This section summarizes the
TMS320F28P65x product safety capability. Each TMS320F28P65x product:
- Is offered as a functional Safety Element Out Of Context
(SEooC)
- Was assessed to have met the relevant systematic capability
compliance requirements of IEC 61508:2010 and ISO 26262:2018 and
- Achieves systematic integrity of SIL 3 and ASIL D
- In addition, the device can meet hardware architectural metrics
up to ASIL B and SIL 2 by implementing proper safety concept (for example,
Reciprocal Comparison by Software).
- Contains multiple features to support Freedom From Interference
(FFI) for mixed-criticality of safety requirements assigned to the different
sub-elements
- The TMS320F28P65x MCUs are Type B devices, as defined in IEC
61508-2:2010
- This device claims no hardware fault tolerance, (for example,
no claims of HFT > 0), as defined in IEC 61508:2010
- For safety components developed according to many safety
standards, it is expected that the component functional safety manual will
provide a list of product safety constraints. For a simple component or more
complex components developed for a single application, this is a reasonable
response. However, the TMS320F28P65x MCU product family is both a complex design
and is not developed targeting a single, specific application. Therefore, a
single set of product safety constraints cannot govern all viable uses of the
product.