A method and system for configuring information security protection software of a vehicle-mounted terminal

By standardizing the security module and comparing the terminal type and security requirements, compiling configuration files are generated, which solves the problem of low reuse rate of security protection modules in vehicle terminal product development, and achieves efficient and accurate security protection configuration.

CN114003301BActive Publication Date: 2025-07-18HUIZHOU DESAY SV AUTOMOTIVE
View PDF 1 Cites 0 Cited by

Patent Information

Application Number
CN202111079181.8
Authority / Receiving Office
CN · China
Patent Type
Patents(China)
Current Assignee / Owner
Filing Date
2021-09-15
Publication Date
2025-07-18
Estimated Expiration
2041-09-15

AI Technical Summary

Technical Problem

In the prior art, the reuse rate of each project of the safety protection module is low when developing vehicle terminal products, and the safety protection requirements of different terminals and models are different, so implementation errors are prone to occur.

Method used

Each security module is standardized and stored in the database. The logical processing module compares the terminal types and security requirements, generates a compilation configuration file, ensures that the security module meets all requirements and then compiles into the on-board terminal product.

Benefits of technology

The reuse rate of safety protection technology has been improved, ensuring that different types and brands of on-board terminals can effectively implement safety protection, with higher efficiency and more accurate.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN114003301B_ABST
    Figure CN114003301B_ABST
Patent Text Reader

Abstract

The present invention provides a method and system for configuring information security protection software for in-vehicle terminals. Mainly, each security module is made into a standardized module, and when integrating software development for in-vehicle terminals, in combination with the terminal type and corresponding security requirements, and according to the security modules recommended in the security module information database, through the logical processing module for one-by-one comparison to ensure that the current security modules can all meet all security requirements. Then, according to the compilation configuration file, the corresponding security module components are compiled into the in-vehicle terminal product, and the final integrated software for the in-vehicle terminal is generated according to the attributes of each security module configured by the user, so as to be more suitable for the characteristics of the automotive industry, more in line with the satisfaction of the public's security requirements, easy to implement security protection for different types of in-vehicle terminals, in-vehicle terminals of different brands and models, and compared with the current processing method, it has higher efficiency, and is more effective and accurate.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the technical field of vehicle information security, and in particular to a method and system for configuring vehicle terminal information security protection software. Background Art

[0002] With the rapid development of intelligent connected vehicles, intelligent connected vehicles are connected to more external networks and internal networks, resulting in an increasing number of vehicle information security incidents, and the information security issues of intelligent connected vehicles have attracted more and more attention in the industry.

[0003] To achieve information security for a vehicle, it needs to be realized through the vehicle components, namely vehicle terminals. Since there are multiple vehicle terminals inside an intelligent connected vehicle, different types of vehicle terminals require different security protection technologies, and different brands and models of vehicles also have different security protection requirements. In the development of vehicle terminal products, how to efficiently implement security protection and improve the reuse rate of security protection technologies is an issue that the vehicle terminal industry needs to pay attention to. There is an urgent need for an efficient configuration method and system that suits the characteristics of the automotive industry to achieve the efficient implementation of security protection technologies. Summary of the Invention

[0004] In view of the technical problems in the existing vehicle terminal product development, such as the low reuse rate due to the re - development of each project of the security protection technology module and the implementation errors easily occurring due to different protection requirements for different terminals, this patent proposes a method and system for configuring vehicle terminal information security protection software, including the following steps:

[0005] S1: Standardize each security module;

[0006] S2: Select the terminal type, select multiple security requirements, and recommend suitable security modules according to the selected terminal type and corresponding security requirements;

[0007] S3: Perform logical processing to determine whether the security module meets the security requirements; if it meets, go to S4; if it does not meet, manually select the security modules to be used according to the security requirements, and then go to S4;

[0008] S4: Generate a compilation configuration file, and generate the final integrated software for the vehicle terminal according to the configuration file.

[0009] Among them, the S1 further includes: the security module at least includes all security protection software modules that meet the current vehicle terminal usage.

[0010] Furthermore, standardize the detailed attribute parameters of each security module in advance and store them in the security module information database.

[0011] S2 further includes: according to the terminal type and corresponding security requirements selected by the user interface terminal, matching suitable security modules from the security module information database and sending them to the logic processing module.

[0012] S3 further includes: the logic processing module compares each of the security modules with the terminal type and its security requirements one by one, lists the security requirements not covered by the security modules, and prompts the user to manually add them; if all the security requirements are covered by the security modules, there is no prompt, and then compilation starts.

[0013] Furthermore, according to the compilation configuration file, the corresponding security module components are compiled into the in-vehicle terminal product, and the final in-vehicle terminal integrated software is generated according to the attributes of each security module configured by the user.

[0014] As another preferred embodiment, the present invention further provides an in-vehicle terminal information security protection software configuration system, which at least includes: a security protection configuration system and an in-vehicle terminal software development environment. The security protection configuration system at least includes a user interface, a security module information database, and a logic processing module;

[0015] The user interface is used to select the in-vehicle terminal type and input all security requirements;

[0016] All pre-standardized security modules are stored in the security module information database. The security module information database matches and recommends suitable security modules to the logic processing module according to the in-vehicle terminal type and the input security requirements;

[0017] The logic processing module is used to compare the in-vehicle terminal type and the input security requirements with the security modules from the security module information database;

[0018] The in-vehicle terminal software development environment is provided with a compilation module. The compilation module compiles the corresponding security module components into the in-vehicle terminal product according to the compilation configuration file, and generates the final in-vehicle terminal integrated software according to the attributes of each security module configured by the user.

[0019] The logic processing module further includes: when comparing, listing the security requirements not covered by the security modules and prompting the user to manually add them; if all the security requirements are covered by the security modules, there is no prompt and it directly enters the compilation module.

[0020] Among them, the security modules at least include all security protection software modules required by the in-vehicle terminal.

[0021] Further, all the security modules in the security module information database are loaded with the latest standardized security modules in the networked state, and the in-vehicle terminal integrated software is updated and recompiled in real time according to the real-time requirements of the user interface and the updated security modules.

[0022] In summary, the present invention provides a method and system for configuring the information security protection software of an in-vehicle terminal. The method mainly makes each security module into a standardized module. When developing the in-vehicle terminal integrated software, it combines the terminal type and the corresponding security requirements, and according to the security modules recommended in the security module information database, it makes one-by-one comparisons through the logic processing module to ensure that the current security modules can meet all the security requirements. Then, according to the compilation configuration file, the corresponding security module components are compiled into the in-vehicle terminal product, and the final in-vehicle terminal integrated software is generated according to the attributes of each security module configured by the user, so as to be more suitable for the characteristics of the automotive industry, more in line with the satisfaction of the public security requirements, and easy to implement security protection on different types of in-vehicle terminals, in-vehicle terminals of different brands and models. Compared with the current processing method, it has higher efficiency, and is more effective and accurate. BRIEF DESCRIPTION OF THE DRAWINGS

[0023] Figure 1 It is a process diagram of the method for configuring the information security protection software of an in-vehicle terminal.

[0024] Figure 2 It is a schematic diagram of the system for configuring the information security protection software of an in-vehicle terminal. DETAILED DESCRIPTION OF THE EMBODIMENTS

[0025] In order to enable those skilled in the art to better understand the solution of the present invention, the technical solutions in the embodiments of the present invention will be clearly and completely described below with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only a part of the embodiments of the present invention, rather than all the embodiments. Based on the embodiments of the present invention, all other embodiments obtained by those of ordinary skill in the art without creative efforts shall fall within the protection scope of the present invention.

[0026] As Figure 1 shown, the present patent proposes a method and system for configuring the information security protection software of an in-vehicle terminal, including the following steps:

[0027] S1: Standardize each security module;

[0028] S2: Select the terminal type, select multiple security requirements, and recommend suitable security modules according to the selected terminal type and the corresponding security requirements;

[0029] S3: Perform logical processing to determine whether the security module meets the security requirements; if it meets, go to S4; if it does not meet, manually select the required security module according to the security requirements, and then go to S4;

[0030] S4: Generate a compilation configuration file, and generate the final in-vehicle terminal integrated software according to the configuration file.

[0031] Among them, S1 further includes: the security module at least includes all security protection software modules that meet the current in-vehicle terminal usage.

[0032] Furthermore, standardize and configure the detailed attribute parameters of each security module in advance, and store them in the security module information database.

[0033] S2 further includes: According to the terminal type and corresponding security requirements selected by the user interface end, match the suitable security module from the security module information database and send it to the logical processing module.

[0034] S3 further includes: The logical processing module compares the security module with the terminal type and its security requirements one by one, lists the security requirements not covered by the security module, and prompts the user to manually add them; if all security requirements are covered by the security module, there is no prompt, and then compilation starts.

[0035] Furthermore, according to the compilation configuration file, compile the corresponding security module components into the in-vehicle terminal product, and generate the final in-vehicle terminal integrated software according to the attributes of each security module configured by the user.

[0036] As another preferred, the present invention also provides an in-vehicle terminal information security protection software configuration system, as Figure 2 shown, at least including: a security protection configuration system and an in-vehicle terminal software development environment, the security protection configuration system at least includes a user interface, a security module information database and a logical processing module;

[0037] The user interface is used to select the in-vehicle terminal type and enter all security requirements;

[0038] All pre-standardized security modules i, i = (1, n) are stored in the security module information database, and the security module information database matches and recommends suitable security modules to the logical processing module according to the in-vehicle terminal type and the entered security requirements.

[0039] Preferably, each security module in the database is uniformly standardized in advance according to the existing conventional usage patterns and detailed parameter attributes. When users perform personalized customization, they can modify the parameters or customize the patterns. After the user interface obtains the vehicle terminal type input by the user and all security requirements are entered, they will be sent to the database. The database retrieves according to the vehicle terminal type and security requirements in the database. For example, it first searches according to the terminal type, matches the conforming security modules, and then performs a secondary search on the matched security modules, that is, matches according to the security requirements. Preferably, it matches according to information such as security parameters and attributes. Finally, the security module that meets the user's needs in the current database is selected and recommended to the user.

[0040] The logic processing module is used to compare the vehicle terminal type and the entered security requirements with the security modules from the security module information database; specifically, since only the standardized security modules existing in the current database are promoted in the database, but with the diversification of user needs and the iterative update of security modules, there will be a situation where the security modules recommended in the database cannot fully meet the user's needs. Therefore, the logic processing module set in the present invention is used for comparison, selects the part of the requirements not covered by the user's needs, and notifies the user, and the user then performs the next step of manual addition or setting. Thus, it is ensured that the developed software can meet all user security requirements as much as possible.

[0041] The vehicle terminal software development environment is provided with a compilation module. The compilation module includes a compilation program and a compilation configuration file. The compilation program converts the source code into an executable target code, and the compilation configuration file defines the files to be compiled, the compilation order of the files, etc. The compilation module compiles the corresponding security module components into the vehicle terminal product according to the compilation configuration file, and generates the final vehicle terminal integrated software according to the attributes of each security module configured by the user.

[0042] The logic processing module further includes: when performing the comparison, listing the security requirements not covered by the security module and prompting the user to manually add them; if all security requirements are covered by the security module, there is no prompt and it directly enters the compilation module.

[0043] Among them, the security module at least includes all security protection software modules required by the vehicle terminal, such as a firewall module, an access control module, a secure boot module, but is not limited thereto.

[0044] Furthermore, all security modules in the security module information database are loaded with the latest standardized security modules in real time in the networked state, and the vehicle terminal integrated software is updated and recompiled in real time according to the real-time needs of the user interface and the updated security modules.

[0045] The above-described embodiments merely represent several implementation manners of the present invention. The description thereof is relatively specific and detailed, but it should not be construed as a limitation on the scope of the patent for the present invention. It should be noted that for those of ordinary skill in the art, without departing from the concept of the present invention, several modifications and improvements can still be made, and these all fall within the protection scope of the present invention. Therefore, the protection scope of the patent for the present invention shall be subject to the appended claims.

Claims

1. A method for configuring information security protection software of a vehicle-mounted terminal, characterized in that it includes the following steps: S1: Standardize each security module; S2: Select the terminal type, select multiple security requirements, and recommend suitable security modules according to the selected terminal type and corresponding security requirements; S3: Perform logical processing to determine whether the security module meets the security requirements; if it meets, go to S4; if it does not meet, manually select the security modules to be used according to the security requirements, and then go to S4; S4: Generate a compilation configuration file, and generate the final integrated software of the vehicle-mounted terminal according to the configuration file; wherein, S1 further includes: pre-standardizing and configuring the detailed attribute parameters of each security module in advance, and storing them in the security module information database; The logical processing module compares each security module with the terminal type and its security requirements one by one, lists the security requirements not covered by the security module, and prompts the user to manually add them; if all security requirements are covered by the security module, there is no prompt, and then compilation starts; According to the compilation configuration file, compile the corresponding security module components into the vehicle-mounted terminal product, and generate the final integrated software of the vehicle-mounted terminal according to the attributes of each security module configured by the user.

2. The information security protection software configuration method for a vehicle-mounted terminal according to claim 1, wherein S1 further includes: The security module at least includes all security protection software modules that meet the current use of the vehicle-mounted terminal.

3. A method for configuring an in-vehicle terminal information security protection software according to claim 1, characterized in that, S2 further includes: According to the terminal type and corresponding security requirements selected on the user interface end, match suitable security modules from the security module information database and send them to the logical processing module.

4. A vehicle terminal information security protection software configuration system, characterized in that, At least including: A security protection configuration system and a vehicle-mounted terminal software development environment, the security protection configuration system at least includes a user interface, a security module information database, and a logical processing module; The user interface is used to select the vehicle-mounted terminal type and enter all security requirements; All pre-standardized security modules are stored in the security module information database, and the security module information database matches and recommends suitable security modules to the logical processing module according to the vehicle-mounted terminal type and the entered security requirements; The logical processing module is used to compare the vehicle-mounted terminal type and the entered security requirements with the security modules from the security module information database; The vehicle-mounted terminal software development environment is provided with a compilation module, and the compilation module compiles the corresponding security module components into the vehicle-mounted terminal product according to the compilation configuration file, and generates the final integrated software of the vehicle-mounted terminal according to the attributes of each security module configured by the user; wherein, the logical processing module further includes: when comparing, list the security requirements not covered by the security module and prompt the user to manually add them; if all security requirements are covered by the security module, there is no prompt and directly enter the compilation module.

5. The system according to claim 4, wherein The security module at least includes all security protection software modules required by the vehicle-mounted terminal.

6. The system according to claim 5, wherein It also includes: All security modules in the security module information database are loaded with the latest standardized security modules in real time in the networked state, and the vehicle-mounted terminal integrated software is updated and recompiled in real time according to the real-time requirements of the user interface and the updated security modules.

Citation Information

Patent Citations

  • Vehicle-mounted terminal information security threat analysis and risk assessment system and method

    CN111985789A