* [Topics](/en/topics "Topics")
* [Security](/en/topics/security "Security")
* Functional safety and continuous certification on Linux
Functional safety and continuous certification on Linux
=======================================================
Updated  March 10, 2025•*5*-minute read
Copy URL
Jump to section
---------------
OverviewWhat is functional safety?ChallengesBenefitsWhy Red Hat?
Overview
--------
The automotive industry is rapidly evolving as technologies develop to allow for new and different methodologies to build the software-defined vehicle.
As part of this evolution, open technologies can help the industry advance innovative ideas and reduce costs. However, this initiative is complicated in the automotive space in particular because of functional safety requirements. Understanding what functional safety is, and how it would shape a continuous functional safety certification, is the first step in understanding how open technologies can change the automotive industry.
[Build the future of software-defined vehicles](/en/solutions/automotive "hub | Automotive")
What is functional safety?
--------------------------
Functional safety is a concept that applies across many industries, including automotive, and is inherently based on the concept that if it’s possible for a system to fail, it should fail in as predictable a manner as possible. That way, the failure can be planned for, and the harm of said failure can be mitigated as much as possible.
Functional safety is distinct from the concept of trying to remove the possibility of failure from the system completely. Although this is also an admirable aim, it’s outside the scope of the concept.
Functional safety is implemented by:
* Identifying all of the points where a safety system is required when the tool being assessed is performing in its intended context.
* Assessing the risk reduction of that safety function.
* Making sure that safety function works.
* Conducting checks to ensure that the safety function still works over time.
In the specific case of electronic devices in vehicles, functional safety means that all electronic components in the car, including computing devices, are free from unreasonable risk when operating in their intended context, and they meet the requirements of ISO 26262 as defined by the International Organization for Standardization. Which, of course, leads to the next question:
### **What is ISO 26262?**
ISO 26262 is an international standard that covers functional safety for electrical and electronic systems in road vehicles. It is an adaptation of the functional safety standard IEC 61508, published by the International Electrotechnical Commission. Initially, ISO 26262 only covered passenger cars, but in 2018 it was extended to include all road vehicles except mopeds.
ISO 26262 aims to address possible harms caused by vehicle electronic and electrical (E/E) systems when they malfunction. The standard covers not only the electrical and electronic components of the vehicle, but also those of the mechanical subsystems related to those components. So, in a vehicle, it understandably covers a lot.
The standard of ISO 26262 is risk-based, meaning it assesses possible harms qualitatively and outlines safety measures in order to mitigate, control or avoid systematic failures.
### **What is a functional safety certification?**
Functional safety certification is the process in which proficiency is demonstrated in the IEC 61508 standard as well as specific standards such as ISO 26262. These certifications are often given out by widely recognized industry associations, and prove qualification, knowledge, and experience.
### **What are some of the challenges related to functional safety certification?**
For any system to claim that it meets a functional safety standard such as ISO 26262, there needs to be an independent body that certifies the system. That body would also perform ongoing surveillance audits to follow up and make sure that the system maintains its certified standard.
Recommended for you
Securing the Cloud: Hands-on RHEL Security Workshop
---------------------------------------------------
[Watch the webinar](https://www.redhat.com/en/events/webinar/securing-the-cloud-hands-on-rhel-security-workshop?percmp=RHCTG0250000455235)
Challenges of Achieving a Functional Safety Certification
---------------------------------------------------------
One of the challenges of getting a functional certification for vehicles is that the standards of ISO 26262 were adapted from those created for electronics in the automotive industry in the 1970s and 1980s.
When looking for certification with closed systems, the software is developed almost from a clean room (focusing on keeping extant elements out of the system lest they cause defects) where the requirements are understood and the specifications are understood, and there’s a very high degree of traceability between the requirements, code, and coverage. However, modern, open systems are made up of hundreds or thousands of components, with many different projects aggregated together. While those projects have similar approaches to software development, they aren't identical. Those differences accumulate more as the project becomes more complex.
Since ISO 26262 standards are based on a philosophy that was not designed for off-the-shelf components to be slotted in together to create a new-and-different collective whole, the certification process becomes bottlenecked.
Under the existing system, for a complex framework such as an automotive operating system, it can take three to five years for the entire system to be certified. And if there’s a small change to the configuration, it can take a significant period of time for that change to get certified, sometimes the better part of a year. The entire process can become incredibly resource intensive as a new certification process starts when small components of the overall system change.
Thus, for a true, open vehicle operating system to succeed, and specifically Linux-based ones, there needs to be a new paradigm for certification: a continuous functional safety certification process.
Benefits of a Continuous Functional Safety Certification
--------------------------------------------------------
One of the biggest challenges with functional safety is change management.
Currently, when there is a functional safety certification, it applies only to a specific software configuration on specific hardware and subject to the approved and documented conditions and assumptions. And if there's a security vulnerability or if new requirements are introduced, that certification needs to be redone. With traditional methods, the recertification effort is significant even for small changes.
With continuous functional safety certification, the aim is to minimize the cost and length of recertification so that the systems in place are being continuously certified at a pace similar to how software is generally updated to fix security issues or add features.
Within this new rubric, the certification process would become part of the software update process, reducing the burden of constant timely and cost-intensive recertifications from the automakers. From this perspective, this standardization toward an open source, Linux-based OS would then give automakers the ability to push updates faster and with fewer resources.
However, continuous safety certification requires a significant engineering effort to get the process up-and-running, and may involve changes to the ISO 26262 certification process.
Why Red Hat?
------------
#### **Red Hat In-Vehicle Operating System**
The Red Hat In-Vehicle Operating System is an extension of Red Hat Enterprise Linux to the automotive industry, with the goal of offering a functionally-safe platform for innovation. The Red Hat In-Vehicle Operating System looks to be a new standard in software defined vehicles. General Motors agrees, and has chosen the Red Hat In-Vehicle OS as the basis for its next-generation computing system.
Leaning into open source software as a vital component of the next-generation vehicles can help automakers achieve greater and faster innovation and elevate customer experience. Red Hat In-Vehicle Operating System intends to support the software-defined vehicle by applying Linux to safety-critical automotive systems, accelerating development, reducing costs and creating opportunities for new services and revenue streams.
As mentioned above, however, this approach has its challenges, and the functional safety challenges need to be worked out. Along these lines, these are the pillars of Red Hat’s leadership efforts to standardize and codify continuous functional safety to make the Red Hat In-Vehicle Operating System possible.
#### **What is exida, and why is Red Hat partnered with it?**
exida is a leader in functional safety across multiple industries. Founded in 2000, the company specializes in automotive system safety, alarm management, cybersecurity, and availability. Red Hat is partnering with exida as part of the project to deliver a functionally-safety certified evolving Linux operating system for the automotive industry, which would be developed and maintained by Red Hat and continuously certified by exida.
Of course, achieving a functional safety certification has its challenges, and doing so from an open source stance requires a different mindset and strategy.
#### **The future of software-defined vehicles**
The future of driving experiences will soon be open to a wave of innovation when open, Linux-based solutions are more available in the automotive space. Red Hat takes its leadership role in developing the future of continuous functional safety in the automotive space seriously, as it also is the future of software-defined automotive in general.
[Check out our in-vehicle operating system](/en/blog/new-standard-red-hat-vehicle-operating-system-modern-and-future-vehicles)
Recommended for you
E-book
Maximize your Linux operating environment
-----------------------------------------
This e-book examines the essentials of Red Hat Enterprise Linux across 9 distinct areas that affect your operations in a hybrid cloud environment.
[Read the e-book](https://www.redhat.com/en/engage/maximize-linux-ebook?percmp=RHCTG0250000455234)
All Red Hat product trials
--------------------------
Our no-cost product trials help you gain hands-on experience, prepare for a certification, or assess if a product is right for your organization.
[Keep reading](/en/products/trials "All Red Hat product trials")
Keep reading
------------
### What is security automation?
Security automation uses technology to perform tasks with reduced human assistance to integrate security processes, applications, and infrastructure.
[Read the article](/en/topics/automation/what-is-security-automation "article | what is security automation")
### What is SOAR?
SOAR refers to 3 key software capabilities that security teams use: case and workflow management, task automation, and a centralized means of accessing, querying, and sharing threat intelligence.
[Read the article](/en/topics/security/what-is-soar "article | what is soar")
### What's an insider threat?
An insider threat is leaked or misused data that—whether released accidentally or purposefully—could be used in malicious ways or viewed by individuals who shouldn’t have legitimate access.
[Read the article](/en/topics/security/what-are-insider-threats "article | What's an insider threat")
Security resources
------------------
### Related content
* Blog post
  [MCP security: Implementing robust authentication and authorization](/en/blog/mcp-security-implementing-robust-authentication-and-authorization)
* Case study
  [Powering O2’s next-generation 5G network with Red Hat OpenShift](/en/resources/o2-czech-republic-case-study)
* Blog post
  [AI trust through open collaboration: A new chapter for responsible innovation](/en/blog/ai-trust-through-open-collaboration-new-chapter-responsible-innovation)
* Blog post
  [More than meets the eye: Behind the scenes of Red Hat Enterprise Linux 10 (Part 6)](/en/blog/more-meets-eye-behind-scenes-red-hat-enterprise-linux-10-part-6)
### Related articles
* [What is patch management?](/en/topics/management/what-patch-management-and-automation)
* [What is security automation?](/en/topics/automation/what-is-security-automation)
* [What is AI security?](/en/topics/ai/what-is-ai-security)
* [What is an image builder?](/en/topics/linux/what-is-an-image-builder)
* [What's an insider threat?](/en/topics/security/what-are-insider-threats)
* [What is SOAR?](/en/topics/security/what-is-soar)
* [Why choose Red Hat for Linux?](/en/topics/linux/why-choose-red-hat-enterprise-linux)
* [Why run Microsoft SQL Server on Linux?](/en/topics/linux/why-run-sql-server-on-linux)
* [How to move to Red Hat Enterprise Linux from other Linux distros](/en/technologies/linux-platforms/enterprise-linux/migration-process/convert2rhel)
* [Linux for cloud computing](/en/topics/linux/linux-for-cloud-computing)
* [What is Linux?](/en/topics/linux/what-is-linux)
* [What is post-quantum cryptography?](/en/topics/security/post-quantum-cryptography)
* [What is the SAP HANA migration?](/en/topics/linux/what-is-sap-hana-migration)
* [What is lightweight directory access protocol (LDAP) authentication?](/en/topics/security/what-is-ldap-authentication)
* [What is software supply chain security?](/en/topics/security/what-is-software-supply-chain-security)
* [What is secrets management?](/en/topics/devops/what-is-secrets-management)
* [What is confidential computing?](/en/topics/security/what-is-confidential-computing)
* [What are SPIFFE and SPIRE?](/en/topics/security/spiffe-and-spire)
* [Red Hat Enterprise Linux security](/en/technologies/linux-platforms/enterprise-linux/security)
* [What is zero trust?](/en/topics/security/what-is-zero-trust)
* [Why run Linux on AWS?](/en/topics/linux/linux-on-aws)
* [What is high availability?](/en/topics/linux/what-is-high-availability)
* [What is ERP?](/en/topics/linux/what-is-erp)
* [What is SAP HANA (and why does it run on Linux)?](/en/topics/linux/sap-hana-and-linux)
* [Why run Linux on IBM Cloud](/en/topics/linux/linux-on-ibm-cloud)
* [What is CentOS Stream?](/en/topics/linux/what-is-centos-stream)
* [What is access control?](/en/topics/security/what-is-access-control)
* [Why choose Red Hat Enterprise Linux on Azure?](/en/technologies/linux-platforms/enterprise-linux/why-choose-red-hat-enterprise-linux-on-azure)
* [Why choose Red Hat Enterprise Linux on AWS?](/en/technologies/linux-platforms/enterprise-linux/why-choose-red-hat-enterprise-linux-on-aws)
* [What is a CVE?](/en/topics/security/what-is-cve)
* [Linux on Azure](/en/topics/linux/linux-on-azure)
* [What is CentOS?](/en/topics/linux/what-is-centos)
* [What to know about CentOS Linux EOL](/en/topics/linux/centos-linux-eol)
* [Red Hat Enterprise Linux migration process](/en/technologies/linux-platforms/enterprise-linux/migration-process)
* [What to know for Red Hat Enterprise Linux 7 End of Maintenance](/en/technologies/linux-platforms/enterprise-linux/rhel-7-end-of-maintenance)
* [Why run Linux on Google Cloud?](/en/topics/linux/linux-on-google-cloud)
* [Red Hat Satellite on Red Hat Enterprise Linux](/en/technologies/management/satellite/satellite-for-rhel)
* [What is role-based access control (RBAC)?](/en/topics/security/what-is-role-based-access-control)
* [What is kubernetes security?](/en/topics/containers/kubernetes-security)
* [Shift left vs. shift right](/en/topics/devops/shift-left-vs-shift-right)
* [Why choose Red Hat Enterprise Linux on Google Cloud?](/en/technologies/linux-platforms/enterprise-linux/why-choose-red-hat-enterprise-linux-google-cloud)
* [What is Linux kernel live patching?](/en/topics/linux/what-is-linux-kernel-live-patching)
* [Red Hat Lightspeed data and application security](/en/topics/management/data-application-security)
* [What is CI/CD security?](/en/topics/security/what-is-cicd-security)
* [What is an intrusion detection and prevention system (IDPS)?](/en/topics/security/what-is-an-IDPS)
* [What is security information and event management (SIEM)?](/en/topics/security/what-is-SIEM)
* [The increasing importance of cybersecurity in banking](/en/topics/financial-services/increasing-importance-cybersecurity-banking)
* [Gain security with Red Hat Ansible Automation Platform](/en/technologies/management/ansible/gain-security-with-red-hat-ansible-automation-platform)
* [What is edge security?](/en/topics/security/what-is-edge-security)
* [What is the importance of operational resilience?](/en/topics/financial-services/what-is-operational-resilience)
* [What is vulnerability management?](/en/topics/security/what-is-vulnerability-management)
* [What is backup and recovery?](/en/topics/security/backup-and-recovery)
* [What is container security?](/en/topics/security/container-security)
* [What is DevSecOps?](/en/topics/devops/what-is-devsecops)
* [What is compliance management?](/en/topics/management/what-is-compliance-management)
* [Why choose Red Hat for DevSecOps](/en/topics/devops/why-choose-red-hat-for-devsecops)
* [What is cloud governance?](/en/topics/automation/what-is-cloud-governance)
* [What's the best Linux distro for you?](/en/topics/linux/whats-the-best-linux-distro-for-you)
* [What's the difference between Fedora and Red Hat Enterprise Linux](/en/topics/linux/fedora-vs-red-hat-enterprise-linux)
* [What is a Linux server?](/en/topics/linux/linux-server)
* [What is a configuration file?](/en/topics/linux/what-configuration-file)
* [What is high performance computing (HPC)?](/en/topics/high-performance-computing/what-is-high-performance-computing)
* [Security in the software development lifecycle](/en/topics/security/software-development-lifecycle-security)
* [What is a golden image?](/en/topics/linux/what-is-a-golden-image)
* [What is an ARM processor?](/en/topics/linux/what-is-arm-processor)
* [ARM vs x86: What's the difference?](/en/topics/linux/ARM-vs-x86)
* [Kubernetes security best practices](/en/topics/containers/kubernetes-security-best-practices)
* [Security for IoT devices](/en/topics/security/security-for-iot-devices)
* [What is MPLS?](/en/topics/edge-computing/what-is-mpls)
* [What is identity and access management (IAM)?](/en/topics/security/what-identity-and-access-management-iam)
* [Advantages of Kubernetes-native security](/en/topics/containers/advantages-of-kubernetes-native-security)
* [Intro to Kubernetes security](/en/topics/containers/intro-kubernetes-security)
* [Container and Kubernetes compliance considerations](/en/topics/containers/compliance)
* [What is a Linux certification?](/en/topics/linux/linux-certification)
* [What was CoreOS and CoreOS container Linux](/en/technologies/cloud-computing/openshift/what-was-coreos)
* [What is risk management?](/en/topics/management/what-is-risk-management)
* [What is SELinux?](/en/topics/linux/what-is-selinux)
* [What is the Linux kernel?](/en/topics/linux/what-is-the-linux-kernel)
* [Hybrid cloud security](/en/topics/security/what-is-hybrid-cloud-security)
* [What is financial services security (and compliance)?](/en/topics/security/security-and-compliance-financial-services)
* [What is API security?](/en/topics/security/api-security)
* [What is malware?](/en/topics/security/what-is-malware)
* [What is cloud security](/en/topics/security/cloud-security)
[More about this topic](/en/topics/security "More about this topic")