Revision 1.9    HC900 Process & Safety Controller Safety Manual  vii 
01/14 
Contents 
The Safety Manual .......................................................................................................... 1 
Scope ................................................................................................................................................. 1
 
Basic Skills and Knowledge ................................................................................................................ 1
 
Safety Standards for Process & Equipment Under Control (PUC, EUC) .............................................. 1
 
The IEC 61508 and IEC 61511 Standards .......................................................................................... 2
 
Introduction ..................................................................................................................... 5 
System Overview ................................................................................................................................ 5
 
HC900 Control System Architectures .............................................................................. 9 
Introduction to the Hardware ............................................................................................................... 9
 
Non-Redundant Controller and Non-Redundant IO ........................................................................... 13
 
Redundant Controllers and Non-Redundant IO ................................................................................. 13
 
HC900 controller Features ................................................................................................................ 15
 
Scope of SIL Certification for HC900 Control System Architectures ................................................... 16
 
Design and Implementation of HC900 Control System ................................................. 17 
Allowable Function Blocks for Process and Safety Functions ............................................................ 17
 
HC900 Control System Operational Modes ....................................................................................... 46
 
Hardware and wiring requirements for safety configuration ................................................................ 46
 
HC900 Safety configurations............................................................................................................. 48
 
HC900 Control System Diagnostics .................................................................................................. 52
 
HC900 SIL Control System communications ..................................................................................... 53
 
HC900 system Start-up test .............................................................................................................. 54
 
HC900 PFD ................................................................................................................... 55 
Probability of Failure on Demand (PFD) for Low Demand Mode ........................................................ 55
 
HC900 Control System Fault Detection and Response................................................. 57 
Principle of Fault Detection and Response ........................................................................................ 57
 
Diagnostic Test Interval .................................................................................................................... 57
 
Fault Reaction and IO states ............................................................................................................. 58
 
HC900 Controller Diagnostics ........................................................................................................... 59
 
HC900 SIL Compatibility ................................................................................................................... 59
 
Reliability data ............................................................................................................... 62