applications. safety-relevant functions certified
according to EN 954-1, Cat. 3 and
IEC 61508, SIL 2.
• Flexibility:
The modularity of SINAMICS G120
allows both fail-safe as well as stan-
dard components to be simultane-
ously used.
• Cost reduction:
In may cases, external switching
devices and relays can be eliminated
by using “Safe Torque Off”.
Fig. 9/2
SINAMICS G120 drive inverter, frame size A-F, with or without CU or Basic Operator Panel • Reliability:
(BOP) The “Safe Torque Off” function is a
pure electronic function and there-
fore has no contacts.This results in
These safety functions can either be Benefits the shortest and reliable response
controlled using safety-relevant digital times (e.g. light curtains used for
inputs (FDIs) or directly using PROFIsafe. In conjunction with the fail-safe Control personnel protection.
The CUs of the G120 product family Unit and Power Module, SINAMICS
offer two safety-relevant digital inputs G120 offers a transparent and efficient
as well as also a PROFIBUS interface safety solution: • Simple engineering
that can be parameterized correspon- These functions are engineered
ding to the actual configuration. When compared to conventional solu- with the “Starter” engineering tool
tions, the safety acceptance procedure that is used for the other drive units.
The G120 drive inverter is parameter- in the machine is significantly simpli-
ized and commissioned using “Starter” fied:
- a screen form oriented engineering • High availability:
tool that users can order at no charge. • The integration of the safety system Parameters can be easily copied to
allows safety-relevant concepts in-line other drive inverters (e.g. when drives
with those required in practice but at are to be replaced) as an external
the same time simplifies the installa- memory medium (MMC - Micro
tion. Memory Card) is used.
• As a result of the integrated functio-
nality, less space is required in the
electrical cabinet when compared to
“classic” safety systems utilizing con-
ventional components.
Applications Design
Fig. 9/4
By combining it with an F-CU, a Power Module becomes a safety-relevant drive
Fig. 9/5
Function architecture for Safe Torque Off (STO)
1. Safe Torque Off (STO) - the well as via fail-safe digital inputs. For the expected signal response is verified
torque is safely disabled to pre- PROFIsafe, the appropriate data integri- using a feedback signal. Safety-rele-
vent the drive actively moving ty is achieved using a checksum (CRC). vant brake control is therefore obtained.
For the safety-relevant digital input,
The safety function “Safe Torque Off ” this is achieved as a result of redun- In addition, for shutdown via the indi-
interrupts the power supply (shutdown dancy (Channel A, Channel B). vidual shutdown paths, a forced check-
path A) that transfers the pulses in the ing procedure is applied by checking
power unit and additionally cancels the The safety-relevant shutdown is also the expected signal responses via the
pulses (shutdown path B). As a result realized through two channels using feedback signals from the particular
of the appropriate feedback signals two processors (processor 1 and pro- switching actions.
(feedback signal A, feedback signal B), cessor 2). They verify their expected
the drive is in a safety-relevant no-tor- signal responses using a crosswise
que condition and is prevented from data comparison.
restarting.
A brake is automatically applied with
Safe Torque Off can be selected both “Safe Torque Off”. The brake is also
via PROFIBUS/PROFINET (PROFIsafe) as applied through two channels whereby
Fig. 9/6
Function architecture for Safe Stop 1 (SS1) and Safely-Limited Speed (SLS)
2. Safe Stop 1 (SS1); Safe Stop 1 The drive is braked along a braking ramp If the braking function fails, then a safe
to continually monitor a safe brak- that can be parameterized. During brak- stop is immediately initiated and the
ing ramp ing, the frequency setpoint is continu- drive goes into an error state.
ally compared with the feedback signal
The “Safe Stop 1” safety function (safe of the actual frequency detection.
braking ramp) monitors the drive while
it brakes to ensure that it finally comes If the frequency for the zero speed
to a stop. monitoring is fallen below, a safe
stop is initiated in the drive.
• SLS mode 0:
An error is immediately output if, when
initiating the safely-limited speed, the
actual frequency is higher than the
upper limit value. As a result, the drive
inverter is stopped using the safety
function “Safe Stop 1”.
• SLS mode 2:
If, when initiating the safely-limited
speed, the actual frequency is higher
than the upper limit value, an error
is immediately output and the drive
inverter is stopped using safety func-
tion “Safe Stop 1”.
Integration
Fig. 9/9
Controlling the safety functions via PROFIsafe
Fig. 9/10
Controlling the safety functions via fail-safe digital inputs with connection to the bus
Fig. 9/11
Control via fail-safe digital inputs
Combination of the probability of the Function (e.g. of a machine or a con- This is a function that is intended to
occurrence of damage and the extent trol) whose failure (or breakdown) avoid or minimize hazards to person-
of the damage. can increase the risk(s). nel, damage to the machine or the
execution of operational processes.
It has priority over every other opera-
Feedback circuit Safety functions of EN 954 con- ting mode.
trols
Circuit to monitor controlled contac-
tors. "A function, initiated by an input sig- Stop Category
nal and processed by safety-related
The function of contactors can be parts of controls that allows the A term which is used in EN 60204-1
monitored by reading back the positi- machine to achieve a safe condition to designate three different stopping
vely driven auxiliary contacts using an (as system)." functions.
evaluation unit. If the contactor con-
tacts are welded, the evaluation unit
prevents a restart. Safety-related control function Partial potential group
(IEC 62061)
A partial potential group exists, if within
Safety Integrity Level (SIL) Control function that is executed by a a potential group, the auxiliary voltage
safety-related control system in order can be partially switched out.
In IEC 61508, this is defined as the that a system goes into a safe condi-
measure for the safety performance tion (e.g. machine) or to avoid hazar-
of electrical or electronic control dous conditions occurring. Enabling device
equipment (-> Chapter 1 of the
Safety Integrated System Manual, Additional manually actuated control
5th Edition). Safety-related control function device that permits a specific function
of a machine if it is continually actua-
Slightly differing definitions are provi- ted.
Safety ded in the various Standards.
ANSI American National Standards HMI Human Machine Interface NFPA National Fire Protection
Institute Association
IBS Commissioning
BIA German BG Institute for OP Operator Panel
Safety and Health IMS Indirect Measuring System
OSHA Occupational Safety and
BWS Electrosensitive devices KDV Cross-checking Health Administration
CNC Computerized Numerical MRPD Machine Readable Product PLC Programmable Logic Controller
Control Designation: Order No. of
Siemens components PM Positive-ground switching
CPU Central Processing Unit
NC Numerical Control PP Positive-Positive switching
DMS Direct Measuring System
NCK Numerical Control Kernel S5 SIMATIC S5
FTS Driverless transportation
system NCU Numerical Control Unit S7 SIMATIC S7
Previously used function designation Function designation according to IEC 61800-5-2 (draft)
http://www.siemens.de/simodrive
SINUMERIK
http://www.siemens.de/sinumerik
SINAMICS
http://www.siemens.de/sinamics
This course provides you with the cur- - Evaluating conformity Target groups
rent situation - as far as standards are • EC Directive
concerned - in production technology. - Basic, definitions, Decision makers, sales personnel,
You will also get to know how to cor- requirements, implementation project managers, project team
rectly apply it in practice using selected • Overview of the Standards members, programmers, commissio-
examples. The objective of this course is - EN ISO 12 100 (EN 292), ning engineers, users
to merge theory and practice. You will EN 1050 (ISO 14121)
secure a high production quality and - EN 60204-1 Duration
achieve competitive advantages by - EN 954-1, (prEN ISO 13849-1),
competently implementing this know- EN ISO 13849-2, (EN 954-2) 2 days
ledge in your own operation. - EN 62061, IEC 61508
• Example from the field - automobile Course fee
Contents industry (painting shop, subsequent
handling with transport using a rail- € 680
• EC Machinery Directive based system) We reserve the right to revise prices
- Basics, definitions, requirements, - Standards and use
implementation, application on - Applications Course locations
new machines and new machine - Configuration/design and implemen-
equipment tation of the risk analysis using Nuremberg, Mannheim
- Applying when making modifica- conventional wiring and bus-based
tions and upgrading solutions.
Participants learn how to handle, engi- • Fail-safe communications PROFIsafe Target groups
neer, program, commission, diagnose (CPU-CPU communications,Master-
and troubleshoot distributed safety sys- slave communications) Programmers, commissioning
tems. This includes the fail-safe CPUs • Diagnostic capability (CPU diagnos- engineers, application engineers
315F-2DP, CPU 317F-2DP, CPU 416F DP tics, I/O diagnostics, other diagnos-
and the IM151-F CPU. The fail-safe pro- tic tools) Duration
gramming is realized in the program- • Exercises on configuring the I/O,
ming languages F-FBD or F-LAD. communications, troubleshooting 3 days
• Examples for programming
Contents (Emergency Stop, protective door, Course fee
safety-related shutdown, passiva-
Overview, Standards and Directives tion, special programming issues) € 1260
• AS S7-300F (principle, system We reserve the right to revise prices
design and I/O)
• Engineering fail-safe I/O with distri- Course locations
buted safety
• Programming a safety-related user Essen, Hanover, Mannheim,
program Nuremberg, Stuttgart
Participants learn how to handle, confi- • Programming a safety-relevant user Course locations
gure engineer, program, commission program using CFC
and troubleshoot F-systems. These • Fail-safe communications Profisafe Essen, Mannheim, Nuremberg
include fail-safe CPUs 414-4 H and CPU • Exercises to configure I/O, commu-
417-4 H that are optionally available as nications, fault-finding
high availability versions. The CFC pro- • Programming example, special
gramming language is used to program programming issues
in a fail-safe fashion the safety-related
applications that these CPUs control. Target groups
This course addresses all employees in • Which measuring equipment makes • Introduction into Standards, CE
development, mechanical design, pro- sense for fault finding and how is it caution, new EMC directive!
duction and service that require practi- used
cal know-how and skill sets regarding • Tips and tricks when fault-finding, Target groups
EMC for their day-to-day work. The indi- how you can subsequently increase
vidual subjects will be highlighted using the noise immunity Programmers, commissioning
video films. The effects of EMC pheno- • Causes and effects of static dischar- engineers, application engineers,
mena with effects that are manifested ge and the appropriate counter- service personnel, maintenance
in practice with the appropriate measu- measures personnel
res to prevent them and counter-mea- • The advantages and disadvantages
sures will also be demonstrated. The of different grounding techniques, Duration
objective of this training course is to what causes potential differences,
learn how to avoid or resolve EMC faults. how is potential bonding implemen- 3 days
ted
• Causes, effects and avoiding harmo- Course fee
Contents nics, resonance effects in the line
supply, filter circuits, blocking cir- € 1140
• What you have to especially observe cuits etc. We reserve the right to revise prices
when planning plants and systems • When and how can filters be effec-
• How an EMC-correct electrical cabi- tively used Course locations
net looks like, especially with varia- • Everything about cable shield connec-
ble-speed drives, background infor- tions Erlangen, Mannheim, Munich,
mation on the individual cabinet • Motor bearing currents, cause, Chemnitz, Stuttgart, Frankfurt,
design rules effects, counter-measures Hanover
• How is a differentiation made bet- • Aspects related to lightning protec-
ween software, hardware and EMC tion, identifying hazards up to the
disturbances use of protective elements
This course provides participants that • Minimum ignition curves Target group
develop, construct and support explo- • Intrinsically safe and the associated
sion-protected electrical equipment electrical equipment Decision-makers, sales personnel,
and intrinsically safe systems a more • Properties of special, intrinsically commissioning engineers,
in-depth analysis of the class of pro- safe equipment, coding project engineers, service personnel,
tection, intrinsic safety and the design • Requirements when erecting equip- maintenance technicians
of equipment with intrinsically safe ment in the individual zones acc. to
circuits. The use of intrinsically safe DIN 0165 Duration
equipment is explained using applica- • Connecting-up equipment to create
tion examples. Further, when combi- intrinsically safe plants/systems 1 day
ning intrinsically safe with the associ- (DIN EN 50 039)
ated equipment, the necessary proof • Erection of intrinsically safe plants/ Course fee
of intrinsic safety is explained using systems according to VDE 0165
the appropriate examples. • Operation, repair, and testing of € 335
equipment We reserve the right to revise the prices
Contents
Course location
• Construction regulations for equip-
ment according to DIN EN 50 014 Mannheim
and 50 020
• Basic information about the class of
protection, intrinsic safety
In this workshop you will learn how • Checking/ testing electrosensitive Target group
to check/test, use and handle electro- devices
sensitive protective equipment and • Diagnostics Operating personnel, users,
devices (light curtains, light grids and • Obtaining the capability certificate decision-makers, sales personnel,
laser scanners) from the SIMATIC sen- for SIMATIC sensor devices commissioning engineers,
sor series. You will receive a certifica- project engineers, programmers,
te that entitles you to carry-out the Note service personnel
annual device check according to
Paragraph 2 Section 7 BetrSichV. Course participants must bring their Duration
own notebook (laptop PC). It should
have the following basic features: 2 days
Inhalte CPU Intel Pentium with min. 500 MHz
or comparable, min. 16 Mbyte RAM, Course fee
• European Directives. minimum free space on the hard disk
• Safety-relevant parts of controls of 10 Mbyte, Windows 98, 2000, NT, € 620
according to EN 945-1 XP. When the course starts, the para- We reserve the right to revise the prices
• Safety light curtains meterizing software will be installed
• Safety laser scanners on the notebook (laptop PC) of the Course location
• Calculating safety clearances course participant at no charge.
according to EN 999 This is the reason that you must have On request
• Evaluation units administrator rights to install pro-
grams under Windows.
This course will provide information • Acceptance report with SinuCom Duration
about the new functions of Safety NC
Integrated that are available with soft- • Pulse cancellation in the NC 3 days
ware version 6 of SINUMERIK 840D. • Safety-relevant communications
After the course, participants will be with PROFIsafe Course fee
able to engineer, test and commission • Safe brake management
the new functions of Safety Integrated • Extended diagnostic functions € 1410
for special machine configurations • Extended configuring of alarm texts We reserve the right to revise the prices
with safety-relevant functions. • Practical exercises on engineering,
commissioning and service carried-
Prerequisites out on training models with digital Course location
feed and main spindle drives
Participation in course NC-84DSIW Nuremberg
up to December 2002 or NC-84DSIS
Target group
For additional dates, course locations
Contents Commissioning engineers, and prices, please go to the following
project engineers, service personnel Internet address:
• Overview of the new safety functions
of SW release 6.X www.siemens.de/sitrain
This seminar is intended to provide operation and fault behavior of PLT Duration
course participants with information on protective devices
currently active developments in natio- • NE 97 fieldbus for safety technology 2 days
nal and international technical regula- • Company-specific safety manage-
tions and provide them with methods ment according to IEC 61511-1
and tools so that these regulations can • Experience of a specialist safety Course fee
be complied with in practice. These evaluator when carrying-out checks
subjects will be then discussed in more • CE marking for machines and plants € 680
depth using examples from the field. • Integration of safety technology – We reserve the right to revise the prices
pros and cons
• Example for implementing interna-
Contents tional rules regarding machines / Course locations
process-related plants
• Plant safety for process plants • Implementation of safety-relevant Frankfurt, Mannheim
• Technical regulations and rules, applications in the process industry
explanation of the associated termi- with Siemens products/systems
nology, hierarchy of the regulations, using a practical example involving
legislation, ordinances, ensuring SIMATIC S7-400FH / SIMATIC PCS7
plant safety using process control
technology, explanation and in-
depth discussion of such issues as Target group
BlmSchG, GPSG, fault regulations,
UVV, BGR,BGV, EU legislation, EU EMR specialist engineers, EMR techni-
Directives cians, EMR supervisors, employees
• Machine and plant safety involved in EMR planning, system
• Possibility and limits of process development personnel, operations
control technology for tasks relating managers, operations assistants,
to plant safety, design, mode of operations engineers, technicians
EMC from the very start, focus on plants and machines (MP-EMVLP)
The objective of this course is to provi- rience in EMC-correct development • Practical tests carried-out in a test
de basic know-how and more in-depth and engineering as well as the EMC laboratory
information about Electromagnetic testing of industrial plants and devices
Compatibility (EMC). It starts with the will provide a comprehensive overview
basics up to the application and inclu- about basics, requirements and measu- Target group
des practical exercises on measuring res to be applied.
techniques and EMC measures to Project managers, project personnel,
upgrade equipment and plants. At the Contents commissioning engineers, engineers,
beginning of the course, participants service personnel
will learn about the physical basics and • EMC basics
interrelationships of EMC. Based on • Filter technology Duration
this, some of the usual customer requi- • Plant and system planning
rements will be discussed as well as • Simulation of systems 3 days
legal and standards-related issues. • Cables and signal interfaces
Measures and methods will be provi- • Cabinet design and wiring Course fee
ded to realize an EMC-correct design • Legislation and Standards
and configuration of plants and machi- • Measurements in plants and on € 1140
nes. The material learnt will be discus- machines We reserve the right to revise the prices
sed in more detail using exercises at a • EMC-correct configuration of plants
certified testing laboratory (Siemens and machines using drive conver- Course location
EMC Center, Erlangen). More than 10 ters as an example
specialists with many years of expe- • Magnetic fields Erlangen
This course provides the basis for fast Target group Course fee
and successful commissioning - even
for sophisticated applications. In addi- Commissioning engineers, engineers, € 840
tion to the basic information about the programmers We reserve the right to revise the prices
motor and drive converter, special
attention is played to subjects such as
closed-loop control structures, free sig- Duration Course location
nal interconnection (BICO technology)
and integrated safety functions (Safety 2 days Nuremberg
Integrated).
Term Page
Jitter 11/2
TCP/IP 4/2
Impressum:
Published by:
Siemens AG
Automation and Drives Group
Postfach 4848, D-90327 Erlangen
Design:
NEW ORANGE DESIGN, Obernzenn
Printing:
Farbendruck Hofmann, Langenzenn
© 2006 by Siemens AG
Berlin and Munich
Siemens Aktiengesellschaft
www.siemens.de/safety