Himatrix: F30 03 Manual
Himatrix: F30 03 Manual
Safety-Related Controller
F30 03 Manual
Contact
HIMA contact details:
HIMA Paul Hildebrandt GmbH + Co KG
P.O. Box 1261
68777 Brühl, Germany
Phone: +49 6202 709-0
Fax: +49 6202 709-107
E-mail: [email protected]
Table of Contents
1 Introduction ............................................................ 5
1.1 Structure and Use of this Manual......................................................................... 5
1.2 Target Audience..................................................................................................... 5
1.3 Formatting Conventions ....................................................................................... 6
1.3.1 Safety Notes ............................................................................................................ 6
1.3.2 Operating Tips ......................................................................................................... 7
2 Safety ...................................................................... 8
2.1 Intended Use .......................................................................................................... 8
2.1.1 Environmental Requirements................................................................................... 8
2.1.2 ESD Protective Measures........................................................................................ 8
2.2 Residual Risk ......................................................................................................... 9
2.3 Safety Precautions................................................................................................. 9
2.4 Emergency Information......................................................................................... 9
3 Product Description .............................................. 10
3.1 Safety Function .................................................................................................... 10
3.1.1 Safety-Related Digital Inputs ................................................................................. 10
3.1.1.1 Reaction in the Event of a Fault............................................................................. 11
3.1.1.2 Line Control............................................................................................................ 11
3.1.2 Safety-Related Digital Outputs............................................................................... 12
3.1.2.1 Reaction in the Event of a Fault............................................................................. 13
3.1.2.2 Line Control............................................................................................................ 13
3.2 Equipment and Scope of Delivery...................................................................... 14
3.2.1 IP Address and System ID (SRS) .......................................................................... 14
3.3 Type Label ............................................................................................................ 14
3.4 Assembly .............................................................................................................. 15
3.4.1 LED Indicators ....................................................................................................... 16
3.4.1.1 Operating Voltage LED .......................................................................................... 16
3.4.1.2 System LEDs ......................................................................................................... 17
3.4.1.3 Communication LEDs ............................................................................................ 18
3.4.1.4 I/O LEDs ................................................................................................................ 18
3.4.1.5 Fieldbus LEDs........................................................................................................ 18
3.4.2 Communication ...................................................................................................... 19
3.4.2.1 Connections for Ethernet Communication ............................................................. 19
3.4.2.2 Network Ports Used for Ethernet Communication ................................................. 20
3.4.2.3 Connections for Fieldbus Communication ............................................................. 20
3.4.3 Reset Key .............................................................................................................. 21
3.4.4 Hardware Clock ..................................................................................................... 21
3.5 Product Data......................................................................................................... 22
3.6 Certified HIMatrix F30 .......................................................................................... 23
4 Start-up ................................................................. 24
4.1 Installation and Mounting .................................................................................... 24
4.1.1 Connecting the Digital Inputs ................................................................................. 24
4.1.1.1 Surges on Digital Inputs ......................................................................................... 25
4.1.2 Connecting the Digital Outputs............................................................................... 25
4.2 Sequence of Events Recording (SOE)................................................................ 26
4.3 Configuring the Controller with SILworX ........................................................... 27
4.3.1 Processor Module .................................................................................................. 27
4.3.1.1 Tab: Module........................................................................................................... 27
4.3.1.2 Tab: Routings........................................................................................................ 29
4.3.1.3 Tab: Ethernet Switch ............................................................................................ 29
4.3.1.4 Tab: VLAN (Port-Based VLAN).............................................................................. 30
4.3.1.5 Tab: LLDP .............................................................................................................. 30
4.3.1.6 Tab: Mirroring ....................................................................................................... 31
4.3.2 Communication Module.......................................................................................... 31
4.3.3 Parameters and Error Codes for the Inputs and Outputs ....................................... 31
4.3.4 Digital Inputs for F30 .............................................................................................. 32
4.3.4.1 Tab: Module........................................................................................................... 32
4.3.4.2 Tab: DO 20: Channels .......................................................................................... 33
4.3.5 Digital Outputs for F30 ........................................................................................... 34
4.3.5.1 Tab: Module........................................................................................................... 34
4.3.5.2 Tab: DO 8: Channels ............................................................................................ 35
5 Operation .............................................................. 36
5.1 Handling ................................................................................................................ 36
5.2 Diagnosis .............................................................................................................. 36
6 Maintenance .......................................................... 37
6.1 Faults..................................................................................................................... 37
6.2 Maintenance Measures ........................................................................................ 37
6.2.1 Loading the Operating System ............................................................................... 37
6.2.2 Proof Test............................................................................................................... 37
7 Decommissioning .................................................. 38
8 Transport .............................................................. 39
9 Disposal ................................................................ 40
Appendix ............................................................... 42
Glossary ................................................................................................................ 42
Index of Figures.................................................................................................... 43
Index of Tables ..................................................................................................... 43
Index ...................................................................................................................... 44
1 Introduction
This manual describes the technical characteristics of the device and its use. It provides
information on how to install, start up and configure the module in SILworX.
The latest manuals can be downloaded from the HIMA website at www.hima.com. The
revision index on the footer can be used to compare the current version of existing manuals
with the Internet edition.
SIGNAL WORD
Type and source of danger!
Consequences arising from the danger
Danger prevention
NOTE
Type and source of damage!
Damage prevention
2 Safety
The following safety information, notes and instructions must be strictly observed. The
product may only be used if all guidelines and safety instructions are adhered to.
This product is operated with SELV or PELV. No imminent danger results from the product
itself. The use in Ex-Zone is permitted if additional measures are taken.
Exposing the HIMatrix system to environmental conditions other than those specified in this
manual can cause the HIMatrix system to malfunction.
NOTE
Device damage due to electrostatic discharge!
When performing the work, make sure that the workspace is free of static, and
wear an ESD wrist strap.
If not used, ensure that the device is protected from electrostatic discharge, e.g.,
by storing it in its packaging.
3 Product Description
The safety-related F30 03 controller is a compact system in a metal housing with 20 digital
inputs and 8 digital outputs.
The configuration is carried out with the programming tool SILworX, see Chapter 4.3.
The device is suitable for sequence of events recording (SOE), see Chapter 4.2. The
device supports multitasking and reload. For more details, refer to the System Manual for
Compact Systems (HI 800 141 E).
A licence is required to use the events recording, the multitasking and the reload features.
i
The device has been certified by the TÜV for safety-related applications up to SIL 3
(IEC 61508, IEC 61511 and IEC 62061) and PL e (EN ISO 13849-1). Further safety
standards, application standards and test standards are specified in the certificate available
on the HIMA website.
DI 1
DI 2
DI 3
DI 4
LS+
L-
For the external wiring and the connection of sensors, apply the de-energized-to-trip
principle. Thus, if a fault occurs, the input signals adopt a de-energized, safe state (low
level).
If an external wire is not monitored, an open-circuit is considered as safe low level.
The controller pulses the digital outputs to detect the line short-circuits and open-circuits to
the digital inputs. To do so, configure the Value [BOOL] -> system variable in SILworX. The
variables for the pulsed outputs must begin with channel 1 and reside in direct sequence,
one after the other.
If the following faults occur, the FAULT LED located on the front plate of the controller
blinks, the inputs are set to low level and an (evaluable) error code is created:
Cross-circuit between two parallel wires.
Invalid connections of two lines (e.g., DO 2 to DI 3),
Earth fault on one wire (with earthed ground only).
Open-circuit or open contacts, i.e., including when one of the two EMERGENCY STOP
switches mentioned above has been engaged, the FAULT LED blinks and the error
code is created.
For more information on how to configure line control in the user program, refer to the
HIMatrix Engineering Manual (HI 800 101 E).
DO2
DO3
DO4
L-
L-
WARNING
For connecting a load to a one-pole switching output, use the corresponding L-
ground of the respective channel group (two-pole connection) to ensure that the
internal protective circuit can function.
Inductive loads may be connected with no free-wheeling diode on the actuator. However,
HIMA strongly recommends connecting a protective diode directly to the actuator.
The label must be affixed such that the ventilation slots in the housing are not obstructed.
Refer to the SILworX First Steps manual for more information on how to modify the IP
address and the system ID.
3.4 Assembly
This chapter describes the layout and function of the controller, and its connection for
communication.
When the supply voltage is switched on, a LED test is performed and all LEDs are briefly lit
simultaneously.
Definition of Blinking Frequencies
The following table defines the blinking frequencies of the LEDs:
Name Blinking frequencies
Blinking1 Long (approx. 600 ms) on, long (approx. 600 ms) off
Blinking-x Ethernet communication: Blinking in sync with data transfer
Table 4: Blinking Frequencies of LEDs
3.4.2 Communication
The controller communicates with remote I/Os via safeethernet. Up to 128 redundant
safeethernet conections can be configured.
3.4.2.1 Connections for Ethernet Communication
Property Description
Port 4 x RJ-45
Transfer standard 10/100/Base-T, half and full duplex
Auto negotiation Yes
Auto crossover Yes
IP address Freely configurable1)
Subnet Mask Freely configurable1)
Supported protocols Safety-related: safeethernet, PROFIsafe
Standard protocols: Programming and debugging tool (PADT),
OPC, Modbus TCP, TCP-SR, SNTP, ComUserTask,
PROFINET
1)
The general rules for assigning IP address and subnet masks must be adhered to.
Table 9: Ethernet Interfaces Properties
Two RJ-45 connectors with integrated LEDs are located on the top and on the bottom left-
hand side of the housing. Refer to Chapter 3.4.1.3 for a description of the LEDs' function.
The connection parameters are read based on the MAC address (media access control
address) defined during manufacturing.
CPU and COM have their own MAC addresses. The CPU MAC address is specified on a
label located above the two RJ-45 connectors (1 and 2).
The COM MAC address corresponds to the CPU MAC address, except for the last byte
witch is increased by 1.
Example:
CPU MAC address: 00:E0:A1:00:06:C0
COM MAC address: 00:E0:A1:00:06:C1
The controller is equipped with an integrated switch for Ethernet communication. For further
information on the integrated switch and safeethernet, refer to Chapter Communication of
the System Manual for Compact Systems (HI 800 141 E).
The ComUserTask can use any port if it is not already used by another protocol.
i
WARNING
Caution! Fieldbus communication may be disturbed!
Prior to switching on the controller with the reset key engaged, all device fieldbus
connectors must be unplugged to ensure that the fieldbus communication among
other stations is not disturbed.
The fieldbus plugs may only be plugged in again when the controller is in the RUN or
STOP state.
Properties and behavior of the controller after a reboot with engaged reset key:
Connection parameters (IP address and system ID) are set to the default values.
All accounts are deactivated except for the administrator default account with empty
password.
Loading a user program or operating system with default connection parameters is
inhibited!
The loading procedure is only allowed after the connection parameters and the account
have been configured on the controller and the controller has been rebooted.
After a new reboot without the reset key engaged, the connection parameters (IP address
and system ID) and accounts become effective.
Those configured by the user.
Those valid prior to rebooting with the reset key engaged, if no changes were
performed.
Digital inputs
Number of inputs 20 (non-galvanically isolated)
High level: Voltage 15...30 VDC
Current input ≥ 2 mA at 15 V
Low level: Voltage max. 5 VDC
Current input max. 1.5 mA (1 mA at 5 V)
Switching point typ. 7.5 V
Supply 5 x 20 V / 100 mA (at 24 V), short-circuit-proof
Table 13: Specifications for Digital Inputs
Digital outputs
Number of outputs 8 (non-galvanically isolated)
Output voltage ≥ L+ minus 2 V
Output current Channels 1...3 and 5...7: 0.5 A at 60 °C
Channels 4 and 8: 1 A at 60 °C, 2 A at 50 °C)
Minimum load 2 mA for each channel
Internal voltage drop max. 2 V at 2 A
Leakage current (with low max. 1 mA at 2 V
level)
Behavior upon overload The affected output is switched off and cyclically switched
on again
Total output current max. 7 A
Upon overload, all outputs are switched off and cyclically
switched on again
Table 14: Specifications for the Digital Outputs
Further safety standards and application standards are specified in the certificate. The
certificate and the EC Type-Examination Certificate are available on the HIMA website at
www.hima.com.
4 Start-up
To start up the controller, it must be mounted, connected and configured in SILworX.
Activating noise blanking increases the response time of the HIMatrix system!
i
The measures specified above are not necessary if the plant design precludes surges from
i occurring within the system.
In particular, the design must include protective measures with respect to overvoltage,
lightning, earth grounding and plant wiring in accordance with the relevant standards and
the instructions specified in the System Manual (HI 800 141 E or HI 800 191 E).
Events are recorded within the cycle of the user program. The processor system uses
global variables to create the events and stores them in its non-volatile event buffer.
The event buffer includes 1000 events. If the event buffer is full, an overflow system event
entry is created. Thereafter, events are no longer recorded until existing events have been
read and space is once again available in the event buffer.
Double-click the module to open the detail view with the corresponding tabs. The tabs of
the I/O modules are used to assign the global variables configured in the user program to
the system variables.
Parameter Description
ARP Aging Time [s] A processor or COM module stores the MAC addresses of the
communication partners in a MAC/IP address assignment table
(ARP cache).
The typical value for the ARP Aging Time in a local network
ranges from 5...300 s.
The user cannot read the contents of the ARP cache.
Should VLAN be supported, port-based VLAN should be off to enable each port to
i communicate with the other switch ports.
For each port on one switch, the user can define which other ports of the switch received
Ethernet frames may be sent to.
The table in the VLAN tab contains entries through which the connection between two ports
can be set as active or inactive.
Eth1 Eth2 Eth3 Eth4 COM
Eth1
Eth2 Active
Eth3 Active Active
Eth4 Active Active Active
COM Active Active Active Active
CPU Active Active Active Active Active
Table 22: VLAN Tab
The processor and communication modules support LLDP on the Eth1, Eth2, Eth3 and
Eth4 ports
The following parameters define how a given port should work:
Off LLDP is disabled on this port.
Send LLDP sends LLDP Ethernet frames, received
LLDP Ethernet frames are deleted without being
processed.
Receive LLDP sends no LLDP Ethernet frames, but
received LLDP Ethernet frames are processed.
Send/Receive LLDP sends and processes received LLDP
Ethernet frames.
Default setting: Send/Receive
4.3.3 Parameters and Error Codes for the Inputs and Outputs
The following tables specify the system parameters that can be read and set for the inputs
and outputs, including the corresponding error codes.
In the user program, the error codes can be read using the variables assigned within the
logic.
The error codes can also be displayed in SILworX.
5 Operation
The F30 controller is ready to operate. No specific monitoring is required for the controller.
5.1 Handling
Handling of the controller during operation is not required.
5.2 Diagnosis
A first diagnosis results from evaluating the LEDs, see Chapter 3.4.1.
The device diagnostic history can also be read using the programming tool SILworX.
6 Maintenance
No maintenance measures are required during normal operation.
If a device or module fails, it must be replaced with a faultless device or module of the
same type or with an approved replacement model.
Only the manufacturer is authorized to repair the device/module.
6.1 Faults
Refer to Chapter 3.1.1.1, for more information on the fault reaction of digital inputs.
Refer to Chapter 3.1.2.1, for more information on the fault reaction of digital outputs.
If the test harnesses detect faults in the processor system, the device is rebooted. If a
further internal fault occurs within the first minute after start-up, the device enters the
STOP_INVALID state and will remain in this state. This means that the input signals are no
longer processed by the device and the outputs switch to the de-energized, safe state. The
evaluation of diagnostics provides information on the fault cause.
7 Decommissioning
Remove the supply voltage to decommission the device. Afterwards pull out the pluggable
screw terminal connector blocks for inputs and outputs and the Ethernet cables.
8 Transport
To avoid mechanical damage, HIMatrix components must be transported in packaging.
Always store HIMatrix components in their original product packaging. This packaging also
provides protection against electrostatic discharge. Note that the product packaging alone
is not suitable for transmission.
9 Disposal
Industrial customers are responsible for correctly disposing of decommissioned HIMatrix
hardware. Upon request, a disposal agreement can be arranged with HIMA.
All materials must be disposed of in an ecologically sound manner.
Appendix
Glossary
Term Description
ARP Address Resolution Protocol: Network protocol for assigning the network addresses
to hardware addresses
AI Analog Input
COM COMmunication module
CRC Cyclic Redundancy Check
DI Digital Input
DO Digital Output
EMC ElectroMagnetic Compatibility
EN European Norm
ESD ElectroStatic Discharge
FB FieldBus
FBD Function Block Diagrams
FTA Field Termination Assembly
FTT Fault Tolerance Time
ICMP Internet Control Message Protocol: Network protocol for status or error messages
IEC International Electrotechnical Commission
MAC Address Media Access Control address: Hardware address of one network connection
PADT Programming And Debugging Tool (in accordance with IEC 61131-3),
PC with SILworX
PE Protective Earth
PELV Protective Extra Low Voltage
PES Programmable Electronic System
PFD Probability of Failure on Demand, probability of failure on demand of a safety
function
PFH Probability of Failure per Hour, probability of a dangerous failure per hour
R Read: The system variable or signal provides value, e.g., to the user program
Rack ID Base plate identification (number)
Non-reactive Supposing that two input circuits are connected to the same source (e.g., a
transmitter). An input circuit is termed non-reactive if it does not distort the signals
of the other input circuit.
R/W Read/Write (column title for system variable/signal type)
SB System Bus (module)
SELV Safety Extra Low Voltage
SFF Safe Failure Fraction, portion of safely manageable faults
SIL Safety Integrity Level (in accordance with IEC 61508)
SILworX Programming tool for HIMatrix systems
SNTP Simple Network Time Protocol (RFC 1769)
S.R.S System.Rack.Slot addressing of a module
SW Software
TMO TiMeOut
W Write: System variable/signal is provided with value, e.g., from the user program
WD WatchDog: Time monitoring for modules or programs. If the watchdog time is
exceeded, the module or program enters the ERROR STOP state.
WDT Watchdog Time
Index of Figures
Figure 1: Connections to Safety-Related Digital Inputs 10
Figure 2: Line Control 11
Figure 3: Connection of Actuators to Outputs 12
Figure 4: Sample Type Label 14
Figure 5: Front View 15
Figure 6: Block Diagram 15
Figure 7: Sample MAC Address Label 19
Index of Tables
Table 1: Additional Relevant Documents 5
Table 2: Environmental Requirements 8
Table 3: Part Numbers 14
Table 4: Blinking Frequencies of LEDs 16
Table 5: Operating Voltage LED 16
Table 6: System LEDs 17
Table 7: Ethernet Indicators 18
Table 8: I/O LEDs 18
Table 9: Ethernet Interfaces Properties 19
Table 10: Network Ports (UDP Ports) in Use 20
Table 11: Network Ports (TCP Ports) in Use 20
Table 12: Product Data 22
Table 13: Specifications for Digital Inputs 22
Table 14: Specifications for the Digital Outputs 23
Table 15: Certificates 23
Table 16: Terminal Assignment for the Digital Inputs 24
Table 17: Terminal Assignment for the Digital Outputs 25
Table 18: Event Description 26
Table 19: Configuration Parameters of the CPU and COM, Module Tab 28
Table 20: Routing Parameters of the CPU and COM 29
Table 21: Ethernet Switch Parameters 29
Table 22: VLAN Tab 30
Table 23: Values for LLDP 30
Table 24: System Parameter for Digital Inputs, Module Tab 32
Table 25: System Parameters for Digital Inputs, DI 20: Channels Tab 33
Table 26: System Parameter for Digital Outputs, Module Tab 34
Table 27: System Parameters for Digital Outputs, DO 8: Channels Tab 35
Index
diagnosis..................................................36 part number ............................................. 14
fault reaction safeethernet............................................. 19
digital inputs .........................................11 specifications ........................................... 22
digital outputs .......................................13 SRS ......................................................... 14
line control..........................................11, 13 surge........................................................ 25