Professional Documents
Culture Documents
SIMATIC S7-400H and S7-400F/FH Top-End Controllers With Fault-Tolerant and Fail-Safe Functionalities
SIMATIC S7-400H and S7-400F/FH Top-End Controllers With Fault-Tolerant and Fail-Safe Functionalities
2
S7-400F/FH -
Introduction / benefits
Introduction
The safety-relevant functions of the
S7-400F/FH are incorporated into the F
program of the CPU and in the fail-safe
signal modules.
Both standard modules and fail-safe
modules can be used on the
S7-400F/FH. This means it is possible to
set up a fully integrated control system
for a plant where there are both
safety-related and standard areas. The
whole plant can be configured and pro-
grammed using the same standard
tools.
This means the SIMATIC S7-400F/FH can
now be used for automation areas
which were, up to a few years ago, the
exclusive domain of electromechanical
controllers, e.g. automobile shell con-
struction with presses and robots, burn-
er management systems, transporta-
tion of persons on cableways and, last
but not least, process automation.
Benefits
· The S7-400F/FH largely consists of Fail-safe S7-400F
standard components and is an inte-
gral part of Totally Integrated Auto-
mation (TIA) Standards
· The S7-400F/FH is an integral part of The S7-400F/FH complies with the fol-
Safety Integrated, the Siemens lowing safety requirements:
safety program for industrial applica- · Demand class:
tions AK 1 to AK 6 according to
· The S7-400F/FH has a TÜV approval DIN V 19250/DIN V VDE 0801
(TÜV = German Technical Inspecto- · Safety demand class:
rate) and fulfils all relevant standards SIL 1 to SIL 3 according to IEC 61508
Hardware and engineering costs are · Category:
reduced due to the fact that the fail-safe 2 to 4 according to EN954-1
S7-400F/FH is largely built from stan-
dard components:
· There is no need for an additional
F-CPU and the cabling to it.
· Engineering costs are lower because
a standard CPU can be programmed
normally instead of using an addi-
tional F-CPU.
Programs from non-safety-related
systems can also be adopted.
3
S7-400F/FH -
Highlights
Hardware
The hardware of the S7-400F/FH is
based on the CPUs of the fault-tolerant,
redundant SIMATIC S7-400H system,
plus an F-library. This F-library contains
pre-assembled, TÜV-approved basic
function blocks as well as a parameter-
ization tool for the fail-safe I/O modules.
In order to be able to run the
S7-400F/FH, the F Copy License needs
to be loaded into the CPU.
The CPU checks that the controller is
running properly by means of regular
self-tests, instruction tests and a pro-
gram execution test.
The resulting safety functions enable
response times from 100 ms upwards,
which is fully adequate for most appli-
cations in the process industry and for
many applications in the manufacturing
industry with manually operated Emer-
gency Stop devices.
The S7-400F/FH also incorporates Graphic configuring of the S7-400F/FH with the CFC engineering tool
safety-related modules for the
SIMATIC ET 200M distributed I/O
system.
Programming Communication
These fail-safe I/O modules are parame-
terized using the parameterization tool, The S7-400F/FH is programmed in Both safety-related and standard com-
connected to PROFIBUS, and controlled exactly the same way as a standard munication between the central con-
by means of the new PROFISafe S7-400. The normal automation func- troller and ET 200M go through
PROFIBUS profile for safety-related tions for the cyclic processing level PROFIBUS DP. The PROFISafe profile is
applications. (OB 1) are programmed using standard characterized by the fact that the safety
programming languages. The CFC engi- functions in the fail-safe end stations
At the moment, 4 modules are avail- neering tool is required to call blocks are implemented using the standard
able: from the F-library and to interconnect PROFIBUS functions. The useful data for
· Digital input modules: 24 x 24 V them. the safety function and the safety mea-
Digital input modules: 8 x NAMUR These blocks are called in a time level sures are sent within a standard data
(OB 35) at a parameterizable time inter- frame. No additional hardware compo-
· Digital output module: 10 x 24 V/2 A
val for reproducible disconnection nents are required.
· Analog input module: 6 x 13 bit times. This means that standard communica-
These modules can diagnose internal The use of CFC makes configuring and tion and safety-related communication
and external errors and have total inter- programming the plant, and the final use the same basic hardwareautoma-
nal redundancy, i.e. outputs have, for acceptance test, significantly easier. tion and fail-safety are getting closer
example, a second integrated discon- For programmers, there is a distinct together all the time!
nection facility. advantage in the fact that they can con- Transmission of PROFIsafe is indepen-
Using the safety protector, fail-safe and centrate on configuring the dent of the transmission mechanisms,
standard modules can be used together safety-related application. This notice- e.g. copper cables or fiber-optic cables.
in one rack. ably reduces engineering costs, espe-
cially in combination with other compo-
nents, e.g. other programmable con-
trollers or control and monitoring
devices.
4
S7-400F/FH -
Configurations
The S7-400F/FH has two basic configu- · S7-400F fail-safe programmable con- · S7-400F fail-safe and fault-tolerant
rations: troller (see Fig. 1): programmable controller (see Figs. 2
If an error occurs in the control sys- and 3):
tem, the production process is inter- If an error occurs in the control sys-
rupted and transferred into a safe tem, redundant controller compo-
mode. nents are activated and take over
control of the production process.
Redundant DP master
The plant requires a fail-safe controller. systems
Fault-tolerance is required on the CPU side.
S7-400FH
The following are needed:
programmable controller
· 2 CPU 417-4H or CPU 414-4H with Single-channel, switched
F Copy License distributed I/O
· 2 PROFIBUS DP lines ET 200M with 2 x IM 153-2
Redundant DP master
The plant requires a fail-safe controller. systems
Fault-tolerance is required on the CPU side
and the I/O side. The following are needed: S7-400FH
programmable controller
· 2 CPU 417-4H or CPU 414-4H with Redundant, switched
F Copy License distributed I/O
· 2 PROFIBUS DP lines 2 x ET 200M with 2 x IM 153-2 each
· Marine automation
· Airport automation Process
· Baggage transport control
· Runway lighting Active redundancy with smooth changeover
6
S7-400H -
Configurations
CPU CPU 417-4H CPU 414-4H SM 326 F fail-safe digital input module
Main memory Number of inputs 24 (single-channel), 12 (two-channel)
·Integral (program/data) 2 Mbyte each 384 Kbyte each
Input voltage 24 V DC
·Expandable (program/data) 8 Mbyte each --
Alarms Diagnostics alarm
Load memory
· Integral 256 Kbyte RAM 256 Kbyte RAM MLFB group 6ES7326-1BK..
· Expandable FEPROM Up to 64 Mbyte Up to 64 Mbyte
· Expandable RAM Up to 64 Mbyte Up to 64 Mbyte
SM 326 F fail-safe digital output module
FBs/FCs, max. 6144/6144 2048/2048
Number of outputs 10
Data blocks, max. 8191 4095
Output voltage 24 V DC
I/O address range 16/16 Kbyte 8/8 Kbyte
· of which distributed Alarms Diagnostics alarm
- MPI/DP interface 2/2 Kbyte 2/2 Kbyte Output current with "1" signal 2 A per channel
- DP interface 8/8 Kbyte 6/6 Kbyte
MLFB group 6ES7326-1BF..
Process image (adjustable) 16/16 Kbyte 8/8 Kbyte
· Default setting 1024/1024 byte 256/256 byte
Digital channels 131072/131072 65536/65536 SM 326 NAMUR fail-safe Ex input module
· of which centralized 131072/131072 65536/65536 Number of inputs 8 (single-channel)
Analog channels 8192/8192 4096/4096 4 (two-channel)
· of which centralized 8192/8192 4096/4096 Input voltage In accordance with DIN 19234 or
NAMUR
1st interface
· MPI Yes Alarms Diagnostics alarm
· DP master Yes
MLFB group 6ES7326-1RF..
· DP save No
· Default setting MPI
· Isolated Yes SM 336 F fail-safe analog input module
2nd interface Number of inputs 6; max. 4 (single-channel) or 3/2 (two-
· DP master Yes channel) with voltage measurements
· DP slave No
· Point-to-point connection No Alarms Diagnostics alarm (parameterizable)
· Default setting DP master Integration time 20/16.66 ms
· Isolated Yes
Resolution 13 bit + sign
Programming languages STEP® 7 V5, SP1 (LAD, FBD, STL);
SCL, CFC, GRAPH, HiGraph® MLFB group 6ES7336-1HE..
MLFB group 6ES7417-4H... 6ES7414-4H...
Option packages for S7 F systems
F-Library Approx. 50 certified basic function
blocks
F-Tool For parameterization of fail-safe SMs
Requirements · STEP 7 V5.1 or higher
· CFC V5.2 or higher
· S7-SCL V5.0 or higher
· S7 H systems V5.1
(option for S7-400FH)
All designations marked in this Prod-
uct Brief with ® are registered trade-
Additional information on the For personal consultation you can Using the A&D Mall you can immedi-
SIMATIC controllers can be found in the find your local SIMATIC partner at: ately and directly order electronically
Internet: www.siemens.de/automation/partner in the Internet:
marks of Siemens AG.
www.siemens.de/simatic-controller www.siemens.de/automation/mall