US20230415798A1 - System for verifying the integrity of a convoy, particularly a railway convoy - Google Patents
System for verifying the integrity of a convoy, particularly a railway convoy Download PDFInfo
- Publication number
- US20230415798A1 US20230415798A1 US18/252,182 US202118252182A US2023415798A1 US 20230415798 A1 US20230415798 A1 US 20230415798A1 US 202118252182 A US202118252182 A US 202118252182A US 2023415798 A1 US2023415798 A1 US 2023415798A1
- Authority
- US
- United States
- Prior art keywords
- controller
- convoy
- integrity
- vehicle
- verifying
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Images
Classifications
-
- B—PERFORMING OPERATIONS; TRANSPORTING
- B61—RAILWAYS
- B61L—GUIDING RAILWAY TRAFFIC; ENSURING THE SAFETY OF RAILWAY TRAFFIC
- B61L15/00—Indicators provided on the vehicle or train for signalling purposes
- B61L15/0018—Communication with or on the vehicle or train
- B61L15/0027—Radio-based, e.g. using GSM-R
-
- B—PERFORMING OPERATIONS; TRANSPORTING
- B61—RAILWAYS
- B61L—GUIDING RAILWAY TRAFFIC; ENSURING THE SAFETY OF RAILWAY TRAFFIC
- B61L15/00—Indicators provided on the vehicle or train for signalling purposes
- B61L15/0054—Train integrity supervision, e.g. end-of-train [EOT] devices
-
- B—PERFORMING OPERATIONS; TRANSPORTING
- B61—RAILWAYS
- B61L—GUIDING RAILWAY TRAFFIC; ENSURING THE SAFETY OF RAILWAY TRAFFIC
- B61L15/00—Indicators provided on the vehicle or train for signalling purposes
- B61L15/0018—Communication with or on the vehicle or train
- B61L15/0036—Conductor-based, e.g. using CAN-Bus, train-line or optical fibres
-
- B—PERFORMING OPERATIONS; TRANSPORTING
- B61—RAILWAYS
- B61L—GUIDING RAILWAY TRAFFIC; ENSURING THE SAFETY OF RAILWAY TRAFFIC
- B61L25/00—Recording or indicating positions or identities of vehicles or trains or setting of track apparatus
- B61L25/02—Indicating or recording positions or identities of vehicles or trains
- B61L25/028—Determination of vehicle position and orientation within a train consist, e.g. serialisation
-
- B—PERFORMING OPERATIONS; TRANSPORTING
- B61—RAILWAYS
- B61L—GUIDING RAILWAY TRAFFIC; ENSURING THE SAFETY OF RAILWAY TRAFFIC
- B61L15/00—Indicators provided on the vehicle or train for signalling purposes
- B61L15/0072—On-board train data handling
Definitions
- the present invention relates, in general, to the field of the convoys of vehicles.
- the invention relates to a system for verifying the integrity of a convoy, particularly a railway convoy, including at least two vehicles (at least two railway vehicles in the case of a railway convoy).
- Verifying the integrity of the convoy means verifying that the vehicles RV that make up the convoy T have not disconnected from each other.
- An example of a convoy T whose integrity is not compromised is shown in FIG. 2 .
- the convoy illustrated is a railway convoy.
- a first section S 1 of the convoy including a leading vehicle H, could in any case remain safely under the manual control of the driver or of any automatic control systems.
- the leading vehicle and the tail vehicle may be defined as a function of the travelling direction D of the convoy, e.g. the leading vehicle may be the first vehicle according to the travelling direction D and the tail vehicle may be the last vehicle according to the travelling direction D.
- a second section S 2 of the convoy disconnected from said first section S 1 of the convoy, could be prevented from receiving commands from the driver or from any automatic control systems.
- the second section of the convoy may continue its travel in an uncontrolled manner, generating a considerable safety risk.
- a braking system of a railway convoy comprises a pneumatic line P, also called “brake pipe”, which crosses all the railway vehicles of the railway convoy and which, when said railway convoy is not braked, has a pressure of about 5 bar.
- P pneumatic line
- a more or less marked depression may be created in the brake pipe, so as to achieve a gradual braking of the railway convoy.
- the brake pipe At the moment of detachment of the railway vehicles of the railway convoy, the brake pipe will be interrupted, thus generating a loss of pressure inside it.
- the pressure drop in the line will cause the various braking systems (whose braking force is a function of the pressure in the pipe) of the railway vehicles to apply the greatest possible braking force.
- the integrity of the railway convoy is verified at the start of the mission by means of an exhaust brake test of the brake pipe.
- the integrity of the convoy is verified both by the driver and by systems positioned on the side of the rail R which interact with the signaling system.
- An example of such known systems is the axle counting system 100 .
- An axle counting system is based on the principle of counting the axles A of the railway vehicles engaging a block section.
- a special electromagnetic device 102 may be provided which allows the number of axles A of railway vehicles, including locomotives, which pass on rail R to be counted. If the count is not correct with respect to a number of axles expected for such railway convoy, this clearly means that the integrity of the railway convoy is compromised.
- axle count is illustrated by way of example in FIG. 1 .
- An object of the present invention is therefore to provide a system for verifying the integrity of a convoy which is highly configurable, which may be implemented directly on board the convoy, which reduces its installation and maintenance costs.
- FIG. 1 illustrates a generic example of an axle counting system according to the prior art
- FIG. 2 illustrates a situation in which a convoy, for example a railway convoy, is in a condition of non-compromised integrity
- FIG. 3 illustrates a situation in which a convoy, for example a railway convoy, is in a condition of compromised integrity
- FIG. 4 illustrates a diagram of a system for verifying the integrity of a convoy according to an embodiment of the invention
- FIG. 5 illustrates an embodiment in which the first controller and the second controller are included in respective braking control units
- FIG. 6 illustrates an exemplary communication network
- FIG. 7 illustrates a further embodiment of a system for verifying the integrity of a convoy.
- the convoy may be a railway convoy.
- such convoy comprises at least a first vehicle RV 1 and a second vehicle RV 2 .
- a convoy may also include more than two vehicles.
- the railway convoy may include four vehicles.
- the convoy illustrated is a railway convoy.
- the system for verifying the integrity of a convoy includes a first controller 402 arranged to be coupled to the first vehicle RV 1 , and a second controller 404 arranged to be coupled to the second vehicle RV 2 .
- the first vehicle RV 1 may be any vehicle among the four vehicles which make up the convoy and the second vehicle RV 2 may be any other vehicle among the three remaining vehicles which make up the convoy.
- the first controller 402 and the second controller 404 may each be or include at least one of at least one controller, at least one processor, at least one microprocessor, at least one microcontroller, at least one PLC, and the like.
- system for verifying the integrity of a convoy also includes at least one communication means N arranged to allow communication between the first controller 402 and the second controller 404 .
- the first controller 402 is arranged to determine that the integrity of the convoy T is compromised, when the first controller 402 and the second controller 404 are no longer able to communicate with each other through said at least one communication means N.
- the second controller 404 is arranged to determine that the integrity of the convoy T is compromised, when the first controller 402 and said second controller 404 are no longer able to communicate with each other through said at least one communication means N.
- the fact that the communication between the first controller 402 and the second controller 404 is interrupted is a clear signal that the communication means has been damaged due to the compromise of the integrity of the convoy, or due to the fact that the first controller 402 and the second controller 404 are not arranged with respect to each other within a distance sufficient to ensure that the communication means allows communication between the first controller 402 and the second controller 404 .
- the distance between the first controller 402 and the second controller 404 may increase due to the compromise of the integrity of the convoy.
- the first controller 402 may be arranged to be coupled to a leading vehicle H of the convoy and the second controller 404 may be arranged to be coupled to a tail vehicle TA of the convoy.
- the second controller 404 may be arranged to be coupled to a leading vehicle H of the convoy and the first controller 402 may be arranged to be coupled to a tail vehicle TA of the convoy.
- the first controller 402 and the second controller 404 may be arranged to determine the vehicle of the convoy on which they are respectively installed.
- the first controller 402 and the second controller 404 may be arranged to determine the vehicle of the convoy on which they are respectively installed according to a safety integrity level greater than a predetermined minimum safety integrity level.
- the method that the first controller and the second controller may use to determine the vehicle of the convoy on which they are respectively installed may be any known automatic/autonomous determination method of the position in the convoy.
- first controller 402 and the second controller 404 it will not be necessary for the first controller 402 and the second controller 404 to be pre-configured or pre-programmed in order to receive or contain information regarding the vehicle during the installation on board the convoy on which they are installed.
- the first controller 402 and the second controller 404 may be pre-configured or pre-programmed to receive or contain information regarding the vehicle on which they are installed.
- the first controller 402 and the second controller 404 will in this case be able to determine the vehicle on which they are respectively installed on the basis of this information.
- This solution may be used for example for convoys that rarely or do not modify their vehicle composition.
- the first controller may be arranged to determine that the integrity of the convoy is compromised when it does not receive, via the at least one means of communication N, the response message transmitted by the second controller on the at least one communication means N within a predetermined time interval from when the first controller has sent the interrogation message.
- the first controller may be arranged to determine that the integrity of the convoy is compromised when it receives, through the at least one communication means N, the response message transmitted by the second controller but such received response message differs from an expected response message.
- the second controller may be set up to determine that the integrity of the convoy is compromised when it does not receive, via the at least one communication means N, the interrogation message transmitted by the first communication means on the at least one communication means N for more than a waiting interval.
- the second controller may be arranged to determine that the integrity of the convoy is compromised when it receives, through the at least one communication means N, the interrogation message transmitted by the first controller but such received interrogation message differs from an expected interrogation message.
- the waiting time may be a predetermined time.
- the content of the response message may be determined as a function of the content of the interrogation message.
- the response message may be determined on the basis of a generation algorithm known to the first controller and to the second controller.
- the first controller will be able to determine its own expected response message through this algorithm and verify that the response message received in response from the second controller has actually been generated by the second controller through this algorithm, as it matches the expected one.
- the same logic may be applied analogously to the interrogation message as well.
- the convoy may further comprise at least a third vehicle RV 3 .
- the system for verifying the integrity of a convoy may include at least a third controller 403 arranged to be coupled to said third vehicle RV 3 .
- FIG. 4 The elements of FIG. 4 which are again present in FIG. 7 have the same reference signs used for FIG. 4 .
- the third controller 403 may be or include at least one of at least one controller, at least one processor, at least one microprocessor, at least one microcontroller, at least one PLC, and the like.
- the third controller 403 may be arranged to determine the vehicle of the convoy on which it is installed. Preferably, the third controller 403 may be arranged to determine the vehicle of the convoy on which it is installed according to a safety integrity level greater than the predetermined minimum safety integrity level.
- the method that the third controller may use to determine the vehicle of the convoy on which it is installed may be any known automatic/autonomous determination method of the position in the convoy.
- this controller 403 it is pre-configured or pre-programmed so as to receive or contain information regarding the vehicle on which it is installed.
- the third controller 403 may be pre-configured or pre-programmed to receive or contain information regarding the vehicle on which it is installed. The third controller 403 will then be able to determine the vehicle on which it is installed on the basis of this information.
- the one or more controller installed on the respective intermediate railway vehicles should be “passing” and should not respond to the interrogation message by generating their own response message to be provided to the first controller which generated the interrogation message. If a controller of one of the intermediate railway vehicles responds to the interrogation message it received from the first controller by generating its own response message, i.e. “replacing” the second controller, there would be the risk of undue confirmation of the integrity of the vehicle without real confirmation that the vehicle on which the second controller is installed is still connected to the convoy. Only if the response message is received and it is the expected one is it possible to infer the integrity of the convoy. Any response messages generated by the controller of the intermediate vehicles would be recognized as unexpected messages by the first controller.
- intermediate vehicle I it is possible to mean any vehicle which in the convoy is installed between the leading vehicle and the tail vehicle.
- the second vehicle and the third vehicle RV 3 are each an intermediate vehicle I of the convoy.
- the first controller 402 and the second controller 404 may each be implemented according to a safety integrity level greater than a predetermined minimum safety integrity level.
- the third controller 403 may also be implemented according to a safety integrity level greater than a predetermined minimum safety integrity level.
- the first controller 402 , the second controller 404 and the third controller 403 may be implemented according to a minimum safety integrity level (SIL), so as to ensure that any lack of communication may not be attributed to their malfunctions or breakdowns.
- SIL minimum safety integrity level
- standard EN50126 defines the methodologies for assigning the SIL0/1/2/3/4 safety levels (with safety integrity level SIL4 indicating the maximum safety integrity level) to the subsystems making up the system in question, based on the results of the Safety Analysis, and standards EN50128 and EN50129 define the design criteria to be applied to the Software and Hardware components, respectively, based on the SIL levels assigned based on said Safety Analysis results.
- the at least one communication means may be arranged to allow a communication according to a predetermined safety protocol.
- a predetermined safety protocol may be a protocol commonly referred to as the “black channel” type.
- the communication means may be two or more and may be arranged to be connected together by means of a communication unit.
- the communication means may also be created in accordance with the methodologies specified by standard EN 50159, guaranteeing a high safety integrity level (SIL).
- SIL high safety integrity level
- the first controller 402 , the second controller 404 and the third controller 403 may be controller already usually included on board a vehicle and made according to a high safety integrity level SIL.
- the first controller 402 may be included in a braking control unit or braking control module 500
- the second controller 404 may be included in a braking control unit or braking control module 500
- the first controller 402 and the second controller 404 may each be included in respective braking control units or braking control module 500 .
- the third controller 403 may also be included in a braking control unit or braking control module.
- the first controller 402 and/or the second controller 404 and/or the third controller 403 may each be a controller already on board respective braking control units or modules. In this way, the same controller may be used both to manage the braking of the vehicle and to verify the integrity of the convoy.
- controller and the braking control units or modules are already made according to high integrity safety levels, therefore, they are also suitable to be used for verifying the integrity of the convoy according to the present invention.
- a braking control unit or module may generally be a controller installed on board a vehicle which is responsible for managing the braking means 502 of one or more railway vehicles of the convoy.
- the braking means may be braking devices of one or more braking systems.
- the first controller 402 and the second controller 404 may be arranged to determine the vehicle of the convoy on which they are respectively installed by means of a physical or hardware coding implemented by optical technology means.
- the third controller 403 may be arranged to determine the vehicle of the convoy on which it is respectively installed by means of a physical or hardware coding implemented by optical technology means.
- further controller may also be provided, which, when they determine to be installed on an intermediate vehicle, may similarly perform the message forwarding function performed by the third controller.
- the controller arranged on the intermediate vehicles may forward the messages received to each other, until the messages transmitted by the first controller reach the second controller, and vice versa.
- the messages may be forwarded between the various controller according to an order defined according to the position along the convoy of the vehicle on which they are respectively installed. For example, if the first controller is installed in the leading vehicle, the interrogation message may be transmitted, via the communication means, to the controller installed on the second vehicle in running order.
- the controller installed on the second vehicle in running order once the interrogation message has been received, will be able to forward it, via the communication means, to the controller installed on the third vehicle in running order.
- the forwarding may proceed in the same way for the further controller until the interrogation message has reached the second controller.
- the response message may follow the reverse path until it reaches the first controller.
- the forwarding order may be a predetermined order.
- the communication means may include at least two redundant communication channels, and at least one of such communication channels may be a communication network 600 .
- These communication channels may be wired or wireless.
- first controller 402 and the second controller 404 may be arranged to determine the vehicle of the convoy on which they are respectively installed by means of a software coding implemented by means of a process of sequential recognition of nodes of said communication means.
- the third controller 403 may be arranged to determine the vehicle of the convoy on which it is respectively installed by means of a software coding implemented by means of a process of sequential recognition of nodes 602 of the at least one communication means N.
- the communication means form the communication network 600 and this communication network may include one or more network nodes 602 .
- the first controller 402 may be arranged to transmit, through the at least one communication means N, the interrogation message according to a first predetermined periodicity.
- the first controller 402 and the second controller 404 may be arranged to transmit, through said at least one communication means, the respective communication messages used for the integrity verification according to a predetermined periodicity.
- the first controller 402 may be arranged to update, according to a second periodicity, the interrogation message, and said second controller 404 is arranged to update, according to a third periodicity, the response message.
- the first, second and third periodicities may be different or equal to each other.
- the first controller 402 and the second controller 404 may be arranged to update, according to a specific second periodicity, the communication messages used for the integrity verification.
- a safety check has been carried out which ensures that the first controller 402 and the second controller 404 , even if blocked in a fault condition, continue to transmit a previous message, thus nullifying the integrity verification of the convoy.
- the first controller 402 and the second controller 404 may each be arranged to perform at least one predetermined safety action.
- the at least one predetermined safety action may include the actuation of at least braking means of the first vehicle RV 1 or of the second vehicle RV 2 , to which the first controller 402 and the second controller 404 are respectively associated.
- the braking means may be of any type, for example pneumatic, electromechanical, electronic, mechanical, mechatronic, friction, etc.
- the first controller 402 may be arranged to send an alarm message to the third controller 403 .
- the second controller 404 may be arranged to send an alarm message to the third controller 403 .
- the third controller 403 may therefore be arranged to perform at least one predetermined safety action when it receives an alarm message from the first controller and/or from the second controller.
- the at least one predetermined safety action may include the actuation of at least braking means of the third vehicle RV 3 , with which the third controller 403 is associated.
- the braking means may be of any type, for example pneumatic, electromechanical, electronic, mechanical, mechatronic, friction, etc.
- the advantage achieved is that of having implemented a system for verifying the integrity of a convoy which is highly configurable, which may be implemented directly on board the convoy, which reduces its installation and maintenance costs.
Landscapes
- Engineering & Computer Science (AREA)
- Mechanical Engineering (AREA)
- Train Traffic Observation, Control, And Security (AREA)
- Traffic Control Systems (AREA)
- Valves And Accessory Devices For Braking Systems (AREA)
- Regulating Braking Force (AREA)
- Electric Propulsion And Braking For Vehicles (AREA)
Abstract
Description
- The present invention relates, in general, to the field of the convoys of vehicles. In particular, the invention relates to a system for verifying the integrity of a convoy, particularly a railway convoy, including at least two vehicles (at least two railway vehicles in the case of a railway convoy).
- During normal operation of a convoy, it is necessary that the driver or various systems on board the convoy or remote control stations are able to verify the integrity of the convoy.
- Verifying the integrity of the convoy means verifying that the vehicles RV that make up the convoy T have not disconnected from each other. An example of a convoy T whose integrity is not compromised is shown in
FIG. 2 . By way of example, inFIG. 2 the convoy illustrated is a railway convoy. - As may be seen in
FIG. 3 , if two adjacent vehicles of a convoy were to separate, the integrity of the convoy would be compromised. - In this case, a first section S1 of the convoy, including a leading vehicle H, could in any case remain safely under the manual control of the driver or of any automatic control systems. The leading vehicle and the tail vehicle may be defined as a function of the travelling direction D of the convoy, e.g. the leading vehicle may be the first vehicle according to the travelling direction D and the tail vehicle may be the last vehicle according to the travelling direction D.
- Disadvantageously, a second section S2 of the convoy, disconnected from said first section S1 of the convoy, could be prevented from receiving commands from the driver or from any automatic control systems. In this case, the second section of the convoy may continue its travel in an uncontrolled manner, generating a considerable safety risk.
- Generally, referring by way of example to the railway vehicle sector, a braking system of a railway convoy comprises a pneumatic line P, also called “brake pipe”, which crosses all the railway vehicles of the railway convoy and which, when said railway convoy is not braked, has a pressure of about 5 bar. When it is necessary to brake the railway convoy, a more or less marked depression may be created in the brake pipe, so as to achieve a gradual braking of the railway convoy.
- When the integrity of the railway convoy is compromised, the two distinct sections of the railway convoy, which were created due to the disconnection of said railway vehicles, automatically initiate an emergency braking action to stop and bring both sections of the railway convoy back to safety.
- Such emergency braking takes place automatically by virtue of the aforementioned structure of the brake pipe of the railway convoy.
- At the moment of detachment of the railway vehicles of the railway convoy, the brake pipe will be interrupted, thus generating a loss of pressure inside it. The pressure drop in the line will cause the various braking systems (whose braking force is a function of the pressure in the pipe) of the railway vehicles to apply the greatest possible braking force.
- However, in addition to the emergency braking, no other control over the pace of the second disconnected section could be carried out by the driver or by any automatic control systems remaining on the first section S1. For example, further commands to activate further braking means of the second section, e.g. electromechanical, electronic, mechanical, mechatronic, etc., may not be operated manually by the driver.
- During normal operation, the integrity of the railway convoy is verified at the start of the mission by means of an exhaust brake test of the brake pipe. During operation, however, the integrity of the convoy is verified both by the driver and by systems positioned on the side of the rail R which interact with the signaling system. An example of such known systems is the
axle counting system 100. An axle counting system is based on the principle of counting the axles A of the railway vehicles engaging a block section. For example, in the vicinity of a station, a specialelectromagnetic device 102 may be provided which allows the number of axles A of railway vehicles, including locomotives, which pass on rail R to be counted. If the count is not correct with respect to a number of axles expected for such railway convoy, this clearly means that the integrity of the railway convoy is compromised. - An example of axle count is illustrated by way of example in
FIG. 1 . - The use of fixed track-side systems is burdensome both for installation and maintenance costs and in itself represents a rigid and non-configurable verification system based on the increasing volumes of railway traffic.
- What has just been described applies likewise also to convoys of vehicles of other sectors, in addition to the railway one, for example to other vehicle convoys including a “brake pipe” which crosses all vehicles, even though not railway vehicles, or convoy of vehicles which, unlike railway vehicles, move for example on road or on rubber wheels, or other means.
- An object of the present invention is therefore to provide a system for verifying the integrity of a convoy which is highly configurable, which may be implemented directly on board the convoy, which reduces its installation and maintenance costs.
- The above and other objects and advantages are achieved, according to an aspect of the invention, by a system for verifying the integrity of a convoy having the features defined in claim 1. Preferred embodiments of the invention are defined in the dependent claims, the content of which is to be understood as an integral part of the present description.
- The functional and structural features of some preferred embodiments of a system for verifying the integrity of a convoy e according to the invention will now be described. Reference will be made to the accompanying drawings, in which:
-
FIG. 1 illustrates a generic example of an axle counting system according to the prior art; -
FIG. 2 illustrates a situation in which a convoy, for example a railway convoy, is in a condition of non-compromised integrity; -
FIG. 3 illustrates a situation in which a convoy, for example a railway convoy, is in a condition of compromised integrity; -
FIG. 4 illustrates a diagram of a system for verifying the integrity of a convoy according to an embodiment of the invention; -
FIG. 5 illustrates an embodiment in which the first controller and the second controller are included in respective braking control units; -
FIG. 6 illustrates an exemplary communication network; -
FIG. 7 illustrates a further embodiment of a system for verifying the integrity of a convoy. - Before describing a plurality of embodiments of the invention in detail, it should be clarified that the invention is not limited in its application to the construction details and configuration of the components presented in the following description or illustrated in the drawings. The invention may assume other embodiments and be implemented or constructed in practice in different ways. It should also be understood that the phraseology and terminology have a descriptive purpose and should not be construed as limiting. The use of “include” and “comprise” and their variations is to be understood as encompassing the elements set out below and their equivalents, as well as additional elements and the equivalents thereof.
- A first embodiment of a system for verifying the integrity of a convoy will be described below. Preferably, the convoy may be a railway convoy.
- As may be seen in
FIG. 2 , such convoy comprises at least a first vehicle RV1 and a second vehicle RV2. Clearly, a convoy may also include more than two vehicles. InFIG. 4 , for example, the railway convoy may include four vehicles. - By way of example, in the figures the convoy illustrated is a railway convoy.
- Observing now
FIG. 4 , the system for verifying the integrity of a convoy includes afirst controller 402 arranged to be coupled to the first vehicle RV1, and asecond controller 404 arranged to be coupled to the second vehicle RV2. - Referring for example to a convoy formed by four railway vehicles, the first vehicle RV1 may be any vehicle among the four vehicles which make up the convoy and the second vehicle RV2 may be any other vehicle among the three remaining vehicles which make up the convoy.
- For example, the
first controller 402 and thesecond controller 404 may each be or include at least one of at least one controller, at least one processor, at least one microprocessor, at least one microcontroller, at least one PLC, and the like. - Furthermore, the system for verifying the integrity of a convoy also includes at least one communication means N arranged to allow communication between the
first controller 402 and thesecond controller 404. - The
first controller 402 is arranged to determine that the integrity of the convoy T is compromised, when thefirst controller 402 and thesecond controller 404 are no longer able to communicate with each other through said at least one communication means N. Alternatively or in addition, thesecond controller 404 is arranged to determine that the integrity of the convoy T is compromised, when thefirst controller 402 and saidsecond controller 404 are no longer able to communicate with each other through said at least one communication means N. - The fact that the communication between the
first controller 402 and thesecond controller 404 is interrupted is a clear signal that the communication means has been damaged due to the compromise of the integrity of the convoy, or due to the fact that thefirst controller 402 and thesecond controller 404 are not arranged with respect to each other within a distance sufficient to ensure that the communication means allows communication between thefirst controller 402 and thesecond controller 404. In the second case, the distance between thefirst controller 402 and thesecond controller 404 may increase due to the compromise of the integrity of the convoy. - By way of example, as may be seen in
FIG. 4 , thefirst controller 402 may be arranged to be coupled to a leading vehicle H of the convoy and thesecond controller 404 may be arranged to be coupled to a tail vehicle TA of the convoy. Alternatively, thesecond controller 404 may be arranged to be coupled to a leading vehicle H of the convoy and thefirst controller 402 may be arranged to be coupled to a tail vehicle TA of the convoy. - Preferably, the
first controller 402 and thesecond controller 404 may be arranged to determine the vehicle of the convoy on which they are respectively installed. Preferably, thefirst controller 402 and thesecond controller 404 may be arranged to determine the vehicle of the convoy on which they are respectively installed according to a safety integrity level greater than a predetermined minimum safety integrity level. - The method that the first controller and the second controller may use to determine the vehicle of the convoy on which they are respectively installed may be any known automatic/autonomous determination method of the position in the convoy.
- In this case, it will not be necessary for the
first controller 402 and thesecond controller 404 to be pre-configured or pre-programmed in order to receive or contain information regarding the vehicle during the installation on board the convoy on which they are installed. - Once installed on board the convoy, they will be able to identify by themselves the vehicle on which they are installed.
- In an alternative embodiment, the
first controller 402 and thesecond controller 404 may be pre-configured or pre-programmed to receive or contain information regarding the vehicle on which they are installed. Thefirst controller 402 and thesecond controller 404 will in this case be able to determine the vehicle on which they are respectively installed on the basis of this information. This solution may be used for example for convoys that rarely or do not modify their vehicle composition. - When the
first controller 402 determines to be installed on a leading vehicle H of the convoy and thesecond controller 404 determines to be installed on a tail vehicle TA of the convoy: -
- the first controller may be arranged to send an interrogation message on the at least one communication means N; and
- the second controller may be arranged to receive the interrogation message from the at least one communication means N and retransmit a response message on the at least one communication means N.
- In the scenario just described, it is the controller installed in the leading vehicle H which verifies that the tail vehicle TA is still connected to the convoy.
- Otherwise, when the
first controller 402 determines to be installed on a tail vehicle TA of the convoy and thesecond controller 404 determines to be installed on a leading vehicle H of the convoy: -
- the first controller may be arranged to send an interrogation message on the at least one communication means N; and
- the second controller may be arranged to receive the interrogation message from the at least one communication means N and retransmit a response message on the at least one communication means N.
- In this second scenario, it is the controller installed in the tail vehicle TA which verifies that it is able to communicate with the leading vehicle H, so as to determine whether the tail vehicle TA itself is still connected to the convoy.
- Preferably, for both scenarios described above, the first controller may be arranged to determine that the integrity of the convoy is compromised when it does not receive, via the at least one means of communication N, the response message transmitted by the second controller on the at least one communication means N within a predetermined time interval from when the first controller has sent the interrogation message.
- Or, for both scenarios described above, the first controller may be arranged to determine that the integrity of the convoy is compromised when it receives, through the at least one communication means N, the response message transmitted by the second controller but such received response message differs from an expected response message.
- Preferably, for both scenarios described above, the second controller may be set up to determine that the integrity of the convoy is compromised when it does not receive, via the at least one communication means N, the interrogation message transmitted by the first communication means on the at least one communication means N for more than a waiting interval. Or, the second controller may be arranged to determine that the integrity of the convoy is compromised when it receives, through the at least one communication means N, the interrogation message transmitted by the first controller but such received interrogation message differs from an expected interrogation message.
- For example, the waiting time may be a predetermined time.
- Preferably, the content of the response message may be determined as a function of the content of the interrogation message.
- In one example, the response message may be determined on the basis of a generation algorithm known to the first controller and to the second controller. In this way, the first controller will be able to determine its own expected response message through this algorithm and verify that the response message received in response from the second controller has actually been generated by the second controller through this algorithm, as it matches the expected one. The same logic may be applied analogously to the interrogation message as well.
- Preferably, as may be seen in
FIG. 7 , the convoy may further comprise at least a third vehicle RV3. In this case, the system for verifying the integrity of a convoy may include at least athird controller 403 arranged to be coupled to said third vehicle RV3. - The elements of
FIG. 4 which are again present inFIG. 7 have the same reference signs used forFIG. 4 . - For example, the
third controller 403 may be or include at least one of at least one controller, at least one processor, at least one microprocessor, at least one microcontroller, at least one PLC, and the like. - Preferably, the
third controller 403 may be arranged to determine the vehicle of the convoy on which it is installed. Preferably, thethird controller 403 may be arranged to determine the vehicle of the convoy on which it is installed according to a safety integrity level greater than the predetermined minimum safety integrity level. - The method that the third controller may use to determine the vehicle of the convoy on which it is installed may be any known automatic/autonomous determination method of the position in the convoy.
- In this way, it will not be necessary that during the installation step on board the convoy of this
controller 403, it is pre-configured or pre-programmed so as to receive or contain information regarding the vehicle on which it is installed. - Once installed on board the convoy, it will be able to identify by itself the vehicle on which it is installed.
- In an alternative embodiment, the
third controller 403 may be pre-configured or pre-programmed to receive or contain information regarding the vehicle on which it is installed. Thethird controller 403 will then be able to determine the vehicle on which it is installed on the basis of this information. - When the
third controller 403 determines to be installed on an intermediate vehicle I, arranged to be positioned in the convoy between said leading vehicle and said tail vehicle: -
- the
third controller 403 may be arranged to receive the interrogation message sent by the first controller through the at least one communication means N and forward the interrogation message to the second controller through the at least one communication means N; and - the
third controller 403 may be arranged to receive the response message sent by the second controller through the at least one communication means N and forward the response message to the first controller through the at least one communication means N.
- the
- In other words, the one or more controller installed on the respective intermediate railway vehicles should be “passing” and should not respond to the interrogation message by generating their own response message to be provided to the first controller which generated the interrogation message. If a controller of one of the intermediate railway vehicles responds to the interrogation message it received from the first controller by generating its own response message, i.e. “replacing” the second controller, there would be the risk of undue confirmation of the integrity of the vehicle without real confirmation that the vehicle on which the second controller is installed is still connected to the convoy. Only if the response message is received and it is the expected one is it possible to infer the integrity of the convoy. Any response messages generated by the controller of the intermediate vehicles would be recognized as unexpected messages by the first controller.
- By intermediate vehicle I it is possible to mean any vehicle which in the convoy is installed between the leading vehicle and the tail vehicle. For example, in a convoy made by four vehicles, the second vehicle and the third vehicle RV3 (numbered according to the direction of travel of the convoy) are each an intermediate vehicle I of the convoy.
- Preferably, the
first controller 402 and thesecond controller 404 may each be implemented according to a safety integrity level greater than a predetermined minimum safety integrity level. - When present, the
third controller 403 may also be implemented according to a safety integrity level greater than a predetermined minimum safety integrity level. - In other words, the
first controller 402, thesecond controller 404 and thethird controller 403 may be implemented according to a minimum safety integrity level (SIL), so as to ensure that any lack of communication may not be attributed to their malfunctions or breakdowns. By implementing thefirst controller 402 and thesecond controller 404 according to a high SIL, it is certain that any lack of communication is due to the compromise of the integrity of the convoy. - With regard to the definition of the safety integrity level SIL, in the railway vehicle sector, in the present document reference may be made to European standards EN50129:rev.2018, EN 50159:rev.2010, EN 50126-1:rev.2017, EN 50126-2:rev.2017, EN 50128:rev.2011, according to the latest update available at the filing date of the present invention, where:
- EN50126 [“Railway applications. The specification and demonstration of reliability, availability, maintainability and safety (RAMS)];
- EN50128 [“Railway applications. Communications, signaling and processing systems. Software for railway control and protection systems” ];
- EN50129 [“Railway applications. Communication, signaling and processing systems. Safety-related electronic systems for signaling” ];
- EN50159 [“Railway applications. Communication, signaling and processing systems. Safety-related communication in transmission systems” ].
- In particular, standard EN50126 defines the methodologies for assigning the SIL0/1/2/3/4 safety levels (with safety integrity level SIL4 indicating the maximum safety integrity level) to the subsystems making up the system in question, based on the results of the Safety Analysis, and standards EN50128 and EN50129 define the design criteria to be applied to the Software and Hardware components, respectively, based on the SIL levels assigned based on said Safety Analysis results.
- A controller, a device, a unit or module, etc., may be considered implemented according to a high safety integrity level when made at least according to a SIL>=3 safety integrity level.
- Furthermore, preferably, also the at least one communication means may be arranged to allow a communication according to a predetermined safety protocol. For example, such predetermined safety protocol may be a protocol commonly referred to as the “black channel” type.
- In a further aspect, preferably, the communication means may be two or more and may be arranged to be connected together by means of a communication unit.
- The communication means may also be created in accordance with the methodologies specified by standard EN 50159, guaranteeing a high safety integrity level (SIL).
- In some embodiments, the
first controller 402, thesecond controller 404 and thethird controller 403 may be controller already usually included on board a vehicle and made according to a high safety integrity level SIL. - Preferably, as may be seen in
FIG. 5 , thefirst controller 402 may be included in a braking control unit orbraking control module 500, or thesecond controller 404 may be included in a braking control unit orbraking control module 500, or again, thefirst controller 402 and thesecond controller 404 may each be included in respective braking control units orbraking control module 500. - When present, the
third controller 403 may also be included in a braking control unit or braking control module. - In other words, the
first controller 402 and/or thesecond controller 404 and/or thethird controller 403 may each be a controller already on board respective braking control units or modules. In this way, the same controller may be used both to manage the braking of the vehicle and to verify the integrity of the convoy. - Usually, the controller and the braking control units or modules are already made according to high integrity safety levels, therefore, they are also suitable to be used for verifying the integrity of the convoy according to the present invention.
- A braking control unit or module may generally be a controller installed on board a vehicle which is responsible for managing the braking means 502 of one or more railway vehicles of the convoy. The braking means may be braking devices of one or more braking systems.
- Preferably, the
first controller 402 and thesecond controller 404 may be arranged to determine the vehicle of the convoy on which they are respectively installed by means of a physical or hardware coding implemented by optical technology means. - Preferably, when present, the
third controller 403 may be arranged to determine the vehicle of the convoy on which it is respectively installed by means of a physical or hardware coding implemented by optical technology means. - Preferably, in addition to the third controller, further controller may also be provided, which, when they determine to be installed on an intermediate vehicle, may similarly perform the message forwarding function performed by the third controller. In other words, the controller arranged on the intermediate vehicles may forward the messages received to each other, until the messages transmitted by the first controller reach the second controller, and vice versa. For example, the messages may be forwarded between the various controller according to an order defined according to the position along the convoy of the vehicle on which they are respectively installed. For example, if the first controller is installed in the leading vehicle, the interrogation message may be transmitted, via the communication means, to the controller installed on the second vehicle in running order. The controller installed on the second vehicle in running order, once the interrogation message has been received, will be able to forward it, via the communication means, to the controller installed on the third vehicle in running order. The forwarding may proceed in the same way for the further controller until the interrogation message has reached the second controller. The response message may follow the reverse path until it reaches the first controller. Or, the forwarding order may be a predetermined order.
- Preferably, the communication means may include at least two redundant communication channels, and at least one of such communication channels may be a
communication network 600. These communication channels may be wired or wireless. - Alternatively, or in addition, the
first controller 402 and thesecond controller 404 may be arranged to determine the vehicle of the convoy on which they are respectively installed by means of a software coding implemented by means of a process of sequential recognition of nodes of said communication means. - Preferably, when present, the
third controller 403 may be arranged to determine the vehicle of the convoy on which it is respectively installed by means of a software coding implemented by means of a process of sequential recognition ofnodes 602 of the at least one communication means N. - In this case, as may be seen in
FIG. 6 , the communication means form thecommunication network 600 and this communication network may include one ormore network nodes 602. - Further embodiments of the system for verifying the integrity of a convoy are described below.
- Preferably, the
first controller 402 may be arranged to transmit, through the at least one communication means N, the interrogation message according to a first predetermined periodicity. - In other words, the
first controller 402 and thesecond controller 404 may be arranged to transmit, through said at least one communication means, the respective communication messages used for the integrity verification according to a predetermined periodicity. - This serves to verify that the communication between the
first controller 402 and thesecond controller 404 is still active and to avoid that a communication silence between thefirst controller 402 and thesecond controller 404 is not recognized to be a compromise of the integrity of the convoy. - Preferably, the
first controller 402 may be arranged to update, according to a second periodicity, the interrogation message, and saidsecond controller 404 is arranged to update, according to a third periodicity, the response message. - Preferably, the first, second and third periodicities may be different or equal to each other.
- In other words, the
first controller 402 and thesecond controller 404 may be arranged to update, according to a specific second periodicity, the communication messages used for the integrity verification. - Also in this case, by updating the communication messages used for the integrity verification, a safety check has been carried out which ensures that the
first controller 402 and thesecond controller 404, even if blocked in a fault condition, continue to transmit a previous message, thus nullifying the integrity verification of the convoy. - Preferably, when the
first controller 402 and thesecond controller 404 respectively determine that the integrity of the convoy is compromised, thefirst controller 402 and/or thesecond controller 404 may each be arranged to perform at least one predetermined safety action. - For example, the at least one predetermined safety action may include the actuation of at least braking means of the first vehicle RV1 or of the second vehicle RV2, to which the
first controller 402 and thesecond controller 404 are respectively associated. Preferably, the braking means may be of any type, for example pneumatic, electromechanical, electronic, mechanical, mechatronic, friction, etc. - Preferably, when the
first controller 402 determines that the integrity of the convoy is compromised, thefirst controller 402 may be arranged to send an alarm message to thethird controller 403. Alternatively or additionally, when thesecond controller 404 determines that the integrity of the convoy is compromised, thesecond controller 404 may be arranged to send an alarm message to thethird controller 403. Thethird controller 403 may therefore be arranged to perform at least one predetermined safety action when it receives an alarm message from the first controller and/or from the second controller. - For example, the at least one predetermined safety action may include the actuation of at least braking means of the third vehicle RV3, with which the
third controller 403 is associated. - Preferably, the braking means may be of any type, for example pneumatic, electromechanical, electronic, mechanical, mechatronic, friction, etc.
- What is described in this application may be applied similarly, where possible, to any type of convoy, for example and not limited to: railway convoy, underground convoys, underground convoys on rubber, road convoys, bound guide convoys, bound guide convoys, convoy of land vehicles or other types, and the like.
- The advantage achieved is that of having implemented a system for verifying the integrity of a convoy which is highly configurable, which may be implemented directly on board the convoy, which reduces its installation and maintenance costs.
- Various aspects and embodiments of a system for verifying the integrity of a convoy according to the invention have been described. It is understood that each embodiment may be combined with any other embodiment. Furthermore, the invention is not limited to the described embodiments, but may be varied within the scope defined by the appended claims.
Claims (21)
Applications Claiming Priority (3)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| IT102020000027089A IT202000027089A1 (en) | 2020-11-12 | 2020-11-12 | SYSTEM FOR VERIFYING THE INTEGRITY OF A RAILWAY TRAIN |
| IT102020000027089 | 2020-11-12 | ||
| PCT/IB2021/060501 WO2022101842A1 (en) | 2020-11-12 | 2021-11-12 | System for verifying the integrity of a convoy, particularly a railway convoy |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| US20230415798A1 true US20230415798A1 (en) | 2023-12-28 |
Family
ID=74556987
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| US18/252,182 Pending US20230415798A1 (en) | 2020-11-12 | 2021-11-12 | System for verifying the integrity of a convoy, particularly a railway convoy |
Country Status (7)
| Country | Link |
|---|---|
| US (1) | US20230415798A1 (en) |
| EP (1) | EP4244116A1 (en) |
| JP (1) | JP2023551392A (en) |
| KR (1) | KR20230128265A (en) |
| CN (1) | CN116648397A (en) |
| IT (1) | IT202000027089A1 (en) |
| WO (1) | WO2022101842A1 (en) |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| WO2025149922A1 (en) * | 2024-01-09 | 2025-07-17 | Faiveley Transport Italia S.P.A. | System and method for determining whether a vehicle of a convoy of vehicles is an end vehicle, and convoy of vehicles |
Families Citing this family (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| EP4545376A1 (en) * | 2023-10-24 | 2025-04-30 | Faiveley Transport Italia S.p.A. | System for monitoring the integrity of a convoy of vehicles and corresponding method |
| GB2637697A (en) * | 2024-01-30 | 2025-08-06 | Siemens Mobility Ltd | Rail vehicle integrity proving device and method |
Citations (11)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20080195265A1 (en) * | 2004-05-03 | 2008-08-14 | Sti Rail Pty Ltd | Train Integrity Network System |
| US20120287972A1 (en) * | 2009-03-17 | 2012-11-15 | General Electric Company | System and method for communicating data in a passenger vehicle or other vehicle consist |
| US20150217790A1 (en) * | 2009-03-17 | 2015-08-06 | General Electric Company | Data communication system and method |
| US20160272228A1 (en) * | 2013-11-27 | 2016-09-22 | Amsted Rail Company, Inc. | Train and Rail Yard Management System |
| US20160359741A1 (en) * | 2008-08-04 | 2016-12-08 | General Electric Company | Data communication system and method |
| US20170043797A1 (en) * | 2015-08-13 | 2017-02-16 | Lockheed Martin Corporation | Methods and systems of determining end of train location and clearance of trackside points of interest |
| US20200031330A1 (en) * | 2017-04-12 | 2020-01-30 | Faiveley Transport Italia S.P.A. | Electronic control system of emergency and service braking for a railway vehicle |
| US20200189630A1 (en) * | 2018-12-14 | 2020-06-18 | Westinghouse Air Brake Technologies Corporation | Method and Apparatus to Verify Train Integrity by Comparing Head of Train and End of Train Telemetry |
| US20200269889A1 (en) * | 2019-02-22 | 2020-08-27 | Thales Deutschland Gmbh | Method for wagon-to-wagon communication, method for controlling integrity of a train and train wagon |
| US20200300600A1 (en) * | 2017-12-08 | 2020-09-24 | Thales Management & Services Deutschland Gmbh | Train control network, method for communication and method for controlling train integrity |
| US20210171077A1 (en) * | 2019-12-09 | 2021-06-10 | Thales Canada Inc. | System and method for vehicle control |
Family Cites Families (13)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| DE69727106T2 (en) * | 1996-09-13 | 2004-11-18 | New York Air Brake Corp. | Automatic wagon order determination for train with wagon orientation |
| US6972670B2 (en) * | 2003-12-04 | 2005-12-06 | New York Air Brake Corporation | WDP setup determination method |
| CN1242894C (en) * | 2004-08-23 | 2006-02-22 | 北京世纪东方国铁电讯科技有限公司 | Relay device and method for data communication between locomotive and train tail part |
| US8532850B2 (en) * | 2009-03-17 | 2013-09-10 | General Electric Company | System and method for communicating data in locomotive consist or other vehicle consist |
| CN103051648B (en) * | 2011-10-14 | 2016-03-30 | 上海博泰悦臻网络技术服务有限公司 | Communication means between vehicle and system, server for inter-vehicular communication |
| KR101357806B1 (en) * | 2012-06-22 | 2014-02-05 | 한국철도기술연구원 | Train Integrity Monitoring System |
| US8942868B2 (en) * | 2012-12-31 | 2015-01-27 | Thales Canada Inc | Train end and train integrity circuit for train control system |
| CN107323484A (en) * | 2017-07-20 | 2017-11-07 | 中国铁道科学研究院通信信号研究所 | Train control system based on Big Dipper short message and truck traffic |
| FR3075144B1 (en) * | 2017-12-20 | 2025-03-07 | Alstom Transp Tech | RAIL VEHICLE, RAIL SYSTEM AND METHOD FOR COMPOSITION OF ASSOCIATED RAIL VEHICLE |
| CN112839850B (en) * | 2018-09-18 | 2024-05-10 | 法伊韦利传送器意大利有限公司 | System for identifying the position of an electromechanical brake control device associated with a railway vehicle along the train |
| GB2580925B (en) * | 2019-01-30 | 2021-06-30 | Hitachi Ltd | Train protection system |
| CN109774738B (en) * | 2019-03-13 | 2020-04-21 | 上海电气泰雷兹交通自动化系统有限公司 | A safety train line module and electric coupler combining virtual and real |
| CN110775097B (en) * | 2019-10-30 | 2023-10-13 | 卡斯柯信号有限公司 | Train integrity monitoring device and method based on vehicle-mounted equipment |
-
2020
- 2020-11-12 IT IT102020000027089A patent/IT202000027089A1/en unknown
-
2021
- 2021-11-12 KR KR1020237016918A patent/KR20230128265A/en active Pending
- 2021-11-12 EP EP21819963.6A patent/EP4244116A1/en active Pending
- 2021-11-12 JP JP2023527746A patent/JP2023551392A/en active Pending
- 2021-11-12 US US18/252,182 patent/US20230415798A1/en active Pending
- 2021-11-12 WO PCT/IB2021/060501 patent/WO2022101842A1/en not_active Ceased
- 2021-11-12 CN CN202180075999.4A patent/CN116648397A/en active Pending
Patent Citations (11)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20080195265A1 (en) * | 2004-05-03 | 2008-08-14 | Sti Rail Pty Ltd | Train Integrity Network System |
| US20160359741A1 (en) * | 2008-08-04 | 2016-12-08 | General Electric Company | Data communication system and method |
| US20120287972A1 (en) * | 2009-03-17 | 2012-11-15 | General Electric Company | System and method for communicating data in a passenger vehicle or other vehicle consist |
| US20150217790A1 (en) * | 2009-03-17 | 2015-08-06 | General Electric Company | Data communication system and method |
| US20160272228A1 (en) * | 2013-11-27 | 2016-09-22 | Amsted Rail Company, Inc. | Train and Rail Yard Management System |
| US20170043797A1 (en) * | 2015-08-13 | 2017-02-16 | Lockheed Martin Corporation | Methods and systems of determining end of train location and clearance of trackside points of interest |
| US20200031330A1 (en) * | 2017-04-12 | 2020-01-30 | Faiveley Transport Italia S.P.A. | Electronic control system of emergency and service braking for a railway vehicle |
| US20200300600A1 (en) * | 2017-12-08 | 2020-09-24 | Thales Management & Services Deutschland Gmbh | Train control network, method for communication and method for controlling train integrity |
| US20200189630A1 (en) * | 2018-12-14 | 2020-06-18 | Westinghouse Air Brake Technologies Corporation | Method and Apparatus to Verify Train Integrity by Comparing Head of Train and End of Train Telemetry |
| US20200269889A1 (en) * | 2019-02-22 | 2020-08-27 | Thales Deutschland Gmbh | Method for wagon-to-wagon communication, method for controlling integrity of a train and train wagon |
| US20210171077A1 (en) * | 2019-12-09 | 2021-06-10 | Thales Canada Inc. | System and method for vehicle control |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| WO2025149922A1 (en) * | 2024-01-09 | 2025-07-17 | Faiveley Transport Italia S.P.A. | System and method for determining whether a vehicle of a convoy of vehicles is an end vehicle, and convoy of vehicles |
Also Published As
| Publication number | Publication date |
|---|---|
| JP2023551392A (en) | 2023-12-08 |
| IT202000027089A1 (en) | 2022-05-12 |
| WO2022101842A1 (en) | 2022-05-19 |
| CN116648397A (en) | 2023-08-25 |
| EP4244116A1 (en) | 2023-09-20 |
| KR20230128265A (en) | 2023-09-04 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US20230415798A1 (en) | System for verifying the integrity of a convoy, particularly a railway convoy | |
| CN101801760B (en) | Distributed train control | |
| KR102124927B1 (en) | Method for managing resources and resource management method for virtual connection in autonomous train control system | |
| CN107867269B (en) | Train emergency braking method and device | |
| US10752270B2 (en) | Method and device for ascertaining a movement authority for a track-bound vehicle | |
| CN113562036B (en) | Marshalling train decompiling method and system | |
| US20150225003A1 (en) | Control of a rail vehicle | |
| CN111806484A (en) | Train door and platform door fault isolation control method, device and system | |
| JPWO2017195315A1 (en) | On-board equipment and ground system | |
| CN112061141A (en) | Train marshalling method and device for CBTC (communication based train control) system | |
| CN110803196A (en) | Virtual coupling system and method for train | |
| EA024596B1 (en) | Method and apparatus related to on-board message repeating for vehicle consist communications system | |
| AU2017202545A1 (en) | Method for initializing the FS mode for the movement of a train on a railway equipped with an ERTMS/ETCS signaling system | |
| RU186187U1 (en) | VEHICLE CONTROL DEVICE | |
| CN113997986B (en) | Automatic train supervision system and automatic train dispatching method for autonomous train dispatching | |
| CN118529103A (en) | A train control system, method and device for heterogeneous verification of driving permit | |
| CN114771606A (en) | Train route handling method and device, electronic equipment and storage medium | |
| AU2018379331B2 (en) | Train control network, method for communication and method for controlling train integrity | |
| CN119611472A (en) | Train operation control method, device, equipment, storage medium and program product | |
| CN114074696B (en) | Turning-back control method and turning-back control system for virtual marshalling multiple vehicles | |
| KR20200032820A (en) | Monitoring Device for Railway Radio Network | |
| CN117360580A (en) | Train automatic control system, method, equipment and medium | |
| CN114932930A (en) | A braking unit fault location method, system and train | |
| KR200234233Y1 (en) | Automatic train stopper using telemetering system | |
| RU2783559C1 (en) | Device for transferring control commands of automatic locomotive signaling to rail circuits of a centralized auto-blocking system |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| AS | Assignment |
Owner name: FAIVELEY TRANSPORT ITALIA S.P.A., ITALY Free format text: ASSIGNMENT OF ASSIGNORS INTEREST;ASSIGNORS:GRASSO, ANGELO;FREA, MATTEO;TIONE, ROBERTO;SIGNING DATES FROM 20230712 TO 20230718;REEL/FRAME:064513/0416 Owner name: FAIVELEY TRANSPORT ITALIA S.P.A., ITALY Free format text: ASSIGNMENT OF ASSIGNOR'S INTEREST;ASSIGNORS:GRASSO, ANGELO;FREA, MATTEO;TIONE, ROBERTO;SIGNING DATES FROM 20230712 TO 20230718;REEL/FRAME:064513/0416 |
|
| STPP | Information on status: patent application and granting procedure in general |
Free format text: DOCKETED NEW CASE - READY FOR EXAMINATION |
|
| STPP | Information on status: patent application and granting procedure in general |
Free format text: NON FINAL ACTION COUNTED, NOT YET MAILED |
|
| STPP | Information on status: patent application and granting procedure in general |
Free format text: NON FINAL ACTION MAILED |