Method for operating a remote diagnostic system of a vehicle, computer readable medium, system and vehicle

By using digital vehicle keys to sign and verify remote diagnostic permission objects in the vehicle remote diagnostic system, the problem of users' inability to control third-party access is solved, enabling more secure and flexible remote diagnostic authorization, supporting third-party diagnostics, and improving system security.

CN121128153APending Publication Date: 2025-12-12BAYERISCHE MOTOREN WERKE AG
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202480031402.X
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Priority Date
2023-05-22
Filing Date
2024-03-22
Publication Date
2025-12-12

AI Technical Summary

Technical Problem

In existing vehicle remote diagnostic systems, vehicle users cannot flexibly control remote diagnostic access from third parties and vehicle manufacturers, which poses a security risk.

Method used

By using a mobile terminal device to sign remote diagnostic access objects with a digital vehicle key, and transmitting the signed access objects to the vehicle manufacturer's backend server and controller, the signature is verified using the public encryption key of the digital vehicle key, enabling flexible control and enhanced security of remote diagnostic access.

Benefits of technology

It enables vehicle users to flexibly authorize and securely control access to remote diagnostics, allowing third parties such as repair shops to perform remote diagnostics, improving the system's security and flexibility, and ensuring user monitoring and management of remote diagnostic operations.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN121128153A_ABST
    Figure CN121128153A_ABST
Patent Text Reader

Abstract

The invention relates to a method for operating a remote diagnostic system of a vehicle, comprising: determining a remote diagnostic permission object for a remote diagnostic server by means of a mobile terminal having a digital vehicle key; signing the remote diagnosis permission object by using the private encryption key of the digital vehicle key through the mobile terminal equipment; transmitting the signed remote diagnosis permission object from the mobile terminal device to a rear-end server of the vehicle manufacturer and / or a first controller of the vehicle; verifying a signature of the signed remote diagnostic privilege object with a public encryption key of the digital vehicle key on a back-end server of the vehicle manufacturer and / or a first controller of the vehicle; if the signature of the signed remote diagnosis permission object is successfully verified by the public encryption key of the digital vehicle key on the rear-end server of the vehicle manufacturer and / or on the first controller of the vehicle, the remote diagnosis permission object is signed. If yes, executing the remote diagnosis instruction on the first controller of the vehicle and / or one or more other controllers of the vehicle according to the signed remote diagnosis permission object.
Need to check novelty before this filing date? Find Prior Art

Description

TECHNICAL FIELD

[0001] The invention relates to a method for operating a remote diagnostic system of a vehicle. The invention further relates to a computer-readable medium for operating a remote diagnostic system of a vehicle, a system for operating a remote diagnostic system of a vehicle and a vehicle comprising the system for operating a remote diagnostic system of a vehicle. BACKGROUND

[0002] It is known from the prior art that a vehicle manufacturer can access a vehicle by means of remote diagnosis. For this purpose, the vehicle user must explicitly allow the vehicle manufacturer access via an operating interface of the vehicle. Alternatively, the user can activate access to the vehicle by the vehicle manufacturer via remote diagnosis upon a road rescue call by means of an emergency call system integrated in the vehicle. Access by means of remote diagnosis is here limited to the vehicle manufacturer. The vehicle user cannot control the authorization of remote diagnosis to third parties and / or the vehicle manufacturer. SUMMARY

[0003] It is therefore the task of the present invention to more securely operate a remote diagnostic system of a vehicle. It is in particular the task of the present invention to more flexibly and more securely operate a remote diagnostic system of a vehicle.

[0004] The task is solved by the features of the independent claim. Advantageous designs and extensions of the invention result from the dependent claims.

[0005] According to a first aspect, the invention is characterized by a method for operating a remote diagnostic system of a vehicle. The method can be a computer-implemented method and / or a controller-implemented method. The remote diagnostic system of the vehicle can be a distributed remote diagnostic system of the vehicle. The remote diagnostic system may, for example, comprise a mobile terminal device of a vehicle user, a remote diagnostic server, a backend server of a vehicle manufacturer, and / or one or more controllers of the vehicle. The vehicle can be a motor vehicle, for example a car or a motorcycle.

[0006] The method comprises determining a remote diagnostic rights object for a remote diagnostic server by means of a mobile terminal device having a digital vehicle key, in particular a mobile terminal device having a digital vehicle key stored thereon. Determining the remote diagnostic rights object can comprise generating the remote diagnostic rights object for the remote diagnostic server by means of the mobile terminal device. The mobile terminal device can be a smartphone, a smartwatch and / or other smart device having a digital vehicle key. Preferably, the digital vehicle key is stored on the mobile terminal device. Further preferably, the digital vehicle key is stored on a secure element of the mobile terminal device. The digital vehicle key can be a standardized digital vehicle key. The digital vehicle key can be standardized according to a standard of the Car Connectivity Consortium. For example, the digital vehicle key can be a digital vehicle key according to the Digital Key 3.x version specification of the Car Connectivity Consortium.

[0007] The method comprises signing, by the mobile terminal device, the remote diagnostic permission object with the private encryption key of the digital vehicle key and transmitting the signed remote diagnostic permission object from the mobile terminal device to the backend server of the vehicle manufacturer and / or the first controller of the vehicle. Furthermore, the method can comprise verifying, on the backend server of the vehicle manufacturer and / or the first controller of the vehicle, the signature of the signed remote diagnostic permission object with the public encryption key of the digital vehicle key. If the signature of the signed remote diagnostic permission object is successfully verified on the backend server of the vehicle manufacturer and / or the first controller of the vehicle with the public encryption key of the digital vehicle key, the method executes the remote diagnostic instructions on the first controller of the vehicle and / or one or more further controllers of the vehicle in accordance with the signed remote diagnostic permission object.

[0008] Advantageously, the security of the remote diagnosis can be effectively improved by signing the remote diagnostic permission object. The vehicle user can flexibly and / or more precisely authorize the remote diagnostic access by signing the remote diagnostic permission object. Thus, the vehicle user can flexibly control the remote diagnostic access to the vehicle with the digital vehicle key. By means of the remote diagnosis, for example, vehicle functions such as unlocking the vehicle door can be executed securely. By means of the flexible control possibilities of the mobile terminal device, the user can always prevent unauthorized access by means of the remote diagnosis in that the user refuses to sign the remote diagnostic permission object and / or does not grant the remote diagnostic permission. Furthermore, the user can also flexibly allow third parties, for example vehicle repair shops, to have remote diagnostic access so that the third parties can identify and / or eliminate possible malfunctions and / or possible defects of the vehicle. Thus, the user has a simple possibility by means of the digital vehicle key of the mobile terminal device to securely and flexibly control the remote diagnostic access of third parties and / or the vehicle manufacturer.

[0009] According to an advantageous design, the remote diagnostic permission object can comprise a permission object for reading diagnostic data of the first controller and / or one or more further controllers of the vehicle as remote diagnostic instructions. Thereby, the remote diagnostic object can be effectively used to execute a plurality of remote diagnostic instructions for a plurality of controllers of the vehicle.

[0010] According to another advantageous design, the remote diagnostic permission object can comprise a permission object for controlling a remote diagnostic function of the first controller and / or one or more further controllers of the vehicle as remote diagnostic instructions. Thereby, the remote diagnostic object can be effectively used to execute a plurality of remote diagnostic functions on a plurality of controllers of the vehicle.

[0011] According to another advantageous design, the private encryption key of the digital vehicle key can be stored in a secure key store of the mobile terminal device. Thereby, the security of signing the remote diagnostic object can be effectively improved.

[0012] According to another advantageous design, the transmitting of the signed remote diagnostic permission object from the mobile terminal device to the backend server of the vehicle manufacturer and / or the first controller of the vehicle can comprise: transmitting the signed remote diagnostic permission object from the mobile terminal device to a remote diagnostic server; and transmitting the signed remote diagnostic permission object from the remote diagnostic server to the backend server of the vehicle manufacturer or the first controller of the vehicle. By transmitting the remote diagnostic permission object to the first controller of the vehicle via the backend server of the vehicle manufacturer, the vehicle manufacturer can verify the remote diagnostic access by means of the remote diagnostic permission object and / or retain a proof of the remote diagnostic access to the vehicle. Thereby, the security of the remote diagnostic system can be effectively improved.

[0013] According to an advantageous design, the remote diagnostic server can be a remote diagnostic server of the vehicle manufacturer or a remote diagnostic server of a third party. Thus, the method can be flexibly adapted to different remote diagnostic service providers and their remote diagnostic servers. The method can be performed by means of different remote diagnostic service providers and their remote diagnostic servers.

[0014] According to another advantageous design, the transmitting of the signed remote diagnostic permission object from the remote diagnostic server to the backend server of the vehicle manufacturer comprises: transmitting the signed remote diagnostic permission object from the remote diagnostic server to the backend server of the vehicle manufacturer; verifying the signature of the signed remote diagnostic permission object on the backend server of the vehicle manufacturer with the public encryption key of the digital vehicle key; and transmitting the signed remote diagnostic permission object from the backend server of the vehicle manufacturer to the first controller of the vehicle, if the signature of the signed remote diagnostic permission object is successfully verified on the backend server of the vehicle manufacturer with the public encryption key of the digital vehicle key. In addition to or instead of verifying the signature on the first controller of the vehicle, the verification can be performed by the backend server. Thereby, the backend server of the vehicle manufacturer can verify the signature of the remote diagnostic permission object and effectively improve the security of the remote diagnostic system.

[0015] According to another advantageous design, the method can further comprise transmitting an error message from the controller of the vehicle to the backend server of the vehicle manufacturer, transmitting the error message from the backend server of the vehicle manufacturer to the remote diagnostic server, and / or transmitting the error message from the backend server of the vehicle manufacturer to the mobile terminal device, if the signature of the signed remote diagnostic permission object could not be successfully verified with the public encryption key of the digital vehicle key on the backend server of the vehicle manufacturer. Thereby, an error status regarding the verification of the signature can be transmitted to the remote diagnostic server and / or to the mobile terminal device.

[0016] According to another advantageous design, the mobile terminal device can sign the remote diagnostic permission object with the private encryption key of the digital vehicle key, if the authorized user of the mobile terminal device authorizes the signing of the remote permission object. Thereby, the user can effectively authorize the remote diagnostic access.

[0017] According to another advantageous design, the remote diagnostic permission object can comprise an identifier of a diagnostic authorized party, and the identifier of the diagnostic authorized party can be a unique identifier of a vehicle repair shop. Thereby, the user, the backend server of the vehicle manufacturer and / or the vehicle can effectively identify the remote diagnostic authorized party.

[0018] According to another advantageous design, the identifier of the diagnostic authorized party additionally comprises an encrypted one-way hash value corresponding to a cryptogram known only by the diagnostic authorized party; and the remote diagnostic instruction is executed on the first controller of the vehicle and / or one or more further controllers of the vehicle only if the cryptogram known only by the diagnostic authorized party is verified by the vehicle, in particular by the first controller of the vehicle and / or by one or more controllers of the vehicle, and / or by the backend server of the vehicle manufacturer by means of the encrypted one-way hash value of the remote diagnostic permission object. For example, the diagnostic authorized party can transmit the cryptogram known only by the diagnostic authorized party to the first controller of the vehicle and / or to one or more further controllers of the vehicle together with the remote diagnostic instruction. Thereby, the remote diagnostic authorized party can effectively be authenticated. The security of the remote diagnostic system can effectively be further improved.

[0019] According to another advantageous design, the remote diagnostic instruction can be transmitted to the first controller of the vehicle by the remote diagnostic server and / or by the backend server of the vehicle manufacturer, and / or the remote diagnostic instruction can be transmitted to the first controller of the vehicle by the remote diagnostic server and / or by the backend server of the vehicle manufacturer together with the remote diagnostic permission object. Thereby, the transmission of the remote diagnostic instruction can effectively be improved.

[0020] According to another advantageous design, the identifier of the diagnosing authorized party can comprise a public key of the diagnosing authorized party; and the remote diagnostic instructions are executed on the first controller of the vehicle and / or one or more other controllers of the vehicle only if the diagnosing authorized party cryptographically proves that it has a private key corresponding to the public key of the diagnosing authorized party. Thereby, the security of executing the remote diagnostic instructions can be effectively improved.

[0021] According to another aspect, the invention features a computer readable medium for operating a remote diagnostic system of a vehicle, the computer readable medium comprising instructions which, when executed on a computer and / or controller, perform the above-described method.

[0022] According to another aspect, the invention features a system for operating a remote diagnostic system of a vehicle, wherein the system is configured to perform the above-described method.

[0023] According to another aspect, the invention features a vehicle comprising the above-described system for operating a remote diagnostic system of a vehicle.

[0024] Further features of the invention are derived from the claims, the drawings and the figures of the description. All features and feature combinations mentioned in the above description in the description of the application and those mentioned in the claims and / or in the following description of the figures and / or in the figures alone are used for further implementation of the application in each and every combination per se, but also in other combinations or alone. BRIEF DESCRIPTION OF DRAWINGS

[0025] A preferred embodiment of the invention is described below according to the drawings. Further details, preferred design features and extensions of the invention are derived therefrom. The drawings show schematically as follows:

[0026] Figure 1 An exemplary method for operating a remote diagnostic system of a vehicle is shown; and

[0027] Figure 2 An exemplary remote diagnostic system of a vehicle is shown. DETAILED DESCRIPTION

[0028] Figure 1 An exemplary method 100 for operating a remote diagnostic system of a vehicle is shown in detail. The method 100 can determine 102 a remote diagnostic right object for a remote diagnostic server by a mobile terminal device having a digital vehicle key. The remote diagnostic right object can be received from the remote diagnostic server, for example. The remote diagnostic right object can be generated for a diagnosing authorized party, for example a remote diagnostic server of the diagnosing authorized party, with the digital vehicle key on the mobile terminal device, for example.

[0029] The method 100 can sign 104 the remote diagnostic permission object with a private encryption key of the digital vehicle key by the mobile terminal device. For example, the method can sign the remote diagnostic permission object with the digital vehicle key application of the mobile terminal device. Further, the method 100 can transmit 106 the signed remote diagnostic permission object from the mobile terminal device to the backend server of the vehicle manufacturer and / or the first controller of the vehicle.

[0030] The method 100 can verify 108 the signature of the signed remote diagnostic permission object with a public encryption key of the digital vehicle key on the backend server of the vehicle manufacturer and / or the first controller of the vehicle 108. If the signature of the signed remote diagnostic permission object is successfully verified with the public encryption key of the digital vehicle key on the backend server of the vehicle manufacturer and / or the first controller of the vehicle, the method 100 can execute 110 remote diagnostic instructions and / or remote diagnostic functions on the first controller of the vehicle and / or one or more other controllers of the vehicle according to the signed remote diagnostic permission object.

[0031] An exemplary application scenario of the method 100 is explained in the following. A user (e.g. a car owner) determines that a vehicle has a problem and wants to have a remote diagnosis by an independent repair shop. The user is away from the vehicle, e.g. at his work place. The vehicle is parked at the user's home. The independent repair shop shall perform the remote diagnosis on the same day. In order to allow the independent repair shop to perform the remote diagnosis on the same day, the vehicle user has to allow the independent repair shop to have remote diagnostic access. In this application scenario, the flow of the method 100 can be as follows: The independent repair shop transmits a remote diagnostic identifier (hereinafter also referred to as "identifier" for short) to the user's mobile terminal device. The identifier can comprise, for example, a unique identifier of the repair shop and / or an individual string known only to the repair shop and the user. With the help of the vehicle application on the mobile terminal device and the identifier, the user can set a time interval (e.g. "today") and an access right (e.g. "read") on the mobile terminal device. The vehicle application can create a remote diagnostic rights object using the identifier, the time interval and the access right. After the vehicle application has created the remote diagnostic rights object, the remote diagnostic rights object can be signed with a digital vehicle key on the mobile terminal device. Signing with the digital vehicle key can comprise authenticating the vehicle user by the mobile terminal device. The mobile terminal device can authenticate the vehicle user, for example, by means of a biometric feature, a password and / or a PIN of the user. The signed remote diagnostic rights object can be transmitted from the mobile terminal device to a remote diagnostic server of the independent repair shop. The independent repair shop can authenticate itself with the help of the signed remote diagnostic rights object with respect to a backend server of the vehicle manufacturer and / or a first controller of the vehicle. The backend server of the vehicle manufacturer and / or the first controller of the vehicle can verify the signature of the remote diagnostic rights object with a public encryption key of the digital vehicle key. If the verification is successful, the independent repair shop can perform a remote diagnosis of the vehicle.

[0032] Figure 2An exemplary remote diagnostic system 200 of a vehicle is shown in detail. The remote diagnostic system 200 can comprise a mobile terminal device 202 with a digital vehicle key 204. The digital vehicle key 204 can be stored in a secure element 206 of the mobile terminal device 202. Furthermore, the mobile terminal device 202 can comprise a digital vehicle key application 208. The digital vehicle key 204 can be associated with a digital vehicle key 204 of a vehicle 210 and a digital vehicle key 204 of a backend server 212 of a vehicle manufacturer. A user of the vehicle 210 can determine a remote diagnostic permission object 216 by means of a vehicle application 214 of the mobile terminal device 202. For example, the vehicle user can receive the remote diagnostic permission object 216 from a remote diagnostic server 218 by means of the vehicle application 214. To this end, the user of the vehicle application 214 can contact the remote diagnostic server 218. For example, the user of the vehicle application 214 can transmit a message requesting a remote diagnostic to the remote diagnostic server 218 and the remote diagnostic server 218 can transmit the remote diagnostic permission object to the vehicle application 214 in response to the message. For example, the user of the vehicle application 214 can determine a remote diagnostic server 218 and / or a remote diagnostic provider by means of the vehicle application 214 and the vehicle application 214 creates the remote diagnostic permission object 216 for the determined remote diagnostic server 218 and / or the determined remote diagnostic provider. The user can authorize the remote diagnostic permission object 216 by means of the vehicle application 214 and the digital vehicle key application 208 in a way that the user signs the remote diagnostic permission object 216. To sign the remote diagnostic permission object 216, the vehicle application 214 can transmit the remote diagnostic permission object 216 to the digital vehicle key application 208. The digital vehicle key application 208 signs the remote diagnostic permission object 216. The mobile terminal device 202, for example the vehicle application 214 of the mobile terminal device 202, can transmit the signed remote diagnostic permission object 220 to the remote diagnostic server 218.

[0033] The remote diagnostic permission object 216 and / or the signed remote diagnostic permission object 220 can comprise data to control remote diagnostic access on the vehicle side. For example, the remote diagnostic permission object 216 can comprise one or more access permissions (e.g. read permissions and / or control permissions), one or more time intervals (e.g. one day, one hour or permanent) for the respective access permission or all access permissions, and / or one or more diagnostic authorized parties (e.g. a vehicle manufacturer, one or more repair shops, and / or one or more remote diagnostic service providers). The user can control and / or release the remote diagnostic access individually by signing the remote diagnostic permission object 216 with the digital vehicle key 204.

[0034] To start the remote diagnosis, the remote diagnosis server 218 can transmit the signed remote diagnosis permission object 220 to the backend server 212 of the vehicle manufacturer or to the first controller 222 of the vehicle 210. The backend server 212 can comprise a software component 224 for access verification, which can verify the signature of the signed remote diagnosis permission object. Verifying the signature of the signed remote diagnosis permission object by the backend server 212 enables the vehicle manufacturer to keep a record of the granted remote diagnosis access rights of the user. The first controller of the vehicle 210 can comprise a software component 226 for access verification, which can verify the signature of the signed remote diagnosis permission object. After access verification is completed by the backend server 212 and / or the first controller, the remote diagnosis instructions and / or remote diagnosis functions can be executed on the first controller 222 and / or the other controllers 228, 230, 232.

[0035] Advantageously, the method can more efficiently operate the remote diagnosis system of the vehicle. The security of the remote diagnosis system can be linked to the security of the digital vehicle key. In other words, the access protection of the remote diagnosis system corresponds to the access protection of the digital vehicle key. Accessing the vehicle using the remote diagnosis permission object can be explicitly assigned to the digital vehicle key. If the digital vehicle key loses its validity, the remote diagnosis permission object can also lose its validity. Furthermore, the method also allows an authorized third party, such as an independent repair shop, to remotely diagnose the vehicle. Thus, in addition to the vehicle manufacturer, a plurality of other authorized third parties can also securely remotely diagnose the vehicle. The vehicle user can autonomously set which access rights the remote diagnosis should have. The vehicle user thus has full control over the remote diagnosis of his vehicle. Furthermore, the user can clearly see which remote diagnosis operations were performed on his vehicle by the repair shop. The user can more quickly implement remote diagnosis using his mobile end device when problems arise with his vehicle. Thus, possible problems with the vehicle can be more quickly identified and eliminated.

[0036] List of reference signs

[0037] 100 method

[0038] 102 determining a remote diagnosis permission object

[0039] 104 signing the remote diagnosis permission object

[0040] 106 transmitting the signed remote diagnosis permission object

[0041] 108 verifying the signature of the signed remote diagnosis permission object

[0042] 110 executing remote diagnosis instructions

[0043] 200 system

[0044] 202 mobile terminal device

[0045] 204 digital vehicle key

[0046] 206 secure element

[0047] 208 digital vehicle key application

[0048] 210 vehicle

[0049] 212 back-end server

[0050] 214 vehicle application

[0051] 216 remote diagnostic rights object

[0052] 218 remote diagnostic server

[0053] 220 signed remote diagnostic rights object

[0054] 222 first controller

[0055] 224 software component for access verification

[0056] 226 software component for access verification

[0057] 228 controller

[0058] 230 controller

[0059] 232 controller

Claims

1. A method for operating a remote diagnostic system for a vehicle, the method comprising: The remote diagnostic permission object is determined for the remote diagnostic server by a mobile terminal device with a digital vehicle key. The remote diagnostic authorization object is signed by the mobile terminal device using the private encryption key of the digital vehicle key; The signed remote diagnostic permission object is transferred from the mobile terminal device to the vehicle manufacturer's back-end server and / or the vehicle's first controller. The signature of the signed remote diagnostic authorization object is verified using the public encryption key of the digital vehicle key on the vehicle manufacturer's back-end server and / or the vehicle's first controller; and If the signature of the signed remote diagnostic authorization object is successfully verified using the public encryption key of the digital vehicle key on the vehicle manufacturer's back-end server and / or the vehicle's first controller, then remote diagnostic instructions are executed on the vehicle's first controller and / or one or more other controllers of the vehicle based on the signed remote diagnostic authorization object.

2. The method according to claim 1, wherein, The remote diagnostic permission object includes a permission object for reading diagnostic data from the first controller and / or one or more other controllers of the vehicle as remote diagnostic instructions.

3. The method according to any one of the preceding claims, wherein, The remote diagnostic permission object includes permission objects for controlling the remote diagnostic functions of the first controller and / or one or more other controllers of the vehicle as remote diagnostic commands.

4. The method according to any one of the preceding claims, wherein, The private encryption key for the digital vehicle key is stored in the secure key storage of the mobile terminal device.

5. The method according to any one of the preceding claims, wherein, The transfer of signed remote diagnostic authorization objects from mobile terminal devices to the vehicle manufacturer's back-end servers and / or the vehicle's first controller includes: The signed remote diagnostic permission object is transferred from the mobile terminal device to the remote diagnostic server; and The signed remote diagnostic permission object is transferred from the remote diagnostic server to the vehicle manufacturer's backend server or the vehicle's first controller.

6. The method according to any one of the preceding claims, wherein, The remote diagnostic server is either the vehicle manufacturer's remote diagnostic server or a third-party remote diagnostic server.

7. The method according to any one of the preceding claims, wherein, Transferring the signed remote diagnostics permission object from the remote diagnostics server to the vehicle manufacturer's backend server includes: Transfer the signed remote diagnostics permission object from the remote diagnostics server to the vehicle manufacturer's backend server. The signature of the signed remote diagnostic authorization object is verified on the vehicle manufacturer's backend server using the public encryption key of the digital vehicle key; and If the signature of the signed remote diagnostics authorization object is successfully verified on the vehicle manufacturer's back-end server using the public encryption key of the digital vehicle key, the signed remote diagnostics authorization object is transferred from the vehicle manufacturer's back-end server to the vehicle's first controller.

8. The method according to claim 7, further comprising: If the signature of a signed remote diagnostic authorization object cannot be successfully verified on the vehicle manufacturer's back-end server using the public encryption key of the digital vehicle key, an error message is transmitted from the vehicle manufacturer's back-end server to the remote diagnostic server; and / or the error message is transmitted from the vehicle manufacturer's back-end server to the mobile terminal device.

9. The method according to any one of the preceding claims, wherein, If an authorized user of the mobile terminal device authorizes the signing of a remote access object, the mobile terminal device signs the remote diagnostic access object using the private encryption key of the digital vehicle key.

10. The method according to any one of the preceding claims, wherein, The remote diagnostic permission object includes an identifier for the authorized diagnostic party; and the identifier for the authorized diagnostic party is a unique identifier for the vehicle repair shop.

11. The method according to claim 10, wherein, The identifier of the diagnostic authorized party additionally includes an encrypted one-way hash value corresponding to ciphertext known only to the diagnostic authorized party; and the remote diagnostic command is executed on the first controller of the vehicle and / or one or more other controllers of the vehicle only when the vehicle and / or the vehicle manufacturer's back-end server verifies the ciphertext known only to the diagnostic authorized party using the encrypted one-way hash value of the remote diagnostic authorization object.

12. The method according to any one of the preceding claims, wherein, The remote diagnostic command is transmitted from the remote diagnostic server and / or the vehicle manufacturer's back-end server to the vehicle's first controller. Preferably, the remote diagnostic command, together with the remote diagnostic authorization object, is transmitted from the remote diagnostic server and / or the vehicle manufacturer's backend server to the vehicle's first controller.

13. The method according to any one of the preceding claims, wherein, The identifier of the diagnostic authorized party includes the public key of the diagnostic authorized party; and remote diagnostic commands are executed on the first controller of the vehicle and / or one or more other controllers of the vehicle only when the diagnostic authorized party cryptographically proves that it has a private key corresponding to the public key of the diagnostic authorized party.

14. A computer-readable medium for a remote diagnostic system for operating a vehicle, the computer-readable medium comprising instructions that, when executed on a computer and / or controller, perform the method according to any one of claims 1 to 13.

15. A system for operating a remote diagnostic system for a vehicle, wherein, The system is configured to perform the method according to any one of claims 1 to 13.

16. A vehicle, the vehicle comprising the system for a remote diagnostic system for operating a vehicle as claimed in claim 15.