Ensuring Safety and Security in CAN-Based Automotive Embedded Systems: A Combination of Design Optimization and Secure Communication

被引:31
|
作者
Mun, Hyeran [1 ]
Han, Kyusuk [2 ]
Lee, Dong Hoon [1 ]
机构
[1] Korea Univ Seoul, Grad Sch Informat Secur, Seoul 02841, South Korea
[2] LG Elect Seocho Res & Dev Campus, Seoul 06772, South Korea
关键词
Security; Task analysis; Safety; Automotive engineering; Timing; Protocols; In-vehicle network; controller area network (CAN); electronic control unit (ECU); safety; security; optimization of task allocation; authentication; AUTHENTICATION;
D O I
10.1109/TVT.2020.2989808
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
As automotive embedded systems comprised of electronic control units (ECUs) connected via a controller area network (CAN) have continued to develop, the volume of information these systems are required to handle has also rapidly increased. Cyber attacks targeting vulnerable points of automotive embedded systems in particular are on the rise to hinder normal operation of a vehicle. However, adding security mechanisms to defend against attacks cannot neglect timing requirements in terms of vehicle safety. This is because it may lead to a violation of automobile safety. In short, both sides of this issue must be addressed from the outset of the system design stage to provide optimal security and safety. As a response to this pressing issue, we propose a novel and efficient scheme. The design optimization during the system design phase not only ensures all the real-time applications are executed within their deadline but also reduces the number of transmitted messages over the CAN bus. After optimization, we apply a hash message authentication code (HMAC) to specific messages, providing secure communication between ECUs and protecting against cyber attacks. Security analysis and experimental results prove that the proposed scheme can counter attacks on the CAN bus while meeting timing requirements. Therefore, our proposed scheme is effective in satisfying improvement of both safety and security.
引用
收藏
页码:7078 / 7091
页数:14
相关论文
共 50 条
  • [1] Synchronization in CAN-based embedded systems
    Su, Y
    Singh, G
    [J]. ESA'04 & VLSI'04, PROCEEDINGS, 2004, : 233 - 239
  • [2] Security-Aware Mapping for CAN-Based Real-Time Distributed Automotive Systems
    Lin, Chung-Wei
    Zhu, Qi
    Phung, Calvin
    Sangiovanni-Vincentelli, Alberto
    [J]. 2013 IEEE/ACM INTERNATIONAL CONFERENCE ON COMPUTER-AIDED DESIGN (ICCAD), 2013, : 115 - 121
  • [3] Security-aware Signal Packing Algorithm for CAN-based Automotive Cyber-physical Systems
    Yong Xie
    Liangjiao Liu
    Renfa Li
    Jianqiang Hu
    Yong Han
    Xin Peng
    [J]. IEEE/CAA Journal of Automatica Sinica, 2015, 2 (04) : 422 - 430
  • [4] Secure Embedded Hypervisor based Systems for Automotive
    Thiebaut, Stefaan Sonck
    De Rosa, Antonio
    Sasse, Ralph
    [J]. 2016 46TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS WORKSHOPS (DSN-W), 2016, : 211 - 212
  • [5] An Approach for the Design of Secure Communication in Embedded Systems
    Ocenasek, Pavel
    [J]. HUMAN INTERFACE AND THE MANAGEMENT OF INFORMATION: DESIGNING INFORMATION ENVIRONMENTS, PT I, 2009, 5617 : 579 - 586
  • [6] Composability and Compositionality in CAN-Based Automotive Systems based on Bus and Star Topologies
    Kammerer, Roland
    Froemel, Bernhard
    Obermaisser, Roman
    Milbredt, Paul
    [J]. 2013 11TH IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL INFORMATICS (INDIN), 2013, : 116 - 122
  • [7] Security-Aware Modeling and Efficient Mapping for CAN-Based Real-Time Distributed Automotive Systems
    Lin, Chung-Wei
    Zhu, Qi
    Sangiovanni-Vincentelli, Alberto
    [J]. IEEE EMBEDDED SYSTEMS LETTERS, 2015, 7 (01) : 11 - 14
  • [8] Stochastic Analysis of CAN-Based Real-Time Automotive Systems
    Zeng, Haibo
    Di Natale, Marco
    Giusto, Paolo
    Sangiovanni-Vincentelli, Alberto
    [J]. IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2009, 5 (04) : 388 - 401
  • [9] A Requirements Specification Template of a Communication Network Based on CAN Protocol to Automotive Embedded Systems
    Neto, Dario Almudi
    Galvao Martins, Luiz Eduardo
    [J]. JOURNAL OF COMPUTER SCIENCE & TECHNOLOGY, 2010, 10 (03): : 143 - 149
  • [10] Design of A Combination Antenna for Automotive Mobile Communication Systems
    Ai, Zhuang
    Liu, Ying
    Yue, Zhenzhen
    Jia, Yongtao
    Zhang, Yutao
    [J]. 2019 INTERNATIONAL SYMPOSIUM ON ANTENNAS AND PROPAGATION (ISAP 2019), 2019,