You need JavaScript to view this

Review of Bruce A reactor regulating system software

Abstract

Each of the four reactor units at the Ontario Hydro Bruce A Nuclear Generating Station is controlled by the Reactor Regulating System (RRS) software running on digital computers. This research report presents an assessment of the quality and reliability of the RRS software based on a review of the RRS design documentation, an analysis of certain significant Event Reports (SERs), and an examination of selected software changes. We found that the RRS software requirements (i.e., what the software should do) were never clearly documented, and that design documents, which should describe how the requirements are implemented, are incomplete and inaccurate. Some RRS-related SERs (i.e., reports on unexpected incidents relating to the reactor control) implied that there were faults in the RRS, or that RRS changes should be made to help prevent certain unexpected events. The follow-up investigations were generally poorly documented, and so it could not usually be determined that problems were properly resolved. The Bruce A software change control procedures require improvement. For the software changes examined, there was insufficient evidence provided by Ontario Hydro that the required procedures regarding change approval, independent review, documentation updates, and testing were followed. Ontario Hydro relies on the expertise of their technical  More>>
Publication Date:
Dec 01, 1995
Product Type:
Technical Report
Report Number:
INFO-0616
Reference Number:
SCA: 220400; 210400; PA: AIX-27:051593; EDB-96:104983; NTS-96:019503; SN: 96001618019
Resource Relation:
Other Information: PBD: Dec 1995
Subject:
22 NUCLEAR REACTOR TECHNOLOGY; 21 NUCLEAR POWER REACTORS AND ASSOCIATED PLANTS; COMPUTERIZED CONTROL SYSTEMS; SYSTEMS ANALYSIS; BRUCE SITE; CANDU TYPE REACTORS; COMPUTER CODES; DESIGN BASIS ACCIDENTS; REACTOR CONTROL SYSTEMS
OSTI ID:
252820
Research Organizations:
PRIOR Data Sciences, Kanata, ON (Canada); Atomic Energy Control Board, Ottawa, ON (Canada)
Country of Origin:
Canada
Language:
English
Other Identifying Numbers:
Other: ON: DE96629366; CNN: Project 2.260.1; TRN: CA9600145051593
Availability:
INIS; OSTI as DE96629366
Submitting Site:
INIS
Size:
97 p.
Announcement Date:
Jul 23, 1996

Citation Formats

None. Review of Bruce A reactor regulating system software. Canada: N. p., 1995. Web.
None. Review of Bruce A reactor regulating system software. Canada.
None. 1995. "Review of Bruce A reactor regulating system software." Canada.
@misc{etde_252820,
title = {Review of Bruce A reactor regulating system software}
author = {None}
abstractNote = {Each of the four reactor units at the Ontario Hydro Bruce A Nuclear Generating Station is controlled by the Reactor Regulating System (RRS) software running on digital computers. This research report presents an assessment of the quality and reliability of the RRS software based on a review of the RRS design documentation, an analysis of certain significant Event Reports (SERs), and an examination of selected software changes. We found that the RRS software requirements (i.e., what the software should do) were never clearly documented, and that design documents, which should describe how the requirements are implemented, are incomplete and inaccurate. Some RRS-related SERs (i.e., reports on unexpected incidents relating to the reactor control) implied that there were faults in the RRS, or that RRS changes should be made to help prevent certain unexpected events. The follow-up investigations were generally poorly documented, and so it could not usually be determined that problems were properly resolved. The Bruce A software change control procedures require improvement. For the software changes examined, there was insufficient evidence provided by Ontario Hydro that the required procedures regarding change approval, independent review, documentation updates, and testing were followed. Ontario Hydro relies on the expertise of their technical staff to modify the RRS software correctly; they have confidence in the software code itself, even if the documentation is not up-to-date. Ontario Hydro did not produce the documentation required for an independent formal assessment of the reliability of the RRS. (author). 37 refs., 3 figs.}
place = {Canada}
year = {1995}
month = {Dec}
}