ISO 26262 defines how to assess a risk and the necessary activities to perform for each step:
 System
 Software
 Hardware
 Production...
Redundancy for Autonomous Driving:
 Redundant Sensors & Actuators
 Redundant Communication Networks
 Redundant Power supply Networks
Additional Safety Stakes:
 For Autonomous Driving, Automotive EE Architecture has to switch from Fail Safe design to Fail Operational.
 Safety has also to consider SOTIF (Safety of the Intended Functionality)






















已完成
数据加载中