Fault-tolerant high-performance computer system for autonomous vehicle maneuvering
First Claim
Patent Images
1. A fault-tolerant high-performance computer system (CS) for executing control processes for autonomous maneuvering of a vehicle, wherein a control process (COP) comprises tasks, the computer system (CS) comprising:
- processors (S1, P1;
S2, P2) for executing the tasks of the control process (COP); and
a number n of fault-containment regions (FCR1, FCR2), with n≥
2, wherein each fault-containment region (FCR1, FCR2) comprises at least one processor constructed as safety-processor (S1, S2), and wherein at least one fault-containment region (FCR1, FCR2) additionally comprises at least one processor constructed as performance processor (P1, P2), and wherein in the case of a failure of one fault-containment region (FCR1, FCR2), or, for n≥
3, of the failure of one or more, at maximum n−
1, fault-containment regions, the computer system (CS) is configured to execute at least a specific set of tasks on the remaining, non-faulty fault-containment region or non-faulty fault-containment regions, wherein the tasks of said specific set of tasks are elected in such a way thatthe computer system (CS) remains capable of autonomous maneuvering or at least partially maneuvering the vehicle, orthe computer system (CS) is at least capable of bringing the vehicle into a safe state.
3 Assignments
0 Petitions
Accused Products
Abstract
A fault-tolerant high-performance computer system is provided for executing control processes for autonomous maneuvering of a vehicle.
5 Citations
17 Claims
-
1. A fault-tolerant high-performance computer system (CS) for executing control processes for autonomous maneuvering of a vehicle, wherein a control process (COP) comprises tasks, the computer system (CS) comprising:
-
processors (S1, P1;
S2, P2) for executing the tasks of the control process (COP); anda number n of fault-containment regions (FCR1, FCR2), with n≥
2, wherein each fault-containment region (FCR1, FCR2) comprises at least one processor constructed as safety-processor (S1, S2), and wherein at least one fault-containment region (FCR1, FCR2) additionally comprises at least one processor constructed as performance processor (P1, P2), and wherein in the case of a failure of one fault-containment region (FCR1, FCR2), or, for n≥
3, of the failure of one or more, at maximum n−
1, fault-containment regions, the computer system (CS) is configured to execute at least a specific set of tasks on the remaining, non-faulty fault-containment region or non-faulty fault-containment regions, wherein the tasks of said specific set of tasks are elected in such a way thatthe computer system (CS) remains capable of autonomous maneuvering or at least partially maneuvering the vehicle, or the computer system (CS) is at least capable of bringing the vehicle into a safe state. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15, 16, 17)
-
Specification