Design of a CANFD to SOME/IP Gateway Considering Security for In-Vehicle Networks

被引:1
|
作者
Zuo, Zheng [1 ]
Yang, Shichun [1 ]
Ma, Bin [1 ]
Zou, Bosong [2 ]
Cao, Yaoguang [1 ]
Li, Qiangwei [1 ]
Zhou, Sida [1 ]
Li, Jichong [1 ]
机构
[1] Beihang Univ, Sch Transportat Sci & Engn, Beijing 102206, Peoples R China
[2] China Software Testing Ctr, Beijing 100038, Peoples R China
关键词
vehicle; CAN; CANFD; Ethernet; SOME; IP; gateway; security; MAC; AEAD; CHALLENGES;
D O I
10.3390/s21237917
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
In recent years, Ethernet has been introduced into vehicular networks to cope with the increasing demand for bandwidth and complexity in communication networks. To exchange data between controller area network (CAN) and Ethernet, a gateway system is required to provide a communication interface. Additionally, the existence of networked devices exposes automobiles to cyber security threats. Against this background, a gateway for CAN/CAN with flexible data-rate (CANFD) to scalable service-oriented middleware over IP (SOME/IP) protocol conversion is designed, and security schemes are implemented in the routing process to provide integrity and confidentiality protections. Based on NXP-S32G, the designed gateway is implemented and evaluated. Under most operating conditions, the CPU and the RAM usage are less than 5% and 20 MB, respectively. Devices running a Linux operating system can easily bear such a system resource overhead. The latency caused by the security scheme accounts for about 25% of the entire protocol conversion latency. Considering the security protection provided by the security scheme, this overhead is worthwhile. The results show that the designed gateway can ensure a CAN/CANFD to SOME/IP protocol conversion with a low system resource overhead and a low latency while effectively resisting hacker attacks such as frame forgery, tampering, and sniffing.
引用
收藏
页数:25
相关论文
共 50 条
  • [21] Video Error Concealment for In-Vehicle IP-based Wireless Networks
    Kim, Do-Hyun
    Won, Jong-Ho
    Choi, Kyoung-Ho
    [J]. 2015 10TH ASIAN CONTROL CONFERENCE (ASCC), 2015,
  • [22] Wireless Media Streaming over IP-based In-Vehicle Networks
    Rahmani, Mehrnoush
    Pfannenstein, Martin
    Steinbach, Eckehard
    Giordano, Giuseppe
    Biersack, Ernst
    [J]. 2009 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATION WORKSHOPS, VOLS 1 AND 2, 2009, : 188 - 193
  • [23] Real-Time Security Warning and ECU Identification for In-Vehicle Networks
    Wei, Hongqian
    Ai, Qiang
    Zhao, Wenqiang
    Zhang, Youtong
    [J]. IEEE SENSORS JOURNAL, 2023, 23 (17) : 20258 - 20266
  • [24] SECURITY SOLUTIONS FOR THE CONTROLLER AREA NETWORK Bringing Authentication to In-Vehicle Networks
    Groza, Bogdan
    Murvay, Pal-Stefan
    [J]. IEEE VEHICULAR TECHNOLOGY MAGAZINE, 2018, 13 (01): : 40 - 47
  • [25] In-vehicle System Design-Considering Cognitive Characteristics of Elderly Drivers
    Hong, Seunghee
    Park, Sejin
    Min, Byunchan
    Suzuki, Keisuke
    Doi, Shunichi
    [J]. 2017 INTERNATIONAL CONFERENCE ON PLATFORM TECHNOLOGY AND SERVICE (PLATCON), 2017, : 140 - 143
  • [26] Security Analysis and Improvement of Vehicle Ethernet SOME/IP Protocol
    Du, Jinze
    Tang, Rui
    Feng, Tao
    [J]. SENSORS, 2022, 22 (18)
  • [27] Elastic Gateway SoC design: A HW-centric architecture for inline In-Vehicle Network processing
    Marino, Angela Gonzalez
    Fons, Francesc
    Arostegui, Juan Manuel Moreno
    [J]. VEHICULAR COMMUNICATIONS, 2024, 45
  • [28] Design of FlexRay-CAN Gateway using Node Mapping Method for In-vehicle Networking Systems
    Yang, Jae-Sung
    Lee, Suk
    Lee, Kyung Chang
    Kim, Man Ho
    [J]. 2011 11TH INTERNATIONAL CONFERENCE ON CONTROL, AUTOMATION AND SYSTEMS (ICCAS), 2011, : 146 - 148
  • [29] Designing security for in-vehicle networks: a Body Control Module (BCM) centered viewpoint
    Groza, Bogdan
    Gurban, Horatiu-Eugen
    Murvay, Pal-Stefan
    [J]. 2016 46TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS WORKSHOPS (DSN-W), 2016, : 176 - 183
  • [30] Security enhancement in In-vehicle Controller Area Networks by Electronic Control Unit authentication
    Lakshmanan, Murugesan
    Natarajan, Senthil Kumar
    [J]. ROMANIAN JOURNAL OF INFORMATION SCIENCE AND TECHNOLOGY, 2019, 22 (3-4): : 228 - 243