Fault Tree Analysis
Fault Tree Analysis
DIGRAPHS
V1
Gain
Multi-Valued Logic
node
Boolean Algebra
edge
V2
v2 output
Gain
v1
input
The value of gain is discretized!
1: if a moderate deviation in the input variable causes
moderate deviation in the output.
10: if the output deviation is very large when compared to
the input.
0: if the output deviation is very small compared with the
input.
vout
gain vin
10
10
if 10 gain vin 10
if gain vin 10
if gain vin 10
[ Example ]
3
1
HOT
NITRIC
ACID
2
COOLING
WATER
4
M
T
WATER LEAKS
INTO
NITRIC ACID
-1
+1
+1
TSURR
+1
+1
T2
+1
+1
-1
-1
-1
T2(+1)
OR
M1(+1 T1(+1)
)
M4(-1)
Gain
in
IF V
COND
vin
Values of V
in
+10
+1
COND
No Change in
in
-1
-10
out
Digraph Model
[ EXAMPLE ]
1
AIR TO OPEN
+1
regular valve
P3
quick opening
P3
M2
+10
failure models
valve stuck
+1
P3
-1
M2
valve reversed
M2
Digraph
Models
Control Valve
(Air to Open)
M = Mass Rate
P = Pressure
T = Temperature
DEN = Density
X = Mass Fraction
Output Variable
M2
M1
(Gain) Input
(+1) M 1 , (+1) P 3 , (+1)DEN . 1
(-1) P 3 , if Valve Reversed
(+1) Fails Open
(-1) Fails Closed
(+1) M 2 , (+1) P 3
(-1) P 3 if Valve Reversed
( 0 ) P 3 if Valve Stuck
(+1) Fails Open
(-1) Fails Close
( 0 ) P 3 if Valve Stuck
(-1) Plug
(-1) Leak Out
(+1) Leak In
(-1) Plug
(0)M2
(0)M2
(+1) Leak
(-1) Leak
if Plug = +10
if Fails closed = +10
Out
In
Output
P2
(Gain) Input
(+1) P 1 , (+1) P 3 , ( 0 ) P 3 if Valve Stuck ,
( 0 ) P 1 if plug = +10 , ( 0 ) P 1 if Fails Closed
+10 , (-1) Plug , (-1) Fails Closed , (-1) P 3 if Valve
Reversed , (+1) Fails Open , (+1) Leak , (-1) Leak Out
P1
T2
(+1) T 1 , ( 0 ) T 1 if M 2 = -10 , ( 1)
Tsurroundings
T1
P3
A,2
None
None
( 1)X , (0) X
A,1
A,1
Leak In ( if X
(if X
X A,1
None
A ,S
A,2
A ,S
T T)
surr.
if M 2 =-10 , ( 1)
X ) , (-10) Leak In
A,2
Output
(Gain) Input
Vapor
Fraction 2
Vap. Frac 1
None
Den 2
(Den Den )
S
Den 1
None
+1
(T= -1)
fracture
-1
(P= +1)
Glossary
Digraph : nodes connected by edges which have direction.
Edge : the line connecting two nodes.
It indicates a relationship between the two nodes. The
number next to the edge is the gain.
Conditional Edge : The relationship between two nodes
depends on another event or variable.
For example, the gain between valve position and
flow out of the valve is zero if the valve is stuck.
The condition is valve stuck.
Glossary
Primal node : a node on the system digraph with no
inputs.
Input : an edge pointing to the node under
consideration.
Local Input : variables or events one nods away from
the node being considered.
Gain : change in Output / Change in Input.
Gains may have values of 1, 10, 0. Zero means no gain.
Glossary
Variable and Event Values
These are deviations of the variables and events from their
normal value.
Glossary
Feedback Loop (FBL) : A path through the nodes in
a digraph which starts and terminates at one node.
Negative Feedback Loop (NFBL) : A feedback loop in
which the product of the normal gains around the
loop is negative.
Positive Feed Back Loop (PFBL) : The product of
the gains around the FBL is positive.
SET
PT.
FRC
1
FLOW CONTROL
LOOP
FLOW
AIR TO OPEN
M 3
-10
M 1
+1
M 2
+10
-10
+1
+1
FLOW
SENSOR
FAILS
HIGH
0 FLOW
SENSOR
STUCK
VALVE
MECH .
FAILS
OPEN
+10
FRC
FAILS
LOW
0 V
ALV
E S
TUC
K
-1
VAL
VE
REV
ERS
ED
+1
C
FR
RE
C
FR
P 4
-10
FLOW
SENSOR
FAILS
LOW
-10
P 5
LINE
4
RUPTURES
CK
U
T
S
C
FR
SET
POINT
+1
+10
-10
D
SE
R
VE
-1
VALVE
MACH .
FAILS
CLOSED
ON
AL
U
AN
ROC
FAILS
HIGH
LOSS
OF
INST
AIR
M 3 (+1)
OR
M 2 (+1)
OR
M 1 (+1)
P 5 (+1)
M 2 ( +1 )
OR
AND
M 1 ( +1 )
process
disturbance
AND
NOT ( P 5 (-1) )
NO control
loop correction
P 5 (+1)
control
loop disturbance
NOT ( M 1 (-1) )
NO process
disturbance
to cancel
P 5 (+1)
M 2 ( +1 )
OR
AND
M 1 ( +1 )
process
disturbance
AND
NOT ( P 5 (-1) )
NO control
loop correction
P 5 (+1)
control
loop disturbance
M 2 ( +1 )
(2)
NOT ( M 1 (-1) )
NO process
disturbance
to cancel
P 5 (+1)
OR
AND
M 1 ( +1 )
AND
OR
P5(0)
not
always
true
P 5 ( +1 )
P 5 ( +1 )
OR
M 5 ( +1 )
M1(0)
nearly
always
true
M 2 ( +1 )
OR
AND
M 1 ( +1 )
process
disturbance
AND
NOT ( P 5 (-1) )
NO control
loop correction
P 5 (+1)
control
loop disturbance
M 2 ( +1 )
(2)
NOT ( M 1 (-1) )
NO process
disturbance
to cancel
P 5 (+1)
OR
AND
M 1 ( +1 )
OR
P5(0)
not
always
true
AND
P 5 ( +1 )
P 5 ( +1 )
OR
M 5 ( +1 )
M1(0)
nearly
always
true
THE
(3)
STRUCTURES
M 2 ( +1 )
OR
OR
AND
M 1( +1 )
P 5 ( +1 )
AND
P5(0)
M 1 ( +1 )
P 5 ( +1 )
OF NFBL
THE
(3)
STRUCTURES
M 2 ( +1 )
OR
OR
AND
M 1( +1 )
P 5 ( +1 )
AND
P5(0)
M 1 ( +1 )
(4)
P 5 ( +1 )
M 2 ( +1 )
OR
AND
M 1 ( +1 )
P 5 ( +1 )
P5(0)
OF NFBL
IN
OUT
10
IN
OUT
VARIABLE
DEVIATION
V
OUT
1
0
IN
OUT
Generally, VIN ( +10 ) defined as that value of VIN which causes VOUTto have at least
a +1 deviation. ( NFBL cannot completely cancel disturbance.)
(5)
OR
Very
Nearly
true
M 1 ( +10 )
And P 5 (-1 )
AND
M 1 (+1)
P 5 ( +1 )
P 5 ( 0)
(6)
E
OR
AND
OR
component
failure
(primary or
secondary)
external
disturbance
enters loop
large disturbance
enters loop
Loop variable
causes disturbance
loop variable
fails to cancel
disturbance
OUTPUT ( Value )
OR
UNCONTROLLABLE INPUTS
CONTROL LOOP
PASS THROUGH THE NFBL
CAUSES THE DEVIATION
OR
EOR
CONTROLLABLE DIST
(1) INPUT (Value to give large
or fast disturbance ) NOT ON
NFBL
(2) PRIMARY FAILURE
(3) SECONDARY FAILURE
CAUSING EVENT
(4) SET POINT CHANGE
RBANCES PASS
THROUGH THE NFBL
OR
AND
LOCAL EDGE
CONDITIONS
WHICH CAUSES
REVERSE GAIN
ON NFBL
INPUT (Value
to give desired
output value)
ON NFBL
LOOP INACTIVE
OR
INPUT (value = 0)
ON THE NFBL
INPUT ( value= 0 )
ON THE NFBL
[ EXAMPLE ]
M 3 (+1)
FLOW
CONTROL
LOOP
OR
M 2 (+1)
OR
OR
M 1 (+10)
AND
EOR
Valve
M 1(+1)
OR
Mech. Fails
Open (+1)
Valve Stuck
Valve
Reversed
P 5 (+1)
Page 2
P 5 (0)
OR
FRC
On Manual
FRC
Stuck
Flow
Sensor
Stuck
P 4 (0)
OR
M2
(inconsistent)
P 5 (+1)
OR
OR
Set Pt. (+1)
EOR
FRC Fails
High
AND
FRC
Reversed
(+1)
P 4 (-1)
(no +1
disturbance)
OR
Flow
Sensor
Fails Low
OR
AND
Line
4
Ruptures
Flow
Sensor
Reversed
(no +1
disturbance)
EOR
M 2 (-1)
(inconsistent)