Professional Documents
Culture Documents
FDAL
FDAL
Development Assurance
Level Assignment
2
BASIC CONCEPTS AND DEFINITIONS
3
BASIC CONCEPTS AND DEFINITIONS
4
BASIC CONCEPTS AND DEFINITIONS
5
BASIC CONCEPTS AND DEFINITIONS
6
DEVELOPMENT ASSURANCE PROCESS
7
DEVELOPMENT ASSURANCE LEVEL
8
FDAL and IDAL
9
FDAL and IDAL
10
FDAL & IDAL Assignment Process
11
Aircraft Level Functions FDAL Assignment
12
System Level Functions FDAL Assignment
13
DAL assignment without architecture
considerations
Table 2
14
DAL Assignment without Architecture
Consideration
15
DAL assignment with architectuire
considerations
16
DAL assignment with architecture
considerations
17
DAL assignment with architecture
consideration
18
Independence Atributes
Independence atributes
Independence between Functions or Items can protect against
potential common mode Errors and is a fundamental attribute
to consider when assigning Development Assurance Levels.
The intent of Independence attributes is to have sufficient
confidence that the likelihood of a common mode Error is
minimized between two or more members at an extent
commensurate with the severity of the Failure Condition
Classification.
For the purposes of assigning FDAL and IDAL, two types of
independence attributes, Functional Independence and Item
Development Independence are considered.
19
Functional Independence
20
Functional Independence
21
Item Development Independence
22
DAL assignment with architecture
considerations
23
DAL assignment with architecture
considerations
24
DAL assignment with architecture
considerations
25
DAL assignment with architecture
considerations
26
DAL assignment with architecture
considerations summary table
27
DAL assignment with architecture
considerations : notes
NOTE 1: When a FFS has a single Member and the mitigation strategy for
systematic errors is to be FDAL A alone, then the applicant may be required
to substantiate that the development process for that Member has sufficient
independent validation/verification activities, techniques and completion
criteria to ensure that potential development error(s) having a catastrophic
effect have been removed or mitigated.
NOTE 2: It is necessary to stay in the same row no matter the number of
functional decompositions performed (e.g. for a Catastrophic Failure
Condition any degree of decomposition from a top FDAL A FFS should
include at least one FDAL A or two FDAL B Members).
NOTE 4: Some classes of 14CFR Part 23 /CS-23 aircraft have FDALs lower
than shown in Summary Table . See the current FAA AC23.1309 and
equivalent EASA policy for specific guidance.
28
FDAL and IDAL ASSIGNMENT CASES
29
Neither Functional nor Item Development
Independence
30
Functional Independence and Item
Development Independence
31
Functional Independence and Item
Development Independence
FC2
FC2 FDAL Assignment IDAL Assignment
F1 F2 I1 I3
B B B B
Functional Functional A C A C
Failure of F1 Failure of F2
C A C A
F1 F2
32
Functional Independence is claimed but not
Item Development Independence
33
Functional Independence is claimed but not
Item Development Independence
34
No functional independence but Item
development independence
35
FDAL Assignment Taking Credit for External
Events
36
FDAL assignment taking credit for external
events
Protection
Function FDAL
Assignment
A
37
IDAL ASSIGNMENT ADDITIONAL
CONSIDERATIONS
38
THANKS!
39
40