Welcome to the Industrial Automation website!

NameDescriptionContent
HONG  KANG
E-mail  
Password  
  
Forgot password?
  Register
当前位置:

Deep Analysis of HIMA HIMax Safety Control System: Architecture, Redundancy, and Engineering Application Guidelines

来源: | 作者:FAN | 发布时间 :2026-01-13 | 43 次浏览: | Share:

Deep Analysis of HIMA HIMax Safety Control System: Architecture, Redundancy, and Engineering Application Guidelines

1.Introduction: Overview of HIMax System

HIMax is a safety related control system designed by HIMA for continuous operation and maximum availability. As a highly modular system, HIMax distributes processing, input/output (I/O), and communication functions in pluggable modules installed on one or more baseboards. By connecting the motherboard through Ethernet cables, the system has strong scalability and can easily adapt to the expansion needs of future process flows.

This system not only complies with the IEC 61508 SIL 3 standard, but also supports multiple configuration modes from single machine non redundant to highly redundant, making it an ideal choice for critical safety tasks in the fields of process automation and factory automation.


2. Hardware architecture and system bus

2.1 Modular Base Plate Design

The core physical foundation of HIMax is the baseboard, which provides various types of baseboards according to the number of slots to meet different installation requirements:

10 slots (X-BASE PLATE 10 01): suitable for flat base installation.

15 slots (X-BASE PLATE 15 01/02): suitable for backplane installation or 19 inch cabinet installation.

18 slots (X-BASE PLATE 18 01): Suitable for backplane installation, providing maximum density.

Each slot can accommodate one module and one connection board. The slots 1 and 2 on the left side of the motherboard are reserved for the system bus module, while the remaining slots are used for processors, I/O, or communication modules.

2.2 Redundant System Bus

The HIMax system operates on two redundant system buses: System Bus A and System Bus B.

Communication mechanism: The module is inserted into the motherboard and connected to the system bus. If both buses are running, communication will occur simultaneously on both buses.

Scalability: The system bus is based on Ethernet technology, allowing the system to span vast production lines. When using fiber optic components, the maximum extension distance of the HIMax system can reach 19.6 kilometers.

Isolation: The system bus connection between the module and the motherboard is electrically isolated, ensuring at least 1500 V insulation voltage between the processor module and each I/O module.


3. Safety standards and operating principles

3.1 Safety Integrity Level (SIL)

HIMax safety related controllers are certified for the following high standard applications:

SIL 3 (compliant with IEC 61508)

Category 4 (compliant with EN 954-1)

PL e (compliant with ISO 13849-1)

3.2 Operating Principles

The system design follows the following core security principles:

Loss of excitation trip: The system design conforms to the principle of "loss of excitation trip", which means that no electricity is required to perform safety functions. Once a malfunction occurs, the input and output signals will enter a disabled safe state.

Power on trip: HIMax can also be used for "power on trip" applications (such as fire alarm systems), but it must meet the corresponding application standards (such as line diagnosis).

Fault tolerance time (FTT): When implementing safety related communication, it is necessary to ensure that the overall response time does not exceed the fault tolerance time.

4. High availability: comprehensive redundancy design

The conceptual design of HIMax is centered around high availability. Redundancy is only used to improve availability, not to increase SIL level.

4.1 Redundancy of processor modules

The system can be configured as a standalone system or a highly available system (supporting up to 4 redundant processor modules).

Downgrading and upgrading: Even if a processor module fails or is removed, the system can continue to operate safely. When adding a new processor module during operation, it will automatically synchronize with the existing module without interrupting security related operations.

4.2 I/O module and channel redundancy

Module redundancy: Two or three I/O modules of the same type can be defined as mutually redundant.

Channel redundancy: Channels with the same number can be defined as redundant. For input channels, users can specify how the controller combines signals from two redundant channels (such as 2oo3 voting).

Connection board: In order to save wiring workload, a special connection board allows two redundant modules to be inserted into adjacent slots, while on-site connections only need to be created once.


5. Engineering and Programming: Based on SILworX

The user program is created through a programming system (PADT) consisting of a PC with SILworX tool installed.

5.1 Multi task processing

HIMax supports processing up to 32 user programs simultaneously within the processor module.

Multi tasking mode:

Mode 1: Utilize unused execution time to reduce CPU cycle time (fastest response).

Mode 2: Allocate unused time from low priority programs to high priority programs (high availability mode).

Mode 3: Wait for unused time to expire in order to maintain a fixed CPU cycle time (constant cycle).

5.2 Variables and System Parameters

Variable types: Supports local variables (VAR) and global variables (VAR_GLOBAL). Global variables allow data exchange between program organizational units (POUs).

  • WOODWARD EASYGEN-3200-5 8440-1992 A Genset Controller
  • WOODWARD PEAK200-HVAC 8200-1501 C Version | Industrial Building Automation Controller
  • Woodward 8440-2052 easyGEN-3200 Genset Control Power Management
  • Woodward 8237-1246 + 5437-1119 Control System Module
  • WOODWARD SPM-D11 8440-1703 Overspeed Protection System Module
  • WOODWARD 8237-1369 Governor Control Module
  • Woodward 8237-1600 Digital Control Module
  • WOODWARD BUM60-1224-54-B-001-VC-A0-0093-0013-G003-0000 3522-1004 Industrial Control Module
  • WOODWARD 8200-1302 Genset Controller
  • Woodward 8901-457 Speed Control Module
  • WOODWARD 5501-465 Control Module
  • Woodward 5448-890 SPM-D10 Digital Control Module
  • WOODWARD 5437-1067A Turbine Governor Actuator
  • Woodward 8440-1666 B Digital Control Module
  • WOODWARD 8440-1706 A SPM-D11 Synchronous Phase Modulator Module
  • WOODWARD 5466-425 Programmable Automation Controller (PAC)
  • WOODWARD 5466-318- Industrial Gas Turbine Control Module
  • WOODWARD 5453-277 Digital Control Module
  • WOODWARD 5453-203 Digital Governor Control Module
  • WOODWARD 9907-1106 Pressure Converter
  • WOODWARD 5233-2089 Professional Industrial Control System Module
  • WOODWARD 9907-147 Power outage tripping overspeed protection system
  • WOODWARD 8237-1600 Digital Speed Control System
  • WOODWARD 8402-319 8402-119 microprocessor speed controller
  • Woodward 8237-1006 Digital Governor
  • WOODWARD 5501-471 Communication Module
  • WOODWARD 5466-258 Input/Output Module
  • WOODWARD 5501-467 Multi Protocol Communication Gateway and I/O Expansion Module
  • WOODWARD 5501-470 Digital microprocessor controller module
  • WOODWARD 9907-1200 Digital Governor
  • WOODWARD 8444-1067 High Performance Digital Microprocessor Controller Module
  • WOODWARD 8446-1019 Integrated Gas Engine Electronic Control System
  • WOODWARD 9907-162 Digital Engine Governor
  • WOODWARD 5466-316 Simulation Combination Module
  • WOODWARD 5464-414 Digital Speaker Sensor Module
  • XANTREX XFR40-70 DC power supply
  • XP POWER F8B6A4A6A6 power module
  • XP POWER F8B6D4A3G3 power supply
  • XYCOM XVME-674 VMEbus Single Slot CPU/Processor Module
  • XYCOM XVME-957 Circuit Board
  • XYCOM XVME-976 PC board computer
  • XYCOM XVME-530 8-Channel Isolated Analog Output Module
  • XYCOM Proto XVME-085 Bus Module
  • YAMAHA RCX40 4-AXIS ROBOT CONTROLLER
  • YAMATAKE EST0240Z05WBX00 touch screen display
  • YAMATAKE HD-CAOBS00 flowmeter
  • HIMA X-COM 01 Communication Module
  • HIMA HIMax X-AO 16 01 Analog Output Module
  • HIMA X-AI3251 Analog Input Module
  • HIMA X-DO3251 Digital Output Module
  • HIMA X-DI3202 Digital Input Module
  • HIMA X-DI6451 Digital Input Module
  • YASKAWA USAHEM-02-TE53 AC servo motor
  • Yaskawa JZNC-XPP02B Teaching Programmer
  • YASKAWA CACR-SR07BE12M servo drive
  • YASKAWA JAMSC-B2732V Advanced Drive Controller
  • YASKAWA JGSM-06 Controller
  • YASKAWA PCCF-H64MS 64MB Industrial Memory Module
  • YASKAWA CACR-02-TE1K servo driver
  • YASKAWA JAPMC-IQ2303 Controller Module
  • YASKAWA DDSCR-R84H Controller
  • YASKAWA JANCD-XTU01B circuit board
  • YASKAWA JANCD-XIO01 High Performance PC Input/Output (I/O) Board
  • YASKAWA JACP-317800 servo drive
  • XYCOM 120974 - Circuit Board
  • XYCOM 99298-200 - PC Control Card 99207A-001
  • XYCOM 99298-266 - CPU Board
  • XYCOM 99311-001 - Screen Display Ribbon Cable
  • XYCOM 99384-002 - PCB Module 99383A-001
  • XYCOM A05520I01 - Control Module PW22471 MPL400
  • XYCOM A33369 - Dual PMC Carrier Module
  • XYCOM AC2064A1 - VMEbus PCB Board Analog Output
  • XYCOM AC2065A1 - VMEbus PCB Board Analog Output
  • XYCOM CDA XVME - DSP SCSI I/O Module Serial RS232
  • XYCOM 143913-001 - TSKAM Board Rev A
  • XYCOM 1300-000100000 - Operator Interface Node Module
  • XYCOM 140050(R) - Documentation Support Library
  • XYCOM 1811-A00000000 - SXT1811T Monitor 100-120V
  • XYCOM 3112T-1200-256-2K - Operator Interface
  • XYCOM 3115 T - Industrial Computer
  • XYCOM 3406T - Flat Panel Industrial PC
  • XYCOM 3512-03F114003 - Automation Operator Interface
  • XYCOM 3515-A2P214003 - Operators Interface 6.3A
  • XYCOM 3535 - Operation Panel 3535-E3T434003
  • XYCOM 3612 T - LCD Flat Panel Display
  • XYCOM 3715 - Industrial Touchpanel Touchscreen PC
  • XYCOM 4115 T - Light-Duty Flat Panel 2000-512-2K
  • XYCOM 50151 - Automation Display
  • XYCOM 5017-T - Flat Panel Industrial Touch Monitor
  • XYCOM 3308T - 8" Flat Panel Color Touchscreen PC
  • XYCOM 9000-FFP-HU - Industrial Module
  • XYCOM 9440 - Automation HMI 9440-026714001
  • XYCOM 3406 KPT - Automation Control Panel
  • XYCOM 3000-CBL-25VP - Video Cable 25' 7.5M
  • XYCOM CA3-MBPALL-41 - Modbus Plus Module for GP2000
  • XYCOM QPI-MBP-XA1 - Modbus Plus Communication Module
  • XYCOM 3512 T - Automation Model HMI PM-101722C
  • XYCOM PM-102159 - Xycom Automation Monitor
  • XYCOM 3115T - Automation Panel
  • XYCOM PM3510T - Touch Screen HMI
  • XYCOM XA_WIN_2K_MUI - Recovery Media 2 Disks Kit
  • XYCOM XT1502T-CU17 - Viewtronix Flat Panel Touch Display
  • XYCOM XVME-9660 - VMEbus Module 779660
  • XYCOM 8000 KB3 Industrial Keyboard 97788-001
  • XYCOM 8000 KB5 Keyboard Front Panel Repair Evaluation
  • XYCOM 8100 0272A CNC Brown Out Sensor PROM Card
  • XYCOM 81600EA Control Card 82088-004/R
  • XYCOM 81625DA Control Board PC Board
  • XYCOM 81862 003R PCB Circuit Board
  • XYCOM 818662 003 N Pcb Circuit Board
  • XYCOM 81945F Control Card
  • XYCOM 81987 001 D General Purpose I/O 1805 Circuit Board
  • XYCOM 82029BC PCB Circuit Board 82027-001-F
  • XYCOM 82034CA Processor Module Board PC Computer Board
  • XYCOM 83017 002 PCB Circuit Board
  • XYCOM 83034CA Processor Module Board
  • XYCOM 83060C Processor Module Board
  • XYCOM 83060CA Processor Module Board
  • XYCOM 83194BA Terminal PC Board
  • XYCOM 83382CA Control Board
  • XYCOM 83594B Control Card w/ UNISON 675-0001
  • XYCOM 83594BD Control Card
  • XYCOM 84091A Connector Board 240276
  • XYCOM 8430 Industrial Controller 8430-044333800
  • XYCOM 8450 Industrial PC/AT Computer System LCD Monitor
  • XYCOM 8500 Operator Monitor 115/230V
  • XYCOM 86863BA Control Card 86864-003/B
  • XYCOM 86863BB Control Card