Safety Assessment of Automated Vehicles

Slides:



Advertisements
Similar presentations
eCall for Powered Two Wheelers Opportunities and Challenges
Advertisements

UNECE Regulation 13 (braking) Proposed amendment to extend Annex 19 and Annex 20 to cover motor vehicles, especially a vehicle stability function Sheet.
© Ricardo plc 2012 Eric Chan, Ricardo UK Ltd 21 st October 2012 SARTRE Demonstration System The research leading to these results.
International Energy Agency Hydrogen Implementing Agreement Proposed Task on Hydrogen Safety.
ACSF Informal Group Industry proposals 1 st Meeting of ACSF informal group April 29 and 30, 2015 in Bonn 1 Informal Document ACSF
AFS Main Beam (Driving Beam) Improvements Presentation to WP th Session November 2008 Informal document No. WP th WP.29, November.
Legal issues addressed in the EU funded AdaptIVe project
1. NV DMV FollowupProprietary and Confidential 2 Peloton Technology Founded 2011, Menlo Park CA To dramatically improve highway safety and the efficiency.
United States Rulemaking on Electronic Stability Control (ESC) for Light Vehicles 138 WP.29 March, 2006 Informal document No. WP (138th WP.29,
Proposal for a new UNECE regulation on recyclability of motor vehicles Informal Document GRPE Reply to the Comments of the Russian Federation Informal.
Views from different perspectives
Autonomous Vehicles in California Stephanie Dougherty Chief, Enterprise Planning & Performance California Department of Motor Vehicles July 22, 2015.
© eVALUE consortium1Adrian Zlocki / TRA 2008 Conference TRA 2008 Conference eVALUE – Testing and Evaluation Methods for ICT-based Safety Systems The research.
 Active safety  Technology assisting in the prevention of a crash  Passive Safety  Primarily airbags  Seatbelts.
Outline of Definition of Automated Driving Technology Document No. ITS/AD (5th ITS/AD, 24 June 2015, agenda item 3-2) Submitted by Japan.
1 ACSF Test Procedure Draft proposal – For discussion OICA and CLEPA proposal for the IG Group ACSF Tokyo, 2015, June Informal Document ACSF
 Introduction  What is Driverless Car ?  History  Component  Action  Technology  Advantages  Disadvantages  Conclusion  Reference.
Joint Research Centre the European Commission's in-house science service JRC Science Hub: ec.europa.eu/jrc 38th UNECE IWG PMP MEETING Non- exhaust particle.
RDE testing: how to define NTE emission limits?
Emergency Stopping Signal 80th GRRF session Submitted by the experts from IMMA Informal document GRRF th GRRF, September 2015, Agenda item.
1 6th ACSF meeting Tokyo, April 2016 Requirements for “Sensor view” & Environment monitoring version 1.0 Transmitted by the Experts of OICA and CLEPA.
ESafety WG “Digital Maps” Ad Bastiaansen (Tele Atlas) - Chair Yiannis Moissidis (NAVTEQ) - Co-Chair The 4 th Plenary Session of eSafety Forum Thursday,
Transmitted by the Experts of TRL (EC)
OICA „Certification of automated Vehicles“
Loughborough University research areas
Introduction TRL’s study was performed in the context of ACSF updates to UN Regulation No 79. Focus: Ensure safe system function in all real-world driving.
Autonomous Vehicles in California
Initial project results: Annex 6 – 20 Sept 2016
ESP Electronic Stability Programs
Concept of ACSF TAN (Type Approval Number)
Automatic Emergency Braking Systems (AEBS)
ACSF-C2 2-actions system
Challenges for the European Automotive Software Industry
N. Ligterink, R. Cuelenaere
Real World Test Drive – OICA views
Informal Document: ACSF-11-08
GRSG-113 Agenda point 5 – Awareness of Vulnerable Road Users proximity
Informal document GRRF-86-36
ASEP IWG Report to GRB 66th
Industry Homework from AEB 02
Submitted by OICA Document No. ITS/AD-14-07
LDV Real Driving Emissions: - Drafting of physical PEMS protocol –
IVECO Proposal for Revised CoP Procedure
Proposals from the Informal Working Group on AEBS
AEBS 4th Meeting UK Position Paper December 18 OFFICIAL-SENSITIVE
ENabling SafE Multi-Brand Platooning for Europe
Transmitted by the expert from ISO
Future Certification of Automated Driving Systems
Submitted by the experts of OICA
Submitted by OICA Document No. ITS/AD Rev1
Reason for performance difference between LVW and GVW
New Assessment & Test Methods
Work plan and next steps – RDE-LDV working group
Report on Automated Vehicle activities
Some proposals to improve efficiency of road vehicle noise regulation
European Commission, DG Environment Air & Industrial Emissions Unit
Safety concept for automated driving systems
Overview of the recommendations on software updates
Safety considerations on Emergency Manoeuver
In service monitoring Near miss logging Continuous improvement
ASEP IWG Report to GRB 66th
C-EDR Introduction of Chinese Mandatory National Standard
ENabling SafE Multi-Brand Platooning for Europe
C-EDR Introduction of Chinese Mandatory National Standard
Automated Driving: Challenges in the Light of Human Actions
Group 1a: Traffic scenarios
VMAD Describe in a few sentences what should be the outcome of the ‘audit/virtual testing/in-use data reporting Audit Confirmation that the manufacturers.
Access to data requirementS
Status of the French legislation on shuttles
Status of the Informal Working Group on ACSF
Presentation transcript:

Safety Assessment of Automated Vehicles VMAD-02-08 Safety Assessment of Automated Vehicles M. Cristina Galassi – EC DG JRC C.4 2nd Session of VMAD IWG on April 1 - 2, 2019

1st Technical Workshop – 22nd Nov 2018 Small group of experts (16 participants) representing MSs, industry and EU international projects Different approaches proposed for AVs certification Goal Discuss what already exists, which are the merits/limits of the different methodologies Debate on the way forward, with focus on short term needs for a harmonized European approach

2nd Technical Workshop – 7th March 2019 Enlarged group of experts (written contribution) Goal How do we define a safe automated vehicle and how this shall be demonstrated Which tools can be used now for safety demonstration and what can be used at a later stage (and when) Open discussion on JRC proposal and way forward

Different Approaches Mathematical model formalizing the duty of care Horizontal Regulation Scenario based approach Software audit & driving license Tool-chain for HIL tests Proactive safety analysis performed at early stage Tests & audit OEMs certification plus technical tests

PHASE 1: NOW Different Approaches Mathematical model formalizing the duty of care Horizontal Regulation Scenario based approach Software audit & driving license Tool-chain for HIL tests Proactive safety analysis performed at early stage Tests & audit OEMs certification plus technical tests

Development (1) What is a safe AV? (2) How to evaluate it? Validation/Verification

What is a safe AV? AUTOMATION SOFTWARE PHYSICAL SYSTEMS Nominal Safety INTERFACES PHYSICAL SYSTEMS Nominal Safety Functional Safety Miscommunication Interactions with humans Environmental factors

What is a safe AV: Mathematical model A mathematical model formalizing a "common sense" interpretation of the "duty of care" What is a dangerous situation? What is the proper response? What does it mean to be reasonably cautious? What assumptions a driver can make on the unknown behavior of other road users?

Mathematical model - how to apply it? Tests scenarios can be derived from the mathematical model to assess vehicle nominal safety E.g. SAFE DISTANCE – LONGITUDINAL safe distance response time maximal acceleration maximal deceleration lead vehicle maximal/minimal brake accident avoidance

Risk Assessment e.g. STPA (Systems-Theoretic Process Analysis) approach Early Phase (i.e. development) Top-down approach for safety analysis Control based analysis Causal Factors Proactive instead of Reactive Safety Analysis Addresses new accidents caused by component interactions, software and human errors Less dependent of a very experienced analyst (multidisciplinary team)

SAFE AV STPA – How does it work? Electronic Stability Control 1. Identify possible accidents and hazards at the system level 2. Identify the control structure 3. Inadequate Control Actions (ICAs) 4. CASUAL FACTORS SAFETY CONSTRAINTS SAFETY REQUIREMENTS SAFETY MEASURES STPA – How does it work? Electronic Stability Control Traction Control Back Camera Stop & Go Adaptive Cruise Control Reverse Backup Sensors Anti-Lock Braking Systems (ABS) Adaptive Cruise Control (ACC) SAFE AV Electronic Brakeforce Distribution Systems Airbags Automatic Braking Systems

How to evaluate safety : AUDIT UN Regulation 79 - approval of vehicles with regard to steering equipment (Annex 6) ISO 26262 – Functional Safety ISO/PAS 21448 (SOTIF) – Safety of the intended Functionality Design phase Verification phase Validation phase

How to evaluate safety :TESTING Track & on-road testing (e.g. driving license) TRACK: limited test cases database (mathematical model + extended), random selection of scenarios plus variable parameters (speed, weather conditions, etc…) ON-ROAD: mixed U+R+H (similar to RDE) assessing driving capabilities within vehicle operational domain plus handover to driver Is it sufficient? Need for in use compliance reporting by manufacturer?

PHASE 2: 5-10y Different Approaches Mathematical model formalizing the duty of care Horizontal Regulation Scenario based approach Software audit & driving license Tool-chain for HIL tests Proactive safety analysis performed at early stage Tests & audit OEMs certification plus technical tests

Ideas, comments, contributions are welcome ! Next steps 3rd Technical Workshop in May Feedback on JRC proposal Discuss the "new assessment method" on a concrete use case (e.g. L3 Lane keeping) Ideas, comments, contributions are welcome !

Any questions? Maria-Cristina.Galassi@ec.europa.eu