In order to guarantee fail-safety, we developed a concept for a custom SBC in which two main processors are interconnected in such a way that one unit takes over if the other communicates indications of a failure or this threatens. In this case, we used two ARM Cortex A9 processors for the solution to be developed. The monitoring runs via an FPGA chip, as this is easily programmable.
As software, SECO relies on Linux Yocto in conjunction with the specially developed Boot loader "FNGBoot".