SC-24 - Fail in Known State

Fail to a [Assignment: organization-defined known system state] for the following failures on the indicated components while preserving [Assignment: organization-defined system state information] in failure: [Assignment: list of organization-defined types of system failures on organization-defined system components].


ID: SC-24
Enhancements: 

Space Segment Guidance

Failing in a known state for spacecraft closely aligns with safe-mode behavior. Consider defaults that revert to minimal, recoverable configurations when faults occur; roll back any pending updates using commit markers or dual-bank images; and narrow command acceptance until ground reauthorization. Telemetry should make the fail state explicit (active bank, mode, inhibited functions, reason codes) so operators can confirm status and sequence recovery within short passes.