|
|
|
|
|
by kqr
51 days ago
|
|
For issues that have never occurred before, probabilities are the wrong tool. The right thing to do is list all the behaviour the vehicle must never exhibit and think of ways it still might, despite all redundancies -- maybe even despite every single component working as intended. Lots of mission failures in history were caused by unexpected interactions between fully functional components. Probabilities of failures don't help with that. |
|