=
=
"
!
!
# $ # $
2
) ( 1 1 ) (
(where events are not independent, see
[disjointing], 7.5.5.4),
$(#) probability of event occurrence or fault
existence at time #. %"#), when used, is a
complement of the $(")
2
AND gate
The output event occurs only if
all of the input events occur
Parallel redundancy, equal or different
independent branches
=
=
"
!
!
# $ # $
2
) ( ) (
(where events are not independent, see
[disjointing] 7.5.5.4)
2
MAJORTY
VOTE gate
The output event occurs if # or
more inputs out of a total of $
inputs occur
Parallel redundancy where % out of $ the
branches is not failed
& = " & ' + 1
When all inputs equal:
[ ] [ ]
=
#
$
$ $
% " % " #
%& " &
&
% "
'
!
! " !
# $ # $
! " !
"
# $
(where events are not independent, see
[disjointing], 7.5.5.4)
2
NOT Gate
The output event occurs only if
the input event does not occur
$(#) = 1-$*(#'
NOTE t is advised that this gate be used
carefully by an experienced analyst to avoid
unwanted results.
1
Exclusive
OR (XOR)
gate
The output event occurs if one,
but not the other inputs occur
A top event occurs only if one, but not the other
event occur
[ ] ) ( 1 ) ( ) (
2 1
# $ # $ # $ =
=2
NOR gate
The output occurs if none of
the input events occur
t acts as a combination of NOT and OR gate.
The output is FALSE if there is one or more
TRUE inputs
[ ]
=
=
"
!
!
# $ # $
2
) ( 1 ) (
NOTE t is advised that this gate be used
carefully by an experienced analyst to avoid
unwanted results.
2
61025 IEC:2006 45
Customer: jose angel alvarado - No. of User(s): 1 - Company: CSIPA CONSULTORIA EN SEGURIDAD INDUSTRILA Y PROTECCION AL AMBIENTE SA DE CV
Order No.: WS-2010-010571 - IMPORTANT: This file is copyright of IEC, Geneva, Switzerland. All rights reserved.
This file is subject to a licence agreement. Enquiries to Email: custserv@iec.ch - Tel.: +41 22 919 02 11
Anlisis de Arboles de Falla-FTA 18
Risk Software S.A. de C.V.
61025 EC:2006 91
Gate name Description ReIiabiIity modeI Number of
inputs
NAND gate
The output occurs if at least
one of the input events does
not
The gate functions as a combination of NOT and
AND gates
[ ] [ ]
= =
=
! "
! #$
$
!
#
#
% & % & % & ) ( ) ( 1 ) (
1
NOTE t is advised that this gate be used
carefully by an experienced analyst to avoid
unwanted results.
2
NHBT gate
The output occurs only if both
of the input events take place
one of them conditional
The probability of occurrence is the probability of
occurrence of input event multiplied by the
probability of occurrence of the condition being
satisfied
2
TabIe A.4 - Dynamic gates
Gate name Description Comment Number of inputs
Priority AND gate (PAND)
The output event (failure)
occurs only if all input
events occur in sequence
from left to right
Good for representation of
secondary failures or for enabling
sequence of two or more events.
f more than two events, it is equal
to the SEQUENCE ENFORCNG
gate.
Requires Markov analysis
2 (see SEQ gate
below)
Sequential gate, SEQ
The output event occurs
only if all input events
occur in sequence from
left to right, and there are
more than two input
events. This gate is an
alternative to the PAND
gate above
This gate is an extension of PAND
gate and as such included to
emphasize the sequence of many
gates. n that case, its original
gate, PAND, is limited to two
inputs only. Good for
representation of sequential
failures (chain failures). Also the
sequence of stresses that would
cause an event or a failure to
occur requires Markov analysis
>2
Spare gate; SPARE
The output event will
occur if the number of
spare (standby redundant)
components is less than
the number required
Representation of cold, warm and
hot spare components. f all have
exponential distributions, then the
closed form solution may exist. f
probability of occurrence of input
events is constant, then Markov
analysis is required. Other
distributions may require
conditional probabilities or
simulations.
Spare components have reduced
probability of failure before during
the time they are not activated
(see 7.5.3 for cold and warm
redundancy modelling)
1
46 61025 IEC:2006
Customer: jose angel alvarado - No. of User(s): 1 - Company: CSIPA CONSULTORIA EN SEGURIDAD INDUSTRILA Y PROTECCION AL AMBIENTE SA DE CV
Order No.: WS-2010-010571 - IMPORTANT: This file is copyright of IEC, Geneva, Switzerland. All rights reserved.
This file is subject to a licence agreement. Enquiries to Email: custserv@iec.ch - Tel.: +41 22 919 02 11
Tabla A.4 Compuertas Dinmicas.
61025 EC:2006 91
Gate name Description ReIiabiIity modeI Number of
inputs
NAND gate
The output occurs if at least
one of the input events does
not
The gate functions as a combination of NOT and
AND gates
[ ] [ ]
= =
=
! "
! #$
$
!
#
#
% & % & % & ) ( ) ( 1 ) (
1
NOTE t is advised that this gate be used
carefully by an experienced analyst to avoid
unwanted results.
2
NHBT gate
The output occurs only if both
of the input events take place
one of them conditional
The probability of occurrence is the probability of
occurrence of input event multiplied by the
probability of occurrence of the condition being
satisfied
2
TabIe A.4 - Dynamic gates
Gate name Description Comment Number of inputs
Priority AND gate (PAND)
The output event (failure)
occurs only if all input
events occur in sequence
from left to right
Good for representation of
secondary failures or for enabling
sequence of two or more events.
f more than two events, it is equal
to the SEQUENCE ENFORCNG
gate.
Requires Markov analysis
2 (see SEQ gate
below)
Sequential gate, SEQ
The output event occurs
only if all input events
occur in sequence from
left to right, and there are
more than two input
events. This gate is an
alternative to the PAND
gate above
This gate is an extension of PAND
gate and as such included to
emphasize the sequence of many
gates. n that case, its original
gate, PAND, is limited to two
inputs only. Good for
representation of sequential
failures (chain failures). Also the
sequence of stresses that would
cause an event or a failure to
occur requires Markov analysis
>2
Spare gate; SPARE
The output event will
occur if the number of
spare (standby redundant)
components is less than
the number required
Representation of cold, warm and
hot spare components. f all have
exponential distributions, then the
closed form solution may exist. f
probability of occurrence of input
events is constant, then Markov
analysis is required. Other
distributions may require
conditional probabilities or
simulations.
Spare components have reduced
probability of failure before during
the time they are not activated
(see 7.5.3 for cold and warm
redundancy modelling)
1
46 61025 IEC:2006
Customer: jose angel alvarado - No. of User(s): 1 - Company: CSIPA CONSULTORIA EN SEGURIDAD INDUSTRILA Y PROTECCION AL AMBIENTE SA DE CV
Order No.: WS-2010-010571 - IMPORTANT: This file is copyright of IEC, Geneva, Switzerland. All rights reserved.
This file is subject to a licence agreement. Enquiries to Email: custserv@iec.ch - Tel.: +41 22 919 02 11
Anlisis de Arboles de Falla-FTA 19
Risk Software S.A. de C.V.
Anexo B Lgica de las arquitecturas en arboles de falla.
Arquitecturas de sistemas redundantes representadas con arboles de falla
A
A
N
D
B
O
R
FCC
Salida
Figura #1 1oo2
A B
O
R
FCC
Salida
O
R
Figura #2 2oo2
Anlisis de Arboles de Falla-FTA 20
Risk Software S.A. de C.V.
A
A
N
D
O
R
B A
A
N
D
C B
A
N
D
C
O
R
FCC
Salida
Figura #3 2oo3
A
N
D
A B C
O
R
FCC
Salida
Figura #4 1oo3
Anlisis de Arboles de Falla-FTA 21
Risk Software S.A. de C.V.
Referencias:
La informacin de este articulo fue obtenida principalmente de las dos siguientes fuentes:
1) Fault Tree Hanbomok with Aerospace Applications, NASA office do Safety Mission Assurance, August 2002.
2) Fault Tree Anlisis (FTA) IEC International Standard, IEC 61025
Los comentarios de este documento expresan el punto de vista de:
Victor Machiavelo Salinas
TUV FS Expert ID-141/09
Risk Software SA de CV
victorm@risksoftware.com.mx
www.risksoftware.com,mx
Agradeceremos cualquier comentario.
Anlisis de Arboles de Falla-FTA 22
Risk Software S.A. de C.V.