This content is not included in
your SAE MOBILUS subscription, or you are not logged in.
Routing and Security Mechanisms Design for Automotive TSN/CAN FD Security Gateway
Technical Paper
2022-01-0113
ISSN: 0148-7191, e-ISSN: 2688-3627
Annotation ability available
Sector:
Language:
English
Abstract
With the explosion of in-vehicle data, Time Sensitive Network (TSN) is increasingly becoming the backbone of the in-vehicle network to ensure deterministic real-time communication and Quality of Service (QoS). However, legacy buses such as CAN FD and LIN will not disappear for a long time in the future. Many protocols are deployed in the gateway and it is an important component in the security and functional safety of the communication process. In this paper, the recommended Electrical/Electronic Architecture is first given and the use cases for the TSN/CAN FD gateway are illustrated. Then, a TSN/CAN FD routing mechanism is designed and security mechanisms are deployed. The routing mechanism includes the protocol conversion module, queue cache module, and forwarding scheduling module. The protocol conversion module unpacks or packs the TSN or CAN FD frames according to the routing table. Dynamic space of queue is utilized in the queue cache module to allocate the cached messages appropriately. Time Awareness Shaper and Credit-Based Shaper are used to guarantee the transmission of messages with different priorities. The security mechanism consists of a secure handshake protocol and encrypted secure communication. We negotiate and distribute session secret keys via pre-stored certificates and the RSA algorithm. The confidentiality, integrity, and availability of data are guaranteed via random numbers, MAC, and the AES algorithm. Detailed tests are finally carried out on a physical system and the results show that the designed mechanism in this paper has excellent performance and feasibility.
Authors
Topic
Citation
Luo, F., Yang, Z., Wang, Z., and Wang, J., "Routing and Security Mechanisms Design for Automotive TSN/CAN FD Security Gateway," SAE Technical Paper 2022-01-0113, 2022, https://doi.org/10.4271/2022-01-0113.Also In
References
- Lo Bello , L. and Steiner , W. A Perspective on IEEE Time-Sensitive Networking for Industrial Communication and Automation Systems Proceedings of the IEEE. 107 6 2019 1094 1120 10.1109/jproc.2019.2905334
- Kim , J.H. , Seo , S.-H. , Hai , N.T. , Cheon , B.M. et al. Gateway Framework for In-Vehicle Networks Based on CAN, FlexRay, and Ethernet IEEE Transactions on Vehicular Technology 64 10 2015 4472 4486 10.1109/tvt.2014.2371470
- Postolache , M. , Neamtu , G. , and Trofin , S.D. CAN - Ethernet Gateway for Automotive Applications 2013 17th International Conference on System Theory, Control and Computing (ICSTCC) 10.1109/icstcc.2013.6688995
- Lee , T.-Y. , Lin , I.A. , and Liao , R.-H. Design of a FlexRay/Ethernet Gateway and Security Mechanism for In-Vehicle Networks Sensors 20 3 2020 641 10.3390/s20030641
- Shreejith , S. , Mundhenk , P. , Ettner , A. , Fahmy , S.A. et al. VEGa: A High Performance Vehicular Ethernet Gateway on Hybrid FPGA IEEE Transactions on Computers. 66 10 2017 1790 1803 10.1109/tc.2017.2700277
- Lee , Y.S. , Kim , J.H. , and Jeon , J.W. FlexRay and Ethernet AVB Synchronization for High QoS Automotive Gateway IEEE Transactions on Vehicular Technology 66 7 2017 5737 5751 10.1109/tvt.2016.2636867
- Kaur , R. , Singh , T.P. and Khajuria , V. Security Issues in Vehicular Ad-Hoc Network(VANET) 2018 2nd International Conference on Trends in Electronics and Informatics (ICOEI) 10.1109/icoei.2018.8553852
- Sommer , F. , Dürrwang , J. , and Kriesten , R. Survey and Classification of Automotive Security Attacks Information 10 4 2019 148 10.3390/info10040148
- Dadam , S.R. , Zhu , D. , Kumar , V. , Ravi , V. et al. Onboard Cybersecurity Diagnostic System for Connected Vehicles SAE Technical Paper 2021-01-1249 2021 10.4271/2021-01-1249
- Luo , F. and Hou , S. Security Mechanisms Design of Automotive Gateway Firewall SAE Technical Paper 2019-01-0481 2019 10.4271/2019-01-0481
- Pesé , M.D. , Schmidt , K. , and Zweck , H. Hardware/Software Co-Design of an Automotive Embedded Firewall SAE Technical Paper 2017-01-1659 2017 10.4271/2017-01-1659