The Safety of the Intended Functionality
ISO/PAS 21448 and beyond
Nicolas BECKER
Safety Senior Expert for PSA
Project leader for ISO 21448 in ISO/TC22/SC32/WG8
DQI/DAPF
Nicolas Becker
CONTENT
1.Safety aspects of automated driving
2.Motivation –What is the Safety of the Intended
Functionality (SOTIF)?
3.ISO/PAS 21448 status and activities
4.Connection with Automated Driving (AD) regulatory
activities
5.Summary
2
The automated driving system
is safe
Its failures are adequately avoided or mitigated Its behaviour is adequate for the intended operation
domain
ISO26262 : Functional Safety
Hazard Analysis and Risk Assessment Design, Verification and Validation (V&V) requirements
Safety management ISO/PAS 21448 : Safety of the Intended Functionality
Scenario identification incl. Reasonably foreseeable misuses Functional improvements
V&V strategy
Other safety
requirements(incl
Cybersecurity,
passive safety, etc)
sc Scope of ISO/TC22/SC32/WG8
Its behaviour is adequate for the intended operation
domain
validation verification
The vehicle functionality is
safe Its technical implementation is
safe
The function expected behaviour is complete and safe
Potential misuses are identified and mitigated The system performance limitation are identified and acceptable
-sensors and environment perception
-decision algorithms
-actuation
sc Scope of ISO 21448
SOTIF EXAMPLE
Automatic emergency braking feature :
triggering events
camera
unintended braking could be caused by limitations in perception system
•weather (rain/sun/fog)•misinterpretation of image •…

版权声明:本站内容均来自互联网,仅供演示用,请勿用于商业和其他非法用途。如果侵犯了您的权益请与我们联系QQ:729038198,我们将在24小时内删除。