This is the multi-page printable view of this section. Click here to print.
Component Implementation
1 - VrfyCritReg_IntegrationManual
Integration Manual
For
VrfyCritReg
VERSION: 2.0
DATE: 14-Apr-2016
Prepared By:
Sankardu Varadapureddi,
Nexteer Automotive,
Saginaw, MI, USA
Location: The official version of this document is stored in the Nexteer Configuration Management System.
Revision History
Sl. No. | Description | Author | Version | Date |
1 | Initial version | Sankardu Varadapureddi | 1.0 | 14-Jan-2016 |
2 | Updated to “ Critical register” checks at init and periodic functions | Selva Sengottaiyan | 2 | 14-Apr-2016 |
Table of Contents
3.2 Global Functions(Non RTE) to be provided to Integration Project 6
4 Configuration REQUIREMeNTS 7
4.2 Configuration Files to be provided by Integration Project 7
4.3 Da Vinci Parameter Configuration Changes 7
4.4 DaVinci Interrupt Configuration Changes 7
4.5 Manual Configuration Changes 7
5 Integration DATAFLOW REQUIREMENTS 8
5.1 Required Global Data Inputs 8
5.2 Required Global Data Outputs 8
5.3 Specific Include Path present 8
Abbrevations And Acronyms
Abbreviation | Description |
DFD | Design functional diagram |
MDD | Module design Document |
References
This section lists the title & version of all the documents that are referred for development of this document
Sr. No. | Title | Version |
1 | FDD : CM111A_VrfyCritReg _Design | See Synergy sub project version |
2 | Software Naming Conventions | Process 4.02.00 |
3 | Software Design and Coding Standards | Process 4.02.00 |
Dependencies
SWCs
Module | Required Feature |
None |
Global Functions(Non RTE) to be provided to Integration Project
CritRegIninChk--- Needs to be trusted function because it needs to run in supervisor mode
CritRegPerChk--- Needs to be trusted function because it needs to run in supervisor mode
Configuration REQUIREMeNTS
Build Time Config
Modules | Notes | |
None |
Configuration Files to be provided by Integration Project
CDD_VrfyCritReg_Cfg.c
CDD_VrfyCritReg_Cfg_private.h
Da Vinci Parameter Configuration Changes
Parameter | Notes | SWC |
/Nexteer/VrfyCritReg/VrfySysCritRegInitSignallist | System Critical registers with 32 bit Access that needs to checked at Init function | |
/Nexteer/VrfyCritReg/VrfySysCritRegPerSignallist | System Critical registers with 32 bit Access that needs to checked periodically | |
/Nexteer/VrfyCritReg/VrfyCritReg32bitPerSignallist | Critical registers with 32 bit Access that needs to checked periodically | |
/Nexteer/VrfyCritReg/VrfyCritReg32bitInitSignallist | Critical registers with 32 bit Access that needs to checked at Initialisation | |
/Nexteer/VrfyCritReg/VrfyCritReg16bitPerSignallist | Critical registers with 16 bit Access that needs to checked periodically | |
/Nexteer/VrfyCritReg/VrfyCritReg16bitInitSignallist | Critical registers with 32 bit Access that needs to checked at Initialisation | |
/Nexteer/VrfyCritReg/VrfyCritReg8bitPerSignallist | Critical registers with 8 bit Access that needs to checked periodically | |
/Nexteer/VrfyCritReg/VrfyCritReg8bitInitSignallist | Critical registers with 32 bit Access that needs to checked at Initialisation |
Note:
Refer the CM010 RH850 Static Register Evaluation.xlsm for configuration of critical registers
Refer the Appendix below for the steps involved in generating “Da Vinci Configuration files needed for critical register check “ from the Script.
DaVinci Interrupt Configuration Changes
ISR Name | VIM # | Priority Dependency | Notes |
None |
Manual Configuration Changes
Constant | Notes | SWC |
None |
Integration DATAFLOW REQUIREMENTS
Required Global Data Inputs
None
Required Global Data Outputs
None
Specific Include Path present
Yes.
Runnable Scheduling
This section specifies the required runnable scheduling.
Init | Scheduling Requirements | Trigger |
VrfyCritRegInit1 | None | RTE (Init) |
Runnable | Scheduling Requirements | Trigger |
VrfyCritRegPer1 | None | RTE (10ms) |
Memory Map REQUIREMENTS
Mapping
Memory Section | Contents | Notes |
None | ||
* Each …START_SEC… constant is terminated by a …STOP_SEC… constant as specified in the AUTOSAR Memory Mapping requirements.
Usage
Feature | RAM | ROM |
None |
Table 1: ARM Cortex R4 Memory Usage
NvM Blocks
None
Compiler Settings
Preprocessor MACRO
None.
Optimization Settings
None.
Appendix
Steps to generate CDD_VrfyCritReg_Cfg:
Run CriticalRegisterGenerator.py (Script will be placed along with Excel RH850 Static Register Evaluation)
The input for this Generator tool is the Excel Sheet RH850 Static Register Evaluation
OUTPUT Generated will be “CDD_VrfyCritReg_Cfg.arxml “ and rename it as “EPS_VrfyCritReg_ecuc.arxml” or corresponding .arxml name that matches project
2 - VrfyCritReg_MDD
Module Design Document
For
VrfyCritReg
Apr 14, 2016
Prepared For:
Software Engineering
Nexteer Automotive,
Saginaw, MI, USA
Prepared By:
Selva Sengottaiyan
Nexteer Automotive,
Saginaw, MI, USA
Change History
Description | Author | Version | Date |
Initial Version | Sankardu Varadapureddi | 1 | 14-Jan-2016 |
Updated to “ Critical register” checks at init and periodic functions | Selva Sengottaiyan | 2 | 14-Apr-2016 |
Table of Contents
2 VrfyCritReg High-Level Description 6
3 Design details of software module 7
3.1 Graphical representation of VrfyCritReg 7
4.1 Program (fixed) Constants 8
5 Software Component Implementation 9
5.1.1 Init: VrfyCritRegInit1 9
5.1.2.2 Store Module Inputs to Local copies 9
5.1.2.3 (Processing of function)……… 9
5.1.2.4 Store Local copy of outputs into Module Outputs 9
5.4 Module Internal (Local) Functions 9
5.5 GLOBAL Function/Macro Definitions 10
6 Known Limitations with Design 11
Appendix A Abbreviations and Acronyms 13
Introduction
Purpose
Scope
VrfyCritReg High-Level Description
Refer to FDD
Design details of software module
Graphical representation of VrfyCritReg
Data Flow Diagram
Refer FDD
Component level DFD
Function level DFD
Constant Data Dictionary
Program (fixed) Constants
Embedded Constants
Refer .m file
Local Constants
Constant Name | Data Type | Value |
---|---|---|
SYSCRITREGFLT_CNT_U08 | uint8 | 2 |
CRITREGFLT_CNT_U08 | uint8 | 1 |
NOFLT_CNT_U08 | uint8 | 0 |
Software Component Implementation
Sub-Module Functions
Init: VrfyCritRegInit1
Design Rationale
Refer FDD
Module Outputs
None
Per: VrfyCritRegPer1
Design Rationale
Refer FDD
Store Module Inputs to Local copies
None
(Processing of function)………
Refer FDD
Store Local copy of outputs into Module Outputs
None
Server Runables
None
Interrupt Functions
None
Module Internal (Local) Functions
Local Function #1
Function Name | SysCritReg<Register Short Name>IninChk | Type | Min | Max | |
Arguments Passed | NA | ||||
Return Value | &SysRegsOk_Uls_T_lgc | boolean | FALSE | TRUE |
Description
Set ' SysRegsOk_Uls_T_lgc to FALSE if CPU System Register values are not equal to expected values. This is configured to be called from trusted function because it needs to run in supervisor mode
Local Function #2
Function Name | SysCritReg<Register Short Name>PerChk | Type | Min | Max | |
Arguments Passed | NA | ||||
Return Value | &SysRegsOk_Uls_T_lgc | boolean | FALSE | TRUE |
Description
Set ' SysRegsOk_Uls_T_lgc to FALSE if CPU System Register values are not equal to expected values. This is configured to be called from trusted function because it needs to run in supervisor mode
GLOBAL Function/Macro Definitions
Global Function #1
Function Name | CritRegPerChk | Type | Min | Max | |
Arguments Passed | NA | ||||
Return Value | NtcParamInfo_Cnt_T_u08 | uint8 | 0U | 2U |
Description
Set ' NtcParamInfo_Cnt_T_u08 to 1 if CPU Non System Register values are not values. Set ' NtcParamInfo_Cnt_T_u08 to 2 if CPU System Register values are not equal to expected values. Set ' NtcParamInfo_Cnt_T_u08 to 0 if none of the above conditions are true. This is configured as a trusted function because it needs to run in supervisor mode
Global Function #2
Function Name | CritRegInitChk | Type | Min | Max | |
Arguments Passed | NA | ||||
Return Value | NtcParamInfo_Cnt_T_u08 | uint8 | 0U | 2U |
Description
Set ' NtcParamInfo_Cnt_T_u08 to 1 if CPU Non System Register values are not equal to expected values. Set ' NtcParamInfo_Cnt_T_u08 to 2 if CPU System Register values are not equal to expected values. Set ' NtcParamInfo_Cnt_T_u08 to 0 if none of the above conditions are true. This is configured as a trusted function because it needs to run in supervisor mode
Global Function #3
Function Name | SysCritRegIninChk | Type | Min | Max | |
Arguments Passed | NA | ||||
Return Value | SysRegsOk_Uls_T_lgc | boolean | FALSE | TRUE |
Description
Set ' SysRegsOk_Uls_T_lgc to FALSE if CPU System Register values are not equal to expected values. This is configured to be called from trusted function because it needs to run in supervisor mode
Global Function #4
Function Name | SysCritRegPerChk | Type | Min | Max | |
Arguments Passed | NA | ||||
Return Value | SysRegsOk_Uls_T_lgc | boolean | FALSE | TRUE |
Description
Set ' SysRegsOk_Uls_T_lgc to FALSE if CPU System Register values are not equal to expected values. This is configured to be called from trusted function because it needs to run in supervisor mode
Known Limitations with Design
UNIT TEST CONSIDERATION
None
Abbreviations and Acronyms
Abbreviation or Acronym | Description |
---|---|
Glossary
Note: Terms and definitions from the source “Nexteer Automotive” take precedence over all other definitions of the same term. Terms and definitions from the source “Nexteer Automotive” are formulated from multiple sources, including the following:
ISO 9000
ISO/IEC 12207
ISO/IEC 15504
Automotive SPICE® Process Reference Model (PRM)
Automotive SPICE® Process Assessment Model (PAM)
ISO/IEC 15288
ISO 26262
IEEE Standards
SWEBOK
PMBOK
Existing Nexteer Automotive documentation
Term | Definition | Source |
---|---|---|
MDD | Module Design Document | |
DFD | Data Flow Diagram |
References
Ref. # | Title | Version |
---|---|---|
1 | AUTOSAR Specification of Memory Mapping (Link:AUTOSAR_SWS_MemoryMapping.pdf) | v1.3.0 R4.0 Rev 2 |
2 | MDD Guideline | EA4 01.00.01 |
3 | Software Naming Conventions.doc | EA4 01.00.01 |
4 | Software Design and Coding Standards.doc | 2.1 |
5 | FDD : CM111A_VrfyCritReg_Design | See Synergy sub project version |
3 - VrfyCritReg_Review
Overview
Summary SheetSynergy Project
Davinci Files
Source Code Cfgfile
Source Code
MDD
PolySpace
Integration Manual
Sheet 1: Summary Sheet

Sheet 2: Synergy Project
Sheet 3: Davinci Files
Sheet 4: Source Code Cfgfile
Rev 1.2 | 8-Jun-15 | |||||||||||||||||||||||
Peer Review Meeting Log (Source Code Review) | ||||||||||||||||||||||||
Source File Name: | CDD_VrfyCritReg_Cfg.c | Source File Revision: | 1 | |||||||||||||||||||||
Header File Name: | CDD_VrfyCritReg_Cfg.h | Header File Revision: | ||||||||||||||||||||||
MDD Name: | VrfyCritReg_MDD.docx | Revision: | 2 | |||||||||||||||||||||
FDD/SCIR/DSR/FDR/CM Name: | CF111A_VrfyCritReg_Design | Revision: | 2.2.0 | |||||||||||||||||||||
Quality Check Items: | ||||||||||||||||||||||||
Rationale is required for all answers of No | ||||||||||||||||||||||||
Working EA4 Software Naming Convention followed: | ||||||||||||||||||||||||
for variable names | Yes | Comments: | ||||||||||||||||||||||
for constant names | Yes | Comments: | ||||||||||||||||||||||
for function names | Yes | Comments: | ||||||||||||||||||||||
for other names (component, memory | Yes | Comments: | ||||||||||||||||||||||
mapping handles, typedefs, etc.) | ||||||||||||||||||||||||
All paths assign a value to outputs, ensuring | N/A | Comments: | ||||||||||||||||||||||
all outputs are initialized prior to being written | ||||||||||||||||||||||||
Requirements Tracability tags in code match the requirements tracability in the FDD | N/A | Comments: | ||||||||||||||||||||||
requirements tracability in the FDD | ||||||||||||||||||||||||
All variables are declared at the function level. | No | Comments: | ||||||||||||||||||||||
Critical registers are global constants | ||||||||||||||||||||||||
Synergy version matches change history | Yes | Comments: | ||||||||||||||||||||||
and Version Control version in file comment block | ||||||||||||||||||||||||
Change log contains detailed description of changes | Yes | Comments: | ||||||||||||||||||||||
and Work CR number | Initial version | |||||||||||||||||||||||
Code accurately implements FDD (Document or Model) | No | Comments: | ||||||||||||||||||||||
No FDD available | ||||||||||||||||||||||||
Verified no Compiler Errors or Warnings | Yes | Comments: | ||||||||||||||||||||||
Component.h is included | N/A | Comments: | ||||||||||||||||||||||
All other includes are actually needed. (System includes | N/A | Comments: | ||||||||||||||||||||||
only allowed in Nexteer library components) | ||||||||||||||||||||||||
Software Design and Coding Standards followed: | Version: | |||||||||||||||||||||||
Code comments are clear, correct, and adequate | N/A | Comments: | ||||||||||||||||||||||
and have been updated for the change: [N40] and | ||||||||||||||||||||||||
all other rules in the same section as rule [N40], | ||||||||||||||||||||||||
plus [N75], [N12], [N23], [N33], [N37], [N38], | ||||||||||||||||||||||||
[N48], [N54], [N77], [N79], [N72] | ||||||||||||||||||||||||
Source file (.c and .h) comment blocks are per | N/A | Comments: | ||||||||||||||||||||||
standards and contain correct information: [N41], [N42] | ||||||||||||||||||||||||
Function comment blocks are per standards and | N/A | Comments: | ||||||||||||||||||||||
contain correct information: [N43] | ||||||||||||||||||||||||
Code formatting (indentation, placement of | Yes | Comments: | ||||||||||||||||||||||
braces, etc.) is per standards: [N5], [N55], [N56], | ||||||||||||||||||||||||
[N57], [N58], [N59] | ||||||||||||||||||||||||
Embedded constants used per standards; no | N/A | Comments: | ||||||||||||||||||||||
"magic numbers": [N12] | ||||||||||||||||||||||||
Memory mapping for non-RTE code | Yes | Comments: | ||||||||||||||||||||||
is per standard | ||||||||||||||||||||||||
All execution-order-dependent code can be | Yes | Comments: | ||||||||||||||||||||||
recognized by the compiler: [N80] | ||||||||||||||||||||||||
All loops have termination conditions that ensure | N/A | Comments: | ||||||||||||||||||||||
finite loop iterations: [N63] | ||||||||||||||||||||||||
All divides protect against divide by zero | N/A | Comments: | ||||||||||||||||||||||
if needed: [N65] | ||||||||||||||||||||||||
All integer division and modulus operations | N/A | Comments: | ||||||||||||||||||||||
handle negative numbers correctly: [N76] | ||||||||||||||||||||||||
All typecasting and fixed point arithmetic, | N/A | Comments: | ||||||||||||||||||||||
including all use of fixed point macros and | ||||||||||||||||||||||||
timer functions, is correct and has no possibility | ||||||||||||||||||||||||
of unintended overflow or underflow: [N66] | ||||||||||||||||||||||||
All float-to-unsiged conversions ensure the. | N/A | Comments: | ||||||||||||||||||||||
float value is non-negative: [N67] | ||||||||||||||||||||||||
All conversions between signed and unsigned | N/A | Comments: | ||||||||||||||||||||||
types handle msb==1 as intended: [N78] | ||||||||||||||||||||||||
All pointer dereferencing protects against | Yes | Comments: | ||||||||||||||||||||||
null pointer if needed: [N70] | ||||||||||||||||||||||||
Component outputs are limited to the legal range | N/A | Comments: | ||||||||||||||||||||||
defined in the FDD DataDict.m file : [N53] | ||||||||||||||||||||||||
All code is mapped with FDD (all FDD | N/A | Comments: | ||||||||||||||||||||||
subfunctions and/or model blocks identified | No FDD | |||||||||||||||||||||||
with code comments; all code corresponds to | ||||||||||||||||||||||||
some FDD subfunction and/or model block): [N40] | ||||||||||||||||||||||||
Review did not identify violations of other | Yes | Comments: | ||||||||||||||||||||||
coding standard rules | ||||||||||||||||||||||||
Anomaly or Design Work CR created | N/A | Comments: List Anomaly or CR numbers | ||||||||||||||||||||||
for any FDD corrections needed | ||||||||||||||||||||||||
General Notes / Comments: | ||||||||||||||||||||||||
Change Owner: | Selva Sengottaiyan | Review Date : | 04/20/16 | |||||||||||||||||||||
Lead Peer Reviewer: | Avinash | Approved by Reviewer(s): | Yes | |||||||||||||||||||||
Other Reviewer(s): | ||||||||||||||||||||||||
Gerry | ||||||||||||||||||||||||
Sheet 5: Source Code
Rev 1.2 | 8-Jun-15 | |||||||||||||||||||||||
Peer Review Meeting Log (Source Code Review) | ||||||||||||||||||||||||
Source File Name: | CDD_VrfyCritReg.c | Source File Revision: | 5 | |||||||||||||||||||||
Header File Name: | CDD_VrfyCritReg.h | Header File Revision: | ||||||||||||||||||||||
MDD Name: | VrfyCritReg_MDD.docx | Revision: | 2 | |||||||||||||||||||||
FDD/SCIR/DSR/FDR/CM Name: | CF111A_VrfyCritReg_Design | Revision: | 2.2.0 | |||||||||||||||||||||
Quality Check Items: | ||||||||||||||||||||||||
Rationale is required for all answers of No | ||||||||||||||||||||||||
Working EA4 Software Naming Convention followed: | ||||||||||||||||||||||||
for variable names | N/A | Comments: | ||||||||||||||||||||||
for constant names | Yes | Comments: | ||||||||||||||||||||||
for function names | N/A | Comments: | ||||||||||||||||||||||
for other names (component, memory | N/A | Comments: | ||||||||||||||||||||||
mapping handles, typedefs, etc.) | ||||||||||||||||||||||||
All paths assign a value to outputs, ensuring | N/A | Comments: | ||||||||||||||||||||||
all outputs are initialized prior to being written | ||||||||||||||||||||||||
Requirements Tracability tags in code match the requirements tracability in the FDD | N/A | Comments: | ||||||||||||||||||||||
requirements tracability in the FDD | ||||||||||||||||||||||||
All variables are declared at the function level. | N/A | Comments: | ||||||||||||||||||||||
Synergy version matches change history | Yes | Comments: | ||||||||||||||||||||||
and Version Control version in file comment block | ||||||||||||||||||||||||
Change log contains detailed description of changes | Yes | Comments: | ||||||||||||||||||||||
and Work CR number | Initial version | |||||||||||||||||||||||
Code accurately implements FDD (Document or Model) | Yes | Comments: | ||||||||||||||||||||||
Verified no Compiler Errors or Warnings | Yes | Comments: | ||||||||||||||||||||||
Component.h is included | N/A | Comments: | ||||||||||||||||||||||
All other includes are actually needed. (System includes | N/A | Comments: | ||||||||||||||||||||||
only allowed in Nexteer library components) | ||||||||||||||||||||||||
Software Design and Coding Standards followed: | Version: | |||||||||||||||||||||||
Code comments are clear, correct, and adequate | N/A | Comments: | ||||||||||||||||||||||
and have been updated for the change: [N40] and | ||||||||||||||||||||||||
all other rules in the same section as rule [N40], | ||||||||||||||||||||||||
plus [N75], [N12], [N23], [N33], [N37], [N38], | ||||||||||||||||||||||||
[N48], [N54], [N77], [N79], [N72] | ||||||||||||||||||||||||
Source file (.c and .h) comment blocks are per | N/A | Comments: | ||||||||||||||||||||||
standards and contain correct information: [N41], [N42] | ||||||||||||||||||||||||
Function comment blocks are per standards and | N/A | Comments: | ||||||||||||||||||||||
contain correct information: [N43] | ||||||||||||||||||||||||
Code formatting (indentation, placement of | Yes | Comments: | ||||||||||||||||||||||
braces, etc.) is per standards: [N5], [N55], [N56], | ||||||||||||||||||||||||
[N57], [N58], [N59] | ||||||||||||||||||||||||
Embedded constants used per standards; no | N/A | Comments: | ||||||||||||||||||||||
"magic numbers": [N12] | ||||||||||||||||||||||||
Memory mapping for non-RTE code | N/A | Comments: | ||||||||||||||||||||||
is per standard | ||||||||||||||||||||||||
All execution-order-dependent code can be | N/A | Comments: | ||||||||||||||||||||||
recognized by the compiler: [N80] | ||||||||||||||||||||||||
All loops have termination conditions that ensure | N/A | Comments: | ||||||||||||||||||||||
finite loop iterations: [N63] | ||||||||||||||||||||||||
All divides protect against divide by zero | N/A | Comments: | ||||||||||||||||||||||
if needed: [N65] | ||||||||||||||||||||||||
All integer division and modulus operations | N/A | Comments: | ||||||||||||||||||||||
handle negative numbers correctly: [N76] | ||||||||||||||||||||||||
All typecasting and fixed point arithmetic, | N/A | Comments: | ||||||||||||||||||||||
including all use of fixed point macros and | ||||||||||||||||||||||||
timer functions, is correct and has no possibility | ||||||||||||||||||||||||
of unintended overflow or underflow: [N66] | ||||||||||||||||||||||||
All float-to-unsiged conversions ensure the. | N/A | Comments: | ||||||||||||||||||||||
float value is non-negative: [N67] | ||||||||||||||||||||||||
All conversions between signed and unsigned | N/A | Comments: | ||||||||||||||||||||||
types handle msb==1 as intended: [N78] | ||||||||||||||||||||||||
All pointer dereferencing protects against | N/A | Comments: | ||||||||||||||||||||||
null pointer if needed: [N70] | ||||||||||||||||||||||||
Component outputs are limited to the legal range | N/A | Comments: | ||||||||||||||||||||||
defined in the FDD DataDict.m file : [N53] | ||||||||||||||||||||||||
All code is mapped with FDD (all FDD | Yes | Comments: | ||||||||||||||||||||||
subfunctions and/or model blocks identified | ||||||||||||||||||||||||
with code comments; all code corresponds to | ||||||||||||||||||||||||
some FDD subfunction and/or model block): [N40] | ||||||||||||||||||||||||
Review did not identify violations of other | Yes | Comments: | ||||||||||||||||||||||
coding standard rules | ||||||||||||||||||||||||
Anomaly or Design Work CR created | N/A | Comments: List Anomaly or CR numbers | ||||||||||||||||||||||
for any FDD corrections needed | ||||||||||||||||||||||||
General Notes / Comments: | ||||||||||||||||||||||||
Change Owner: | Selva Sengottaiyan | Review Date : | 04/20/16 | |||||||||||||||||||||
Lead Peer Reviewer: | Lucas Wendling | Approved by Reviewer(s): | Yes | |||||||||||||||||||||
Other Reviewer(s): | Kathleen | Avinash | Samanth | |||||||||||||||||||||
Gerry | Jason | |||||||||||||||||||||||