Download presentation
Presentation is loading. Please wait.
Published byCamron Mathews Modified over 9 years ago
1
A Security Architecture Concept for Vehicular Network Nodes 69821063 蔡嘉翔 69821058 許閔傑
2
Outline INTRODUCTION SERVICES AND SECURITY REQUIREMENTS IN VEHICULAR NETWORKS A.Services and Applications Platform Services: VANET Services: B.Categories of Security Requirements Service Security: Communication Security: System Security: Privacy: SECURITY ARCHITECTURE SETUP A.In-Vehicle System Outline B.Security in the Communication Stack C.Integration of Security – Security API and Security Module D.Supporting Backend Security Functionalities CONCLUSION
3
INTRODUCTION(1/2) Vehicular Network - address the security requirements -how to set up and implement the security architecture in a node take into account -Fully decentralized services -centralized Telematics services relying on a server infrastructure privacy management has to be integrated into the node architecture to be effective
4
INTRODUCTION(2/2) A very importantrequirement for the success of future Vehicular Networks reliability security trustability Vehicular Networks used in this paper includes Vehicular Ad Hoc Networks (VANETs) from a vehicle using e.g cellular networks to a dedicatedserver Separation of centralized and distributed communication is reflected in the different security requirements for the related services and the communication itself
5
SERVICES AND SECURITY REQUIREMENTS IN VEHICULAR NETWORKS Platform Services Services provisioned by a dedicated server infrastructure VANET Services decentralized ad hoc services primarily using broadcast Based information dissemination
6
Platform Services - a dedicated service infrastructure with at least one content server inthe backend -need a subscription and has to be registered at the so called Control Center - access the services through Telematics Control Unit (TCU) - centralized management in the backend - The focus of these services is safety, infotainment services Example up-to-date traffic information, warning messages, parking information; any service making travelling more safe and enjoyable is imaginable
7
VANET Services ad hoc communication technology distribute safety messages like collision warnings, traffic status information,and danger warnings, not relying on, any infrastructure in relation to the content. supporting infrastructure like gateway nodes an additional commercial service portfolio is thinkable
8
Service Security Different services need different security mechanisms platform services & bill VANET services distributive nature of the services
9
Communication Security To set up an encrypted and authenticated communication relation a session management is needed to authenticate the peers, negotiate the secret keys, and exchange authenticated content.
10
System Security everything else is based on the system setup most TCUs will host both service categories, their respective requirements need to be fulfilled on the same system a single trust basis needs to be defined, all nodes will obtain credentials and certificates reflecting the trust
11
Privacy different messages sent by the same node can be linked with each other users are unlikely willing to participate in a system breaching their privacy The demand for privacy has implications for the whole system setup
12
SECURITY ARCHITECTURE SETUP A.In-Vehicle System Outline B.Security in the Communication Stack C.Integration of Security – Security API and Security Module D.Supporting Backend Security Functionalities
13
A.In-Vehicle System Outline Interfaces,communication, services, Human-Machine Interface(HMI) GPRS,UMTS,DAB,DVB,RD S,TMC the requirement for a secured overall system calls for a hardware security implementation
14
B.Security in the communication stack Specific for this security layer is the secure communications engine, which is managing the security sessions of the node.
15
B.Security in the communication stack To provide privacy effectively, the whole system architecture has to be evaluated and included in the privacy concept
16
C.Integration of Security – Security API and Security Module a security software API a hardware security module referred to as Security Module. This is the only way to sufficiently secure credentials,certificates, and key material on a platform being used in the field.
17
D.Supporting Backend Security Functionalities A PKI is used to install trust in the system. The PKI actors provide certificates and credentials to trusted network nodes and revoke compromised certificates.
18
CONCLUSION The security of the in-vehicle platform will be based on a hardware security module like a Trusted Platform Module (TPM). Security is one of the important factors for the success of future vehicular networks,hence, its integration into the system has to be done very carefully making it an integral part of the system.
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.