SPRS945G January 2017 – January 2023 TMS320F280040-Q1 , TMS320F280040C-Q1 , TMS320F280041 , TMS320F280041-Q1 , TMS320F280041C , TMS320F280041C-Q1 , TMS320F280045 , TMS320F280048-Q1 , TMS320F280048C-Q1 , TMS320F280049 , TMS320F280049-Q1 , TMS320F280049C , TMS320F280049C-Q1
PRODUCTION DATA
Functional Safety-Compliant products are developed using an ISO 26262/IEC 61508-compliant hardware development process that is independently assessed and certified to meet ASIL D/SIL 3 systematic capability (see certificate). The TMS320F28004x has been certified to meet a component-level random hardware capability of ASIL B (see certificate).
A functional safety manual that describes all of the hardware and software functional safety mechanisms is available. See the Functional Safety Manual for TMS320F28004x.
A detailed, tunable, fault-injected, quantitative FMEDA that enables the calculation of random hardware metrics—as outlined in the International Organization for Standardization ISO 26262 and the International Electrotechnical Commission IEC 61508 for automotive and industrial applications, respectively—is also available. This tunable FMEDA must be requested; see the C2000™ Safety Package for Automotive and Industrial Real-Time Microcontrollers User's Guide.
Three diagnostic libraries designed for the F28004x series of devices are available to aid in the development of functionally safe systems—the C28x Self-Test Library (C28x_STL), CLA Self-Test Library (CLA_STL), and Software Diagnostic Library (SDL). The C28x_STL and CLA_STL provide software tests of the C28x CPU and the CLA, respectively, and have been independently assessed and certified. They are available upon request only, see the C2000™ Safety Package for Automotive and Industrial Real-Time Microcontrollers User's Guide. The SDL is a set of reference software providing example implementations of several safety mechanisms described in the device safety manual, such as software tests of SRAMs, software tests of Missing Clock Detect functionality, clock integrity checks using CPU Timers, and several other key features. The SDL is provided as part of C2000Ware.
C2000 real-time MCUs are also equipped with a TI release validation-based C28x and CLA Compiler Qualification Kit (CQKIT), which is available for free and may be requested at the Safety compiler qualification kit web page.
Additional details about how to develop functionally safe systems with C2000 real-time MCUs can be found in the following documents: